Asst VP, Chief Information Security Officer
Scripps Health Administrative Services supports our five hospital campuses, 31 outpatient centers, clinics, emergency rooms, urgent care sites, along with our 17,000 employees, more than 3,000 affiliated physicians, and 2,000 volunteers. Location: San Diego, California. Reports to: Corporate SVP, Chief Audit, Compliance & Risk Officer and Corporate SVP, Chief Information & Digital Officer. Position type: Full-time, Executive Leadership Team.
About Scripps Health
Founded in 1924, Scripps Health is a $5 billion, private nonprofit health system based in San Diego. Serving over 600,000 patients annually, it operates five acute-care hospitals, 30 outpatient centers, home health services, and a wide physician network of 3,000 affiliated doctors and 17,800 employees. Recognized nationally for excellence, Scripps has earned top rankings from U.S. News & World Report, Fortune, Newsweek, and Becker’s Healthcare, and maintains an AA rating with a stable outlook from S&P Global Ratings due to its strong leadership and financial performance.
About the role
As the Assistant Vice President, Chief Information Security Officer (CISO), you will lead the cybersecurity strategy for one of the nation's leading integrated health systems. In this executive leadership role, you will drive the vision for enterprise information security, safeguarding the organization's critical systems, data, and digital assets while enabling innovation and supporting exceptional patient care. You will lead a high-performing information security team and collaborate with executive leadership, operational leaders, and technology partners to develop and execute a comprehensive security strategy aligned with the organization's goals.
As a trusted advisor, you will influence enterprise-wide decision-making, strengthen cybersecurity governance, and foster a culture of security awareness across the organization. The Information Security team is comprised of security analysts, engineers, and architects. You will also oversee 24/7 security operations centers. This is a critical role at Scripps involved in advancing security capabilities, driving continuous improvement, evolving enterprise security standards and policies, ensuring regulatory compliance, and building a resilient cybersecurity program that protects the organization today while preparing for tomorrow's evolving threats.
Responsibilities
- Lead the cybersecurity strategy for a large, integrated health system.
- Drive the vision for enterprise information security, safeguarding critical systems, data, and digital assets.
- Enable innovation and support exceptional patient care through robust security measures.
- Lead a high-performing information security team and collaborate with executive leadership and operational leaders.
- Develop and execute a comprehensive security strategy aligned with organizational goals.
- Influence enterprise-wide decision-making and strengthen cybersecurity governance.
- Foster a culture of security awareness across the organization.
- Oversee 24/7 security operations centers.
- Advance security capabilities and drive continuous improvement.
- Evolve enterprise security standards and policies.
- Ensure regulatory compliance and build a resilient cybersecurity program.
Requirements
- Ten years of leadership/management experience, at least five of which is in information security.
- Experience with a multi-site organization is desired.
- Outstanding strategic-planning and problem-solving capabilities.
- Proven track record as an effective leader in a high-performance organization.
- Skill and experience in improving efficiency while planning for the needs of a dynamic, growth-oriented company.
- Ability to apply effective project management skills to lead functional or strategic initiatives.
- Highly effective interpersonal and communication skills to effectively represent the system.
Qualifications
- Bachelor’s or Master’s degree in information security, Computer Science, Business, Healthcare, or a related field (preferred).
- Healthcare industry experience in a large, complex, multi-site organization (preferred).
- Experience developing and leading enterprise cybersecurity strategy, governance, risk management, and regulatory compliance programs.
- Knowledge of healthcare security and privacy regulations and frameworks, including HIPAA, HITECH, NIST, and HITRUST.
- Professional cybersecurity certifications such as CISSP, CISM, CISA, CRISC, or similar (preferred).
Benefits
- Nearly a quarter of employees have been with Scripps Health for over 10 years.
- Great Place to Work Certified company for 2025.
- Consistently ranked as a top employer for women, millennials, diversity, and as an overall workplace by various national publications.
- Recognized on Becker’s Healthcare 2026 list of 150 top places to work in healthcare.
- Transitional and professional development programs to support career growth.
- Nationally recognized specialties in cardiovascular care, oncology, orthopedics, geriatrics, obstetrics and gynecology, and gastroenterology.