1

Hipaa Security Officer Jobs (NOW HIRING)

Serve as MEDvidi's designated HIPAA Security Official under 45 CFR Β§ 164.308(a)(2). * Own the ... Partner with the Privacy Officer on breach investigations and other areas where privacy and ...

Serve as MEDvidi's designated HIPAA Security Official under 45 CFR Β§ 164.308(a)(2). * Own the ... Partner with the Privacy Officer on breach investigations and other areas where privacy and ...

NY Β· On-site

$160K - $200K/yr

You will serve as our designated HIPAA Security Officer and own the security program across the company. You will build Maigrate's security and compliance program from the ground up. You will lead ...

Security & Compliance Lead

Lawrence, NY Β· On-site

$160K - $200K/yr

You will serve as our designated HIPAA Security Officer and own the security program across the company. You will build Maigrate's security and compliance program from the ground up. You will lead ...

Security & Compliance Lead

Lawrence, NY Β· Remote

$160K - $200K/yr

You will serve as our designated HIPAA Security Officer and own the security program across the company. You will build Maigrate's security and compliance program from the ground up. You will lead ...

Serves as the Security Officer to oversee implementation of HIPAA security regulations and to provide ongoing compliance monitoring and education on security. * Emerging Technology Governance:

Security Officer

Los Angeles, CA Β· On-site

$16.25 - $19.25/hr

The Security Officer position may employ Houston Methodist-approved defensive tactics to ensure ... Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ...

Security Officer

Houston, TX

$13.75 - $16.50/hr

Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ... Security Officer Non-Commissioned, submission of application within 14 days of hire date, and ...

Security Officer

Clear Lake, SD Β· On-site

$15 - $18/hr

The Security Officer position may employ Houston Methodist-approved defensive tactics to ensure ... Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ...

Security Officer

Houston, TX Β· On-site

$13.75 - $16.50/hr

Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ... Security Officer Non-Commissioned, submission of application within 14 days of hire date, and ...

Security Officer

Sugar Land, TX Β· On-site

$14.25 - $17/hr

The Security Officer position may employ Houston Methodist-approved defensive tactics to ensure ... Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ...

Security Officer

Willowbrook, IL Β· On-site

$15.75 - $18.75/hr

The Security Officer position may employ Houston Methodist-approved defensive tactics to ensure ... Understand HIPAA and Patient confidentiality compliance * Demonstrates emergency preparedness ...

next page

Showing results 1-20

Hipaa Security Officer information

See salary details

$11

$17

$21

How much do hipaa security officer jobs pay per hour?

As of Sep 11, 2026, the average hourly pay for hipaa security officer in the United States is $17.15, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.27 per hour, depending on experience, location, and employer.

What is a HIPAA Security Officer?

HIPAA Security Officers are professionals responsible for developing, implementing, and overseeing an organization’s policies and practices to ensure compliance with the HIPAA Security Rule. They safeguard electronic protected health information (ePHI) by managing risk assessments, training staff, monitoring security measures, and responding to security incidents. Their role is critical in protecting patient data from unauthorized access, breaches, and other security threats within healthcare organizations.

What skills and qualifications are needed to be a HIPAA Security Officer?

To thrive as a HIPAA Security Officer, you need in-depth knowledge of HIPAA regulations, risk management, and information security best practices, often backed by a relevant degree and certifications like CISSP or HCISPP. Familiarity with security tools such as SIEM systems, vulnerability scanners, and compliance management platforms is typically required. Strong analytical thinking, attention to detail, and clear communication skills help in policy development, incident response, and staff training. These skills are crucial to safeguarding sensitive health information, ensuring regulatory compliance, and minimizing organizational risk.

What challenges does a HIPAA Security Officer face when ensuring compliance?

One of the main challenges for a HIPAA Security Officer is keeping up with evolving cybersecurity threats while maintaining strict compliance with HIPAA regulations. This often involves coordinating with IT, legal, and clinical teams to develop and enforce security policies, conduct regular risk assessments, and respond promptly to any security incidents or breaches. Additionally, the Security Officer must ensure that all staff are properly trained and aware of privacy and security protocols, which can be especially challenging in large or rapidly growing organizations. Balancing practical security needs with regulatory requirements is a constant aspect of the role.

What is the difference between Hipaa Security Officer vs Hipaa Privacy Officer?

AspectHipaa Security OfficerHipaa Privacy Officer
CertificationsHIPAA Security Certification, CISSP, CISAHIPAA Privacy Certification, CIPP/US
Work EnvironmentIT security, technical safeguards, network protectionPolicy development, patient confidentiality, compliance oversight
Employer & IndustryHealthcare providers, health plans, healthcare IT firmsHospitals, clinics, healthcare organizations

The Hipaa Security Officer focuses on protecting electronic health information through technical safeguards, while the Hipaa Privacy Officer manages patient privacy policies and compliance. Both roles are essential in healthcare compliance but emphasize different aspects of HIPAA regulations.

How to become a HIPAA security officer?

To become a HIPAA security officer, candidates typically need a background in healthcare, information security, or IT, along with knowledge of HIPAA regulations. Earning relevant certifications such as Certified HIPAA Professional (CHP) or Certified Information Systems Security Professional (CISSP) can enhance qualifications. Experience in healthcare data security and familiarity with risk management tools are also important for this role.

What does a HIPAA security officer do?

A HIPAA security officer is responsible for implementing and maintaining security measures to protect sensitive health information in compliance with HIPAA regulations. They conduct risk assessments, develop security policies, monitor access controls, and ensure staff adherence to privacy standards, often using security tools and certifications to support their role.
More about Hipaa Security Officer jobs

What states have the most Hipaa Security Officer jobs?

States with the most job openings for Hipaa Security Officer jobs include:

What are popular job titles related to Hipaa Security Officer jobs?

For Hipaa Security Officer jobs, the most frequently searched job titles are:

Infographic showing various Hipaa Security Officer job openings in the United States as of September 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 90% Physical, 2% Hybrid, and 8% Remote job distribution, with an average salary of $35,678 per year, or $17.2 per hour.

Information Security Officer

San Jose, CA β€’ Remote

Medvidi
Health Care and Social AssistanceΒ β€’Β 51 - 200 employees

Full-time

Posted 14 days ago


Job description

MEDvidi is a multi-state telehealth practice delivering behavioral health and psychiatric services through a licensed Professional Corporation structure. As our organization and provider workforce continue to grow, protecting highly sensitive behavioral-health information and maintaining a strong, operational HIPAA security program are critical to our continued success.


We are seeking an experienced Information Security Officer (ISO) to own and operate MEDvidi's HIPAA Security Program.


About the Role

The Information Security Officer will have end-to-end ownership of MEDvidi's information security program, with particular responsibility for safeguarding electronic protected health information (ePHI).


You will inherit a completed Security Risk Analysis and be responsible for turning identified risks and recommendations into a sustainable operating program. This includes remediation execution, ongoing risk management, technical and administrative safeguards, vendor security, incident response, security policies, and security compliance.


This is a hands-on ownership role for someone comfortable independently running a security program in a lean, fast-moving healthcare environment.


Responsibilities:
  • Serve as MEDvidi's designated HIPAA Security Official under 45 CFR § 164.308(a)(2).
  • Own the organization's security risk analysis and ongoing risk-management cycle, including maintaining the risk register and driving remediation items to closure.
  • Develop, operate, document, and maintain HIPAA administrative safeguards, including workforce security, access authorization, security awareness and training, incident procedures, and contingency planning.
  • Partner with IT to implement and maintain technical safeguards involving access controls, authentication, audit controls, data integrity, logging, and encryption of ePHI in transit and at rest.
  • Maintain security policies for MEDvidi's distributed workforce, including workstation security, device and media controls, and remote-work ePHI handling.
  • Own the security incident response process, including detection, containment, forensics coordination, documentation, and annual tabletop exercises.
  • Partner with the Privacy Officer on breach investigations and other areas where privacy and security requirements overlap.
  • Lead vendor and Business Associate security diligence, including security questionnaires, SOC 2/HITRUST reviews, subcontractor risk, and remediation of security findings.
  • Support security architecture and tooling decisions involving telehealth platforms, EHR access, endpoint management, logging, and SIEM coverage.
  • Review the security implications of AI tools and AI-assisted security and compliance processes used within the organization.
  • Manage and operate MEDvidi's GRC platform in partnership with Compliance leadership.
  • Monitor changes to the HIPAA Security Rule and help MEDvidi assess and implement new requirements as they become applicable.

Requirements:
  • 6+ years of information security experience.
  • 2+ years of experience in healthcare or another regulated ePHI/PII environment.
  • Demonstrated hands-on ownership of a HIPAA security program or equivalent regulated security program; advisory-only experience is not sufficient.
  • Strong working knowledge of the HIPAA Security Rule.
  • Working knowledge of at least one relevant security/control framework, such as:
  • NIST Cybersecurity Framework (CSF) 2.0
  • NIST SP 800-66r2
  • HITRUST
  • Demonstrated ability to independently run a security program in a lean environment.
  • Strong risk-based prioritization, practical control implementation, and security documentation skills.


Preferred Qualifications

  • CISSP, HCISPP, CISM, or equivalent certification.
  • Experience securing telehealth platforms or other healthcare technology environments.
  • Cloud security experience with AWS, Azure, and/or GCP.
  • Experience leading security incident response.
  • Experience working with fractional or external security resources, penetration testers, and independent security advisors.
  • Familiarity with evolving HIPAA Security Rule requirements.


What Success Looks Like


During your first year, you will be expected to establish a mature, well-documented, and operational security program. Key outcomes include:

  • Closing Security Risk Analysis remediation items or placing them on documented, formally accepted remediation schedules.
  • Maintaining a security policy suite mapped to applicable HIPAA safeguards, with clear owners, review cadences, and evidence.
  • Testing the incident response plan through a tabletop exercise.
  • Maintaining workforce security training completion of at least 95%.
  • Completing security reviews for critical vendors handling ePHI.
  • Coordinating an annual penetration test and ensuring findings are incorporated into the remediation program.



Why Join MEDvidi?


This is an opportunity to take genuine ownership of information security within a growing multi-state behavioral healthcare organization. Rather than serving solely as an advisor, you will have the mandate to build, operate, improve, and demonstrate the effectiveness of the security program while working closely with Compliance, Privacy, IT, and organizational leadership.


If you are an experienced healthcare security professional who enjoys translating regulatory requirements and risk assessments into practical, sustainable security operations, we would like to hear from you.


Equal Opportunity Employer Statement

MEDvidi is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees and contractors. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.