Radai logo

Head of Information Security & IT

RadaiSan Francisco
FullTimeUSD 220,000 – 250,000 per yearpythonfull-timecybersecurity+1 more
Apply Now
Radai logo

Head of Information Security & IT

Radai

Apply Now

About Rad Ai

At Rad AI, we're on a mission to transform healthcare with artificial intelligence. Founded by a radiologist, our AI-driven solutions are revolutionizing radiology—saving time, reducing burnout, and improving patient care. With one of the largest proprietary radiology report datasets in the world, our AI has helped uncover hundreds of new cancer diagnoses and reduced error rates in tens of millions of radiology reports by nearly 50%.

Rad AI has secured over $140M in funding, including a recently oversubscribed Series C ($68M round) led by Transformation Capital, bringing our valuation to $528M. Our investors include Khosla Ventures, World Innovation Lab, Gradient Ventures, Cone Health Ventures, and others—all backing our mission to empower physicians with cutting-edge AI.

Our latest advancements in generative AI are used by thousands of radiologists daily, supporting more than one-third of radiology groups and healthcare systems and nearly 50% of all medical imaging in the U.S. at partners including Cone Health, Jefferson Einstein Health, Geisinger, Guthrie Healthcare System, and Henry Ford Health.

Recognized as one of the most promising healthcare AI companies by CB Insights and AuntMinnie https://www.radai.com/news/auntminnie-recognizes-rad-ai-omni-reporting-as-2023s-best-new-radiology-software, and ranked by Deloitte https://www2.deloitte.com/us/en/pages/technology-media-and-telecommunications/articles/fast500-winners.html as the 19th fastest-growing company in North America, we are building AI-powered solutions that make a real impact. Most recently, Rad AI was named to CNBC's Disruptor 50 https://www.cnbc.com/2025/06/10/2025-cnbc-disruptor-50-see-the-full-list-of-companies.html list, highlighting the innovation and momentum behind our mission.

If you're ready to shape the future of healthcare, we'd love to have you on our team!

Why We Need You

Every one of our customer relationships is built on trust: trust that we will protect PHI, trust that our AI will behave safely, and trust that we'll stand behind our commitments when something unexpected happens. As we scale across health systems, radiology groups, and large enterprises, that trust increasingly hinges on the strength of our security and compliance program.

You are the person who turns security from a potential blocker into a durable competitive advantage. Without you, SOC 2 and HIPAA audits become fire drills, customer questionnaires drag out our deals, and the risk of a serious incident grows as we move faster. With you, we walk into any CIO, CISO, or compliance conversation with confidence. You will design and lead the security strategy that lets us move quickly, pass the most demanding healthcare due diligence, and keep patient data safe—so our team can focus on building the future of radiology.

Here's What You'll Be Doing

  • Lead our information security, privacy, and compliance strategy across product, cloud infrastructure, and corporate IT.
  • Own SOC 2 Type II and HIPAA programs end to end—from control design and evidence collection to auditor relationships and report delivery.
  • Serve as a visible leader in customer security discussions and sales cycles, client security questionnaires, RFPs, and enterprise security reviews.
  • Own IT risk management program, and monitor ongoing vendor risk and compliance
  • Design and oversee security operations and incident response, including on-call processes, playbooks, and executive communication.
  • Build, coach, and scale a high-performing security team across product/app security, GRC, and security operations over time.

You Need These Qualifications

  • You have 8+ years of experience in information security, including leadership of security programs for a B2B SaaS organization.
  • You have owned external audits such as SOC 2 Type II and HIPAA (or similar healthcare/regulated frameworks) and have worked directly with auditors.
  • You have deep knowledge of HIPAA Privacy and Security Rules and operating in healthcare regulatory environments.
  • You have hands-on experience with modern cloud and application security (e.g., AWS/GCP/Azure, identity and access management, EDR, vulnerability management, SDLC security).
  • You have led or been a key decision-maker in security conversations with enterprise customers, translating deep technical risk into clear business tradeoffs.
  • You have built or significantly matured a security program in a high-growth environment, balancing strong controls with speed and practicality.
  • You have partnered closely with Product and Engineering on product and application security for AI- or data-heavy products and experience managing security for AI/ML-enabled platforms.

It Would Be Nice If

  • You have experience with HITRUST, ISO27001, or similar security frameworks, especially in the context of healthcare data and PHI.
  • You have skills and the capability to build and utilize AI tools to automate security processes
  • You have prior experience working in radiology, broader healthcare, or healthtech.
  • You hold relevant certifications such as CISSP, CISM, CISA or similar.
  • Comprehensive Medical, Dental, Vision & Life insurance
  • HSA (with employer match), FSA, & DCFSA
  • 401(k)
  • 11 Paid Company Holidays
  • Flexible PTO policy
  • Annual company-wide offsite
  • Periodic team offsites
  • Annual equipment stipend
  • For roles based outside the US, your recruiter can share more details

Similar Jobs