Business Information Security Officer, BISO - Onsite in Minnesota or Remote Considered
UnitedHealth Group
Date: 7 hours ago
City: Minnetonka, MN
Salary:
$156,400
-
$268,000
per year
Contract type: Full time
Remote

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health equity on a global scale. Join us to start Caring. Connecting. Growing together.
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.
Business Information Security Officer is responsible for serving as a Subject Matter Expert (SME) for cybersecurity across UnitedHealthcare. This role will work directly with the Employer and Individual team to implement new technology solutions and ensure alignment with enterprise security standards.
Successful candidates in this role will be involved in leading efforts pertaining to monitoring, evaluating, and maintaining systems and procedures to safeguard internal information systems, networks, databases, and web-based security. Manage vulnerability assessments and monitor systems, network, databases and web for potential system breaches. Respond to alerts from information security tools. Report, investigate, and resolve security incidents. Recommend and implement changes to enhance system security and prevent unauthorized access. Research security trends, new methods, and techniques used in unauthorized access of data to preemptively eliminate the possibility of system breach. May oversee internal or external systems security (i.e., cloud services). Ensure that customers and users have the right access to the right systems at the right time.
If you are located in MN or DC, you will have the flexibility to work remotely* as you take on some tough challenges. This position follows a hybrid schedule with four in-office days per week.
Primary Responsibilities
Required Qualifications
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.
Business Information Security Officer is responsible for serving as a Subject Matter Expert (SME) for cybersecurity across UnitedHealthcare. This role will work directly with the Employer and Individual team to implement new technology solutions and ensure alignment with enterprise security standards.
Successful candidates in this role will be involved in leading efforts pertaining to monitoring, evaluating, and maintaining systems and procedures to safeguard internal information systems, networks, databases, and web-based security. Manage vulnerability assessments and monitor systems, network, databases and web for potential system breaches. Respond to alerts from information security tools. Report, investigate, and resolve security incidents. Recommend and implement changes to enhance system security and prevent unauthorized access. Research security trends, new methods, and techniques used in unauthorized access of data to preemptively eliminate the possibility of system breach. May oversee internal or external systems security (i.e., cloud services). Ensure that customers and users have the right access to the right systems at the right time.
If you are located in MN or DC, you will have the flexibility to work remotely* as you take on some tough challenges. This position follows a hybrid schedule with four in-office days per week.
Primary Responsibilities
- Act as a liaison between enterprise security and business / technology leadership teams
- Serve as a Subject Matter Expert (SME) for security tool sets
- Work with security and product teams to implement new software, policy configurations and settings
- Evaluate and recommend security controls and tooling for on-premises and cloud infrastructure
- Develop innovative approaches and solve complex problems
- Create and maintain new and existing playbooks/runbooks, work with multi-functional team members to maintain high-quality work standards
- Evaluate vulnerabilities that exist and make recommendations for remediation
- Ensure day-to-day operational tasks are performed and security metrics are relevant and current
- Maintain expertise in cybersecurity, including industry trends, strategies, vulnerabilities and threats to ensure the company's assets are effectively and appropriately secured
- Participate in security incident response processes on a per-occurrence basis
- Participate in an on-call support on a rotational basis
- Review of teammate and team member work product
- Develop innovative approaches
- Sought out as expert
- Serve as a leader / mentor
Required Qualifications
- Bachelor's degree or 8+ years of experience in information security / technology operations in lieu of a degree
- 5+ years of information security / technology leadership experience
- 5+ Network / application / system vulnerability and threat management experience
- Experience with cyber security standards/organizations (such as ITIL, NIST, COBIT, IETF, IEEE)
- Experience explaining complex security issues to both technical and non-technical leaders, thru both written executive communication and presentation skills
- Security+, CISSP, CISM, or CISA certification
- Experience working in a large enterprise
- Experience in the Healthcare / Insurance industries
- Experience supporting Medicare and Medicaid business models
- Experience with modern application development and design
- In depth knowledge of cloud / security architecture
- All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resume