Virtual Chief Information Security Officer – vCISO

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Triplemoon

Triplemoon

11 - 50 employees

Founded 2024

☁️ SaaS

🤝 B2B

🧘 Wellness

SaaS • B2B • Wellness

Triplemoon is a behavioral health company that integrates pediatric mental health services directly into primary care practices and employers’ offerings. They deliver evidence-based, collaborative care — including behavioral interventions, care coordination, psychiatric consultation, prescription management, and family education — supported by a patient-facing app and provider-facing workflows. Triplemoon partners with clinicians and organizations to expand access to pediatric behavioral health, improve outcomes, and create new revenue streams; many services are covered by commercial and Medicaid plans.

📋 Description

• Own the strategy, design, implementation, and continuous improvement of Triplemoon's information security and compliance program. • Ensure ongoing compliance with HIPAA and healthcare security best practices. • Lead readiness efforts for future SOC 2 certification and other security frameworks as needed. • Develop, maintain, and document security policies, procedures, and controls. • Coordinate security incident response, investigation, remediation, and post-incident reviews. • Support customer security questionnaires, audits, and compliance requests. • Partner with leadership to identify, assess, and mitigate information security risks. • Manage and oversee an IT MSP or MSSP who can implement security controls and compliance within SaaS vendors and IT systems. • Provide tiered end-user support for hardware, software, and SaaS application issues. • Provide device and asset management. • Manage identity and access, including systems for onboarding and offboarding. • Maintain system documentation, operating procedures, and technology standards. • Recommend and implement improvements to strengthen security, scalability, and user experience. • Conduct security reviews of third-party vendors and software platforms. • Maintain required security documentation, including BAAs, DPAs, SOC reports, and related compliance artifacts. • Monitor vendor compliance and support periodic risk assessments.

🎯 Requirements

• 7+ years of experience in information security, IT administration, compliance, or related roles. • Experience serving as a vCISO, security leader, or senior security consultant. • Strong knowledge of HIPAA Security Rule requirements and healthcare security best practices. • Experience preparing organizations for SOC 2 audits and other compliance frameworks. • Experience supporting early-stage startups or high-growth healthcare organizations. • Hands-on experience administering Google Workspace, identity management platforms, endpoint management tools, and SaaS environments. • Familiarity with remote workforce security and cloud-first technology environments. • Excellent documentation, communication, and stakeholder management skills. • Ability to operate independently while serving as a strategic advisor to company leadership.

🏖️ Benefits

• Competitive, based on experience and scope

Apply Now

Similar Jobs

🔥 9 hours ago

66degrees

501 - 1000

🤖 Artificial Intelligence

AI Security Architect establishing security guardrails for AI usage at 66degrees. Develops security standards and collaborates with deployment teams to ensure safe AI practices.

🕒 2 days ago

ISTARI

51 - 200

🔒 Cybersecurity

📚 Education

🤝 B2B

Network Security Engineer focusing on architecture and engineering for network security with Zero Trust principles. Involves Zscaler environments, firewall management, and collaboration with architects and SOC teams.

🕒 3 days ago

Alluvionic Inc.

11 - 50

🔒 Cybersecurity

🏛️ Government

vCISO providing part-time, executive-level cybersecurity leadership for multiple client engagements. Involves governance, risk management, and compliance for regulated environments.

🕒 6 days ago

Asymmetric

1 - 10

💸 Finance

Security Engineer managing incident response within a fully remote team specializing in Web3 security. Focusing on operational support for the Solana Incident Report Network during a 6-month contract.

Web3

🕒 June 7

Sunshine Enterprise USA

51 - 200

🎯 Recruiter

👥 HR Tech

🤝 B2B

Detection Engineer supporting enterprise security monitoring and threat detection initiatives. Responsible for developing and maintaining security detections in a large-scale environment.