Information Security Lead at Click Therapeutics | Boston, MA, US | Rezi

Information Security Lead at Click Therapeutics

Information Security Lead

Click Therapeutics · Boston, MA, US

1 weeks ago

Information Security Lead

Click Therapeutics · Boston, MA, US

12 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Information Security Lead role.

Rezi rewrites your resume against Click Therapeutics's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Information Security Lead posting at Click Therapeutics — free, in seconds.

About the Role

As Information Security Lead, you'll safeguard groundbreaking digital therapeutics. This role requires deep technical expertise in information security within the healthcare sector, the ability to tackle complex challenges, and pioneer innovative solutions. You will build, mentor, and inspire a high-performing team, collaborating across departments to embed security into product development. Swift mastery of new technologies and adherence to processes in a regulated environment are crucial.

Responsibilities

  • Maintain and improve the Information Security Management System (ISMS) for certifications like ISO 27001, SOC 2, IEC 81001-5-1, and UK Cyber Essentials Plus.
  • Lead technical security for data privacy, ensuring compliance with GDPR, CCPA, and HIPAA.
  • Lead and mature Security Operations Center (SOC) capabilities, including threat intelligence, monitoring, detection, and analysis.
  • Collect, analyze, escalate, and respond to cybersecurity vulnerabilities, threats, and attacks using SIEM and EDR technologies.
  • Collaborate with Engineering to ensure Secure Development Lifecycle (SDLC) practices, integrating threat modeling, static/dynamic analysis, fuzz testing, and formal verification.
  • Develop and maintain reporting of Key Performance Indicators (KPIs) for threats and incidents, including incident response timeliness and observability metrics.
  • Oversee security testing activities, including penetration testing and vulnerability scanning.
  • Conduct security training and awareness programs for employees.
  • Oversee all third-party and vendor risk management activities.
  • Collaborate with Quality and Regulatory on cybersecurity processes.
  • Support regulatory submissions by generating Cybersecurity Quality Management System (QMS) documentation, ensuring compliance with FDA Cybersecurity Guidance (2025), EU MDR, NIST 800-53, IMDRF, and AAMI TIR57.

Requirements

  • Proven ability to integrate AI technologies to drive innovation and impact.
  • Experience within a highly regulated industry such as medical devices, pharmaceuticals, biotechnology, or healthcare.
  • Understanding of common security frameworks and standards, including NIST Cybersecurity Framework (CSF), ISO 27001/27002, and SOC 2.
  • Knowledge of risk assessment methodologies, network security, cloud security (AWS), application security, and data protection technologies.
  • Experience leading or participating in formal security audits.
  • Experience in interfacing with engineering teams and running in tiger-teams or embedded SME Scrum teams.
  • Leadership and communication skills, with the ability to articulate complex security concepts to technical and non-technical audiences.

Skills

  • Information Security
  • Healthcare Sector Security
  • Digital Therapeutics Security
  • ISO 27001
  • SOC 2
  • IEC 81001-5-1
  • UK Cyber Essentials Plus
  • GDPR
  • CCPA
  • HIPAA
  • Security Operations Center (SOC)
  • Threat Intelligence
  • Monitoring
  • Detection
  • Analysis
  • SIEM
  • EDR
  • Vulnerability Management
  • Secure Development Lifecycle (SDLC)
  • Threat Modeling
  • Static Analysis
  • Dynamic Analysis
  • Fuzz Testing
  • Formal Verification
  • Key Performance Indicators (KPIs)
  • Incident Response
  • Penetration Testing
  • Vulnerability Scanning
  • Security Training
  • Vendor Risk Management
  • Quality Management System (QMS)
  • FDA Cybersecurity Guidance
  • EU MDR
  • NIST 800-53
  • IMDRF
  • AAMI TIR57
  • NIST Cybersecurity Framework (CSF)
  • ISO 27002
  • Risk Assessment
  • Network Security
  • Cloud Security (AWS)
  • Application Security
  • Data Protection
  • Security Audits
  • Engineering Collaboration
  • Scrum Teams
  • Leadership
  • Communication

Location

  • Tribeca, NYC

Work Type

  • Hybrid

Experience Level

  • Lead

Salary/Compensations

  • $130,000 - $200,000

Benefits

  • Competitive Salary with Annual Review
  • Cash Bonus
  • Stock Options
  • 5% 401(k) matching
  • Medical
  • Dental
  • Vision
  • Life Insurance
  • Voluntary Benefits
  • Unlimited PTO
  • Uber One
  • Nectar Rewards
  • One Medical
  • Fitness Reimbursement
  • Bike Membership
  • Professional Development Stipend
  • DoorDash
  • Parent Benefits
  • LinkedIn Learning
  • Gemini Enterprise Stack
  • Claude
  • Industrious Workspaces
  • Commuter Subsidies
  • Flexible Work Arrangement
  • Sponsored Company Events
  • Office Snacks and Beverages

About the Company

  • Click Therapeutics develops, validates, and commercializes software as prescription medical treatments for people with unmet medical needs.
  • Click delivers accessible, clinically proven, FDA-regulated prescription treatments via smartphones.
  • The company applies technical and scientific rigor and patient-centric design to create engaging experiences and achieve compelling clinical outcomes.
  • Click Therapeutics continuously expands its platform with novel mechanisms of action and advanced data-driven tools like AI and machine learning.
  • Digital therapeutics address diverse therapeutic needs in psychiatry, neurology, oncology, immunology, and cardiometabolic diseases.
  • Click fosters an inclusive, diverse workforce united in a mission to provide patients access to safe and effective prescription digital therapeutics.
  • Consistently named a best place to work.

Equal Opportunity

  • Click Therapeutics is committed to equal opportunity in employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, disability or veteran status.
  • Click Therapeutics complies with all applicable national, state and local laws governing nondiscrimination in employment as well as employment eligibility verification requirements of the Immigration and Nationality Act.
  • All applicants must have authorization to work for Click Therapeutics in the U.S.
  • In certain circumstances, Click Therapeutics may support applications for temporary visa classification and/or sponsor applications for permanent residence.
  • Employment applicants requiring immigration sponsorship must disclose their legal authorization to work for Click Therapeutics in the U.S. at the time of initial application.