SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 160,000 - 175,000 / annual
Fabric Health is seeking a Manager of Security & IT to lead the company's security program and corporate IT operations. This is a hands-on leadership role at a healthcare technology company handling PHI at scale, backed by top-tier investors including Thrive Capital, GV (Google Ventures), General Catalyst, and Salesforce Ventures.
You will own Fabric's end-to-end security program across application security, security operations, identity and access management, endpoint security, cloud security, and vendor security. You will also manage corporate IT operations including identity platforms (Okta or equivalent), MDM, endpoint management, helpdesk, hardware, and SaaS provisioning.
Key responsibilities include: leading the security program; owning corporate IT operations; hiring and growing a small team (starting with 1-2 reports: an IT generalist and application security engineer); partnering with the compliance program owner to implement SOC2, HITRUST, and HIPAA requirements; leading customer security questionnaire responses and vendor security reviews; owning incident response end-to-end (detection, triage, response, post-mortem); setting security policy and standards; and representing security in executive conversations about risk and investment.
You should have 7+ years of security experience with at least 2 years in a security leadership role, direct hands-on experience managing corporate IT operations, strong application security or cloud security background, and experience operating in healthcare or regulated industry environments. Working knowledge of SOC2 and HIPAA frameworks is required; HITRUST familiarity is a plus. This role requires someone who can both set strategy and execute—not a pure delegation role at this stage. You must be comfortable with the dual-hat security and IT responsibility and capable of building and scaling the program. Experience with Okta, AWS/GCP cloud security, incident response leadership in healthcare, and external auditor engagement are bonuses.