R1 RCM Logo

R1 RCM

Director, IT Security Risk

Posted 2 Days Ago
Remote
Hiring Remotely in USA
122K-179K Annually
Expert/Leader
Remote
Hiring Remotely in USA
122K-179K Annually
Expert/Leader
Leads cybersecurity governance, risk, and compliance programs, with ownership of third-party cyber risk, customer security assessments, risk exceptions, and the cyber risk register. Manages a geographically distributed team, matures GRC processes, drives automation, partners with internal and external stakeholders, and reports risk trends and recommendations to senior leadership. Requires extensive cybersecurity experience, people leadership, customer-facing skills, and experience building or improving third-party risk capabilities.
The summary above was generated by AI

R1 is the leading provider of technology-driven solutions that transform the patient experience and financial performance of hospitals, health systems, and medical groups. We combine deep revenue cycle expertise, a global workforce, and advanced technology across analytics, AI, intelligent automation, and workflow orchestration to help healthcare organizations improve performance at scale.


As Director, IT Security Risk, you will lead cybersecurity governance, risk, and compliance capabilities that protect R1 and customer information assets and technology infrastructure. Reporting to the Deputy CISO, you will lead a US- and India-based team and own key programs spanning third-party cyber risk, customer cybersecurity inquiries and assessments, risk exceptions, and the cyber risk register.


This is a hands-on leadership opportunity to mature and automate critical cyber risk processes in a dynamic, global healthcare organization. You will partner with customers, business leaders, Procurement, Compliance, IT, Product Development, and Security teams to address risk, support business needs, and strengthen the organization’s overall security posture.


Responsibilities:

·   Develop and execute the strategy and operating program for assessing, monitoring, and mitigating cybersecurity risk from third parties and suppliers.

·   Lead, mentor, and develop a US- and India-based team, including approximately two to three direct reports and a broader team of approximately five employees.

·   Oversee responses to customer cybersecurity questionnaires, customer cyber risk assessments, risk-exception processing, and maintenance of the cyber risk register.

·   Build and mature scalable governance and third-party risk capabilities, including clear procedures, documentation, controls, reporting, and stakeholder accountability.

·   Continuously review and optimize processes for efficiency and effectiveness in a changing threat environment, leveraging automation wherever appropriate.

·   Partner with customers and internal relationship leaders to respond to cybersecurity inquiries and support time-sensitive business needs.

·   Collaborate with IT, Product Development, Procurement, Compliance, business leaders, and other Security teams to reduce risk and address customer, contractual, regulatory, and operational requirements.

·   Ensure alignment with applicable regulatory requirements, industry standards, company policies, and cybersecurity best practices.

·   Develop and maintain program procedures, standards, and supporting documentation.

·   Define and communicate program performance, risk trends, priorities, and recommendations to senior management and other stakeholders.

·   Stay current on industry trends, emerging threats, and evolving cybersecurity governance and third-party risk practices.

·   Foster a culture of security awareness, accountability, collaboration, and continuous improvement.

·   Manage relationships with external partners, including security vendors and consultants.


Required Skills:

·   Bachelor’s degree or an equivalent combination of education and relevant experience.

·   10+ years of cybersecurity, technology risk, governance, risk and compliance, or related experience, including at least five years in a people-management role.

·   Demonstrated experience leading cybersecurity governance, risk, and compliance programs, with significant responsibility for third-party cyber risk management.

·   Experience building a new cyber GRC or third-party risk capability from the ground up, or materially rebuilding and maturing an existing program.

·   Experience managing customer cybersecurity questionnaires, risk assessments, exceptions, and risk-register processes.

·   Experience leading and developing teams across geographies, ideally including US- and India-based employees.

·   Strong customer-facing and stakeholder-management skills, with the ability to work effectively with senior leaders, business partners, Procurement, Compliance, IT, Product Development, and Security teams.

·   Ability to translate cybersecurity risk into clear business impact, recommendations, metrics, and executive-level reporting.

·   Experience improving processes through standardization, workflow design, and automation.

·   Strong judgment, organization, responsiveness, and the ability to manage multiple priorities and rapid-turnaround requests.


Preferred Qualifications:

·   Cybersecurity risk experience within healthcare, banking, financial services, or another highly regulated industry.

·   CISM certification required; CISSP or another relevant cybersecurity or risk certification is strongly preferred.

·   Experience operating in a global, acquisition-oriented, or rapidly changing organization.



For this US-based position, the base pay range is $122,366.00 - $178,767.22 per year . Individual pay is determined by role, level, location, job-related skills, experience, and relevant education or training.This job is eligible to participate in our annual bonus plan at a target of 20.00%

The healthcare system is always evolving — and it’s up to us to use our shared expertise to find new solutions that can keep up. On our growing team you’ll find the opportunity to constantly learn, collaborate across groups and explore new paths for your career.


Our associates are given the chance to contribute, think boldly and create meaningful work that makes a difference in the communities we serve around the world. We go beyond expectations in everything we do. Not only does that drive customer success and improve patient care, but that same enthusiasm is applied to giving back to the community and taking care of our team — including offering a competitive benefits package.

R1 RCM Inc. (“the Company”) is dedicated to the fundamentals of equal employment opportunity. The Company’s employment practices , including those regarding recruitment, hiring, assignment, promotion, compensation, benefits, training, discipline, and termination shall not be based on any person’s age, color, national origin, citizenship status, physical or mental disability, medical condition, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status or any other characteristic protected by federal, state or local law. Furthermore, the Company is dedicated to providing a workplace free from harassment based on any of the foregoing protected categories.

If you have a disability and require a reasonable accommodation to complete any part of the job application process, please contact us at 312-496-7709 for assistance.

CA PRIVACY NOTICE: California resident job applicants can learn more about their privacy rights California Consent

To learn more, visit: R1RCM.com

Visit us on Facebook

Similar Jobs

34 Minutes Ago
Remote
USA
200K-300K Annually
Senior level
200K-300K Annually
Senior level
Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
Own production operations for workplace AI platforms, including configuration, integrations, observability, secrets, access controls, model and prompt changes, benchmarking, and incident response. Translate technical findings into governance, risk, compliance, and training materials while collaborating with Security, Legal, HR, and business stakeholders. Investigate failures, implement mitigations, document root causes, and maintain reliable, secure AI services.
Top Skills: Access ControlAi/Llm PlatformsAlertingAPIsInfrastructure As CodeJSONLoggingMetricsMonitoring And ObservabilityPrompt EngineeringRpa/Workflow EnginesSecrets ManagementYaml
35 Minutes Ago
Remote
USA
143K-214K Annually
Senior level
143K-214K Annually
Senior level
Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
Build and lead a scalable application security and secure SDLC program across engineering teams. Establish policies, standards, tooling, vulnerability management, threat modeling, developer enablement, security champions, software supply-chain controls, and executive reporting. Partner with development, platform, DevOps, product, and leadership teams to integrate security into CI/CD, source control, build, release, and deployment workflows while supporting audits, advisories, incident response, and regulatory requirements.
Top Skills: Api SecurityBlack DuckBurp SuiteCheckmarxCi/CdContainer Security ScanningCyclonedxDastGithub Advanced SecurityGitlab Security ToolsInfrastructure-As-Code Security ScanningKubernetesMendNist Sp 800-218Nist SsdfOwasp SammOwasp ZapSastSbomScaSecrets DetectionSemgrepSlsaSnykSonarqubeSpdxVeracodeVex
35 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
80K-100K Annually
Senior level
80K-100K Annually
Senior level
AdTech • Artificial Intelligence • Cloud • Digital Media • Marketing Tech • Analytics • Consulting
Lead client-facing analytics consulting engagements, implementing Google Analytics and tag management solutions with minimal oversight. Analyze client data, develop technical strategies, connect marketing platforms, manage project tasks in Asana, communicate with clients, and support consultant mentoring and training. The role requires strong implementation expertise, data visualization skills, project management experience, and familiarity with analytics, customer data, mobile, consent management, and cloud platforms.
Top Skills: Adobe AnalyticsAdobe LaunchAmazon Web ServicesAsanaData StudioGoogle AnalyticsGoogle Cloud PlatformGoogle Tag ManagerLookerAzurePower BISegmentTableauTealium Tag Management System

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account