Posted 1w ago

Sr. Director, Information Systems and Security (ISS)

@ HistoSonics
Plymouth, Minnesota, United States
$190k-$220k/yrHybridFull Time
Responsibilities:Develop strategy, Lead governance, Oversee infrastructure
Requirements Summary:10+ years IT/IS, 5+ years in senior leadership; experience in regulated healthcare/medical devices; CISSP/CISM/ITIL preferred.
Technical Tools Mentioned:Microsoft 365, Azure, ERP systems, QMS, Cloud platforms
Save
Mark Applied
Hide Job
Report & Hide
Job Description

HistoSonics is a commercial-stage medtech company advancing the Edison® System, a novel non-invasive sonic beam therapy based on histotripsy. Since receiving FDA De Novo grant for the non-invasive destruction of liver tumors in 2023, the company has progressed beyond initial market entry into commercial expansion, reimbursement momentum, and ongoing clinical and pipeline development. In addition to its current liver tumor indication, HistoSonics is pursuing future indications across multiple applications including kidney, pancreas, prostate, neuro, women’s health, and other significant underserved human health areas, to realize the broader potential histotripsy across multiple disease states and medical specialties.

We offer an exciting work culture where cutting-edge science meets real-world application, and each team member’s contribution is important to our success in ensuring our physicians and their patients get what they need most.

Location: Plymouth, MN/Open to remote 


Position Summary (Why this role matters): 

The Senior Director, Information Systems and Security is responsible for building and scaling a sustainable, in‑house IT and Information Security organization, including team structure, operating models, and long‑term strategy to support continued business growth. This role provides enterprise leadership and oversight of the Information Security and Privacy System (ISPS), ensuring cybersecurity, privacy, and regulatory compliance initiatives aligning corporate objectives and risk tolerance. Serving as the primary leader accountable for technology risk, resilience, and scalability, the Sr. Director owns and drives the infrastructure, platforms, and support systems required to enable secure operations and rapid global expansion across corporate systems and cloud‑connected technologies.

Key Responsibilities (What you’ll do):

Strategic Leadership & Governance

  • Strategy Execution: Develop and execute an enterprise IT/IS strategy that supports corporate growth, product commercialization, and global expansion.
  • Executive Partnership: Partner with leadership to ensure technology investments drive operational efficiency and competitive differentiation.
  • ISPS Management: Provide leadership and oversight of the Information Security and Privacy System (ISPS).
  • Risk Reporting: Lead the ISPS committee and provide integrated reporting on cybersecurity and privacy risk posture.
  • Governance Frameworks: Establish technology governance that balances agility with regulatory compliance and scalability.
  • Develop and execute a staffing and capability roadmap aligned with business priorities and growth trajectory
  • Ensure technology and security strategy evolves proactively with regulatory, product, and business requirements.
  • Implement scalable management practices, performance metrics, and communication cadences.

 Enterprise Systems & Digital Enablement

  • Systems Lifecycle: Oversee the implementation and management of enterprise systems, including ERP, CRM, QMS, and productivity platforms.
  • Ecosystem Alignment: Ensure IT capabilities align with product security, cloud platforms, and connected device ecosystems.
  • Digital Transformation: Implement initiatives that improve operational effectiveness and data-driven decision-making.
  • Evaluate emerging technologies and industry trends to inform strategy and drive innovation.

Infrastructure & Operations

  • Resilient Infrastructure: Oversee the design and management of secure, scalable IT infrastructure across all locations.
  • System Performance: Ensure high availability of critical systems, including Microsoft 365, network infrastructure, and cloud services.
  • Business Continuity: Manage robust disaster recovery capabilities, including regular testing and performance reviews.
  • Champion ongoing optimization and scalability of enterprise platforms to meet expanding commercial and operational needs.

Cybersecurity & Privacy Compliance

  • Threat Management: Provide leadership for cybersecurity strategy, threat management, and vulnerability programs.
  • Regulatory Accountability: Maintain accountability for compliance with ISO 27001, 27701, HIPAA, and GDPR.
  • Risk Mitigation: Make informed risk-acceptance decisions and allocate resources effectively for mitigation initiatives.

Organizational Leadership & Budgeting

  • Team Development: Lead and develop a high-performing IT/IS organization, fostering a culture of accountability and collaboration.
  • Fiscal Responsibility: Manage the IT/IS budget to ensure cost-effectiveness and alignment with company goals.
  • Vendor Relations: Oversee key vendor contracts, negotiations, and performance evaluations.

Qualifications and skills: 

  • Bachelor’s degree in Information Technology, Computer Science, or a related field; MBA or Master’s in Information Systems preferred. 
  • 10+ years of progressive experience in IT and/or Information Security, including at least 5 years in a senior leadership role; experience in medical device, healthcare, or other regulated industries preferred. 
  • Demonstrated success designing, scaling, and leading IT and Information Security organizations in high‑growth, regulated environments. 
  • Broad technical expertise across enterprise IT infrastructure, cybersecurity, and regulatory compliance, with strong knowledge of ISO 27001, HIPAA, and GDPR. 
  • Strategic business acumen with the ability to translate complex technology and risk concepts into clear business impact for executive and non‑technical stakeholders. 
  • Proven organizational leader with strong team development capabilities, financial discipline, and resource prioritization skills. 
  • Highly influential change leader who builds alignment across diverse stakeholders, balances long‑term vision with near‑term execution and drives accountability and outcomes in ambiguous environments. 
  • Exceptional communicator with the presence and credibility to engage executive leadership. 
  • CISSP, CISM, or ITIL certifications preferred; proficiency with Microsoft 365, Azure, and enterprise‑level ERP systems preferred.


Benefits: We offer a comprehensive benefits package for full-time employees. This includes health, dental, and vision insurance, life, short-term and long-term disability insurance, 401(k), paid time off, and more.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

#LI-Hybrid