Senior Security Engineer
Enterprise Information Security at Providence is responsible for appropriately protecting all information relating to its caregivers and affiliates, as well as protecting its confidential business information (including information relating to its caregivers, affiliates, and patients) What will you be responsible for? - Play an integral role in the Security Engineering team, driving the enhancement and scalability of security capabilities managed from India. - Ensure security platforms and solutions are meticulously designed, configured, tested, deployed, managed, and updated to align with established policies, standards, and industry best practices. - Maintain strict compliance with applicable regulatory, legal, and compliance frameworks, reinforcing the security infrastructure’s adherence within the Security Engineering scope. - Perform comprehensive analysis and deliver actionable recommendations for continuous advancement in security platform and solution capabilities. - Engage in the development and regular updating of technical security policies, standards, configuration baselines, benchmarks, guidelines, and SOPs. - Actively support engineering efforts around security platforms and tools, including their integration, management, upgrades, and necessary adjustments. - Collaborate on Security Engineering initiatives like automation development and testing to increase operational efficiency. - Proactively identify opportunities to streamline processes and foster innovative solutions to emerging security challenges, ensuring robust and resilient security posture across platforms. What would your day look like? - Design and implement security platforms, tools, and service components to support complex hosting environments and seamless integration. - Establish, refine, and enforce comprehensive technical security policies, standards, and procedures, including rigorous security hardening measures. - Partner closely with cross-functional teams on matters related to security platforms and solutions to identify improvement areas, engineer enhancements, address vulnerabilities, and mitigate security risks effectively. - Conduct thorough security readiness assessments and support both internal and external audits for security platforms and solutions, providing regular status reports on security posture. - Detect and assess significant platform or solution gaps, devising scalable, pragmatic remediation strategies to address them effectively. - Investigate potential security breaches within the infrastructure, delivering timely reports and collaborating on incident response efforts. - Engage in evaluating new technologies and products through Proof of Concept (PoC) initiatives, working alongside architects and engineers to assess viability and security implications. - Review objectives and technical requirements for security programs, offering well-informed recommendations to meet security standards. - Actively foster a culture of IT Security awareness and best practices throughout the organization, advocating for continuous improvement and vigilance in cybersecurity.
Who are we looking for? - 4-year University (Bachelor’s) degree in Computer Science, Information Technology, or STEM fields, or equivalent experience. - 5+ years of experience on engineering and managing security platforms/solutions for large scale enterprises. - Strong understanding of Security Basics across domains and strong understanding of the domain associated to their deliverables. - In-depth knowledge of: Information Security Security Engineering Data Privacy, Risk, and Compliance within Cybersecurity environments. - Hands-on experience with a wide range of security platforms/tools, including: Next Generation Firewall (NGFW) Web Application Firewall Email Security-DMARC SIEM EDR DNS Security URL Filtering solution/Secure Web Gateway (SWG) Cloud Access Security Broker (CASB) Security Posture Management (SPM) - Familiarity with multi-cloud environments and cloud-native services, along with experience in complex integrations. - Proven experience in deploying security tools and securing environments within Azure. - Experience in scripting or programming (e.g., shell scripting, PowerShell, Python). - Ability to work independently with strong initiative and problem-solving skills. - High technical aptitude, attention to detail, and commitment to quality. - Strong communication skills, with an ability to provide pragmatic solutions to achieve platform/solution security outcomes. - Experience in multi-vendor environments, effectively collaborating with vendors. - Preferred certifications: CompTIA Security+, GSEC, AZ-SC-100