Security and Privacy Manager
Job Description
Job Description
Who we are:
EHE Health is the leading national preventive healthcare provider network partnering with mid- andlarge-sized employers to help their employees and dependents stay healthy by screening and diagnosing health risks through comprehensive exams, allowing for early intervention. Named by Fortune Magazine and Great Place to Work® as one of the Best Workplaces in healthcare, EHE Health is headquartered in
New York City and has over 200 health clinics and practices across the U.S., staffed by a network of
curated primary care physicians and clinicians. EHE Health was acquired by Consello Capital, the private equity arm of Consello. This transformative partnership leverages Consello’s proven expertise in scaling high-growth ventures and its extensive network of industry leaders. Together, EHE Health and Consello will unlock unprecedented
opportunities to accelerate EHE Health’s mission of revolutionizing preventive care. What we’re looking for: EHE Health is seeking a talented Security and Privacy Manager to lead and evolve our enterprise cybersecurity and privacy program, reducing risk exposure and strengthening our control environment. This role will be responsible for advancing our compliance and certification efforts, while conducting internal audits, risk assessments and ongoing security analyses to ensure our processes and controls remain effective, scalable and aligned with industry best practices. The ideal candidate is intellectually curious, detail-oriented and proactive with a collaborative mindset and a bias toward continuous improvement rather than maintaining the status quo. This individual will bring both the capability and ambition to grow within the organization. To support this trajectory, the Security and Privacy Manager will partner closely with a fractional CISO who will provide hands-on mentorship, strategic guidance and development support, enabling the individual to build the experience and leadership capabilities required for long-term success. In this role, you will:
- Conduct comprehensive security and privacy audits across networks, systems, applications, platforms, databases, and operational processes in alignment with established audit standards
- Support and perform enterprise risk assessments to evaluate the design and effectiveness of controls across EHE’s technology and business environments
- Manage the third-party risk management program, including due diligence, ongoing monitoring, and enforcement of EHE security and privacy requirements
- Partner with IT and business stakeholders to communicate control requirements, strengthen adoption, and reinforce a robust control environment
- Drive enterprise-wide awareness of cybersecurity and privacy policies through targeted education and engagement initiatives
- Monitor and analyze security event data across computing platforms, networks, and security tools to identify risks, trends, and potential threats
- Develop and deliver regular security metrics, dashboards, and operational reports to inform decision-making and leadership visibility
- Conduct ongoing threat research, including emerging technologies such as artificial intelligence and evolving threat actors, to proactively assess business impact
- Design and implement scalable, measurable, and repeatable security and privacy strategies aligned with organizational objectives
- Lead and manage responses to prospective and existing client security and privacy inquiries, including questionnaires, due diligence requests, and audits
- Bachelor’s degree in Information Security, Computer Science, or a related field
- 3–5 years’ experience in information security, cybersecurity, or privacy program operations
- Hands-on experience supporting or operating security and/or privacy programs within ISO27001, ISO27701, SOC2 Type 2 frameworks
- Working knowledge of HIPAA and the HITECH Act, healthcare or regulated industry experience preferred
- Relevant industry certifications (e.g., CISSP, CCSP, CISM) preferred
- Practical experience participating in cybersecurity incident response, either as a respondent or incident manager
- Familiarity with the NIST Cybersecurity Framework (CSF), including its core functions: Govern, Identify, Protect, Detect, Respond and Recover
- Strong written and verbal communication skills, with the ability to clearly convey complex security concepts to both technical and non-technical stakeholders
- Demonstrable experience implementing or auditing identity and access management for on-premise and cloud-based services
- Ability to identify and assess emerging technology risks (e.g. software supply chain and AI)
- Competitive salary
- Medical, dental, vision, life and disability insurance
- Employer-matched 401(k) plan
- Professional development reimbursement
- Employee access to our wellness clinics
- Gym reimbursement/fitness bonus
Powered by JazzHR
GT8hl96ni9
Recommended Jobs
Pastry Cook
Now hiring for Jungsik NY pastry team! We are looking for a passionate and positive pastry cook with strong work ethic. Pastry cook is needed at Tribeca's highly regarded fine dining Korean res…
Studio+ Marketing Transformation- Adobe Workfront Fusion Specialist- Senior Consultant-Location OPEN
Tue, 06/02/2026 - 00:42 Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and…
Machining Skilled Trades - Industrial Machine Repair 2nd Shift
DESCRIPTION We are looking for a talented Mechanical Maintenance - Level III to join our team specializing in Manufacturing for our Cummins Inc. facility in Jamestown, NY. In this role, you w…
Assistant Restaurant Manager
Assistant Manager – BX Eatery (Mott Haven, Bronx) BX Eatery is seeking a reliable, tech-savvy Assistant Manager to help oversee daily operations in our growing restaurant. Responsibilities: S…
Events Coordinator
FOOD + AMIGOS Two of life’s most important ingredients. Adventurous and ever changing, Happy Monkey is a fun-loving Latin restaurant from world-renowned Chef Jean-Georges Vongerichten. Happy Monkey e…
LPN - CWAT - East Utica - Full Time - Days -(UTICA, NY)
Job Summary The LPN provides care to patients in accordance with their developmental needs, following the standards of the Department of Nursing and in accordance with hospital policy and procedur…
Senior Manager, Client Support
Job Description Job Description Maven is the world's largest virtual clinic for women and families on a mission to make healthcare work for all of us. Maven's award-winning digital programs provi…
Travel Nurse RN - $1,743 to $1,896 per week in Rochester, NY
Registered Nurse (RN) | Other Location: Rochester, NY Agency: Host Healthcare Pay: $1,743 to $1,896 per week Start Date: ASAP About the Position Host Healthcare is an award-…
Institute of Forestry Assistant Director/Assistant Professor in the Practice of Forestry
Position: Institute of Forestry Assistant Director / Assistant Professor in the Practice of Forestry Status: Regular, Full-time, Exempt, Faculty (12-months) Department: Institute of Forestry / Acade…
Bakery Production Manager
We’re seeking a Shift Manager who can lead by example, support the team, and keep day-to-day operations running smoothly. If you have a passion for hospitality, great leadership skills, and thrive in…