← All roles
Director

Director of IT Security

Bergen New Bridge Medical Center · Healthcare · 1,001-5,000 employees

Paramus, NJ · Onsite · full_time

Listed by the employer as “DIRECTOR, IT SECURITY | INFORMATION SERVICES | FULL-TIME DAY SHIFT (25133)”. Title normalized for comparability.

CLI Career Level

Senior Director-equivalent

Moderate confidence

Opportunity Score

63/100

Solid

Moderate confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Sep 17, 2026 · Last verified 3 hours ago · Sourced from LinkedIn — Director of Security (US)

CLI Take

Broader than the title suggests

This role reads Senior Director-equivalent despite being advertised as “DIRECTOR, IT SECURITY | INFORMATION SERVICES | FULL-TIME DAY SHIFT (25133)” — the stated scope is wider than the employer's title implies. CLI's analysis of the posting describes a strategic build or transformation mandate, and it carries HIPAA accountability. The reporting line sits below the executive team — the role reports to Information Services leadership. Team size is not disclosed and remains the main open question before pursuing it.

Why this role scores the way it does

63/100 — solid opportunity quality. CLI reads this as a Senior Director-equivalent mandate. Strongest signal: CLI's analysis of the posting describes a strategic build or transformation mandate. Main drag on the score: The reporting line sits below the executive team — the role reports to Information Services leadership. 4 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

Senior Director-equivalent — The employer lists this as “DIRECTOR, IT SECURITY | INFORMATION SERVICES | FULL-TIME DAY SHIFT (25133)”. CLI reads it as Senior Director-equivalent because the role shows 1,001-5,000 employee organization.

Moderate confidence

What makes it attractive

  • CLI's analysis of the posting describes a strategic build or transformation mandate.
  • Employer profile: 1,001-5,000 employee organization, nonprofit ownership, not applicable, revenue 250m 1b.
  • Title and described scope are broadly consistent.

What to probe before applying

  • The reporting line sits below the executive team — the role reports to Information Services leadership.

Scoring components · Solid

Compensation versus comparable roles55 · weight 15%

The employer discloses a base range, but there is no comparable set to benchmark it against yet.

Reporting level0 · weight 12%

The reporting line sits below the executive team — the role reports to Information Services leadership.

Functional and geographic scopeNot disclosed · excluded from the score

Scope: no enterprise, global or multi-unit remit is described.

Quality of the mandate100 · weight 12%

CLI's analysis of the posting describes a strategic build or transformation mandate.

Executive and board exposureNot disclosed · excluded from the score

Executive and board exposure: not disclosed.

Role authority versus title70 · weight 10%

Title and described scope are broadly consistent.

Company scale and trajectory83 · weight 10%

Employer profile: 1,001-5,000 employee organization, nonprofit ownership, not applicable, revenue 250m 1b.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals100 · weight 5%

No adverse signals identified in the posting.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

$135,000 – $175,000 base salary, disclosed by employer

Sample size not yet sufficient for a market comparison

See the full benchmark bands by level and region

The mandate

The Director of IT Security will design and implement the medical center's security architecture and strategy to meet regulatory requirements. The leader is responsible for developing cybersecurity policies, managing incident response, and leading the annual HIPAA Security Risk Assessment process.

Based in the Information Services department at a medical center. The remit covers enterprise-wide security policy, infrastructure, risk assessment, and regulatory compliance.

Scope

  • Reports to Information Services leadership

Domains and regulation

  • Enterprise Security
  • Application Security
  • Cloud Security
  • Infrastructure Security
  • Cyber Defense
  • Incident Response
  • GRC
  • Compliance
  • Privacy
  • HIPAA

Requirements

Must have

  • 8-10 years of experience working in an IT security management role
  • 5+ years of experience in a security management role (specifically stated)
  • Experience with security policy development, cloud/web application security, and SAAS solutions
  • Experience in network penetration testing and application vulnerability assessments
  • Bachelor's degree in computer science, Information Management or related field

Preferred / bonus

  • Preferred: Familiarity with healthcare industry

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

Not stated in the posting: Specific reporting line title (e.g., CISO or CIO) not explicitly named; Team size or direct report count not mentioned.

About Bergen New Bridge Medical Center

Bergen New Bridge Medical Center is New Jersey's largest hospital and a clinical affiliate of Rutgers Biomedical and Health Sciences. The facility provides comprehensive services including acute care, behavioral health, substance use disorder treatment, and long-term care to the residents of Bergen County and surrounding areas. For a security leader, this represents a large-scale healthcare environment with complex regulatory requirements and a diverse patient population.

Industry
Healthcare
Headcount
1,001-5,000 employees
Headquarters
Paramus, NJ
Founded
1916
Ownership
Nonprofit
Funding
Not applicable
Revenue
$250M – $1B

Full company profile for Bergen New Bridge Medical Center →

View original job description
Join Our Team at Bergen New Bridge Medical Center!**We are dedicated to providing high-quality, compassionate care to our diverse community. As a leading healthcare provider, we offer a supportive and inclusive work environment. If you’re passionate about making a difference and thrive in a collaborative setting, Bergen New Bridge Medical Center is looking for a Director of IT Security.ResponsibilitiesDevelop Cyber Security policies, guidelines and standards in line with industry best practicesInitiate and interact with external consultants and auditors (external/internal) to conduct independent corporate security risk assessments and audits; coordinate corrective actions for identified security exposures.Design and implement an IT security architecture, infrastructure, and strategy to meet corporate information and data security requirements, business objectives, and local, state and federal government regulatory requirementsDevelop and implement system to address security incidents and respond to policy violations and prepare reports that document security breaches and the extent of the damage causedComplete the annual Security Risk Assessment required for HIPAA compliance reportingDevelop and implement an ongoing risk assessment program targeting information security and privacy mattersResearch new developments in information technology and their relevance to current organizational needs and security strategiesEnsure proactive maintenance of the technology environment, including compliance with governance and regulatory requirements and security managementOversee the creation of project plans; present written and oral proposals to management as requiredMaintains established departmental policies and procedures, objectives, quality assurance program, safety, environmental, and infection control standards. Assesses gaps in policies and procedures and create necessary policies and procedures to fill these gaps.Understands and adheres to the Medical Center’s Code of Conduct.Familiar with the Medical Center’s Mission, Vision, and Values Statements.Other DutiesParticipate in and/or lead multidisciplinary task forces, committees and projects.Continue professional development through reading, participation in seminars and optional training.Keep informed on direction and happenings in the healthcare and information security industries and within NBMC.Performs other duties as assigned to support the overall objectives of the department and organization.Position Qualifications8-10 years of experience working in an IT security management role, including progressive experience with security policy development, security education, cloud and web application security, SAAS solutions, network security, network penetration testing, application vulnerability assessments, risk analysis, and compliance management; 5+ years of experience in a security management role.Proven project management track recordFamiliarity with healthcare industryFamiliarity with cybersecurity approaches and methodologiesMicrosoft Office skills including MS ProjectBasic computer skillsExcellent organizational, oral and written communication, and interpersonal skillsProficient in EnglishEducationBachelor's degree in computer science, Information Management or related field.Job Setting/Physical DemandsIT Office areaOff hours coverage when necessaryTravel to offsite locations may be requiredSalary Commensurate With Experience Within Posted Range$135,000 - $175,000 annuallyWe provide a comprehensive benefits package, including a competitive medical, dental, and vision plans. We prioritize work-life balance with a generous time off policy that includes ample vacation days, personal time, sick leave and nine paid holidays. Additionally, we are committed to the personal and professional growth of our employees, offering robust tuition reimbursement and continuing education programs to help support our employees ongoing developmentPlease note that selection of the candidate for any position will depend on several factors, including the individual’s educational background, skills, and professional experience.

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.