Jason Morais
Director of IT Security Information Security Officer (Iso) @Sturdy Health
Signup · Get unlimited contacts
WORK HISTORY
Director of IT Security Information Security Officer (Iso) @Sturdy Health
Enterprise healthcare security leader responsible for defining and executing the organization’s information security strategy, governance model, and risk management program.• Lead enterprise-wide information security strategy and roadmap, aligning security investments with business objectives and regulatory requirements.• Own and mature the Governance, Risk, and Compliance (GRC) program, ensuring alignment with NIST CSF and PCI standards.• Drive the ongoing development of Identity and Access Management (IAM), strengthening access controls, lifecycle management, and least-privilege enforcement.• Partner with executive leadership to translate cyber risk into business and operational impact.• Oversee security architecture, controls, and tooling across network, endpoint, and infrastructure environments.• Direct security budgets, vendor relationships, and third-party risk considerations.• Support disaster recovery and business continuity planning to improve organizational resilience.
EDUCATION
Roger Williams University
Bachelors of Science - Computer Information Systems, Information Technology
ABOUT JASON MORAIS
As the Director of IT Security / Information Security Officer (ISO) at Sturdy Health, I lead the organization’s information security strategy and operations. I am a CISSP and CISM certified cybersecurity leader with over 25 years of experience in the IT industry and a proven track record of building secure, compliant, and resilient systems.My expertise spans vulnerability and risk management, disaster recovery, security opeprations, governance and incident response. I’ve developed and maintained a comprehensive risk managememt program focused on information security and privacy, and led the creation and implementation of global security policies, standards, and procedures that align with regulatory frameworks and business objectives.Earning the CISSP and CISM reflects my continued commitment to the highest standards of information security. I’m passionate about enabling a secure technology environment that supports the mission, values, and growth of the healthcare system I serve.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.