Profiles search
Steven Ramirez
Chief Information Security & Technology Officer
Louisville, KY, United States
Details
Experience:
Serve as both the Chief Security and Technology Officer for Renown Health. Responsible for executive management and oversight for the technology and security functions across the organization. Develop technical aspects of the company’s strategy to ensure alignment with its business goals. Supervise system infrastructure and security to ensure functionality and efficiency. Build quality assurance and data protection processes. Monitor KPIs and IT budgets to assess operational performance.Use stakeholders’ feedback to inform necessary improvements and adjustments to technology.
2023 : Present
Renown Health
Chief Information Security & Technology Officer
Provides executive leadership, vision and managerial oversight in the development and implementation of security strategies to define policies and processes that enable consistent, effective information security practices and minimize risk. Determines projects and priorities for all information security issues. Establishes short and long-range business plans to achieve the necessary security to protect organization assets.
2022 : 2023
Renown Health
VP & Chief Information Security Officer (CISO)
Harvard's Cybersecurity : Managing Risk in the Information Age is an online short course that equips students with a comprehensive understanding of identifying and managing operational risk, litigation risk, and reputational risk. The course help students assess and mitigate specific vulnerabilities within an organization’s networks, systems, and data to provide the knowledge and skills to protect their digital assets' integrity, security, and confidentiality.
2021 : 2023
Harvard University
Teaching Staff
Lead advocate for the organizations total Information Security needs and is responsible for the development and delivery of a comprehensive information security strategy to optimize the security posture of UofL Health. Leads the development and implementation of a security program that leverages collaborations, facilitates information security governance, advises leadership on security direction and resource investments, supports design of appropriate policies to manage information security risk.
• Manage the daily operation and implementation of the IT security strategy including, but not limited to :
o Governance, Risk and Compliance (GRC)
o Business Continuity and Disaster Recovery
o Vulnerability and Incident Management
o Cyber Security Risk Management
o Security Monitoring & Operations
o Identity and Access Management
o Data Protection
o Cyber Resilience
o Physical Security
o HIPAA, NIST CSF, NIST 800-53 & HITECH
o Training & Awareness
• Conduct continuous assessment of IT security practices and systems to identify areas for risk, noncompliance, and improvement.
• Communicate digital programs and strategies to stakeholders.
• Oversee security assessments and risk analysis.
• Deliver new security technology approaches and next generation solutions.
• Ensure compliance and governance of programs.
• Develop strategies and implement solutions to minimize the risk of cyber-attacks.
• Review, analyze, and deliver data information to stakeholders.
• Manage the IT security budget; communicate to staff and appropriate parties.
• Communicate cyber security risk to the organization’s leadership
2020 : 2022
UofL Health
AVP & Chief Information Security Officer
Serve as Security/Privacy Officer as part of the IBM Watson Health's Government Health and Human Services leadership team. Partner with clients to develop, implement and ensure security controls and privacy practices are in compliance with (CMS, NIST 800-53, HIPAA Privacy & Security Rules, MITA) regulatory accreditation/requirements, for Medicare/Medicaid systems.
Serve as appointed CMS Information Security Officer to lead solution through Authority to Operate (ATO) process into AWS cloud environment. Partner with clients to develop, implement and ensure security controls and privacy practices are in compliance with CMS ARS-Controls.
2018 : 2020
IBM
IT Security & Privacy Officer
2023 : Present
Renown Health
Chief Information Security & Technology Officer
Provides executive leadership, vision and managerial oversight in the development and implementation of security strategies to define policies and processes that enable consistent, effective information security practices and minimize risk. Determines projects and priorities for all information security issues. Establishes short and long-range business plans to achieve the necessary security to protect organization assets.
2022 : 2023
Renown Health
VP & Chief Information Security Officer (CISO)
Harvard's Cybersecurity : Managing Risk in the Information Age is an online short course that equips students with a comprehensive understanding of identifying and managing operational risk, litigation risk, and reputational risk. The course help students assess and mitigate specific vulnerabilities within an organization’s networks, systems, and data to provide the knowledge and skills to protect their digital assets' integrity, security, and confidentiality.
2021 : 2023
Harvard University
Teaching Staff
Lead advocate for the organizations total Information Security needs and is responsible for the development and delivery of a comprehensive information security strategy to optimize the security posture of UofL Health. Leads the development and implementation of a security program that leverages collaborations, facilitates information security governance, advises leadership on security direction and resource investments, supports design of appropriate policies to manage information security risk.
• Manage the daily operation and implementation of the IT security strategy including, but not limited to :
o Governance, Risk and Compliance (GRC)
o Business Continuity and Disaster Recovery
o Vulnerability and Incident Management
o Cyber Security Risk Management
o Security Monitoring & Operations
o Identity and Access Management
o Data Protection
o Cyber Resilience
o Physical Security
o HIPAA, NIST CSF, NIST 800-53 & HITECH
o Training & Awareness
• Conduct continuous assessment of IT security practices and systems to identify areas for risk, noncompliance, and improvement.
• Communicate digital programs and strategies to stakeholders.
• Oversee security assessments and risk analysis.
• Deliver new security technology approaches and next generation solutions.
• Ensure compliance and governance of programs.
• Develop strategies and implement solutions to minimize the risk of cyber-attacks.
• Review, analyze, and deliver data information to stakeholders.
• Manage the IT security budget; communicate to staff and appropriate parties.
• Communicate cyber security risk to the organization’s leadership
2020 : 2022
UofL Health
AVP & Chief Information Security Officer
Serve as Security/Privacy Officer as part of the IBM Watson Health's Government Health and Human Services leadership team. Partner with clients to develop, implement and ensure security controls and privacy practices are in compliance with (CMS, NIST 800-53, HIPAA Privacy & Security Rules, MITA) regulatory accreditation/requirements, for Medicare/Medicaid systems.
Serve as appointed CMS Information Security Officer to lead solution through Authority to Operate (ATO) process into AWS cloud environment. Partner with clients to develop, implement and ensure security controls and privacy practices are in compliance with CMS ARS-Controls.
2018 : 2020
IBM
IT Security & Privacy Officer
Company:
Renown Health
About
Steven is a seasoned IT leader with extensive experience in IT Risk/Security Management, Cybersecurity, Privacy Management, Data Confidentiality, IT Regulatory Compliance (HIPAA Privacy/Security, PCI Security), Data Protection, IT Advisory, Enterprise Risk Management, Crisis Management, Business Resilience and Disaster Recovery. He has supported and led efforts across the healthcare, academic, financial, and government sectors.
Certifications:
Certified Business Continuity Professional (CBCP)
Certified Information Security Manager (CISM)