Virtual Chief Information Security Officer – vCISO

🔥 12 hours ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Triplemoon

Triplemoon

11 - 50 employees

Founded 2024

☁️ SaaS

🤝 B2B

🧘 Wellness

SaaS • B2B • Wellness

Triplemoon is a behavioral health company that integrates pediatric mental health services directly into primary care practices and employers’ offerings. They deliver evidence-based, collaborative care — including behavioral interventions, care coordination, psychiatric consultation, prescription management, and family education — supported by a patient-facing app and provider-facing workflows. Triplemoon partners with clinicians and organizations to expand access to pediatric behavioral health, improve outcomes, and create new revenue streams; many services are covered by commercial and Medicaid plans.

📋 Description

• Own the strategy, design, implementation, and continuous improvement of Triplemoon's information security and compliance program. • Ensure ongoing compliance with HIPAA and healthcare security best practices. • Lead readiness efforts for future SOC 2 certification and other security frameworks as needed. • Develop, maintain, and document security policies, procedures, and controls. • Coordinate security incident response, investigation, remediation, and post-incident reviews. • Support customer security questionnaires, audits, and compliance requests. • Partner with leadership to identify, assess, and mitigate information security risks. • Manage and oversee an IT MSP or MSSP who can implement security controls and compliance within SaaS vendors and IT systems. • Provide tiered end-user support for hardware, software, and SaaS application issues. • Provide device and asset management. • Manage identity and access, including systems for onboarding and offboarding. • Maintain system documentation, operating procedures, and technology standards. • Recommend and implement improvements to strengthen security, scalability, and user experience. • Conduct security reviews of third-party vendors and software platforms. • Maintain required security documentation, including BAAs, DPAs, SOC reports, and related compliance artifacts. • Monitor vendor compliance and support periodic risk assessments.

🎯 Requirements

• 7+ years of experience in information security, IT administration, compliance, or related roles. • Experience serving as a vCISO, security leader, or senior security consultant. • Strong knowledge of HIPAA Security Rule requirements and healthcare security best practices. • Experience preparing organizations for SOC 2 audits and other compliance frameworks. • Experience supporting early-stage startups or high-growth healthcare organizations. • Hands-on experience administering Google Workspace, identity management platforms, endpoint management tools, and SaaS environments. • Familiarity with remote workforce security and cloud-first technology environments. • Excellent documentation, communication, and stakeholder management skills. • Ability to operate independently while serving as a strategic advisor to company leadership.

🏖️ Benefits

• Competitive, based on experience and scope

Apply Now

Similar Jobs

🔥 22 hours ago

66degrees

501 - 1000

🤖 Artificial Intelligence

AI Security Architect establishing security guardrails for AI usage at 66degrees. Develops security standards and collaborates with deployment teams to ensure safe AI practices.

AWS

Azure

Cloud

Cyber Security

Firewalls

Google Cloud Platform

🕒 2 days ago

ISTARI

51 - 200

🔒 Cybersecurity

📚 Education

🤝 B2B

Network Security Engineer focusing on architecture and engineering for network security with Zero Trust principles. Involves Zscaler environments, firewall management, and collaboration with architects and SOC teams.

Cloud

Firewalls

🕒 4 days ago

Alluvionic Inc.

11 - 50

🔒 Cybersecurity

🏛️ Government

vCISO providing part-time, executive-level cybersecurity leadership for multiple client engagements. Involves governance, risk management, and compliance for regulated environments.

Cyber Security

🕒 6 days ago

Asymmetric

1 - 10

💸 Finance

Security Engineer managing incident response within a fully remote team specializing in Web3 security. Focusing on operational support for the Solana Incident Report Network during a 6-month contract.

Web3

🕒 June 7

Sunshine Enterprise USA

51 - 200

🎯 Recruiter

👥 HR Tech

🤝 B2B

Detection Engineer supporting enterprise security monitoring and threat detection initiatives. Responsible for developing and maintaining security detections in a large-scale environment.

Python