AppSec Jobs
← Back to all jobs

Baylor Scott & White Health

VP Information Security

Dallas, TXWebsite

Full details on LinkedIn

The complete job description, requirements, and application details are available on the original posting.


About Baylor Scott & White Health

Baylor Scott & White Health is the largest not-for-profit health system in Texas, formed in 2013 through the merger of Scott & White Health and Baylor Health Care System. It operates 53 hospitals and over 1,300 access points, serving more than three million patients across North and Central Texas. The organization has a rich history dating back to 1897, emphasizing high standards of care and pioneering various healthcare practices. The health system offers a wide range of services, including specialized care in orthopedics, diabetes, cancer treatment, and maternity. It also features the Baylor Scott & White Research Institute, which conducts numerous clinical studies, and has established academic partnerships for resident physician training. The MyBSWHealth digital platform enhances patient access to personalized healthcare. With a commitment to quality and comprehensive care, Baylor Scott & White Health continues to expand its reach and services throughout Texas.

Industry

hospital & health care

Employees

57,000

291 engineers

Revenue

$16B

Website

Visit →

Security at Baylor Scott & White Health

Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.

3 Intel Signals

Security Philosophy

Baylor Scott & White Health emphasizes information security and patient privacy, stating, "Baylor takes information security and the privacy of our patients very seriously". Their published security program pillars include "Be Realistic.", "Practice Basic Hygiene.", "Strong ID Access and Management.", "Internal and External Assessments.", and "Awareness. Awareness. Awareness.". Public information regarding developer enablement vs. gatekeeping, AppSec-specific risk philosophy (beyond general pragmatic security and assessments), and specific AppSec pain points or future goals is not publicly available. No explicit, public AppSec-focused philosophy statements (developer enablement, "shift-left", or gatekeeping terminology) were found.

Security Team

  • Baylor Scott & White Health's AppSec organizational structure and reporting lines are not explicitly public, though general governance evidence indicates, "I formed a governance group."The key public-facing leader identified is Michael Frederick, Chief Information Security Officer, who stated, "Baylor takes information security and the privacy of our patients very seriously."As of February 23, 2010, the team size estimate was "heads a staff of 22."A LinkedIn search using "site:linkedin.com "Baylor Scott & White" "application security" OR "AppSec" OR "security engineer""returned no AppSec-specific results within the Baylor domain during the prioritized timeframe.
  • As of January 5, 2026, there were 0 active AppSec job postings, with evidence showing "No results for "${pageStateData.searchKeyword}""for security searches.
  • No AppSec-specific skills or tools were listed publicly in job postings, though general technology hiring language mentions "Technical expertise and curiosity to learn new technologies."There are gaps in public information regarding an AppSec org-chart, specific AppSec leadership beyond the CISO, and recent AppSec hiring.

Key Initiatives

Baylor Scott & White Health does not have publicly available evidence for a Security Champions Program, with career searches yielding "No results for "${pageStateData.searchKeyword}""for relevant keywords. Information on "Shift Left"practices, vulnerability management processes (including intake sources, triage/remediation SLAs, and ticketing ownership), and specific Secure SDLC artifacts (like security reviews or threat modeling) is not publicly available. No public announcements, blogs, or vendor case studies documenting AppSec tool rollouts or program changes in the last 6 months were found. Detailed AppSec operations, intake, triage SLAs, and tooling are not publicly documented.

Preparing for an AppSec interview?

Get the weekly briefing 2,000+ security pros trust.