We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

Sr Cybersecurity Liaison | Full Time

Henry Ford Health System
United States, Michigan, Detroit
Feb 27, 2025

GENERAL SUMMARY:

The Sr. Cybersecurity Liaison is the primary point of contact between the Information Privacy and Security Office, IT and assigned business unit(s). In addition, Joint Venture(s) (JV) relationship management may be assigned as needed.

This position is responsible for aligning the strategy/services provided by IPSO policies, procedures, processes, and services to ensure compliance and protection of patient and organizational systems and data. An ability to communicate effectively through the leadership ranks and executive presence with influencer leadership are essential. This liaison role is critical for aligning cybersecurity with business unit priorities.

Key success criteria for this role include:



  • Raise the cybersecurity program's profile within the organization.
  • Increase delivery of cybersecurity services internally.
  • Connect with assigned unit, learn their needs, and offer them cybersecurity and operational support; and
  • Organize and execute cybersecurity service delivery.


REPORTING/RELATIONSHIPS:

The Sr. Cybersecurity Liaison reports directly to the Deputy Information Security Officer. This position will work in a collaborative effort within the Information Privacy and Security Office and assigned business unit(s) and/or assigned Joint Venture(s) to ensure security programs and technical controls follow policies, applicable laws, and regulations.

PRINCIPAL DUTIES AND RESPONSIBILITIES:



  • Build relationships with business unit leaders to align business goals with cybersecurity priorities and reframe risk discussions in business terms.
  • Liaise between cybersecurity and assigned business unit(s) to ensure adherence to appropriate cybersecurity policies, standards, and frameworks.
  • Evaluate business unit initiatives and provide cybersecurity recommendations based on guidance and policy relating to each program or system.
  • Consult with business units to assess security needs, identify gaps, and develop risk mitigation strategies.
  • Educate stakeholders on cybersecurity-related matters to increase awareness and improve culture.
  • Provide knowledge and guidance on IPSO service catalog processes to ensure compliance and successful implementation of business, health products, and services.
  • Coordinate with IPSO and IT groups to implement security processes and controls that enable business objectives.
  • Advocate for cybersecurity interests and represent business unit security concerns.
  • Identify improvement opportunities (proactive and reactive)
  • Participate in cybersecurity and business-related councils or working groups as necessary.
  • Respond to business unit queries in support of the business initiatives and projects.
  • Document and represent business unit requests for exceptions to security policies/standards.
  • Perform other duties as assigned.


EDUCATION/EXPERIENCE:



  • Bachelor's degree in business, Information Technology, Cybersecurity, or related field.
  • Minimum 10 years of experience in Information Security, Information Assurance and/or Cyber Security space.
  • Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or other similar credentials obtained with 1-year.
  • Knowledge and understanding of relevant legal and regulatory requirements.
  • Strong ability to convey complex information risk and security issues in a manner that is easily understood and actionable.
  • Understanding of how business initiatives create value and risk for organizations.
  • Excellent verbal and written communication skills with a wide range of audiences including technologists, executives, business stakeholders and IT team members.
  • Cyber security risk management experience, e.g. conducting assessments, identifying risks, and recommending solutions.
  • Technology acumen (working knowledge) and awareness of key infrastructure, networking, IT operations and cyber & information security processes.

Additional Information


  • Organization: Corporate Services
  • Department: Ascension Info_Network Scrty
  • Shift: Day Job
  • Union Code: Not Applicable

Applied = 0

(web-b798c7cf6-l9rr9)