Cyber Security Engineer II

gbmc

United States

On-site

USD 90,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

GBMC is seeking a Cyber Security Engineer II to lead enterprise IT security initiatives, overseeing engineering, implementation and monitoring of security measures for IT assets, networks and data. The role emphasizes building integrated security solutions, incident response, vulnerability management, SIEM tuning, and policy administration.

The position requires 2–5 years of relevant security engineering experience, a degree in computer science or related field, and familiarity with industry

Qualifications

  • Must have formal education in computer science or related field.
  • 2–5 years in security engineering or building IT security systems.
  • Experience with vulnerability analysis, penetration testing, information assurance, or systems engineering.

Responsibilities

  • SIEM analysis and configuration.
  • Build and apply infrastructure, policies, dashboards and alerting.
  • Incident response and root cause analysis with forensic documentation.
  • Systems access management and auditing.
  • Digital forensics data collection and analysis.
  • Vulnerability assessment and remediation through monitoring and patching.
  • Policy administration and maintenance of security procedures.

Skills

Independent work
Written & verbal communication
Threat analysis
Incident response
Vulnerability management
Security monitoring

Education

Bachelor's degree in Computer Science or related field
Associate's degree + 2 years related experience

Tools

Tenable
KnowBe4
Citrix NetScaler
EPIC EMR

Job description

Under limited supervision, the Cyber Security Engineer is primarily responsible for the enterprise IT security and threat mitigation framework, ensuring the safety of Information System assets. These responsibilities include: the engineering, implementation and monitoring of security measures for the protection of IT assets, networks and electronic protected data; the design, implementation and management of enterprise security architecture; the documentation of all relevant standard operating procedures and policies; the proper operation of all proactive threat mitigation measures; the remediation of identified vulnerabilities or security events; security incident response and root cause analysis with forensic documentation; security education and training; maintains current knowledge of relevant technology and industry best practice; participates in special projects and other duties as assigned. As a level II engineer, the position requires the building and integration of solutions and leading of department projects and initiatives as determined by Cyber leadership

Education

Bachelor's degree or current high-level IT security / cybersecurity certification. Associate's degree or mid-level IT security / cybersecurity certification plus 2 years of relevant experience may be considered for individuals with in-depth experience that is clearly related to the position

Degree must be in Computer Science or a related field

(e.g., General Engineering, Computer Engineering, Electrical Engineering, Systems Engineering, Mathematics, Computer Forensics, Cyber Security, Information Technology, Healthcare IT, Information Assurance, Information Security, and Information Systems)

Relevant experience

must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering

Experience

2-5 years as a system security engineer or building and maintaining comprehensive IT security systems required

Knowledge, Skills and Abilities
  • Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
  • Demonstrated ability to work independently or under only general direction
  • Demonstrate effective written and oral communication skills
  • Experience with EPIC EMR
  • Familiar with Vulnerability Management Process
  • Familiar with Security Monitoring & Event Management
  • Familiar with Infrastructure patching management process
  • Experience using Tenable scanning tool, KnowBe4, Citrix NetScaler
  • Familiar with BIOMED device and patch management
  • Familiar with Forcepoint web filtering
  • Familiar with Mobile Device Management
  • Proficiency with Active Directory and Microsoft Office Admin 36
  • Requires familiarity with domain structures, user authentication, and digital signatures
  • Requires understanding of FISMA policies and procedures, including FIPS 199, FIPS 200, NIST HIPAA, -and other applicable policies
  • Knowledge of network tools (e.g., ping, traceroute, nslookup)
  • Knowledge of encryption methodologies
Licensures, Certifications
  • Preference for certifications for EMR security, network security, cybersecurity or digital forensics from EC-Council, CompTIA, SANS
  • Industry cyber tool certifications considered if relevant to GBMC
Patient & Workplace Safety

Employee has knowledge and understanding of patient and workforce safety as it relates to job duties.

Patient Population

Demonstrates competency in the delivery of care and applies the knowledge to meet age-specific needs if applicable.

Principal Duties and Responsibilities
  • SIEM analysis and configuration
  • Building and applying infrastructure, policies, dashboards and alerting
  • Incident ResponseResponds to crises or urgent situations within the pertinent domain to mitigate immediate and potential threats. Uses mitigation, preparedness, and response and recovery approaches, as needed, to maximize survival of life, preservation of property, and information security. Investigates and analyzes all relevant response activities
  • Systems AccessResponsible for access control, passwords, and account creation and administration and auditing
  • Digital ForensicsCollects, processes, preserves, analyzes, and presents computer-related evidence in support of network vulnerability mitigation and/or criminal, fraud, counterintelligence, or law enforcement investigations
  • Vulnerability Assessment and RemediationVulnerability detection analysis and remediation through SIEM analysisEnsures the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devicesEvaluates vulnerabilities and assist with planning and implement remediation procedures
  • Policy AdministrationAssist in the creation, auditing and maintenance of policies and procedures in relation to
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer II
Cyber Security Engineer II

Boston Medical Center • United States

On-site
USD 95,000 - 130,000
Cyber Security Engineer II
Cyber Security Engineer II

Boston Medical Center • Baltimore (MD)

On-site
USD 95,000 - 130,000
Cyber Security Engineer II
Cyber Security Engineer II

Boston Medical Center • Towson (MD), Northern (KY)

Hybrid
USD 110,000 - 140,000
Cyber Security Engineer II
Cyber Security Engineer II

Greater Baltimore Medical Center (GBMC) • Towson (MD)

On-site
USD 80,000 - 143,000
Cyber Security Engineer II — SIEM & Incident Response Lead
Cyber Security Engineer II — SIEM & Incident Response Lead

Boston Medical Center • United States

On-site
USD 95,000 - 130,000
Cyber Security Engineer II - Threat & Incident Response
Cyber Security Engineer II - Threat & Incident Response

Boston Medical Center • Towson (MD), Northern (KY)

Hybrid
USD 110,000 - 140,000
IT Security Administrator
IT Security Administrator

Chase Brexton Health Care • Baltimore (MD)

On-site
USD 120,000 - 180,000
Network/Firewall Security Engineer - Information Tech (Onsite) (Days)
Network/Firewall Security Engineer - Information Tech (Onsite) (Days)

Tanner Health • Carrollton (IN)

On-site
USD 90,000 - 130,000
Network/Firewall Security Engineer - Information Tech (Onsite) (Days)
Network/Firewall Security Engineer - Information Tech (Onsite) (Days)

Tanner Health • Carrollton (GA)

On-site
USD 90,000 - 120,000
Security Engineer
Security Engineer

Birdi • Plymouth (MI)

Remote
USD 100,000 - 130,000