RecruitMilitary Logo
Sign In

Zone Facility Information Security Official - Military Veterans

at HCA Healthcare

Description

Introduction

Last year our HCA Healthcare colleagues invested over 156,000 hours volunteering in our communities. As a(an) the Zone Facility Information Security Official with HCA Healthcare you can be a part of an organization that is devoted to giving back!

Benefits

HCA Healthcare, offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:

  • Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
  • Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
  • Free counseling services and resources for emotional, physical and financial wellbeing
  • 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
  • Employee Stock Purchase Plan with 10% off HCA Healthcare stock
  • Family support through fertility and family building benefits with Progyny and adoption assistance.
  • Referral services for child, elder and pet care, home and auto repair, event planning and more
  • Consumer discounts through Abenity and Consumer Discounts
  • Retirement readiness, rollover assistance services and preferred banking partnerships
  • Education assistance (tuition, student loan, certification support, dependent scholarships)
  • Colleague recognition program
  • Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
  • Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.

Learn more about Employee Benefits

Note: Eligibility for benefits may vary by location.

Would you like to unlock your potential with a leading healthcare provider dedicated to the growth and development of our colleagues? Join the Work from Home family! We will give you the tools and resources you need to succeed in our organization. We are looking for an enthusiastic Zone Facility Information Security Official (ZFISO) to help us reach our goals. Unlock your potential!

Job Summary

The Zone Facility Information Security Official is a shared role across a market, responsible for leading, driving, and, in some cases, implementing Information Protection & Security (IPS) activities in company entities under the supervision of the Division Director of Information Security Assurance (DISA) or a Manager, Consulting, or Senior ZFISO. He or she serves as a liaison between local leadership and IPS leadership.

Under general supervision from the DISA, they are responsible for performing a wide range of tasks that support the ongoing maturation of the IPS program, including: driving consistency and visibility of IPS risk management activities; working with business owners to protect patients and prevent data loss; and rounding with local leadership to reduce or eliminate risky behaviors. They are responsible for helping workforce members appropriately comply with the company’s IPS requirements.

This role requires extensive focus on building and expanding relationships with key stakeholders such as local leadership; workforce members; physicians; IT teams; business owners; vendors; and other people and entities who support IPS objectives and activities.

The ZFISO must have a combination of skills including written and verbal communication skills, interpersonal skills, and the ability to influence, guide, and/or lead others necessary to accomplish IPS goals.

Major Responsibilities:

Risk Management

  • Coordinate and perform risk assessments using corporate-provided tools and templates.
  • Drive and manage execution of corrective action plans to address deficiencies identified during risk assessments.
  • Ensure the designated committee (e.g., Security Committee, Ethics & Compliance Committee) receives, documents, tracks, investigates, and sponsors remediation of security control deficiencies, suspected IPS incidents, and complaints. Provide education and guidance to ensure these committees make informed, risk-based decisions necessary to balance business needs and security objectives.
  • Represent IPS needs in strategic planning, budgeting, and work prioritization processes.
  • Drive ongoing compliance with IPS policies, standards, and operational procedures.
  • Work with local leaders to submit and approve exceptions to IPS standards.
  • Lead audit response activities to address IPS issues identified by Internal Audit or external auditors (e.g., CMS HIPAA Security audits).

Issues Tracking and Resolution

  • Support, coordinate, and manage incident response and investigation activities.
  • Investigate information leaving the organization with appropriate leadership (i.e. Manager, ECO, HR, Legal)
  • Coordinate with HR Director, Facility Privacy Official and Ethics & Compliance Officer to ensure that sanctions related to IPS issues are applied appropriately and consistently.
  • Perform follow-up education and consultation with workforce members with risky behaviors and/or behaviors that violate Company policies and standards.

Execution

  • Round to build and strengthen relationships with workforce members at all levels and to educate staff on how to reduce or eliminate risky behaviors.
  • Facilitate, and lead where appropriate, proactive IPS communication and awareness activities including coordinating with HR and training departments to ensure that periodic workforce training includes company-required IPS content.
  • Assist with and manage the review and approval of user requests for high-risk access.
  • Assist the Division DISA in driving key elements in the enterprise and division IS programs to ensure that required processes are adopted and maintained.
  • Lead and coordinate implementation and adoption of technology and processes changes.

Vendor Systems Security

  • Collaborates with system business owners to ensure vendor contracts are in place for department and IT systems and services.
  • Work with appropriate business, IT, supply chain, and corporate IPS stakeholders to help ensure specific systems, services, and devices receive proper security assessments and remediation.
  • Work with business, purchasing, and IT stakeholders to ensure proper controls are in place for existing vendor-maintained solutions.
  • Work with system business owners and vendors to document system vulnerabilities and document mitigation controls or remediation actions.
  • Ensure vendor systems use approved connectivity, remote management and monitoring.
  • Performs other duties as assigned
  • Practices and adheres to the “Code of Conduct” philosophy and “Mission and Value Statement.”

Knowledge, Skills, Abilities, Behaviors:

  • Experience in developing and assessing technical and process-based controls, managing risk assessments/investigations, and working with organization management to integrate controls into the scope of existing business practices. Preferred
  • Exposure to management and/or operations in a number of healthcare business or IT functional areas. Preferred
  • Experience in some combination of audit, risk management, information security, privacy, and information technology. Required
  • Knowledge of information security regulations (HIPAA Privacy/Security, Sarbanes-Oxley IT controls, Payment Card Industry (PCI)) Preferred
  • Possesses the ability to build and maintain positive team relationships at all levels of the facility, market, and corporate levels. Required
  • Possesses A sense of responsibility and accountability – someone who takes ownership and initiative. Required
  • Creative thinker, always looking for a “better way” to deliver value; not stopped or discouraged by adversity. Required
  • Demonstrates respect for diversity of experience, characteristics, viewpoints, and opinions. Required
  • Maintains professional demeanor, appearance, and positive attitude. Required
  • Adaptable and flexible, with the ability to handle ambiguity and sometimes changing priorities. Required

Education & Experience:

  • Bachelor's degree and 3+ years of experience in a relevant field or Required
  •  High School Graduate/Equivalent and 6+ years of experience in a relevant field Required
  • Or equivalent combination of education and/or experience

Licenses, Certifications, & Training:

  • CISSP, CISA, HCISPP, CHC, CHPC, CHSP, CISM or other relevant certifications in information security or privacy Preferred

Additional Information: 

  • This role is based in our West Florida Division supporting the following facilities; 
    • Fawcett Memorial Hospital 
    • Englewood Community Hospital
    • Doctors Hospital of Sarasota 
    • Blake Medical Center
    • South Bay Hospital 
  • Candidate must live in the West Florida Division near facilities or be willing to relocate
  • This role is not work from home, the employee will be excepted to have a presence on facilities' sites listed above
  • Role will require travel in-between facilities listed above

We are comprised of affiliated hospitals, physician practices and other sites of care across the United States and United Kingdom. The Sarah Cannon Cancer Network is transforming cancer care through integrated services and cutting-edge technologies. Our physicians can develop leading oncology programs to advance science and patient care. Providing physician-led patient care offers our doctors access to a national network of experts. This is where multidisciplinary teams come together with a goal of delivering seamlessly coordinated, quality cancer care. Through a united network of globally recognized oncology specialists, we collaborate and share best practices. We address each aspect of the cancer journey, from screening and diagnosis through treatment and survivorship, to advance our shared mission: Above all else, we are committed to the care and improvement of human life.

HCA Healthcare has been recognized as one of the World's Most Ethical Companies® by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated $3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.


"There is so much good to do in the world and so many different ways to do it."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder

Be a part of an organization that invests in you! We are reviewing applications for our  Zone Facility Information Security Official opening. Qualified candidates will be contacted for interviews. Submit your application and help us raise the bar in patient care!

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Port Charlotte, FL

HCA Healthcare

HCA Serving Those Who Have Served Us So Faithfully.

Guided by the principle that quality care begins with the warmth, compassion, and positive attitude of our employees, HCA has consistently proven to be the nation’s leading healthcare provider with the widest range of employment opportunities.

Since our founding over 40 years ago, HCA has grown in size and services with over 280 affiliate facilities in 20 states and England. Our family of nearly 190,000 strong is dedicated to developing innovative strategies and practices to better the human condition.

Above all else, we are committed to the care and improvement of human life. Expert care, ethical conduct, innovative technologies, and best practices are the core of our resources. Through these, we strive to deliver high-quality, cost-effective, community-centric health care for approximately 18 million patients annually.

HCA has over 7000 open requisitions in hospitals, diagnostic, outpatient and business operations across 20 states in the U.S.

Our employment opportunities fill job classes in both patient care and business support services. While a majority of positions account for clinical backgrounds, HCA has many opportunities in supply chain and logistics, IT, engineering and technical, administrative and managerial, sales, finance and accounting, environmental, plant ops, HR and many more.

Similar Jobs