Mednax, National Medical GroupChief Information Security Officer (CISO)
Feb. 2018 - Sep. 2020Sunrise, Florida, United StatesChief Information Security Officer (CISO) – Mednax, National Medical Group ($4.6B Revenue)
As CISO of Mednax, a $4.6 billion healthcare organization overseeing multiple subsidiaries, I led strategic initiatives to enhance cybersecurity, operational efficiency, and business growth.
Key Achievements:
• Digital Transformation: Embedded security into the enterprise culture, enhancing the cybersecurity and identity access programs, while integrating five acquisitions into a unified cloud cybersecurity framework, saving $2.5M annually.
• Strategic Leadership: Advised the Board of Directors on cybersecurity strategies and risk management, aligning a $20M annual IT budget with business objectives.
• Operational Resilience: Enabled a 100% remote workforce in one week during critical times, ensuring continuity of revenue collection and patient care.
• Compliance Excellence: Enhanced compliance programs (SOX, HIPAA, PCI/DSS, SOC2) with robust policies, staff training, and auditing, ensuring consistent regulatory adherence.
• Technology Innovation: Implemented DevOps/DevSecOps practices, reducing software development cycles from four months to three weeks. Modernized identity access management for 28,000+ employees, reducing cyber incidents by 12%.
• Growth Enablement: Designed security frameworks for new revenue-generating services such as telehealth, teleradiology, and infant hearing screening, supporting business scalability.
• Enterprise Modernization: Partnered with the CIO to revamp IT infrastructure, software development capabilities, and processes, driving agility and efficiency across the organization.
These efforts safeguarded sensitive data, reduced operational risks, and fostered innovation, positioning Mednax and its subsidiaries, including MedData and vRad, for sustainable growth in an evolving healthcare landscape. Skills: IT Project & Program Management, Vendor Management, Cyber Insurance, DevSecOps, Compliance Strategy, Business Relationship Management