Jason Morais
Healthcare Information Security Leader | Director of InfoSec & ISO | GRC, IAM, NIST CSF | Risk, Governance & Business Enablement
- Role
- Director of IT Security Information Security Officer (Iso) at Sturdy Health
- Location
- Cranston, RI, US
- LinkedIn followers
- 500 followers
About Jason Morais
As the Director of IT Security / Information Security Officer (ISO) at Sturdy Health, I lead the organization’s information security strategy and operations. I am a CISSP and CISM certified cybersecurity leader with over 25 years of experience in the IT industry and a proven track record of building secure, compliant, and resilient systems.My expertise spans vulnerability and risk management, disaster recovery, security opeprations, governance and incident response. I’ve developed and maintained a comprehensive risk managememt program focused on information security and privacy, and led the creation and implementation of global security policies, standards, and procedures that align with regulatory frameworks and business objectives.Earning the CISSP and CISM reflects my continued commitment to the highest standards of information security. I’m passionate about enabling a secure technology environment that supports the mission, values, and growth of the healthcare system I serve.
Experience
Director of IT Security Information Security Officer (Iso)
Nov 2025 — Present
Enterprise healthcare security leader responsible for defining and executing the organization’s information security strategy, governance model, and risk management program.• Lead enterprise-wide information security strategy and roadmap, aligning security investments with business objectives and regulatory requirements.• Own and mature the Governance, Risk, and Compliance (GRC) program, ensuring alignment with NIST CSF and PCI standards.• Drive the ongoing development of Identity and Access Management (IAM), strengthening access controls, lifecycle management, and least-privilege enforcement.• Partner with executive leadership to translate cyber risk into business and operational impact.• Oversee security architecture, controls, and tooling across network, endpoint, and infrastructure environments.• Direct security budgets, vendor relationships, and third-party risk considerations.• Support disaster recovery and business continuity planning to improve organizational resilience.
Education
Roger Williams University
Bachelors of Science - Computer Information Systems, Information Technology
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.