SCAN Group is the sole corporate member of SCAN Health Plan, one of the nation's leading not-for-profit Medicare Advantage plans, serving more than 285,000 members in California, Arizona, Nevada, and Texas.. As the Chief Information Security Officer (CISO), you will be responsible for establishing and maintaining the enterprise vision, strategy, and programs to ensure that information assets and technologies are adequately protected for both SCAN Health Plan and associated portfolio companies.. The CISO will be the strategic leader for all aspects of information security, including security architecture, risk management framework, incident response, security awareness training, and vulnerability management.. CISSP (Certified Information Systems Security Professional) or Certified Information Security Manager (CISM). Understanding and experience with adherence to information and network security standards (HIPAA, HITECH, HITRUST, PCI and PII compliance), data management, disaster recovery.
Oversee Security Operations Center (SOC), incident response, vulnerability management, threat intelligence, and endpoint protection.. Drive the maturity of identity and access management (IAM), data loss prevention (DLP), zero trust architecture, and secure DevOps initiatives.. Strong technical foundation in network security, cloud security (GCP, AWS, Azure, OCI), security engineering, and incident response.. Relevant certifications (CISSP, CISM, CISA, CCSP, etc.. Mattel offers competitive total pay programs, comprehensive benefits, and resources to help empower a culture where every employee can reach their full potential.
As the Chief Information Security Officer (CISO), you will be responsible for establishing and maintaining the enterprise vision, strategy, and programs to ensure that information assets and technologies are adequately protected for both SCAN Health Plan and associated portfolio companies. The CISO will be the strategic leader for all aspects of information security, including security architecture, risk management framework, incident response, security awareness training, and vulnerability management. CISSP (Certified Information Systems Security Professional) or Certified Information Security Manager (CISM).. Understanding and experience with adherence to information and network security standards (HIPAA, HITECH, HITRUST, PCI and PII compliance), data management, disaster recovery. Thorough understanding of Active Directory, Network/Remote Access Security, Systems Security (Windows, Unix, Mainframe), Application and Web Security, Firewalls and Intrusion Detection Systems, TCP/IP, Proxy, SPAM Filtering, SIEMs, Vulnerability Scanners, IDS/IPS, SQL.
The Sr. Network Architect will design, implement, and maintain enterprise-level network infrastructure, including LAN, WAN, wireless, SD-WAN, and cloud networking technologies, and develop network security strategies and implement security protocols, such as firewalls, intrusion detection/prevention systems, and access control systems, to protect against advanced cyber threats. They will develop network capacity planning, disaster recovery, and business continuity plans. They will have expertise knowledge of Optical systems (Passive and active DWDM), VoIP and other real-time applications, SDN, IoT integration, and the ability to Support OSPF and other network protocols. Company 3, including its various business units and family of brands, provides a full range of Creative Services for content creators, including conceptual design, pre-vis, look development, ideation and rapid prototyping, 3D animation/CGI, motion graphics/designers, matte painting, compositing, dailies and production services, color grading, post-production finishing, marketing/trailers, live-action production, experiences, and more. An employee’s pay position within the range may be based on several factors including, but limited to, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, local currency exchange rates, performance, shift, travel requirements, sales or revenue-based metrics, applicable law, and business or organizational needs.
This role requires expertise in Industrial Control System (ICS) LAN/WAN networking, SCADA network architecture, and security design.. Collaborate closely with IT network, project management teams, and SCADA network/security consultants on infrastructure design, development, proof of concept, and upgrades.. Proficient knowledge of ICS technologies and SCADA Protocols (Modbus, DNP3, CIP).. Strong understanding of Cellular, Microwave, Telco services, WAN, LAN, switching, routing, VPN, VLAN.. Global Information Assurance Certification (GIAC) - Global Industrial Cyber Security Professional Certification (GICSP)
This well-established and innovative healthcare technology company, focused on improving the health and wellness industry, is looking to expand their team with a Chief Information Security Officer (CISO) to oversee the company’s cybersecurity, application security, and risk management strategies. Previous experience as a CISO or equivalent in a SaaS company or healthcare provider, with a preference for candidates with prior experience in digital health. Deep expertise in security, privacy, and IT audit frameworks, such as HITRUST CSF, HIPAA, and PCI regulations. Extensive experience with risk management, incident response, crisis management, threat intelligence, and developing secure business practices. Strong experience in technical security areas, including penetration testing, vulnerability management, mobile security, cloud security, and network security.
The Director of Information Security reports to the Chief Information Officer (CIO) and is responsible for information security policy assessments, enforcing compliance with firm security policies and applicable law, vendor management and security incident management.. Working with the firm’s Information Technology teams, including Network Operations, Customer Experience, Practice Services and Research, the Director of Information Security will help develop, manage, audit and enforce security related policies and procedures throughout the firm’s enterprise on premise and cloud systems.. Expert understanding of cloud controls and environments, a strong foundation in IT solutions deployment and practical understanding of IT security compliance, risk management and information security principles including access control, network security, information security architecture, information security operations, and leading practices and associated tools in a cloud environment are critical.. Knowledge of security tools and concepts including: IDS/IPS; SIEM; Web Proxy; Encryption; Patch management; Vulnerability Scanning & Remediation; Forensics; Penetration Testing; DLP; Email Gateways; Anti-spam Services; MDM; Privileged Account Management; Log Analytics; Two Factor Authentication; Single Sign On.. Individual must possess excellent communication and interpersonal skills with a high degree of empathy and emotional intelligence, be self-motivated with the ability to manage and prioritize multiple deliverables to meet deadlines and demonstrate proven success delivering results individually and as part of a team in a fast-paced, demanding, growth environment.
The Systems Engineer's main mission will be to support the sales organization in all technical matters regarding pre-sales, sales calls, and post-sales. Pre-sales - assist in qualifying sales leads from a technical standpoint. 5 – 8 years experience in technical/pre-sales support as a sales or systems engineer.. Knowledge of the following technologies: Routing, Switching, VPN, LAN, WAN, Network Security, Intrusion Detection, and Anti Virus. Solid understanding in the following technologies and protocols: RADIUS, PKI, IKE, Certificates, L2TP, IPSEC, FIREWALL, 802.1Q, MD5, SSH, SSL, SHA1, DES, 3DES