Information Security Officer Jobs in Massachusetts
Information Security Officer jobs in Massachusetts are in strong demand, concentrated in the financial services, healthcare, defense contracting, and higher education sectors, with openings at every level from junior security analyst to CISO. Boston, Cambridge, and Burlington are the primary hiring centers, anchored by employers such as Fidelity Investments, Raytheon Technologies, and Mass General Brigham. The most sought-after specialties in Massachusetts include cloud security, regulatory compliance, and risk management aligned to frameworks like NIST and HIPAA. Find a role that fits below and apply directly.
Find JobsOverview
Showing 4 of 20+ Information Security Officer jobs









We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
Position Summary
The Chief of Staff to the Deputy Chief Information Security Officer (Deputy CISO) is a leadership role responsible for driving execution, alignment, and operational discipline across the cybersecurity organization. Reporting to the Deputy CISO and working closely with the Chief Information Security Officer (CISO), this leader serves as a strategic partner and force multiplier for cybersecurity priorities, ensuring that key programs, budget commitments, strategic initiatives, and executive deliverables are coordinated, measurable, and delivered with impact.
This role requires a seasoned, proactive, and highly organized professional who can operate across executive, business, technology, finance, and security teams. The Chief of Staff will help advance the Deputy CISO program by managing critical planning rhythms, supporting cybersecurity strategy, strengthening program governance, coordinating budget and resource planning, and enabling clear communication between the Deputy CISO, CISO, and enterprise stakeholders.
Key Responsibilities:
Strategic Execution & Program Management:
Partner closely with the Deputy CISO to translate cybersecurity strategy into actionable priorities, coordinated plans, and measurable outcomes across the security organization.
Lead cross-functional cyber program governance, ensuring major initiatives, milestones, dependencies, risks, and executive decisions are tracked and driven to completion.
Monitor progress against strategic cybersecurity goals, identify roadblocks, escalate issues appropriately, and proactively recommend solutions to the Deputy CISO and CISO.
Prepare executive-level updates, decision materials, and performance narratives for the Deputy CISO, CISO, and senior leadership forums.
Develop and manage recurring cybersecurity status reports, executive briefings, leadership readouts, and program updates that clearly communicate progress, risks, decisions, and required actions.
Create clear, concise, and audience-appropriate communications for the Deputy CISO and CISO, including talking points, leadership messages, presentation narratives, and enterprise-facing updates.
Establish and maintain the Deputy CISO operating cadence, including leadership meetings, governance forums, business reviews, strategic planning sessions, and executive reporting routines.
Drive alignment across cybersecurity programs to ensure priorities, funding, resourcing, sequencing, and delivery plans support enterprise security strategy and risk reduction objectives.
Collaborate closely with cybersecurity leaders across security operations, governance, risk, compliance, engineering, architecture, identity, threat management, resilience, and related functions to align priorities, resolve dependencies, and advance enterprise cyber objectives.
Operational Excellence & Efficiency:
Streamline and optimize operational processes, communication flows, and decision-making frameworks within the security organization.
Manage and prioritize critical communications, presentations, and deliverables for the Deputy CISO.
Maintain an integrated communications calendar for key cybersecurity deliverables, leadership forums, enterprise updates, board materials, audit responses, and stakeholder engagement milestones.
Support cybersecurity budget planning, resource prioritization, financial governance, and investment tracking to ensure alignment with strategic objectives and enterprise financial commitments.
Partner with finance, procurement, and security leaders to support forecasting, budget reviews, investment cases, vendor spend visibility, and resource allocation decisions.
Develop and maintain mechanisms for tracking cybersecurity program health, including key risks, dependencies, issues, decisions, performance indicators, and executive action items.
Facilitate and prepare for key meetings, including developing agendas, preparing materials, capturing minutes, and ensuring follow-up on action items.
Executive & Stakeholder Engagement:
Act as a trusted advisor and central coordination point for the Deputy CISO, while maintaining strong partnership with the CISO and senior cybersecurity leadership team.
Foster strong working relationships with cyber leaders to promote transparency, coordination, accountability, and consistent execution across the cybersecurity leadership team.
Effectively communicate and collaborate with senior leaders across CVS Health, including the executive suite, legal, HR, finance, and other business units.
Serve as a communication bridge between the Deputy CISO, CISO, cybersecurity leadership, business partners, and enabling functions to ensure timely information flow, message consistency, and coordinated follow-up.
Build and maintain strong relationships with internal and external stakeholders to foster collaboration and drive consensus.
Represent the Deputy CISO in selected forums, planning discussions, and stakeholder engagements as needed, ensuring decisions, actions, and follow-through remain aligned with CISO and Deputy CISO priorities.
Attend, lead, and facilitate meetings on behalf of the Deputy CISO as appropriate, representing Deputy CISO priorities, guiding discussion, capturing key decisions, and ensuring timely follow-up on actions and commitments.
Coordinate sensitive, time-critical, or high-visibility cybersecurity matters on behalf of the Deputy CISO, ensuring appropriate stakeholder engagement, escalation, and follow-through.
Analysis & Insights:
Conduct research and analysis on industry trends, competitive landscapes, and emerging technologies to inform strategic decisions.
Develop insights and recommendations to support the Deputy CISO in critical decision-making processes.
Prepare comprehensive reports and dashboards to track performance and identify areas for improvement.
Produce dashboards, scorecards, and narrative reports that summarize cybersecurity program performance, budget status, risk posture, delivery progress, and key decisions for executive review.
Identify trends, emerging risks, and operational insights from program data, metrics, audits, assessments, and leadership inputs to inform Deputy CISO and CISO decision-making.
Support preparation for board, executive committee, regulatory, audit, and enterprise risk discussions by consolidating inputs, clarifying messages, and ensuring materials are accurate and actionable.
Required Qualifications
10+ years of experience in a fast-paced, complex organizational environment, with at least 3-5 years in a Chief of Staff, strategic operations, or similar high-impact role supporting senior executives.
Demonstrated experience in a large, matrixed organization, preferably within the healthcare or technology sectors.
Strong execution skills: Proven ability to drive complex projects from conception to completion, managing multiple priorities and delivering results under pressure.
Strategic mindset: Ability to understand complex business challenges, connect the dots across various initiatives, and contribute to the development of long-term strategies.
Exceptional written and verbal communication skills, with the ability to articulate complex concepts clearly and concisely1 to diverse audiences, including executive leadership.
Highly proficient in developing compelling presentations and executive-level communications.
Proven ability to interact effectively with all levels of an organization, from individual contributors to the executive suite, with poise, professionalism, and influence.
Strong analytical and problem-solving skills, with a data-driven approach to decision-making.
High degree of discretion and ability to handle confidential information with integrity.
Bachelor’s degree in Business Administration, Information Technology, Cybersecurity, or a related field.
Preferred Qualifications
Master’s degree in Cybersecurity, Information Security, Information Technology, Business Administration, or a related field preferred.
Experience in cybersecurity, security operations, risk management, or technology leadership support.
Relevant cybersecurity, security program, governance, risk, or project/program management certifications preferred, such as CISSP, CISM, CRISC, CGEIT, PMP, PgMP, or similar credentials.
Experience within a Fortune 100 organization.
Pay Range
The typical pay range for this role is:
$175,100.00 - $334,750.00
This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people
We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.
This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.
Additional details about available benefits are provided during the application process and on Benefits Moments.
We anticipate the application window for this opening will close on: 09/02/2026
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.
See All 20 Information Security Officer Jobs in Massachusetts
Find roles in Massachusetts that match your experience and apply in just a few clicks.
Find JobsInformation Security Officer Jobs by City in Massachusetts
Where Massachusetts roles are concentrated, by current openings.
Information Security Officer Job Market in Massachusetts
A snapshot from current Massachusetts openings, updated as new roles post.
Who's Hiring



Top Industries Hiring
- Biotechnology & Pharmaceuticals
- Consulting & Professional Services
What Massachusetts Employers Look For
The qualifications that appear most often in information security officer jobs across Massachusetts.
- Bachelor's degree in cybersecurity, information technology, or a closely related field
- Certified Information Systems Security Professional (CISSP) or equivalent certification strongly preferred
- Demonstrated experience designing and enforcing security policies for regulated industries such as finance or healthcare
- Proficiency with NIST Cybersecurity Framework, ISO 27001, and Massachusetts data privacy regulations including 201 CMR 17.00
- Experience conducting risk assessments, vulnerability management, and incident response in enterprise environments
- Strong communication skills to present security risk posture to executive leadership and board-level stakeholders
Information Security Officer Jobs in Massachusetts: Frequently Asked Questions
How do you become a information security officer in Massachusetts?
Massachusetts does not require a state-issued license to work as an information security officer, but most employers expect at minimum a bachelor's degree in cybersecurity, computer science, or information systems paired with industry certifications such as CISSP or CISM. Candidates also need familiarity with Massachusetts data security law 201 CMR 17.00, which governs the protection of personal information. Building experience in regulated sectors like financial services or healthcare, where Boston's job market is dense, significantly strengthens a candidacy.
How much do information security officers make in Massachusetts?
Information security officers in Massachusetts earn a median of about $136,550 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $85,790 for the lowest 10% to over $226,190 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire information security officers in Massachusetts?
Employers hiring information security officers in Massachusetts right now include Raytheon, RTX, and Draper, based on current listings on Migrate Mate as of August 2026. Massachusetts's concentration of financial institutions, academic medical centers, and defense contractors means hiring activity is particularly consistent in the Greater Boston and Route 128 corridor throughout the year.
Which Massachusetts cities have the most information security officer jobs?
Bedford, Cambridge, and Tewksbury have the most information security officer openings in Massachusetts. Boston drives the largest share of listings through its dense cluster of financial firms, hospitals, and universities, while Burlington and Waltham attract significant demand from the defense and technology companies anchored along the Route 128 technology belt.
Are there remote information security officer jobs in Massachusetts?
Yes, and more than many fields, because much of the work centers on policy, monitoring, and analysis that can be done from any location. About 67% of information security officer openings tied to Massachusetts are remote or hybrid as of August 2026, reflecting broader flexibility in security-focused roles. Functions like threat analysis, compliance reporting, and security architecture design are the most commonly offered on a remote or hybrid basis.
How can I get hired as a information security officer in Massachusetts with little or no experience?
The most realistic entry path is starting in a junior security analyst or IT support role at a Massachusetts employer and building toward the officer level over time. Large health systems like Mass General Brigham and financial institutions like State Street run structured rotational or associate programs in technology and risk that welcome early-career candidates. Earning a CompTIA Security+ certification, completing a cybersecurity bootcamp affiliated with a Massachusetts college, or contributing to open-source security projects gives candidates a concrete edge when competing for first roles.
Where can I find and apply to information security officer jobs in Massachusetts?
You can find and apply to information security officer jobs in Massachusetts on Migrate Mate, which lists current Massachusetts openings updated regularly. Find roles that fit your experience and specialization and apply directly from each listing without any additional steps.
See All 20 Information Security Officer Jobs in Massachusetts
Find roles in Massachusetts that match your experience and apply in just a few clicks.
Find Jobs