<div class="content-intro"><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong><span data-contrast="none">Who We Are</span></strong></span></p><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Imagine Pediatrics is a tech enabled, pediatrician led medical group reimagining care for children with special health care needs. We deliver 24/7 virtual first and in home medical, behavioral, and social care, working alongside families, providers, and health plans to break down barriers to quality care. We do not replace existing care teams; we enhance them, providing an extra layer of support with compassion, creativity, and an unwavering commitment to children with medical complexity.</span></p></div><p><strong><span data-contrast="none">What You’ll Do</span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></p><p><span data-contrast="none">In this newly created role, the Security Governance Program Manager will be responsible for day-to-day implementation and management of a HITRUST program as well as coordinating security risk management and vendor due diligence for Imagine Pediatrics. You will:</span><span data-ccp-props="{"134245529":true,"201341983":0,"335559740":240}"> </span></p><ul><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Serve as a key subject matter expert (SME) for governance, risk, and compliance within Imagine Pediatrics' information security team.</span> </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Support the implementation and ongoing program management for HITRUST r2 certification. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Maintain Imagine Pediatrics' security policies, standards, and procedures. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Lead and enhance the third-party/vendor risk management program. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Administer the security GRC toolset, including the enterprise risk register. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Coordinate and drive internal security risk assessments and auditing activities. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Collaborate with business and clinical teams to ensure effective ePHI management. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Respond to third-party security and privacy diligence requests. </li><li data-leveltext="" data-font="Symbol" data-listid="36" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Work with external auditors and partners on security certifications and attestations.<span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559740":240}"> <br><br></span></li></ul><p><strong><span data-contrast="none">What You Bring & How You Qualify</span></strong> <br><span class="NormalTextRun SCXW45611287 BCX0">First and foremost</span><span class="NormalTextRun SCXW45611287 BCX0">, </span><span class="NormalTextRun SCXW45611287 BCX0">you’re</span><span class="NormalTextRun SCXW45611287 BCX0"> passionate and committed to reimagining pediatric health care and creating a world where every child with complex medical conditions gets the care and </span><span class="NormalTextRun ContextualSpellingAndGrammarErrorV2Themed SCXW45611287 BCX0">support</span><span class="NormalTextRun SCXW45611287 BCX0"> they deserve.</span> You will need:</p><ul><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">BS degree in computing, information security, or a related field. MS degree preferred.</span> </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">5+ years of information security GRC or audit experience accepted in lieu of a degree. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Strong experience implementing and maintaining a HITRUST r2 program. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Working knowledge of healthcare industry security and privacy regulations (HIPAA, HITECH). </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Experience with SOC 2, ISO 27001 and NIST security frameworks. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Industry certifications preferred, such as CRISC, CISA, CISM, or ISO 27001 Lead Auditor. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Prior experience supporting security in healthcare companies. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Experience with compliance automation tools like Hyperproof, Drata or Vanta is a plus. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Highly organized, motivated, and capable of working independently as a self-starter. </li><li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":360,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1">Excellent communication skills, with the ability to translate complex compliance requirements for technical and business audiences.<span data-ccp-props="{}"> <br><br></span></li></ul><p><strong><span data-contrast="none">What We Offer (Benefits + Perks)</span></strong> <br> <br><span data-contrast="none">The role offers a base salary range of $110,000 - $140,000 in addition to annual bonus, competitive company benefits package and eligibility to participate in an employee equity purchase program (as applicable). When determining compensation, we analyze and carefully consider several factors including job-related knowledge, skills and experience. These considerations may cause your compensation to vary.</span> <br> <br><span data-contrast="none">We provide these additional benefits and perks:</span></p><ul><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1"><span data-contrast="none">Competitive medical, dental, and vision insurance </span></li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">Healthcare and Dependent Care FSA; Company-funded HSA</li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">401(k) with 4% match, vested 100% from day one</li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">Employer-paid short and long-term disability </li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">Life insurance at 1x annual salary </li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">20 days PTO + 10 Company Holidays & 2 Floating Holidays<span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">Paid new parent leave</li><li data-leveltext="" data-font="Symbol" data-listid="1" data-list-defn-props="{"335552541":1,"335559684":-2,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="3" data-aria-level="1">Additional benefits to be detailed in offer </li></ul><div class="content-conclusion"><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong><span data-contrast="none">What We Live By</span></strong></span><br><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"> </span><br><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;" data-contrast="none">We’re guided by our five core values:</span></p><p><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"></span></p><p class="x_MsoNormal"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong><span data-olk-copy-source="MessageBody">Our Values:</span></strong></span></p><ul type="disc"><li class="x_MsoListParagraph" style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong>Children First.</strong> We put the best interests of children above all. We know that the right decision is always the one that creates more safe days at home for the children we serve today and in the future.</span></li><li class="x_MsoListParagraph" style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong>Earn Trust. </strong>We listen first, speak second. We build lasting relationships by creating shared understanding and consistently following through on our commitments.</span></li><li class="x_MsoListParagraph" style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong>Innovate Today.</strong> We believe that small improvements lead to big impact. We stay curious by asking questions and leveraging new ideas to learn and scale.</span></li><li class="x_MsoListParagraph" style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong>Embrace Humanity.</strong> We lead with empathy and authenticity, presuming competence and good intentions. When we stumble, we use the opportunity to grow and understand how we can improve.</span></li><li class="x_MsoListParagraph" style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><span style="font-size: 12pt; font-family: verdana, geneva, sans-serif;"><strong>One Team, Diverse Perspectives.</strong> We actively seek a range of viewpoints to achieve better outcomes. Even when we see things differently, we stay aligned on our shared mission and support one another to move forward — together.</span></li></ul><p></p><p> </p><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong><span data-contrast="none">We Value Diversity, Equity, Inclusion and Belonging</span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559685":0,"335559739":160,"335559740":240}"> </span></span></p><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span class="NormalTextRun SCXW255148318 BCX0">We believe that creating a world where every child with complex medical conditions gets the care and </span><span class="NormalTextRun ContextualSpellingAndGrammarErrorV2Themed GrammarErrorHighlight SCXW255148318 BCX0">support,</span><span class="NormalTextRun SCXW255148318 BCX0"> they deserve requires a diverse team with diverse perspectives. </span><span class="NormalTextRun SCXW255148318 BCX0">We're</span><span class="NormalTextRun SCXW255148318 BCX0"> proud to be an equal opportunity employer. People seeking employment at Imagine Pediatrics are considered without regard to race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, marital or veteran status, age, national origin, ancestry, citizenship, physical or mental disability, medical condition, genetic information, or characteristics (or those of a family member), pregnancy or other status protected by applicable law.</span></span></p></div>