Director, Security
Dallas, IA - USA
Job Summary
Who We Are
ABOUT ENOVIS
Enovis Corporation (NYSE: ENOV) is an innovation-driven medical technology growth company dedicated to developing clinically differentiated solutions that generate measurably better patient outcomes and transform workflows. Powered by a culture of continuous improvement global talent and innovation the Companys extensive range of products services and integrated technologies fuels active lifestyles in orthopedics and more information about Enovis please visit .
What Youll Do
At Enovis we pay attention to the details. We embrace collaboration with our partners and patients and take pride in the pursuit of scientific excellence with the goal of transforming medical technology as we know it.
Because thats how we change the lives of patients for the better. And thats how we create better together. Why work at Enovis See for yourself.
As a key member of the IT Team you will play an integral part in helping Enovis drive the medical technology industry forward through transforming patient care and creating better patient outcomes.
Job Title:
Director Security
Reports To:
Chief Information Officer
Location:
Lewisville Texas
Job Title/High-Level Position Summary:
As a key member of the Enovis Global IT leadership team reporting directly to the CIO the Director of IT Security serves as the organizations senior cybersecurity leader responsible for designing implementing and governing the global enterprise information security program.
The ideal candidate brings deep healthcare security expertise a proactive risk management mindset and the executive presence to influence at all levels of the organization. This is a hands-on leadership opportunity to upgrade cybersecurity to the next level of protection while embedding security-by-design into every aspect of our enterprise IT evolution.
Key Responsibilities:
Strategy & Governance
- Develop and execute a cohesive global cybersecurity strategy that directly supports the One Enovis IT transformation corporate vision and the drive for profitable capital-efficient growth.
- Develop own and continuously mature the enterprise Information Security Program aligned to NIST CSF ISO 27001 and healthcare-specific frameworks.
- Define and enforce enterprise security policies standards and procedures across all global business units.
- Present security posture risk metrics and program updates to executive leadership and external auditors.
- Lead the organizations cyber risk management program including risk assessment risk register maintenance and risk treatment planning.
- Manage the annual security budget; optimize spend across tools services staffing and managed security providers.
Threat Management & Security Operations
- Oversee the 24x7 Security Operations Center (SOC) ensuring rapid detection and response to threats.
- Lead the Incident Response (IR) program: maintain and exercise IR plans manage breach investigations coordinate with legal PR and regulators.
- Drive vulnerability management penetration testing and programs to proactively identify and remediate exposures across all environments.
- Govern threat intelligence operations to anticipate emerging threats targeting healthcare organizations globally.
Architecture & Identity
- Lead security architecture review for all major infrastructure and application initiatives ensuring security-by-design.
- Oversee identity and access management (IAM/PAM) strategy including MFA enforcement SSO and privileged access governance.
Compliance & Regulatory
- Lead enterprise cybersecurity risk assessment and regulatory compliance including HIPAA FDA cybersecurity requirements for medical devices GDPR and other global standards.
Security Awareness & Culture
- Design and execute an enterprise-wide security awareness and training program tailored to all staff globally.
- Run simulated phishing and social engineering campaigns; track and report behavior metrics to leadership.
- Act as a security champion and culture carrier fostering a security is everyones responsibility mindset across the global workforce.
Minimum Basic Qualifications:
- 7 years experience leading global cybersecurity teams and programs preferably in medical technology healthcare or other highly regulated industries.
- Demonstrated success leading cybersecurity aspects of large-scale IT integrations ERP transitions systems harmonization and M&A integrations within complex multi-business-unit organizations.
- Proven ability to streamline and mature diverse security landscapes into efficient scalable enterprise-grade programs while supporting the unique needs of individual business units.
- Demonstrated experience in healthcare or another highly regulated industry.
- Deep hands-on knowledge of HIPAA Security Rule HITRUST CSF NIST CSF and SOC 2 frameworks.
- Proven track record leading incident response for significant cybersecurity events including ransomware and data breach scenarios.
- Experience managing and reporting to executive leadership and Board-level Risk/Audit committees.
- Strong knowledge of cloud security (AWS Azure GCP) zero trust architecture and modern IAM/PAM solutions.
- Excellent communication skills: ability to translate complex security risk into clear business language.
Travel:
- Up to 25%
Creating better together. Its the Enovis purpose and its what drives us and empowers us every day on a global scale. We know that the power to create better for our customers our team members and our shareholders begins with having the best team pursuing common goals operating at the highest levels and delivering extraordinary outcomes.
What does creating better together mean to us at Enovis Discover the why behind our purpose values and behaviors:
Our Enovis Purpose Values and Behaviors on Vimeo
We offer a comprehensive benefits package that includes:
- Medical Insurance
- Dental Insurance
- Vision Insurance
- Spending and Savings Accounts
- 401(k) Plan
- Vacation Sick Leave and Holidays
- Income Protection Plans
- Discounted Insurance Rates
- Legal Services
Join us in creating better together.
EQUAL EMPLOYMENT OPPORTUNITY
Enovis provides equal employment opportunities based on merit experience and other work-related criteria without regard to race color ethnicity religion national origin sex age pregnancy disability veteran status or any other status protected by applicable law. We also strive to provide reasonable accommodation to employees beliefs and practices that do not conflict with Enovis policies and applicable law. We value the unique contributions that every employee brings to their role with Enovis.
Required Experience:
Director
About Company
At Enovis, we develop clinically differentiated medical technology solutions that generate measurably better patient outcomes and transform workflows. Our brands include Aircast, Chattanooga, CMF, Compex, Enovis Surgical, DonJoy, Dr. Comfort, Exos and Procare.