1,437,834open jobs
84,810companies
219,155added this week
Browse all
Salary
≈ $129k – $278k per year (Estimated)
Location
In office (Egg Harbor Township)
Seniority
Architect · 10+ years exp

Confirmed on the employer's own hiring board on Oct 11, 2026. First seen by Alion on Oct 6, 2026. AtlantiCare scores B on the Alion truth index.

Overview
Company
Impact
Profile match
AtlantiCare is a nonprofit health system in southern New Jersey headquartered in Egg Harbor Township, operating AtlantiCare Regional Medical Center with its City Campus in Atlantic City and Mainland Campus in Galloway. The system offers emergency, surgical, cancer, heart, orthopedic, behavioral health, primary and urgent care through hospitals, a surgery center and a network of outpatient practices across Atlantic County and nearby areas. It hires registered nurses, patient care and emergency room technicians, surgical and interventional radiology technicians, laboratory apprentices, monitor technicians, warehouse associates and client services and scheduling staff.

POSITION SUMMARY

The Chief Information Security Officer (CISO) is the enterprise executive accountable for protecting AtlantiCare’s patients, workforce, data, clinical operations, and reputation from cyber risk. Reporting to the EVP, Chief Information and Digital Officer, the CISO sets the vision, strategy, governance, and operating model for information security and cyber resilience across the health system. This leader translates complex threats, vulnerabilities, and regulatory obligations into clear business and patient-safety risk decisions for executive leadership and the Board.

The CISO leads the enterprise Information Security Program and team; establishes policy, architecture, controls, metrics, and accountability; and ensures readiness to prevent, detect, respond to, and recover from cyber incidents. Working across clinical, operational, technology, biomedical, legal, privacy, compliance, audit, emergency management, and vendor partners, the CISO embeds security by design while enabling AtlantiCare’s strategic, digital, cloud, data, and AI priorities. The role is both strategic and operational and requires sound judgment, calm leadership, executive presence, and the ability to influence outcomes across a complex, highly regulated environment.

KEY RESPONSIBILITIES

  • Enterprise strategy and governance: Develop and execute a multi-year information security and cyber resilience strategy, roadmap, operating model, and budget aligned with AtlantiCare’s strategic plan, enterprise risk appetite, and technology priorities.

  • Executive and Board advisory: Serve as the principal cyber risk advisor to executive leadership and the Board, presenting the organization’s risk posture, material threats, control maturity, investment priorities, risk-acceptance decisions, and program performance in clear business and patient-safety terms.

  • Risk ownership and accountability: Establish governance that enables business and technology leaders to identify, understand, mitigate, accept, and document cyber risk at the appropriate level.

  • Security program leadership: Lead the enterprise Information Security Program and ensure consistent, high-quality execution across governance, risk, compliance, architecture, engineering, operations, incident response, awareness, and third-party risk.

  • Team and partner leadership: Recruit, develop, motivate, and retain a high-performing security team; set clear accountabilities and performance expectations; and oversee managed security service providers, consultants, and dotted-line resources.

  • Policy and control framework: Maintain a practical, risk-based framework of policies, standards, procedures, and controls aligned with applicable laws, regulations, contractual obligations, and recognized practices including NIST CSF 2.0, HHS 405(d) HICP, and the HHS Healthcare and Public Health Cybersecurity Performance Goals.

  • Regulatory assurance: Partner with Legal, Compliance, Privacy, Audit, and operational leaders to maintain compliance with HIPAA, HITECH, the HIPAA Security Rule, and applicable federal and state requirements; oversee assessments, remediation plans, evidence, and regulatory readiness.

  • Security architecture and engineering: Establish security-by-design requirements across identity, network, endpoint, cloud, applications, data, integration, and emerging technologies, advancing zero trust, multifactor authentication, least privilege, privileged access management, segmentation, encryption, and secure configuration.

  • Clinical and medical-device security: Partner with clinical, Biomedical Engineering, Facilities, and operational leaders to protect connected medical devices and clinical technology through accurate inventories, risk-based segmentation, vulnerability management, lifecycle planning, downtime safeguards, and security requirements in procurement.

  • Threat and vulnerability management: Maintain awareness of the external threat environment and direct threat intelligence, exposure management, penetration testing, vulnerability prioritization, and remediation across technology and business owners.

  • Incident response and crisis leadership: Lead the response to significant cyber incidents, including ransomware, data compromise, and extended technology downtime; coordinate executive, clinical, operational, legal, privacy, communications, insurance, and law-enforcement activities; and ensure timely breach assessment, notification, and lessons learned.

  • Cyber resilience and recovery: Partner with Technology, Emergency Management, and clinical operations to align disaster recovery, business continuity, backup protection, recovery testing, downtime procedures, and tabletop exercises with critical business and patient-care priorities.

  • Third-party and supply-chain risk: Establish a lifecycle process to assess and manage cyber risk associated with vendors, business associates, cloud providers, software, services, and other ecosystem partners; ensure appropriate security requirements, contractual protections, monitoring, and concentration-risk decisions.

  • Digital, cloud, data, and AI enablement: Embed proportionate security review into technology intake, procurement, architecture, development, and project delivery. Partner with Data and Analytics, Privacy, Legal, and operational leaders to govern AI tools and models, including data protection, access, acceptable use, monitoring, and third-party risk.

  • Human risk and security culture: Build an enterprise security culture through role-based awareness, phishing simulations, executive and clinical education, targeted interventions for high-risk users, and a network of security champions.

  • Metrics and continuous improvement: Define meaningful key risk and performance indicators, including risk reduction, control coverage, resilience, vulnerability remediation, third-party exposure, and workforce behavior; use results to prioritize resources and improve program maturity.

  • External engagement: Maintain effective relationships with peers, Health-ISAC, cyber insurance partners, law enforcement, CISA, HHS, and other relevant agencies to strengthen preparedness, information sharing, and response.

  • Financial stewardship: Develop and manage the information security budget, investment portfolio, contracts, and vendor performance, ensuring resources are directed to the organization’s highest risks and most critical capabilities.

  • Professional leadership: Demonstrate sound judgment, integrity, urgency, discretion, customer focus, and composure under pressure. Communicate effectively with technical and nontechnical audiences and influence outcomes where formal authority may not exist.

  • Adhere to AtlantiCare policies and procedures and perform other duties as assigned.

WORK ENVIRONMENT

This position requires sitting at a desk or computer a majority of the day, with frequent speaking, reaching, and reading.This position requires occasional lifting up to 20 lbs. This position requires availability outside normal business hours, including evenings, weekends, and holidays, to lead the response to significant security incidents.

REPORTING RELATIONSHIP

This position reports to the EVP, Chief Information and Digital Officer, provides regular cyber risk reporting to executive leadership and the Board, and supervises Information Security staff as assigned.

QUALIFICATIONS

EDUCATION: Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Business, Health Informatics, or a related field, or equivalent relevant experience, required. Master’s degree preferred.

LICENSE/CERTIFICATION: CISSP or CISM strongly preferred; CRISC, CISA, CCSP, HCISPP, or comparable security, risk, cloud, or healthcare credentials are desirable.

EXPERIENCE: Ten or more years of progressive cybersecurity, information security, technology risk, or related experience, including at least five years leading teams, enterprise programs, or significant security functions. Health care experience and demonstrated knowledge of HIPAA, HITECH, the HIPAA Security Rule, health information privacy, and the operational and patient-safety implications of cyber events are required.

The successful candidate will have experience advising executives or boards; leading incident response and recovery; managing regulatory, audit, and third-party risk; establishing security architecture and controls across network, identity, endpoint, cloud, application, data, and medical-device environments; and developing multi-year strategy, budgets, metrics, and talent. Experience evaluating AI-enabled platforms and securing major digital or clinical transformation programs is strongly preferred.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,437,834 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Egg Harbor Township
≈ $87k – $189k per year (Estimated) • In office • Full-Time • Switzerland
Apply
≈ $117k – $310k per year (Estimated) • In office • Full-Time • Zurich
DevOps
IAM
Apply
≈ $92k – $200k per year (Estimated) • In office • Full-Time • Switzerland
Cybersecurity
ISO 27001
Threat Modeling
Apply
≈ $112k – $261k per year (Estimated) • In office • Full-Time • Bioggio
Cybersecurity
NIST CSF
PCI DSS
Zero Trust
Defense in Depth
Threat Modeling
Management
Agile
Apply
≈ $86k – $186k per year (Estimated) • In office • Full-Time • Sursee
DevOps
Linux
Windows
Cybersecurity
MITRE ATT&CK
SIEM
OWASP
Apply
≈ $66k – $163k per year (Estimated) • Hybrid • London
Python
JavaScript
Java
TypeScript
SQL
C#
Node JS
Databases
Snowflake
Databricks
DynamoDB
Apache Kafka
Google BigQuery
Amazon Aurora
Azure Cosmos DB
BigQuery
AI/ML
Vertex AI
AWS Bedrock
LLM
RAG
OpenAI
LLM Guardrails
DevOps
Rest API
gRPC
Terraform
GCP
Azure DevOps
GitHub Actions
OpenTelemetry
CloudFormation
Prometheus
Azure
CI/CD
GitOps
ArgoCD
AWS
Docker
Kubernetes
Grafana
Service Mesh
Bicep
Amazon EKS
Google GKE
Azure AKS
AWS Fargate
Google Cloud Run
AWS Lambda
FinOps
Amazon S3
IAM
Amazon ECS
Amazon CloudWatch
API Gateway
DNS
Cybersecurity
CIS Benchmarks
GDPR
Zero Trust
Least Privilege
Microsoft Entra ID
SIEM
Cryptography
Vault
Apply
≈ $75k – $192k per year (Estimated) • Hybrid • Belfast
DevOps
Azure
Cybersecurity
ISO 27001
Microsoft Defender
NIST CSF
Zero Trust
Apply
$106k – $177k per year • Remote (United States) • Secret • 8+ years exp • United States
Cybersecurity
NIST 800-53
Zero Trust
Least Privilege
Apply
≈ $66k – $146k per year (Estimated) • Hybrid • Bachelor's Degree • Edinburgh
Python
PowerShell
DevOps
Terraform
GCP
Azure
CI/CD
AWS
Cybersecurity
Zero Trust
SIEM
Management
Agile
Scrum
Apply
≈ $89k – $164k per year (Estimated) • Hybrid • Bachelor's Degree • Edinburgh
Python
PowerShell
C#
DevOps
Docker
Kubernetes
Cybersecurity
Zero Trust
SIEM
Management
Agile
Apply
≈ $42k – $85k per year (Estimated) • In office • Contractor • 2+ years exp • High School Diploma • Egg Harbor Township
Management
Microsoft Office
Apply
≈ $36k – $71k per year (Estimated) • In office • Full-Time • 1+ year exp • High School Diploma • Egg Harbor Township
Apply
≈ $37k – $82k per year (Estimated) • In office • Part-Time • High School Diploma • Atlantic City
Apply
≈ $35k – $68k per year (Estimated) • In office • Full-Time • 1+ year exp • High School Diploma • Atlantic City
Apply
≈ $40k – $70k per year (Estimated) • In office • 1+ year exp • High School Diploma • Galloway
Apply
$70k – $78k per year • In office • Full-Time • 1+ year exp • Master's Degree • Egg Harbor Township
Apply
≈ $45k – $85k per year (Estimated) • In office • 2+ years exp • High School Diploma • Egg Harbor Township
Management
Microsoft Office
Apply
≈ $42k – $85k per year (Estimated) • In office • Contractor • 2+ years exp • High School Diploma • Egg Harbor Township
Management
Microsoft Office
Apply
≈ $36k – $71k per year (Estimated) • In office • Full-Time • 1+ year exp • High School Diploma • Egg Harbor Township
Apply
$38k – $42k per year • In office • High School Diploma • Egg Harbor Township
Apply
See all jobs
This is one of many
1,437,834 more open roles from verified company boards, updated every day.