Talent.com
TRIMEDX
Director, Information SecurityTRIMEDX • Indianapolis, IN, United States
No longer accepting applications
Director, Information Security

Director, Information Security

TRIMEDX • Indianapolis, IN, United States
20 days ago
Job type
  • Full-time
Job description

Director Of Information Security

If you are wondering what makes TRIMEDX different, it's that all of our associates share in a common purpose of serving clients, patients, communities, and each other with equal measures of care and performance.

Everyone is focused on serving the customer and we do that by collaborating and supporting each other

Associates look forward to coming to work each day

Every associate matters and makes a difference

It is truly a culture like no other We hope you will join our team!

The Director of Information Security is a senior leadership position with full programmatic authority over the organization's security posture. This role is accountable for building, maturing, and operating a comprehensive security program organized across five pillars: Governance, Risk and Compliance; Threat and Vulnerability Management; Identity and Access Management; Application and Cloud Security; and Resilience and Incident Response.

This role owns the organizational risk register, drives the compliance posture across ISO 27001 and SOC 2, and makes security decisions within established organizational risk appetite. The Director does not surface risks for others to own; they own the program and report outcomes to senior leadership. They lead a team of security professionals and serve as the primary security authority for engineering, operations, and executive leadership.

As AI tooling and accelerated engineering become central to the business, the Director establishes the governance frameworks and practical guardrails that allow teams to innovate without compromising data integrity or regulatory standing.

Responsibilities

Owns the organizational risk register as a living management tool that reflects current exposure and drives resource decisions.

Defines what security success looks like for the organization; develops and tracks KPIs that provide senior leadership a transparent, actionable view of risk posture and program ROI.

Leads, develops, and grows the security team across five operational pillars; establishes clear ownership, career paths, and accountability structures.

Shifts the security function from reactive, task-driven operations to a proactive, process-driven culture.

Serves as the organization's primary security authority; makes risk-based decisions independently within agreed organizational risk appetite.

Serves as operational lead during and after security incidents triage, resource coordination, retrospective and escalation to legal counsel and senior leadership per established protocols.

Governance, Risk & Compliance (Pillar 1)

Oversees execution of ISO 27001 and SOC 2 Type II compliance programs as a unified control framework. Leads audit readiness, evidence collection, and control testing.

Governs vendor risk management, including third-party security assessments and ongoing vendor performance against security requirements.

Establishes guardrails for AI/LLM adoption, referencing emerging standards such as ISO/IEC 42001.

Serves as a cross-functional risk consultant to managers and directors, helping them recognize and articulate risk within their own domains.

Standardizes and streamlines the response process for customer security inquiries; develops a library of repeatable, high-quality responses.

Threat & Vulnerability Management (Pillar 2)

Directs vulnerability management operations scanning, prioritization, remediation tracking, and closure verification.

Owns the external threat intelligence program, ensuring the team monitors the threat landscape relevant to the organization's industry.

Oversees penetration testing engagements including scope definition, vendor selection, and findings remediation.

Identity & Access Management (Pillar 3)

Sets IAM strategy and governance including role-based access design, MFA enforcement, privileged access management, and periodic access review cadence.

Ensures the IAM function operates within a defined governance structure with clear strategic direction.

Application & Cloud Security (Pillar 4)

Defines and maintains security baselines for cloud infrastructure (Azure), DevOps pipelines, and application development.

Embeds security guardrails into the development lifecycle as a natural part of engineering not a gate or afterthought.

Owns API security standards and cloud security posture management.

Partners with engineering and architecture to ensure new systems are designed with security first approach to development.

Resilience & Incident Response (Pillar 5)

Owns DR and BCP strategy, annual testing, and tabletop exercises. Ensures recovery objectives are clearly defined, achievable, and aligned with business needs.

Ensures incident response plans are tested and current before they are needed.

Decision Making / Autonomy

Operates with full programmatic authority within the organizational risk appetite makes security decisions independently rather than seeking approval on every call.

Escalates and provides recommendation to senior leadership on issues requiring executive or legal engagement.

Communications / Interactions

Briefs the VP of IT and executive leadership using BLUF (Bottom Line Up Front) communication clear context, current posture, and recommended action.

Represents the security program during M&A due diligence and new customer onboarding, providing accurate and credible security posture assessments.

Translates technical risk into business language that non-technical stakeholders can act on without requiring translation.

Leadership

Leadership: Provide clear direction to ensure collective achievement of goals and objectives. Create an environment of respect, collaboration, and open communication.

Associate Development: Identify and support development needs of direct reports and team members including connecting them to resources both internally and externally to ensure a culture of continuous improvement.

Associate Engagement: Create high levels of employee engagement by understanding organizational and personal drivers that impact drivers and developing action plans that deliver increased engagement.

Performance management: Set clear goals and expectations for teams, monitor, and enable performance and intervene with appropriate action when performance gaps occur and provide timely, honest feedback. Ensure that associates complete assigned actions by required deadlines.

Skills and Experience

Required Experience

Minimum of 10 years of experience in Information Security or a related field is required. At least 5 years of people management experience leading technical security teams is also required.

Demonstrated track record of building security programs from a reactive state to a proactive, process-driven posture.

Multi-framework compliance experience: hands-on ownership of ISO 27001, SOC 2, and at least one additional framework (NIST, HIPAA, or equivalent).

Technical credibility across vulnerability management, IAM platforms (Okta, Entra ID), and cloud security (Azure preferred).

Experience leading or contributing to security due diligence in M&A or major customer onboarding contexts.

BLUF communicator: structures every briefing around the bottom line, with supporting context available but not leading.

Preferred Experience

Experience managing a security program under a rapidly changing environment and adoption of new technology.

Experience or a strong perspective on establishing guardrails for AI/LLM adoption, referencing frameworks such as ISO/IEC 42001.

Familiarity with vulnerability management, IAM platforms, and Azure cloud security standards.

Relevant certifications: CISSP, CISM, ISO 27001 Lead Implementer or Lead Auditor, CCSP, or Azure Security Engineer Associate.

Education and Qualifications

Bachelor's degree in MIS, Computer Science or related field is required, or equivalent experience.

At TRIMEDX, we are committed to cultivating a workplace culture where every associate feels valued, supported, and empowered to thrive. This culture reflects our belief that our people are our foundation, their well-being is essential, and shared success is built through meaningful work, recognition, and opportunities for growth.

We embrace people's differences which include age, race, color, ethnicity, gender, gender identity, sexual orientation, national origin, education, genetics, veteran status, disability, religion, beliefs, opinions and life experiences.

TRIMEDX is an Equal Opportunity Employer. Drug-Free Workplace.

Because we are committed to providing a safe and productive work environment, TRIMEDX is a drug-free workplace. Accordingly, Associates are prohibited from engaging in the unlawful manufacture, sale, distribution, dispensation, possession, or use of any controlled substance or marijuana, or otherwise being under the influence thereof, on all TRIMEDX and Customer property or during working/on-call hours.

Create a job alert for this search

Director, Information Security • Indianapolis, IN, United States

Similar jobs

IN311 Admin/Med. Director

FSC, IncIndianapolis, IN, United States
Full-time

A Regional not-for-profit Community Mental Health Center is seeking a Medical Director.Position will provide services to a 9 bed inpatient unit, residential programs and outpatients.Facility offers... Show more

 • Promoted

Project Director - Data Center

ClaycoIndianapolis, IN, United States
Full-time

Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality so... Show more

 • Promoted

Cybersecurity Controls Assessor

Rolls-RoyceIndianapolis, IN, United States
Full-time

Job DescriptionJob Title: Cyber Controls AssessorWorking Pattern: Full-timeWorking location: Indianapolis, IN (Hybrid Schedule)We are seeking a Cyber Controls Assessor to plan and execute security ... Show more

 • Promoted

Director of Product Management

ibossIndianapolis, IN, United States
Full-time

Director Of Product Management.Built on a containerized cloud architecture, iboss delivers security capabilities such as SWG, malware defense, RBI, CASB and data loss prevention to all connections ... Show more

 • Promoted

Security Operations Center Manager

Capgemini Government Solutions LLCIndianapolis, IN, United States
Full-time

DescriptionCapgemini Government Solutions (CGS) LLC is seeking a highly motivated Security Operations Center (SOC) Manager to join our Aerospace team in Indianapolis, IN to support our government c... Show more

 • Promoted

Director, Enterprise Excellence

AllegionCarmel, IN, United States
Full-time

Creating Peace of Mind by Pioneering Safety and SecurityAt Allegion, we help keep the people you know and love safe and secure where they live, work and visit.With more than 30 brands, 12,000employ... Show more

 • Promoted

Director of Benefits Compliance

The MJ CompaniesCarmel, IN, United States
Full-time

Director Of Benefits Compliance.The MJ Companies exists to inspire the success, fulfillment, and wellbeing of each person we serve: our associate and their families, business partners, clients, and... Show more

 • Promoted

Residence Director

University of IndianapolisIndianapolis, IN, United States
Full-time

The University of Indianapolis seeks applicants for a Residence Director, which is a full time, exempt staff role.The Residence Director is a professional member of the Office of Residence Life and... Show more

 • Promoted

Senior Manager Site Security

INCOG BioPharma ServicesFishers, IN, United States
Full-time

DescriptionThis position will serve as INCOG's leader for managing and executing the site security program at INCOG Biopharma, a contract development and manufacturing organization (CDMO).This role... Show more

 • Promoted

Director, Data Center Operations

Netrality Data CentersIndianapolis, IN, United States
Full-time

Director Of Data Center Operations.Netrality Data Centers is a growing private-equity backed owner-operator of strategic interconnection properties.With eighteen premier data centers located in six... Show more

 • Promoted

Director of Policy and Strategic Initiatives

Government JobsIndianapolis, IN, United States
Full-time

For more than 165 years, the Office of the Indiana Attorney General (OAG) has been committed to serving the best interests of the State and all Hoosiers.OAG employees have earned an outstanding rep... Show more

 • Promoted

Associate IT Director

Designworks Talent LLCIndianapolis, IN, United States
Full-time

Location: Indianapolis, IN (On-site)Type: Full-TimeIndustry: Civil Engineering / InfrastructureOverviewOur client is seeking an experienced Associate IT Director to join and help lead their growing... Show more

 • Promoted

Regional Director, LoopNet Digital Advertising - Indianapolis, IN

LoopNetIndianapolis, IN, United States
Full-time

Regional Director, LoopNet Digital Advertising.CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces.Inc... Show more

 • Promoted

Associate Director, IT Compliance & Governance

Sumitomo PharmaIndianapolis, IN, United States
Full-time

Japan with operations in the U.With several marketed products and a diverse pipeline of early- to late-stage investigational assets, we aim to accelerate discovery, research, and development to bri... Show more

 • Promoted

Manager of IT Infrastructure

Majestic CareWestfield, IN, United States
Full-time

Manager of IT InfrastructureMajestic Care is looking for Manager of IT Infrastructure to join our team's mission and believe in our core values! Our mission:Through the hearts of our Care Team Memb... Show more

 • Promoted

Director of Purchasing

Crew CarwashFishers, IN, US
Full-time

The Director of Purchasing is responsible for leading Crew’s purchasing function as the company scales from 60 to 100 locations.Reporting to the Chief Financial Officer, the Director of Purchasing ... Show more

 • Promoted

Security Officer - PT & FT available

Inter-con SecurityColumbus, IN, United States
Full-time

Security Guard / Safety Officer / Patrol] - Industry Leading Pay / Opportunity for Medical-Dental-Holidays-Vacation-Sick Pay-401(k) / Uniform and equipment provided / Recognition and Reward Program... Show more

 • Promoted

Senior Director of eCommerce

Heartland Food Products GroupCarmel, IN, United States
Full-time

The primary focus of the Senior Director of eCommerce will be to create an online go-to-market strategy that enables Heartland to prioritize actions & investments to build internal capability and e... Show more

 • Promoted

IN-IOT PM Specialist

Argyle InfotechIndianapolis, IN, United States
Full-time

The State of Indiana, Indiana Office of Technology, is requesting assistance with the administrative aspects of the State and Local Cybersecurity Grant Program (SLCGP) Planning Committee.This will ... Show more

 • Promoted

Onsite State Director

Verida, Inc.Indianapolis, IN, United States
Full-time

Nonemergency Transportation Manager.Responsible for the operational management of all business activities related to Nonemergency Transportation (NET) contracted services, including oversight of al... Show more