
IT Director
Pacific Health Group
full-time
Posted on:
Location Type: Hybrid
Location: San Diego • California • 🇺🇸 United States
Visit company websiteSalary
💰 $78,500 - $82,500 per year
Job Level
Lead
Tech Stack
CloudCyber Security
About the role
- Architect and maintain a formal, organization-wide Information Security Program.
- Define and enforce security controls across applications, infrastructure, devices, and users.
- Establish policies for data classification, encryption, access control, logging, monitoring, and retention.
- Ensure least-privilege access and zero-trust principles are implemented across systems.
- Continuously monitor evolving threat landscapes and proactively adapt controls.
- Serve as the internal authority for HIPAA Security Rule and Privacy Rule compliance.
- Ensure proper safeguards for creation, storage, transmission, and disposal of PHI.
- Maintain compliance documentation, risk assessments, and audit evidence.
- Lead HIPAA risk analyses and remediation plans.
- Oversee Business Associate Agreements (BAAs) from a security and IT standpoint.
- Own the design, implementation, and maintenance of all IT systems, including cloud platforms, networks and connectivity, end-user devices, and SaaS applications.
- Establish formal incident response plans and escalation procedures.
- Lead response efforts for security incidents, attempted breaches, phishing, impersonation, or data exposure.
- Conduct root cause analysis and implement corrective actions.
- Define and enforce controls for sensitive data, PHI, and confidential business information.
- Evaluate security posture of third-party vendors and platforms.
- Develop and enforce IT and security policies applicable to all staff.
- Define a long-term IT and security roadmap aligned with business growth.
Requirements
- Extensive experience in IT, cybersecurity, or information security leadership.
- Demonstrated expertise in HIPAA compliance and healthcare data protection.
- Strong understanding of cloud security, endpoint security, and identity management.
- Experience creating policies, controls, and compliance frameworks from the ground up.
- Ability to operate with high autonomy and accountability.
- CISSP, CISM, or equivalent security certifications (preferred).
- Prior experience in healthcare, health tech, or regulated industries (preferred).
- Experience managing audits, risk assessments, and compliance programs (preferred).
- Familiarity with NIST, ISO 27001, or similar security frameworks (preferred).
Benefits
- 160 Hours of Paid Time Off (PTO)
- 12 Paid Holidays per year, including your birthday and one floating holiday after 1 year of employment
- 4 Paid Volunteer Hours per Month to support causes you care about
- Bereavement Leave, including Fur Baby Bereavement
- 90% Employer-paid Employee-Only Medical Benefits
- Flexible Spending Account (FSA)
- Short-Term & Long-Term Disability | AD&D
- Employee Assistance Program (EAP)
- 401(k) with Company Match
- Monthly Stipend
- Opportunities for professional development and internal growth
- Employee Discounts via Great Work Perks and Perks at Work
- Quarterly In-Person Events
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
information security programsecurity controlsdata classificationencryptionaccess controlzero-trust principlesrisk assessmentsincident responsecloud securityendpoint security
Soft skills
leadershipautonomyaccountability
Certifications
CISSPCISM