Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Vice President,  Information Security  image - Rise Careers
Job details

Vice President, Information Security

Virta Health is on a mission to transform type 2 diabetes and weight-loss care. Current treatment approaches aren’t working—over half of US adults have either type 2 diabetes or prediabetes, and obesity rates are at an all-time high. Virta is changing this by helping people reverse their metabolic condition through innovations in technology, personalized nutrition, and virtual care delivery reinvented from the ground up. We have raised over $350 million from top-tier investors, and partner with the largest health plans, employers, and government organizations to help their employees and members restore their health and take back their lives. Join us on our mission to reverse diabetes in one billion people.

The Vice President of Information Security will lead Virta’s enterprise-wide information security program, setting a long-term strategic vision that safeguards our data, systems, and customer trust. As the most senior security leader in the organization, you will oversee all aspects of Virta’s security posture—including risk management, regulatory compliance, and incident response—and be responsible for developing and executing a comprehensive roadmap that aligns with our growth and evolving threat landscape. This role reports to the General Counsel and regularly communicates with the Board of Directors, Executive Team, large-scale customers, and other critical stakeholders. You will shape the future of security at Virta by driving cross-functional alignment, fostering a resilient and scalable security culture, and ensuring that our security investments enable innovation and trust at scale. 

Responsibilities:

Security Strategy and Vision:

  • Define and maintain an enterprise-wide security vision and strategic roadmap (2+ years), ensuring alignment with business goals and long-term growth.

  • Serve as the senior-most authority on information security, responsible for the organization’s overall security posture and risk landscape.

  • Participate in board-level and executive leadership discussions, providing strategic guidance on security implications of corporate initiatives and business operations.

Team Leadership and Organizational Design:

  • Architect and continuously evolve the organizational structure of the security team, including headcount planning, role design, and succession planning.

  • Cultivate a high-performance, values-driven security culture.

  • Manage and mentor senior security leaders (directors and managers), fostering professional growth and ensuring strong leadership continuity.

  • Build coverage and redundancy into security operations to mitigate single points of failure and maintain resilience.

Budgeting and Resource Allocation:

  • Own and manage the security budget, ensuring optimal allocation of resources across people, processes, and technology.

  • Approve key spending decisions, including technology investments, third-party vendors, audit engagements, and staffing.

Stakeholder and External Engagement:

  • Act as the primary point of contact for internal and external security-related engagements.

  • Partner with executive leadership and department heads to align security efforts with company objectives.

  • Represent Virta in customer conversations, industry forums, and peer networks as a public-facing security leader.

  • Maintain strong relationships with industry partners, regulators, auditors, and large enterprise clients.

Enterprise Risk Management:

  • Define and implement an enterprise risk tolerance strategy, in coordination with broader corporate governance.

  • Lead the development and execution of risk management frameworks, ensuring consistent identification, mitigation, and reporting of risks.

  • Deliver high-level risk and compliance reports to executive stakeholders and the Board.

  • Oversee the response to critical incidents and crisis events, ensuring transparent communication and swift resolution.

Technology and Innovation Leadership:

  • Establish a forward-looking vision for security technology and innovation.

  • Stay current with emerging threats, trends, and technologies to ensure Virta maintains a modern and robust defense posture.

  • Guide strategic security tooling decisions and oversee the implementation of scalable, automated security infrastructure.

Compliance and Certification:

  • Oversee Virta’s SOC 2 and HITRUST certification programs, ensuring successful audits and ongoing compliance.

  • Monitor and ensure adherence to all applicable healthcare and privacy regulations, including HIPAA and other relevant frameworks.

Additional Requirements:

  • Exceptional executive communication skills with the ability to influence and gain buy-in across all levels of the organization, including the Board and C-suite.

  • Demonstrated ability to operate effectively in complex and ambiguous environments, balancing regulatory obligations, business priorities, and evolving risks.

  • Proven experience building, leading, and scaling high-performing teams in high-growth environments.

  • Strong business acumen with the ability to collaborate and align security strategies to corporate objectives and product goals.

  • Experience building and leading enterprise risk programs, incident response, and security operations at scale.

  • A strategic mindset paired with the technical and operational expertise to execute at scale and deliver measurable impact.

Must Haves:

  • Bachelor’s degree in computer science, cybersecurity information technology or a related field

  • Master’s degree especially an MBA or MS in Cybersecurity / Information Security (not required, but highly preferred)

  • 15+ years of IT and cybersecurity experience; 5+ years of leadership experience in security  roles (such as Director of Security, Security Manager or VP of Security)

  • Certifications demonstrating proficiency and SME, including at least one of the following: Certified Information Systems Security Professional (CISSP); Certified Information Security Management (CISM), Certified Ethical Hacker (CEH); Certified Chief Information Security Officer (CCISO)

  • Deep familiarity with healthcare regulatory requirements and third-party certification programs such as HITRUST and SOC 2, and security frameworks such as NIST, ISO 27001, GDPR, CCPA, and HIPAA.

  • Strong understanding of cloud security, network security, and emerging threats

  • Experience working with executive leadership, board members, and customer executives to communicate cybersecurity risk and the key aspects of Virta’s program

Values-driven culture

Virta’s company values drive our culture, so you’ll do well if:

  • You put people first and take care of yourself, your peers, and our patients equally

  • You have a strong sense of ownership and take initiative while empowering others to do the same

  • You prioritize positive impact over busy work

  • You have no ego and understand that everyone has something to bring to the table regardless of experience

  • You appreciate transparency and promote trust and empowerment through open access of information

  • You are evidence-based and prioritize data and science over seniority or dogma

  • You take risks and rapidly iterate

Is this role not quite what you're looking for? Join our Talent Community and follow us on Linkedin to stay connected!

Virta has a location based compensation structure. Starting pay will be based on a

number of factors and commensurate with qualifications & experience. For

this role, the compensation range is $225,000-$285,000 plus bonus and equity. Information about Virta’s benefits is on our Careers page at: https://www.virtahealth.com/careers.

As part of your duties at Virta, you may come in contact with sensitive patient information that is governed by HIPAA. Throughout your career at Virta, you will be expected to follow Virta's security and privacy procedures to ensure our patients' information remains strictly confidential. Security and privacy training will be provided.

As a remote-first company, our team is spread across various locations with office hubs in Denver and San Francisco. We currently do not hire in the following states: AK, AR, DE, HI, ME, MS, NM, OK, SD, VT, WI.

#LI-remote

Average salary estimate

$255000 / YEARLY (est.)
min
max
$225000K
$285000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Vice President, Information Security , Virta Health

At Virta Health, we are on an inspiring mission to transform the healthcare landscape for the millions struggling with type 2 diabetes and obesity. We’re not just a company; we’re a community dedicated to reversing these conditions through innovative technology, personalized nutrition, and redefined virtual care. If you're an experienced leader in the realm of information security, the Vice President of Information Security position might just be your next great challenge. You're not only going to oversee our security posture, but you will also set the strategic vision that protects our data and maintains our customer trust. Working closely with the General Counsel and the Board of Directors, you will guide our risk management and compliance initiatives, ensuring we meet ever-evolving cyber threats head-on. By fostering a resilient security culture and mentoring senior security leaders, you’ll create a high-performance team ready to tackle the challenges ahead. Your expertise will be integral to shaping our future, as you lead conversations with executive leadership and represent Virta externally. As you drive meaningful security advancements, you will also manage our security budget, ensuring our resources prioritize innovation and safety. If you are passionate about making a real difference in health care while championing robust cybersecurity measures, we invite you to explore this opportunity at Virta Health and help us reverse diabetes in a billion lives!

Frequently Asked Questions (FAQs) for Vice President, Information Security Role at Virta Health
What are the primary responsibilities of the Vice President of Information Security at Virta Health?

The VP of Information Security at Virta Health is responsible for overseeing the enterprise-wide information security program, developing a strategic vision for security, managing risk and compliance, and leading security operations. They engage with the executive team and Board of Directors while shaping security strategies that align with company goals.

Join Rise to see the full answer
What qualifications do I need to apply for the Vice President of Information Security role at Virta Health?

To be considered for the Vice President of Information Security role at Virta Health, you should possess a Bachelor’s degree in computer science or a related field, along with at least 15 years of experience in IT and cybersecurity, and 5+ years in a leadership position. Relevant certifications such as CISSP or CISM are also highly preferred.

Join Rise to see the full answer
How does the Vice President of Information Security contribute to Virta Health's mission?

The Vice President of Information Security directly supports Virta Health's mission by safeguarding sensitive health data and ensuring a robust security framework, enabling the organization to focus on its goal of reversing diabetes and empowering patients through safe and innovative health care solutions.

Join Rise to see the full answer
What is the organizational culture like for the Vice President of Information Security at Virta Health?

Virta Health fosters a values-driven culture where people come first, ownership is encouraged, and open communication is prioritized. As VP of Information Security, you will be expected to collaborate with diverse teams, promote trust, and facilitate a high-performance security environment that aligns with our core values.

Join Rise to see the full answer
What are the salary and benefits for the Vice President of Information Security role at Virta Health?

The compensation range for the Vice President of Information Security role at Virta Health is between $225,000 and $285,000, complemented by bonuses and equity. Additionally, Virta offers great benefits, support for continuous learning, and a commitment to employee wellbeing.

Join Rise to see the full answer
Common Interview Questions for Vice President, Information Security
Can you describe your experience with risk management in your previous roles?

When answering this question, emphasize your specific experiences with implementing risk management frameworks, the outcomes of these initiatives, and how they contributed to organizational resilience, particularly in a healthcare context like Virta Health.

Join Rise to see the full answer
What strategies do you believe are essential for developing a strong security culture?

Outline strategies such as continuous education, open communication, and leadership involvement. Highlight how these strategies have led to a more robust security stance in your previous roles, taking care to align them with Virta Health's values-driven approach.

Join Rise to see the full answer
How do you stay updated on current security threats and trends?

Demonstrate your proactive approach by mentioning specific resources, forums, or certifications you engage with regularly, and explain how this commitment to staying informed has directly benefited your previous organizations.

Join Rise to see the full answer
What role do you believe compliance plays in cybersecurity?

Discuss the critical importance of compliance in establishing a foundation for security practices, particularly in the healthcare sector. Explain how your experience in managing compliance effortlessly aligns with protecting patient data.

Join Rise to see the full answer
Can you provide an example of a significant incident you managed?

Be prepared to elaborate on a specific incident, detailing your approach to incident response, the strategies employed to resolve it, and the lessons learned that strengthened your future operations.

Join Rise to see the full answer
What are your thoughts on balancing business objectives with security needs?

Articulate your belief in integrating security as a business enabler rather than a barrier. Share how you have successfully aligned security initiatives with business goals in your past roles.

Join Rise to see the full answer
How do you approach budgeting for a security team?

Discuss your method for assessing needs versus resources, prioritizing critical areas of investment, and how you've successfully managed budget conversations with stakeholders in a previous position.

Join Rise to see the full answer
What do you consider the biggest challenge in cybersecurity today?

Share your insights on emerging threats, increasing regulatory requirements, or resource constraints. Relate your answer to how you believe these challenges could impact Virta Health specifically.

Join Rise to see the full answer
How do you engage with stakeholders regarding cybersecurity risks?

Mention strategies that nurture relationships and educate stakeholders, emphasizing transparency and the importance of risk communication tailored to the audience's understanding.

Join Rise to see the full answer
Why do you want to work at Virta Health as the Vice President of Information Security?

Express your admiration for Virta’s mission and values and how your skills and experiences can contribute meaningfully to the organization’s ambitious goal of reversing type 2 diabetes, showcasing your alignment with its culture.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 4 days ago

Join Virta Health as a Senior Software Engineer II and contribute to transforming diabetes care with innovative technology solutions.

Photo of the Rise User
Posted 23 hours ago

Join Virta Health as an IT Administrator and play a key role in revolutionizing diabetes care with cutting-edge technology.

Photo of the Rise User
Posted 6 days ago

Join Truist as an IT Capacity Management Leader to oversee and optimize technology resource allocation and capacity planning.

Photo of the Rise User
CyberArk Remote Petach Tikva, Israel
Posted 13 days ago

Join CyberArk as an AI Value Architect to lead transformative AI initiatives that reshape workflows and optimize organizational performance.

Photo of the Rise User
Posted 3 days ago

Join Kyndryl as a Mainframe Application Modernization Specialist, where innovation meets technology transformation in a dynamic work environment.

Contribute to government innovation as an APEX Developer at CGS, leveraging your expertise in Oracle APEX to support legal accounts.

Photo of the Rise User
Posted 5 days ago

Be part of PwC's cybersecurity team as a Compliance Manager, working on exciting projects in a dynamic environment.

ITSS Hybrid No location specified
Posted 9 days ago

Explore a comprehensive range of IT services as a technical intern at Eastern North Carolina's leading IT company.

Posted 21 hours ago

Join Gray Media as an IT Engineer at WBAY in Green Bay, where you'll manage IT systems critical to broadcasting success.

Photo of the Rise User

Everbridge is looking for a Senior Information Security Internal Auditor to innovate within their security and compliance frameworks while working remotely.

Photo of the Rise User
Inclusive & Diverse
Mission Driven
Social Impact Driven
Passion for Exploration
Dare to be Different
Diversity of Opinions
Reward & Recognition
Empathetic
Feedback Forward
Work/Life Harmony
Collaboration over Competition
Growth & Learning
Transparent & Candid
Customer-Centric
Rise from Within
Friends Outside of Work
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Learning & Development
Work Visa Sponsorship
Employee Resource Groups
401K Matching
Paid Time-Off
Maternity Leave
Social Gatherings
Company Retreats
Photo of the Rise User
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

Virta Health provides remote treatment for type 2 diabetes without medications or surgery. Their approach results extend beyond diabetes reversal to other areas of metabolic and cardiovascular health, including sustained improvements in blood pres...

92 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!