Cyber Intelligence & Insider Threat Manager leading intelligence and insider threat programs at OpenLoop. Ensuring compliance with healthcare regulations and managing risk across multiple stakeholders.
Responsibilities
Lead and manage the cyber intelligence and insider threat program, ensuring 24/7 security monitoring, incident detection, response, and escalation processes (in coordination with SecOps/SOC/MSSP).
Develop and execute the insider threat strategy, policies, and response playbooks.
Lead insider threat response, including investigation, containment, remediation, and root cause analysis.
Develop and execute a cyber intelligence program to deliver an intelligence-driven and risk-prioritized security program (awareness/technologies/controls) and identification of key risks to the business.
Collaborate with external threat intelligence sources, law enforcement, and government/industry organizations (e.g., H-ISAC) to stay updated on evolving threats, vulnerabilities, and TTPs (tactics, techniques, and procedures).
Centralize multiple threat sources (premium, industry-shared, open-source, dark web), correlate indicators and threats, and distill actionable intelligence, outlining severity, urgency and impact, and ensure they can be understood by both management and technical teams.
Actively inform and engage in security projects across the business to disrupt active or potential threats.
Maintain an up-to-date level of knowledge related to security threats, vulnerabilities and mitigations to reduce attack surface.
Develop metrics and scorecards to measure risk to the organization, as well as effectiveness and efficiency of threat analysis and response.
Ensure regulatory compliance (e.g., PCI, HIPAA, HITRUST, NIST CSF) through effective security operations controls and processes.
Other duties as assigned.
Requirements
Bachelor's degree in Information Security, Computer Science, Information Technology, or a related field is preferred.
8+ years of experience in Information Security, with at least 5 years focused on Cyber Intelligence and Insider Threat.
Applicable knowledge of adversary tactics, techniques and procedures (TTPs), MITRE ATT&ACK framework, CVSS, open source intelligence (OSINT) and deception techniques.
Demonstrated ability to investigate, handle and track incidents.
Experience in healthcare or digital health is a plus / Experience in government cyber intelligence is a plus.
Deep expertise in security operations, cyber intelligence, threat detection, incident response, and insider threat.
Strong understanding of cyber threat landscape, attack vectors, security technologies, and defensive tactics.
Familiarity with regulatory frameworks (HIPAA, HITRUST, NIST CSF).
Excellent leadership and communication skills with the ability to engage technical and non-technical stakeholders, including senior executives and the board.
Excellent organizational and documentation skills.
Ability to effectively collaborate and communicate with business partners, customers, third parties, and regulatory agencies.
Analytical and problem-solving abilities with a proactive, risk-based approach.
Strategic thinking and the ability to align security risks and initiatives with business objectives.
Detail-oriented with a strong focus on operational excellence and regulatory compliance.
Strong customer service orientation.
Adaptability to handle dynamic and challenging environments.
Energetic, resourceful, and appropriate work intensity to get the work done.
Senior Manager driving capital raising activities for utility - scale renewable energy projects. Engaging with capital providers and managing transactions from origination to closing in a collaborative environment.
Operational Vendor Manager establishing a governance model with key partners at Orange Cyberdefense. Ensuring alignment, governance, and enabling vendor contributions to service quality.
Manager, EU Affairs joining UPM to strengthen advocacy work for sustainable materials. Collaborating in Brussels and engaging with key EU policy makers to shape future regulations.
Contract Specialist managing budget and contract activities within clinical operations in Germany. Collaborating with project teams and overseeing Site Start - Up deliverables in Munich office.
RN Case Manager at Trinity Hospice coordinating care for patients in San Antonio. Managing relationships, plans of care, and interdisciplinary communication in a supportive environment.
Loan Review Manager at Rabobank focused on credit quality and hindsight assurance. Collaborating with teams to enhance risk management in the agricultural banking sector.
Tangible Asset Valuations Specialist managing asset valuations and due diligence at PwC Australia. Engaging in client interactions and mentoring junior team members in a dynamic environment.
Senior Manager at PwC responsible for shaping people agenda in HR function. Partnering with leaders to deliver workforce strategies and enhance organizational effectiveness.