Join MEDvidi to advance mental health care

Working at MEDvidi is a chance to make a difference for thousands of patients across the US. With our technology-driven approach, you’ll save time on administrative tasks, dedicating it to helping people and growing your impact in the medical landscape.
Join us to work on your own schedule and expand your practice.

Our mission

At MEDvidi, our mission is to revolutionize the way individuals perceive, access, and engage with mental health care.

Our driving purpose is to break down barriers to mental health care by providing accessible, affordable, and stigma-free services through an innovative online platform. We believe that seeking help should be an empowering journey that is driven by an evidence-based approach, personalized treatment, and a sense of community.

Our values

Communicate openly and demonstrate high ethical standards in everything we do
We aim to make mental health care accessible and affordable to everyone
We stand for stigma-free communication and zero discrimination
Each decision is evidence-based and purpose-led, focusing on what’s best for the patients
Explore new ways to benefit from technology in healthcare
Set high standards and lead by example, searching for solutions and providing valuable feedback

Our benefits​

Flexible hours

Create your own schedule and adjust it as needed

Referral bonuses

Invite other medical providers to MEDvidi and get bonuses through our referral program

License reimbursement

MEDvidi sponsors your medical and DEA licenses

Training and career growth

Shape your skills through regular training and enhance your personal brand with the help of MEDvidi

Remote work

Work from wherever you find convenient (within the state(s) of your practice)

Work part-time or shift to W2

Get an opportunity to shift to full-time job at MEDvidi

Supportive community

Get consultations and supervision whenever you need it to grow professionally and support your mental health

Designated Administrative Assistant

Your personal assistant will handle the majority of administrative tasks so that you can spend more time with patients

Create your own schedule and adjust it as needed

Work from wherever you find convenient (within the state(s) of your practice)

MEDvidi sponsors your medical and DEA licenses

Shape your skills through regular training and enhance your personal brand with the help of MEDvidi

Get an opportunity to shift to full-time job at MEDvidi

Your personal assistant will handle the majority of administrative tasks so that you can spend more time with patients

Invite other medical providers to MEDvidi and get bonuses through our referral program

Get consultations and supervision whenever you need it to grow professionally and support your mental health

Interested in joining the world's largest mental health platform? You decide your schedule and how much you want to work, we'll take care of the client referrals and billing details!

Find out how much you could be making by using the earnings calculator!

Estimated Earnings with MEDvidi

I want to work:
30
HOURS PER WEEK
50

*Estimated Annual Earnings:

$

*MEDvidi does not guarantee any amount of minimum earnings. The above is an estimate based on many different factors on the platform.

Open roles

Information Security Officer

Remote - USA · Full-time

About The Position

About MEDvidi

MEDvidi is a multi-state telehealth practice delivering behavioral health and psychiatric services through a licensed Professional Corporation structure. As our organization and provider workforce continue to grow, protecting highly sensitive behavioral-health information and maintaining a strong, operational HIPAA security program are critical to our continued success.

We are seeking an experienced Information Security Officer (ISO) to own and operate MEDvidi's HIPAA Security Program.


About the Role

The Information Security Officer will have end-to-end ownership of MEDvidi's information security program, with particular responsibility for safeguarding electronic protected health information (ePHI).

You will inherit a completed Security Risk Analysis and be responsible for turning identified risks and recommendations into a sustainable operating program. This includes remediation execution, ongoing risk management, technical and administrative safeguards, vendor security, incident response, security policies, and security compliance.

This is a hands-on ownership role for someone comfortable independently running a security program in a lean, fast-moving healthcare environment.

Responsibilities

Key Responsibilities

  • Serve as MEDvidi's designated HIPAA Security Official under 45 CFR § 164.308(a)(2).
  • Own the organization's security risk analysis and ongoing risk-management cycle, including maintaining the risk register and driving remediation items to closure.
  • Develop, operate, document, and maintain HIPAA administrative safeguards, including workforce security, access authorization, security awareness and training, incident procedures, and contingency planning.
  • Partner with IT to implement and maintain technical safeguards involving access controls, authentication, audit controls, data integrity, logging, and encryption of ePHI in transit and at rest.
  • Maintain security policies for MEDvidi's distributed workforce, including workstation security, device and media controls, and remote-work ePHI handling.
  • Own the security incident response process, including detection, containment, forensics coordination, documentation, and annual tabletop exercises.
  • Partner with the Privacy Officer on breach investigations and other areas where privacy and security requirements overlap.
  • Lead vendor and Business Associate security diligence, including security questionnaires, SOC 2/HITRUST reviews, subcontractor risk, and remediation of security findings.
  • Support security architecture and tooling decisions involving telehealth platforms, EHR access, endpoint management, logging, and SIEM coverage.
  • Review the security implications of AI tools and AI-assisted security and compliance processes used within the organization.
  • Manage and operate MEDvidi's GRC platform in partnership with Compliance leadership.
  • Monitor changes to the HIPAA Security Rule and help MEDvidi assess and implement new requirements as they become applicable.




Requirements

Required Qualifications

  • 6+ years of information security experience.
  • 2+ years of experience in healthcare or another regulated ePHI/PII environment.
  • Demonstrated hands-on ownership of a HIPAA security program or equivalent regulated security program; advisory-only experience is not sufficient.
  • Strong working knowledge of the HIPAA Security Rule.
  • Working knowledge of at least one relevant security/control framework, such as:
  • NIST Cybersecurity Framework (CSF) 2.0
  • NIST SP 800-66r2
  • HITRUST
  • Demonstrated ability to independently run a security program in a lean environment.
  • Strong risk-based prioritization, practical control implementation, and security documentation skills.

Preferred Qualifications

  • CISSP, HCISPP, CISM, or equivalent certification.
  • Experience securing telehealth platforms or other healthcare technology environments.
  • Cloud security experience with AWS, Azure, and/or GCP.
  • Experience leading security incident response.
  • Experience working with fractional or external security resources, penetration testers, and independent security advisors.
  • Familiarity with evolving HIPAA Security Rule requirements.

What Success Looks Like

During your first year, you will be expected to establish a mature, well-documented, and operational security program. Key outcomes include:

  • Closing Security Risk Analysis remediation items or placing them on documented, formally accepted remediation schedules.
  • Maintaining a security policy suite mapped to applicable HIPAA safeguards, with clear owners, review cadences, and evidence.
  • Testing the incident response plan through a tabletop exercise.
  • Maintaining workforce security training completion of at least 95%.
  • Completing security reviews for critical vendors handling ePHI.
  • Coordinating an annual penetration test and ensuring findings are incorporated into the remediation program.


Why Join MEDvidi?

This is an opportunity to take genuine ownership of information security within a growing multi-state behavioral healthcare organization. Rather than serving solely as an advisor, you will have the mandate to build, operate, improve, and demonstrate the effectiveness of the security program while working closely with Compliance, Privacy, IT, and organizational leadership.

If you are an experienced healthcare security professional who enjoys translating regulatory requirements and risk assessments into practical, sustainable security operations, we would like to hear from you.

Apply today to join MEDvidi as our Information Security Officer.


Apply for this position

Ready to join?