Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Baptist Health

Chief Information Security Officer

Baptist Health

. Build, maintain, and implement a strategic enterprise information security program .

Posted 9/21/2026full-timePensacola • Florida • United StatesLeadWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in building and maintaining enterprise information security programs, with a strong focus on risk management, compliance with HIPAA and NIST regulations, and effective communication with executive leadership. Proven ability to lead cybersecurity initiatives, conduct risk assessments, and establish security policies and standards in a complex healthcare environment.

Highest-signal resume keywords
Information Security LeadershipRisk Management PlanningCybersecurity Incident ResponseHIPAA ComplianceVendor Risk Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information Security Program DevelopmentRisk AssessmentCybersecurity Standards DevelopmentCrisis ManagementMitigation Tools ApplicationSecurity Policy EstablishmentAudit Control MonitoringCybersecurity Metrics EstablishmentData Security ConsultationHealthcare Informatics
Soft Skills
Organizational SkillsFacilitation SkillsWritten CommunicationOral CommunicationConsensus-Building Skills
Tools & Technologies
HITRUSTSOC 2 Type IIISO 27001NIST Security FrameworkElectronic Protected Health Information (ePHI)
Certifications & Qualifications
CISSPCISMCHPSHCISPPCRISC
Industry Keywords
Healthcare ComplianceState and Federal Information Security LawsJoint Commission StandardsMatrix Management ModelThird-Party Security Assessments

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Build, maintain, and implement a strategic enterprise information security program
  • Establish and update information security policies, standards, and procedures
  • Evaluate security trends, threats, risks, and vulnerabilities and apply mitigation tools
  • Lead cybersecurity incident preparedness and response, including crisis management, ransomware readiness, incident response planning, tabletop exercises, recovery validation, and lessons learned
  • Collaborate with senior management, the Privacy Officer, and Corporate Compliance Officer on security governance
  • Conduct information security risk assessments, mitigation, remediation, and risk management planning
  • Ensure audit controls monitor electronic systems containing or using electronic protected health information
  • Maintain system use, disclosure, and confidentiality statements
  • Monitor business associate agreements and related security requirements
  • Assist with HIPAA breach determination and notification processes
  • Serve as an information security consultant to departments on data security issues and emerging technologies
  • Oversee third-party security assessments and vendor risk management
  • Establish cybersecurity requirements for vendors, business associates, cloud providers, and strategic partners
  • Evaluate HITRUST, SOC 2 Type II, ISO 27001, and NIST security attestations
  • Present cybersecurity risk reports to executive leadership and board committees
  • Establish security metrics and maturity benchmarks
  • Communicate departmental, organizational, and industry information to staff
  • Develop cybersecurity standards for connected medical devices and clinical technologies
  • Partner with Clinical Engineering, Biomedical Services, and clinical leadership on medical equipment cybersecurity risks
  • Work under the direction of the Vice President and Chief Information Officer, with support from the General Counsel and Chief Compliance Officer

Requirements

What you’ll need
  • Bachelor's Degree in Information Security, Computer Science, Information Technology, Healthcare Informatics, or related field required
  • Minimum 7 years of progressive information security, cybersecurity, risk management, or technology leadership experience
  • At least 5 years in an information security leadership role within a complex healthcare environment
  • Knowledge and experience in state and federal information security laws, including HIPAA, NIST, PCI, and other applicable regulations
  • Familiarity with DHHS, AHCA, NIST, PCI, ISO, Joint Commission, and other regulatory and standards bodies
  • Demonstrated organization, facilitation, written and oral communication, and presentation skills
  • Ability to work with and through others to accomplish departmental and organizational objectives
  • Ability to work well with all levels of the organization
  • Ability to work successfully in a matrix management model
  • Organizational, leadership, and consensus-building skills
  • Master's Degree preferred
  • CISSP, CISM, CHPS, HCISPP, and/or CRISC certifications preferred

Benefits

Comp & perks
  • Equal Opportunity Employer
  • Hybrid work environment
  • Full-time employment
  • Day shift
  • Potential Level 2 Background check through AHCA for certain positions