Haystack
← Back to Jobs
Other
UE

CISO

Universal E-Business Solutions, LLCReno, NV🇺🇸United StatesPosted 2 Sept 2026

Why This Role Stands Out

This CISO role offers a significant opportunity to shape enterprise cybersecurity strategy and build a resilient security culture within a leading healthcare organization, with hybrid flexibility and executive visibility. You will thrive here if you are a strategic leader adept at managing complex risks and eager to drive impactful improvements in a 24/7 environment. Apply now to lead critical security operations and advise senior leadership.

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Reno, NV, United States
Posted
Yesterday
ComplianceHIPAAM&ARegulatory ComplianceRisk Management

Job Description

Chief Information Security Officer (CISO)

Introduction

We are conducting a confidential search on behalf of our client for an experienced Chief Information Security Officer (CISO) to lead the organization's enterprise cybersecurity strategy and operations. This executive will be responsible for safeguarding patient data, ensuring regulatory compliance, managing cyber risk across a complex clinical environment, and building a resilient, people-first security culture. The CISO will report to senior IT/executive leadership and serve as a key advisor to the C-suite and Board on all matters of information security, privacy, and technology risk. This is a high-visibility leadership role responsible for setting strategic direction while remaining hands-on with governance, operations, and incident response in a 24/7 healthcare delivery environment.

Responsibilities

  • Own and evolve the enterprise cybersecurity strategy, aligning security investments with the organization's clinical, operational, and strategic goals.
  • Lead enterprise-wide Identity and Access Management (IAM) programs, including orchestration and automation to improve speed, accuracy, and least-privilege enforcement.
  • Oversee cyber operations, including threat intelligence, endpoint detection and response (EDR), vulnerability management, dark web monitoring, and 24/7 security monitoring.
  • Direct Governance, Risk, and Compliance (GRC) programs to ensure adherence to HIPAA, HITECH, state privacy laws, and other healthcare regulatory frameworks.
  • Manage third-party/vendor risk management programs, including cybersecurity RFP processes and vendor security assessments.
  • Lead business continuity planning (BCP) and disaster recovery (DR) efforts to ensure resilience against ransomware, natural disasters, and other disruptive events.
  • Build and maintain incident response plans; serve as the executive lead during security incidents and breaches, coordinating with legal, compliance, and executive leadership.
  • Develop and mature a security awareness culture across clinical and administrative staff ("people-first" security).
  • Represent the organization externally with industry peers, regulatory bodies, and healthcare information-sharing organizations (e.g., H-ISAC).
  • Partner closely with the CIO/IT leadership on infrastructure, AI adoption, and data governance initiatives to ensure "security by design."
  • Manage and mentor a team of security professionals, and oversee the cybersecurity budget and vendor relationships.
  • Provide regular reporting and briefings to executive leadership and the Board on the organization's risk posture.

Requirements

Required Qualifications

  • 10+ years of progressive experience in information security leadership roles, with at least 3-5 years in a CISO, Deputy CISO, or equivalent executive security role.
  • Required: Prior experience in the healthcare industry, with deep familiarity with HIPAA/HITECH compliance and clinical operations.
  • Required: Willingness to relocate to Reno, NV. This is an on-site/hybrid role based in Reno.
  • Demonstrated expertise in identity and access management, cyber operations, GRC, and third-party risk management.
  • Proven experience developing and executing business continuity and disaster recovery programs.
  • Strong track record of executive communication – able to translate technical risk into business terms for the C-suite and Board.
  • Experience managing security incidents and breach response in complex, always-on operational environments.
  • Bachelor's degree required; Master's degree (e.g., MHA, MBA, MS in Cybersecurity/Emergency Management) strongly preferred.
  • Relevant certifications required or strongly preferred: CISM, CISSP, CRISC, or equivalent.

Preferred Qualifications

  • Experience in a combined CISO/CTO or CISO/IT leadership capacity.
  • Familiarity with AI governance and securing AI/automation initiatives within clinical workflows.
  • Experience serving on industry advisory boards or with organizations such as AEHIS, H-ISAC, or similar healthcare security associations.
  • Experience with M&A/integration security (e.g., health system mergers or acquisitions).

What's Offered

  • Competitive executive compensation package
  • Comprehensive health, dental, and vision benefits
  • Retirement savings plan with employer match
  • Relocation assistance for candidates relocating to Reno, NV
  • The opportunity to lead cybersecurity strategy for one of northern Nevada's largest and most respected health systems

How to Apply

This search is being managed confidentially by UeBIZ. Qualified candidates should submit their resume directly to UeBIZ for consideration. Company details will be disclosed to candidates who advance in the process.

Similar jobs