The Vulnerability Program Manager will lead and mature our healthcare risk and vulnerability management program. This role is responsible for identifying, assessing, prioritizing, and driving remediation of security vulnerabilities across our technology environment. This role is critical in protecting sensitive patient data, ensuring compliance with healthcare regulations, and maintaining the security of clinical and administrative systems.
Essential Functions
- Design, implement, and manage a comprehensive vulnerability management program tailored to healthcare environments.
- Drive the teams to produce actionable results for the regular vulnerability assessments across electronic health record (EHR) systems, medical devices, cloud platforms, and on-premises infrastructure.
- Coordinate activities across infrastructure, applications, and cloud environments.
- Assist the team with analyzing and prioritizing vulnerabilities based on risk to patient safety, data confidentiality, and operational continuity.
- Collaborate with IT, clinical engineering, security and compliance teams to define remediation efforts.
- Maintain a vulnerability risk register and provide executive-level reporting with a focus on healthcare-specific risks.
- Integrate threat intelligence to contextualize vulnerabilities and assess potential impacts on patient care.
- Ensure compliance with HIPAA, HITECH, NIST Cybersecurity Framework, and other relevant healthcare regulations.
- Define and track key performance indicators (KPIs) and metrics for vulnerability management.
- Support audits, risk assessments, and incident response activities related to vulnerabilities.
- Drive continuous improvement through automation, process refinement, tools and cross-functional training.
Qualifications:
- Bachelor's degree in information security, healthcare IT, or a related field
- 5+ years experience in cybersecurity
- 2 years experience in vulnerability management within a healthcare setting
- Familiarity with healthcare technologies such as EHR systems (preferred Epic), PACS, and medical IoT devices
- Experience with vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7) and healthcare-specific risk assessment tools
- Strong understanding of HIPAA Security Rule, HITECH Act, and NIST 800-53/800-66
- Excellent communication skills, with the ability to translate technical risks into business impact
- Experience with HITRUST CSF and healthcare compliance audit
- Hybrid, but must reside in Arizona
All IN FOR YOUR CAREER:
- Competitive pay and incentives
- Tuition assistance up to $5,250* per year
- Professional development programs
- Comprehensive medical, dental and vision insurance with domestic partner coverage
- Pet insurance, fur babies are family too
- 403(b) retirement savings plan that provides immediate vesting and dollar-dollar match up to 4%
- On-site child and elder care centers
- Employee assistance program
- Free parking, discounted bus passes, fitness facilities
- Programs for passion areas: wellness, volunteering, belonging and more
*terms and conditions apply
For more information or immediate consideration, email resume to: Lyndsey Smith:
To learn more about the opportunity and to apply online visit:
HonorHealth System Overview:
HonorHealth is one of Arizona s largest nonprofit healthcare systems, serving a population of five million people in the greater Phoenix metropolitan area. The comprehensive network encompasses nine acute-care hospitals, an extensive medical group with primary, specialty and urgent care services, a cancer care network, outpatient surgery centers, clinical research, medical education, a foundation, an accountable care organization, community services and more. With approximately 17,000 team members, 4,000+ affiliated providers and over 2,000 volunteers, HonorHealth seamlessly blends collaborative care and approachable expertise to improve health and well-being. People often say care feels different here because it does. Learn more at HonorHealth.com.
Phoenix and Scottsdale are known for high-end resorts, golf courses, vibrant nightclubs and professional sports, but the city s biggest attraction may be the sunshine, winter warmth and more than 41,000 acres of mountain parks and desert preserves.