1

Healthcare Information Security Jobs (NOW HIRING)

As the leading healthcare engagement platform, we're the heartbeat of an industry that impacts ... Availity is seeking a Chief Information Security Officer to lead the company's enterprise ...

Because here, care goes beyond the . JOB OVERVIEW The Information Security Engineer is responsible ... As an employer accepting Medicare and Medicaid funds, employees must comply with all health-related ...

Agfa HealthCare, is a division of the Agfa-Gevaert Group which is headquartered in Mortsel, Belgium ... AGFA HealthCare is seeking an operational Director, Information Security to define and execute the ...

As a Information Security Engineer you support the execution and continuous improvement of ... Build, test, and tune correlation rules aligned to MITRE ATT&CK techniques relevant to healthcare ...

New

next page

Showing results 1-20

Healthcare Information Security information

See salary details

$62.5K

$136.1K

$200K

How much do healthcare information security jobs pay per year?

As of Aug 24, 2026, the average yearly pay for healthcare information security in the United States is $136,104.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,500.00 and $160,500.00 per year, depending on experience, location, and employer.

What is healthcare information security?

Healthcare information security refers to the practices and technologies used to protect sensitive medical data from unauthorized access, disclosure, alteration, or destruction. This includes safeguarding patient health records, medical billing information, and other confidential data within healthcare organizations. Professionals in this field ensure compliance with regulations like HIPAA, implement security protocols, and educate staff on best practices to prevent data breaches. The goal is to maintain patient privacy and trust while enabling the secure use of digital health technologies.

What are some common challenges faced by professionals in healthcare information security, and how can they be addressed?

Professionals in healthcare information security often face challenges such as balancing strict regulatory compliance (like HIPAA) with the need to provide seamless access to patient information for clinicians. Additionally, the constant evolution of cyber threats and the integration of new medical technologies can create vulnerabilities. To address these issues, it’s important to stay up-to-date with the latest security practices, foster strong collaboration with IT and clinical staff, and implement continuous security training and risk assessments. Building a culture of security awareness within the organization can significantly help mitigate potential threats.

What are the key skills and qualifications needed to thrive as a healthcare information security professional, and why are they important?

To thrive in Healthcare Information Security, you need expertise in cybersecurity principles, risk management, and regulatory compliance, often backed by a degree in information technology or cybersecurity and relevant certifications like CISSP or HCISPP. Familiarity with security tools such as intrusion detection systems, encryption technologies, and electronic health record (EHR) platforms is essential. Strong analytical thinking, attention to detail, and effective communication are valuable soft skills for assessing threats and collaborating with healthcare staff. These skills ensure the protection of sensitive patient data, compliance with legal requirements, and the overall integrity of healthcare systems.

What is the difference between Healthcare Information Security vs Healthcare Data Analyst?

AspectHealthcare Information SecurityHealthcare Data Analyst
Required CredentialsCertifications like CISSP, CISA, or Healthcare-specific security certificationsCertifications like CPC, CHDA, or data analysis certifications
Work EnvironmentIT security teams, healthcare organizations' security departmentsData departments, clinical settings, or research teams
Employer & Industry UsageHospitals, clinics, healthcare IT firmsHospitals, insurance companies, healthcare consulting firms
Common Search & Comparison IntentUnderstanding security roles in healthcareAnalyzing healthcare data for insights

Healthcare Information Security focuses on protecting patient data and healthcare systems from cyber threats, ensuring compliance with regulations like HIPAA. Healthcare Data Analysts interpret healthcare data to improve patient outcomes and operational efficiency. While both roles work within healthcare, they serve different functions—security versus data analysis—making their skills and responsibilities distinct.

More about Healthcare Information Security jobs

What cities are hiring for Healthcare Information Security jobs?

Cities with the most Healthcare Information Security job openings:

What states have the most Healthcare Information Security jobs?

States with the most job openings for Healthcare Information Security jobs include:

Infographic showing various Healthcare Information Security job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 73% Full Time, 23% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $136,104 per year, or $65.4 per hour.

Healthcare Information Security Manager (NY HELPS) - FT - Day Shift

ECMC

Buffalo, NY • On-site

$52.51 - $72.97/hr

Full-time

Re-posted 15 days ago


Job description

HOURLY RANGE: $52.51 - $72.97
NY HELPS
This title is part of the New York Hiring for Emergency Limited Placement Statewide Program (NY HELPS).
For the duration of the NY HELPS Program, this title may be filled via a non-competitive appointment, which means NO EXAMINATION IS REQUIRED, but all candidates must meet the minimum qualifications of the title for which they apply.
At a future date (within one year of permanent appointment), it is expected employees hired under NY HELPS will have their non-competitive employment status converted to competitive status, WITHOUT HAVING TO TAKE A CIVIL SERVICE TEST.
Employees will then be afforded with all of the same rights and privileges of competitive class employees of New York State.
While serving permanently in a NY HELPS title, employees may take part in any promotion examination for which they are qualified.
DISTINGUISHING FEATURES OF THE CLASS: The work involves assisting the Chief Healthcare Information Security Officer (CISO) in managing the Information Security Program at the Erie County Medical Center Corporation (ECMCC). The work involves addressing the electronic systems architecture and functionality as it affects safeguards of protected health information (PHI) and business information assets, as directed by the Healthcare Information Security Director or CISO. The incumbent monitors, assesses the IT business continuity and disaster recovery program and performs network penetration tests, application vulnerability assessment scans, and risk assessment reviews. The work is performed under the general direction of the Healthcare Information Security Director or CISO. Supervision may be exercised over lower-level technical staff. Does related work as required.
TYPICAL WORK ACTIVITIES:
Manages the Information Security Program procedures, technical systems and workforce training to maintain the confidentiality, integrity, and availability of data within all information systems;
Coordinates resources (staff, equipment, vendors, and consultants) across projects, manages the budget for assigned projects), monitors project progress (risks & issues) and adjusts resources and priorities accordingly;
Drives adoption of secure hardening and configuration practices in the systems security deployment cycle throughout central technology and line of business technical engineering teams;
Performs information security awareness and training to educate workforce about information risks;
Prepares and presents progress reports for management and ensure technologies are appropriately integrated to support the objectives of Cybersecurity Program;
Provides subject-matter-expertise in the discipline of Core Platform security to Cybersecurity operation team and others;
Provides consultancy for secure system design, development, engineering, and operation;
Provides project management and operational responsibility for administrative coordination and implementation of the organization's security program;
Assists in development of Security Program Policies and enforces policies and procedures;
Assists with enforcement of access control needs of the organization;
Identifies and helps implement continuous process enhancements/improvements to Cybersecurity Operations;
Assists in managing information security directives as mandated by Federal and State regulations, including but not limited to the Health Insurance Portability and Accountability Act (HIPAA);
Assists with disaster recovery, business continuity, incident response, and risk management programs;
As directed by the Healthcare Information Security Director of CISO, performs or works with third-party consultants to perform information risk assessments, security audits, and accreditation surveys, ensuring that information systems are adequately protected and meet HIPAA certification requirements;
Participates in accreditation surveys;
Attends and participates in meetings, seminars, and training sessions.
FULL PERFORMANCE KNOWLEDGE, SKILLS, ABILITIES AND PERSONAL CHARACTERISTICS: Thorough knowledge of state of the art computer security; good knowledge of project management and development; good knowledge of internal computer logic, programs and facilities; good knowledge of technical infrastructure security components and integrated computerized rules-based systems; familiarity with Federal and State privacy and security laws and regulations and industry best practices as they relates to healthcare information security; ability to enforce programs to ensure the security of health information across a widely dispersed workforce with a variety of information mediums; ability to read, interpret and apply technical information; ability to analyze and resolve security problems quickly; ability to supervise others; ability to establish and maintain effective working relationships with a diverse constituency; critical thinking skills; problem solving skills; technical skills; capable of performing the essential functions of the position with or without reasonable accommodation.
MINIMUM QUALIFICATIONS:
  • Possession of a Master's Degree* in Health Information Systems, Computer Science/Computer Programming, or related computer technology or healthcare related field and one (1) year of experience in computer or information security** which included experience with federal and state privacy and security laws, regulations and accreditation standards for maintaining information security and confidentiality; or:
  • Possession of a Bachelor's Degree* in Health Information Systems, Computer Science/Computer Programming, or related computer technology or healthcare related field and three (3) years of experience in computer or information security**, one (1) year of which included experience with federal and state privacy and security laws, regulations and accreditation standards for maintaining information security and confidentiality; or:
  • An equivalent combination of training and experience as defined by the limits of (A) and (B).

**Information Security, for the purpose of qualifying applications, is defined as the processes designed and implemented to protect information, systems, and networks against unauthorized access, use or disruption utilizing various forms of technology.
NOTE*: Your degree must have been awarded by a college or university accredited by a regional, national or specialized agency recognized as an accrediting agency by the U.S. Department of Education/U.S. Secretary of Education. If your degree was awarded by an educational institution outside the United States and its territories, you must provide independent verification of equivalency. A list of acceptable companies who provide this service can be found on the internet at http://www.cs.ny.gov/jobseeker/degrees.cfm. You must pay the required evaluation fee.
NOTE 2: Verifiable part-time and/or volunteer experience will be pro-rated toward meeting full-time experience requirements.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

ECMC logo

About ECMC

Sourced by ZipRecruiter

Industry

Finance and insurance

Company size

201 - 500 Employees

Headquarters location

Saint Paul, MN, US

Year founded

1994