Enterprise Information Security at Providence is responsible for appropriately protecting all information relating to its caregivers and affiliates, as well as protecting its confidential business information (including information relating to its caregivers, affiliates, and patients)
What will you be responsible for?
- Play an integral role in the Security Engineering team, driving the enhancement and scalability of security capabilities managed from India.
- Ensure security platforms and solutions are meticulously designed, configured, tested, deployed, managed, and updated to align with established policies, standards, and industry best practices.
- Maintain strict compliance with applicable regulatory, legal, and compliance frameworks, reinforcing the security infrastructure’s adherence within the Security Engineering scope.
- Perform comprehensive analysis and deliver actionable recommendations for continuous advancement in security platform and solution capabilities.
- Engage in the development and regular updating of technical security policies, standards, configuration baselines, benchmarks, guidelines, and SOPs.
- Actively support engineering efforts around security platforms and tools, including their integration, management, upgrades, and necessary adjustments.
- Collaborate on Security Engineering initiatives like automation development and testing to increase operational efficiency.
- Proactively identify opportunities to streamline processes and foster innovative solutions to emerging security challenges, ensuring robust and resilient security posture across platforms.
What would your day look like?
- Provide technical security leadership for implementing and transforming security platforms/solutions within Cybersecurity.
- Engineer security platforms/tools and service components to support complex hosting and integrations.
- Identify, develop, and enforce technical security policies and procedures, including security hardening measures.
- Collaborate with cross-functional teams to:
Address platform/solution-related issues.
Engineer improvements.
- Identify significant platform/solution deficiencies and develop scalable approaches to remediate them.
- Investigate suspected security breaches within the security infrastructure and help to provide detailed reports.
- Work closely with system owners and vendors to design secure systems that balance security with user experience.
- Conduct evaluations of new technologies/products through Proof of Concept (PoC) with other architects/engineers.
- Review security requirements for security programs and make recommendations based on objectives.
- Promote a security-oriented culture across the organization.
- Take ownership of accountable areas, including environment, teams, operations, initiatives, and projects, especially in ambiguous situations.
Who are we looking for?
- 4-year University (Bachelor’s) degree in Computer Science, Information Technology, or STEM fields, or equivalent experience.
- 8+ years of experience on engineering and managing security platforms/solutions for large scale enterprises.
- Strong understanding of Security Basics across domains and strong understanding of the domain associated to their deliverables.
- In-depth knowledge of:
Information Security
Security Engineering
Data Privacy, Risk, and Compliance within Cybersecurity environments.
- Hands-on experience with a wide range of security platforms/tools, including:
Next Generation Firewall (NGFW)
Web Application Firewall
Email Security-DMARC
SIEM
EDR
DNS Security
URL Filtering solution/Secure Web Gateway (SWG)
Cloud Access Security Broker (CASB)
Security Posture Management (SPM)
- Familiarity with multi-cloud environments and cloud-native services, along with experience in complex integrations.
- Proven experience in deploying security tools and securing environments within Azure.
- Experience in scripting or programming (e.g., shell scripting, PowerShell, Python).
- Ability to work independently with strong initiative and problem-solving skills.
- High technical aptitude, attention to detail, and commitment to quality.
- Strong communication skills, with an ability to provide pragmatic solutions to achieve platform/solution security outcomes.
- Experience in multi-vendor environments, effectively collaborating with vendors.
- Preferred certifications: CompTIA Security+, GSEC, AZ-SC-100 or equivalent.
|