xelys jobs xelys jobs

Head of CyberSecurity (AIOS)

Fella Health

Full remote 50 days ago via WTTJ

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

About the role

Join AIOS as the Head of CyberSecurity, where you will build a secure foundation for global expansion while ensuring patient trust, operational resilience, and speed. You will own cybersecurity and internal systems across the AIOS group, establish a consistent operating model, and advise leadership on material risks. This strategic and hands-on role requires experience in cybersecurity, information security, or security engineering in a complex, fast-growing organization. Key missions: Establish and lead the cybersecurity strategy, roadmap, and operating model across all AIOS entities and geographies.. Develop and implement systems and processes needed to detect, investigate, contain, and recover from security incidents, leading the response when issues arise.. Translate healthcare, privacy, and security requirements into practical controls across the business, leading security risk assessments, audits, and policy development. Profile: - Autonomy: You are comfortable entering an environment that is still evolving, identifying what needs to be done, and driving it through to completion with limited structure - Influence: You can work effectively with engineering, operations, legal, compliance, people, clinical, and executive teams, even when you do not directly manage the people responsible for implementation - Incident leadership: You have managed security incidents or high-severity technical issues and can lead calmly through investigation, containment, communication, recovery, and remediation - Builder: You have built or significantly improved a security program, including its roadmap, controls, policies, tooling, processes, and operating model - Technical depth: You can operate credibly across identity and access management, endpoint security, cloud infrastructure, application security, incident response, vulnerability management, and corporate systems - Experience: 5+ years experience leading cybersecurity, information security, or security engineering in a complex, fast-growing organization and have owned outcomes - Judgement: You can identify the risks that genuinely matter, explain them clearly, and implement proportionate controls without creating unnecessary friction or slowing the business down - Data Protection: You have worked in an environment handling highly sensitive customer, patient, financial, employee, or similarly regulated data - Scaling: You have hired, developed, or managed security and systems professionals and know what capabilities should remain internal versus outsourced - IT Ownership: You have managed identity platforms, device management, endpoint protection, productivity systems, employee lifecycle processes, and internal support operations - Compliance: You have supported or led programs involving HIPAA, GDPR, UK GDPR, SOC 2, ISO 27001, or similar security and privacy frameworks - International Experience: You have owned security across multiple countries, legal entities, or business units, particularly across the US, UK, and Europe - Healthcare Experience: You have worked in digital health, telemedicine, pharmacy, clinical operations, health insurance, or another healthcare environment

Scraped 9/24/2026