John Conway
Deputy Chief Information Security Officer, Director Cyber & Information Security @Point32Health
Signup · Get unlimited contacts
WORK HISTORY
Deputy Chief Information Security Officer, Director Cyber & Information Security @Point32Health
Boston, MA, US
John Conway served as an enterprise leader responsible for building, executing, and overseeing the information security program at Point32Health. In this role, he led the development and implementation of an enterprise-wide security strategy that protected critical systems, patient data, and business operations across both Harvard Pilgrim Health Care and Tufts Health Plan following their merger and subsequent data breach.Mr. Conway established and matured the organization’s cybersecurity framework to align with healthcare industry regulations and national standards, ensuring sustained compliance with HIPAA, NIST 800-53, ISO 27001, FedRAMP, and PCI DSS. He played a pivotal role in managing cyber risk, enhancing incident response capabilities, and embedding security into the organization’s evolving IT and digital health infrastructure. Leveraging his CIO and IT infrastructure background, his leadership successfully connected executive priorities with modern security practices, balancing innovation with the protection of member data and operational continuity.Mr. Conway’s success as the Deputy CISO at Point32Health was rooted in his deep experience as a former CIO and IT infrastructure leader. His ability to drive cybersecurity transformation was strengthened by decades of hands-on expertise in enterprise architecture, network and systems engineering, data center operations, and cloud strategy. This foundational knowledge enabled him to effectively integrate security into complex IT environments, communicate technical risk in business terms, and build trust across technology, clinical, and business stakeholders. By leveraging both strategic vision and operational fluency, he delivered a security program that was not only compliant and resilient but also tightly aligned with the organization’s digital health priorities, modernization efforts, and enterprise IT roadmap.
EDUCATION
DeVry University
Computer Science
SAC
Pre-Medicine/Pre-Medical Studies
SKILLS
ABOUT JOHN CONWAY
Seasoned technology executive and cybersecurity leader with over 25 years of experience serving as a trusted CISO, CIO, and strategic advisor to more than 180 organizations across healthcare, finance, legal, manufacturing, and government sectors. Specializes in stabilizing and modernizing IT infrastructure, leading enterprise-wide security programs, and transforming underperforming technology environments into resilient, scalable platforms aligned with business outcomes.Recognized for leading organizations through complex challenges, including post-breach remediation, post-merger integration, cloud migrations, regulatory compliance, and operational realignment. Proven ability to build and mature high-performing IT and security teams, design defensible architectures, and drive governance frameworks aligned to NIST, CIS, ISO 27001/27002, IASME, GDPR, DFS, NERC, COSO, SOC2, FISMA, HIPAA, PCI DSS, CMMC, HITRUST, COBIT, CCM, FedRAMP, and others.Trusted by boards, investors, and executive leadership teams to assess risk posture, eliminate technical debt, and implement secure, scalable technology strategies that enable growth, ensure continuity, and protect mission-critical data.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.