At Prime Therapeutics, we are driven by a purpose that goes beyond profits. We are here to transform pharmacy care for the communities we serve. If you are looking for a meaningful career that truly makes a difference, we invite you to join us in building the future of pharmacy.
Job Description
The Senior Business Information Security Officer acts as the main security liaison for our valued clients, ensuring their security needs are met and compliance is upheld. This role involves collaborating with key stakeholders, providing critical metrics and status updates, and driving security initiatives across client accounts.
Key Responsibilities :
- Serve as the primary security point of contact for Commercial and State Government Solutions clients.
- Gather and present monthly reports covering metrics, Plan of Action and Milestones (POAMs), vulnerabilities, and more to clients and stakeholders.
- Provide expertise on Prime’s Information Security policies, processes, and technologies to enhance client leadership's understanding of security practices.
- Assist in documenting, managing, and reporting on Plan of Action and Milestones related to client accounts.
- Take part in client Request for Proposal (RFP) and contract reviews to provide consistent security approaches across different business accounts.
- Create and manage System Security Plans (SSPs), ensuring they are regularly updated and acting as the primary contact for these plans.
- Support clients in security assessments and requests by clarifying systems, services, and requirements.
- Review vulnerability and patching reports to assess risk and prioritize remediation efforts, ensuring adherence to Service Level Agreements (SLAs) across IT teams.
- Perform additional duties as assigned.
Minimum Qualifications :
Bachelor's degree in information security, computer science, or a related field, or equivalent education and experience.A minimum of 5 years of experience in cybersecurity or information technology, with at least 3 in a security-focused role.Solid understanding of HIPAA Security Rule and NIST security standards.Must be authorized to work in the United States without the need for sponsorship.Preferred Qualifications :
Certifications such as CISM, CISSP, CRISC, or CISA.Experience in the healthcare or pharmacy benefit management (PBM) industry.Familiarity with regulatory compliance frameworks such as PCI, HITRUST, and SOC 2.Expertise in IT architecture and security controls.Demonstrated ability to communicate effectively to both technical and non-technical audiences.At Prime Therapeutics, every team member plays a significant role in our mission. If you are ready for a rewarding career that enhances healthcare, we would love for you to apply.