Security Engineer
: Job Details :


Security Engineer

Green Key Resources

Location: New York,NY, USA

Date: 2024-05-18T17:23:01Z

Job Description:

Department: Infrastructure Services

Staff Title: Security Engineer

Reports to: Director of IT

FLSA Status: Exempt

Working Conditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only (No exceptions).

Position Summary The Security Engineer is responsible for securing maintaining and monitoring MedReview s enterprise infrastructure and networking security. The role is tasked with detecting vulnerabilities, planning with departments for deployment, and remediating vulnerabilities within the infrastructure. The Security Information Engineer is also tasked with deploying best practices for securing information as well as platforms in the infrastructure.

Job Responsibilities: This list does not represent all responsibilities for this position. Candidates must be willing and able to assume roles and responsibilities other than these to meet the needs of the organization.

Manage IT Security operations

Vulnerability detection through scanning platforms (Rapid7)

Implementation and planning with business and engineering team of found vulnerabilities

Remediation of vulnerabilities through multiple vectors (WSUS, GPO)

Antivirus policy creation, reporting, and remediation on malicious files (SentinelOne)

Plan for GPO policy upgrades to secure business operations (Active Directory)

Audit and remediation of access permissions for NFS/NTFS systems (Shared folders)

Adhere to best practices of securing currently used applications and platforms (MFA, Certificate)

Coordinate with staff for deployment of remediation s with urgent vulnerabilities (Emergency Remediation, I.E WannaCry)

Participate in internal and external audits (HiTrust)

Maintain or create policies, procedures, and other documentation when necessary

Find security gaps within the infrastructure

Development and Documentation of Security Practices

Lead and execute projects for security

Required Experience:

Four year degree or higher in Information Systems or Security, or related field or equivalent combination of work

Very strong Hands-on experience (Required 5+ years) of computer related security experience in a technical role within Information Technology

Previous engineering experience preferred

Working knowledge of various Identity and Access management systems a plus

CISSP, CISM, CISA, CCSP, ITIL, Security + or other related certification preferred

Advanced understanding of infrastructure. Active Directory, Exchange, Windows desktop/server OS, VMware, storage systems, DNS, firewalls

Advanced understanding of protocols. WMI, SNMP, TLS, SSL, SMB, Cypher Suites

Advanced understanding of securing systems and platforms through device/policy hardening

Understanding of SSL Certificates

Ability to communicate technical information in a clear manner, both written and verbally, to end users

Proficient knowledge of MS Outlook, Word, Excel, Visio and PowerPoint

Experience with HIPAA, HITRUST, HITECH, PCI, ISO 27001, ISO 27002, URAC regulations and awareness and/or experience with CMS, NIST and other healthcare industry related regulations

Availability to work nights and weekends during (un)planned outages and other special circumstances, with 24/7 accountability.

Availability to enter on call rotation

Ability to lift 50 lbs.

Apply Now!

Similar Jobs (0)