Back to Jobs
Head of Information Security
Industry specialist
Owen Clancy
Recruitment Consultant
Share this Job
Related Jobs
Manufacturing Engineer
Shannon, County Clare, Ireland
Posted on: 8/12/2025
Purchasing and Procurement Manager
Clenagh, County Clare, Ireland
Posted on: 8/12/2025
Manufacturing Engineer
County Clare, Ireland
Posted on: 8/12/2025
R&D Product Validation Specialist
County Clare, Ireland
Posted on: 8/5/2025
R&D Product Validation Specialist
County Clare, Ireland
Posted on: 8/1/2025
Galway, County Galway, Ireland
€110000 - €130000 per annum
Permanent
About the Role
We’re recruiting on behalf of a fast-growing healthcare technology company seeking a Head of Information Security to lead and evolve their global security and compliance posture.
This is a pivotal leadership role with broad responsibility across security strategy, risk, cloud infrastructure, compliance (HIPAA, ISO 27001, FedRAMP readiness), and data protection. You’ll collaborate cross-functionally to ensure a proactive and scalable approach to protecting sensitive health and operational data.
The ideal candidate will be a hands-on security leader with proven experience in regulated environments—preferably healthcare or digital health—and a track record of successfully delivering security certifications in startup or growth-stage companies.
Key Responsibilities
Required Experience & Qualifications
Preferred Qualifications
For a confidential conversation about the role contact Owen Clancy at oclancy@sterlingengineeringeu.com By applying to this job post you agree that Sterling Engineering may process your personal data for recruitment purpose
We’re recruiting on behalf of a fast-growing healthcare technology company seeking a Head of Information Security to lead and evolve their global security and compliance posture.
This is a pivotal leadership role with broad responsibility across security strategy, risk, cloud infrastructure, compliance (HIPAA, ISO 27001, FedRAMP readiness), and data protection. You’ll collaborate cross-functionally to ensure a proactive and scalable approach to protecting sensitive health and operational data.
The ideal candidate will be a hands-on security leader with proven experience in regulated environments—preferably healthcare or digital health—and a track record of successfully delivering security certifications in startup or growth-stage companies.
Key Responsibilities
- Design, implement, and continuously mature the company’s information security program.
- Define and enforce policies aligned with ISO 27001, HIPAA, NIST CSF, and other relevant standards.
- Lead risk assessments, vulnerability management, incident response, and third-party risk processes.
- Prepare for and manage external audits (e.g., ISO 27001, HIPAA, FedRAMP readiness).
- Partner with DevOps to implement secure cloud architectures (AWS/Azure/GCP).
- Promote secure development practices in engineering, QA, and clinical workflows (DevSecOps).
- Drive security awareness and training programs across the organization.
- Act as a key voice in customer engagements, board-level discussions, and compliance matters.
- Serve as (or support) the Data Protection Officer (DPO) for GDPR-related activities.
Required Experience & Qualifications
- 7+ years in information security, with 2+ years in a leadership or head-of-role capacity.
- Proven experience achieving and maintaining ISO 27001 certification.
- Deep understanding of HIPAA and relevant healthcare compliance frameworks.
- Working knowledge of NIST CSF and FedRAMP (readiness or implementation stage).
- Strong cloud security expertise in AWS, Azure, or GCP environments.
- Demonstrated success managing security audits, risk assessments, and remediation efforts.
- Experience in regulated industries—especially healthcare SaaS or medical devices.
- Excellent communication and stakeholder management skills (technical and non-technical audiences).
Preferred Qualifications
- Professional certifications (CISSP, CISM, CISA, CCSP, ISO 27001 Lead Implementer).
- Familiarity with U.S. federal compliance standards (NIST SP 800-53, FISMA).
- Exposure to IoT or device-level security (e.g., Bluetooth, firmware threat modeling).
- Hands-on experience with DevSecOps pipelines and CI/CD security tools.
For a confidential conversation about the role contact Owen Clancy at oclancy@sterlingengineeringeu.com By applying to this job post you agree that Sterling Engineering may process your personal data for recruitment purpose