Information Security Engineer III

CareOregon

Phoenix (AZ)

On-site

USD 113,940 - 139,260

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Total Rewards Program
Benefits package
Paid holidays

Job summary

CareOregon seeks an Information Security Engineer III to design, implement, and mature the organization’s security model. The role partners with business leaders to plan, design, install, and maintain IS policies and systems, while overseeing security devices, reporting, and compliance.

Responsibilities include leading security technology design, managing incident and event data, and driving disaster recovery planning. A strong background in DLP/IDS/IPS and vendor coordination is required.

Qualifications

  • Minimum 5 years’ experience delivering information security solutions and related services.
  • Certifications such as CISSP, CASP+, GIAC (GSEC/GCIA/GCIH/GPEN), CCSP, CISM, Security+ and similar are preferred.
  • Experience with WAN firewalls, DMZ design, and secure collaboration solutions is desired.

Responsibilities

  • Lead the design and management of security technologies (firewalls, proxies, logging, and related devices).
  • Define, build, and review security reports and performance metrics.
  • Develop and maintain information security policies and disaster recovery plans.
  • Coordinate with vendors and manage external relationships for security services.

Skills

DLP
IDS
IPS
SIEM
Python
PowerShell
C++
Network protocols
ITIL

Job description

Information Security Engineer III-The IS Security Engineer III is responsible for managing corporate security as well as designing and developing effective solutions to support business strategies. This role is essential toward maturing CareOregon’s security model. This position spends substantial time partnering with business leaders, architecting, and implementing IS policies and systems (plan, design, install, and maintain).Estimated Hiring Range:$113,940.00 - $139,260.00Bonus Target:Bonus - SIP Target, 5% AnnualCurrent CareOregon Employees: Please use the internal Workday site to submit an application for this job.-Essential ResponsibilitiesSecurity Design and DevelopmentLead the design and management of security technologies, including but not limited to firewalls, proxy systems, logging, and other security devices.Provide security technology expertise to the organization; participate in and consult on projects.Advise other IS teams on best practices for security design.May serve as a resource to developing engineers.Security Management and OperationsExecute tasks related to tickets and service requests for advanced to complex activities, and provide escalation support for network tickets.Oversee the maintenance of security systems, including firewalls, proxy systems, logging, and other security devices, and vendor provided services.Analyze business needs; partner with leaders across the organization in order to research and recommend solutions which balance business need and risk mitigation.Define, build, and review reports on information security system performance and event anomalies; ensure internal adjustments are made and substantial gaps documented and elevated to management.Develop and maintain appropriate technology documentation, including current design and operation.Standards and Policy AdministrationAuthor and serve as subject matter expert to define requirements and standards for information security.Monitor and continually review existing systems to ensure they are designed to comply with established standards and to empower business operations.Develop and maintain information securing policies.Integrate network engineers in the development and management of security policies and systems, such as firewalls, intrusion detection, and intrusion prevention devices.Lead the planning for and support of disaster recovery and business continuity initiatives.Vendor Coordination and RelationsConduct product and vendor research, and present recommendations to management.Manage relations with vendors and equipment suppliers, including installation and repair of services.Oversee the development of, monitor, and maintain electronic data exchanges with outside entitiesMaintain service contracts and licensing; negotiate with outside parties; escalate issues as needed.Organizational ResponsibilitiesPerform work in alignment with the organization’s mission, vision, and values.Support the organization’s commitment to equity, diversity, and inclusion by fostering a culture of open mindedness, cultural awareness, compassion, and respect for all individuals.Strive to meet annual business goals in support the organization’s strategic goals.Adhere to the organization’s policies, procedures, and other relevant compliance needs.Perform other duties as needed.Required Knowledge, Skills, and AbilitiesTechnicalAdvanced knowledge of data loss prevention (DLP), Intrusion Detection systems (IDS), and Intrusion Prevention systems (IPS)Expert troubleshooting of system performance issues and root causeExpert knowledge of network transport protocols and industry standardsStrong process-orientation with knowledge of ITIL conceptsKnowledge of Vulnerability Management systems and processesKnowledge of Security Incident and Event Management (SIEM) systemsAbility to program using scripting languages Python, Powershell, VB, C++, and/or othersCommunicationStrong, clear communication skills, including listening, verbal, written, customer service, meeting facilitation, and presentationsAbility to clearly articulate policies, instructions, goals, and objectivesAble to convey appropriate level of detail effectively to all levels of the organization including non-technical staff and executive leadershipAbility to simplify and present complex concepts in an easily understood wayAbility to proactively and appropriately communicate status and needsOtherAbility to author policies, document risks, and propose solutions to information technology management and senior leadershipPossess a high degree of initiative and motivationAbility to effectively collaborate with coworkers, staff, leaders, and executives across all departmentsAble to lead teams of people without oversightAble to see the big picture beyond a request and takes appropriate holistic action, employing “systems thinking”Strong project management skillsStrong vendor management skillsStrong organizational skillsPrioritizes work based on business need and directionStrong analytical and research skills. Able to see patterns in data and draw appropriate conclusions.Able to propose solutions and communicate business valuePositive attitudeUnderstanding of and ability to adhere to governance and processAbility to mentor and develop junior staffAbility to occasionally work outside of standard office hoursEducation and/or ExperienceRequired:Minimum 5 years’ experience delivering information security solutions and related services. Experience should include most or all of the following:WAN firewalls, load balancers and proxiesDesigning, configuration, and ongoing support of a network DMZDeveloping secure collaboration solutions for external partners or affiliatesComputer security combined with risk analysis, audit, and compliance objectivesITIL concepts and practicesPreferred:Additional experience in related technology support and/or operational positionsExperience with MS suiteCertifications: CISSP, CASP+, GIAC certifications (GSEC, GCIA, GCIH, GPEN, etc.), CCSP, CISM, Security+, Microsoft Security certifications (SC-100, SC-200, AZ-500), Identity and Access Management (IAM), Privileged Access Management (PAM), Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), Vulnerability Management, Email Security and Anti-Phishing Solutions, Cloud Security (Microsoft Azure, AWS, or GCP), Network Security Controls , Data Loss Prevention (DLP), Security Monitoring and Incident Response, Secure Configuration and Hardening Standards, Security Automation and Scripting (PowerShell, Python, Bash)We offer a strong Total Rewards Program. This includes competitive pay, bonus opportunity, and a comprehensive benefits package. Eligibility for bonuses and benefits is dependent on factors such as the position type and the number of scheduled weekly hours. Benefits-eligible employees qualify for benefits beginning on the first of the month on or after their start date. CareOregon offers medical, dental, vision, life, AD&D, and disability insurance, as well as health savings account, flexible spending account(s), lifestyle spending account, employee assistance program, wellness program, discounts, and multiple supplemental benefits (e.g., voluntary life, critical illness, accident, hospital indemnity, identity theft protection, pre-tax parking, pet insurance, 529 College Savings, etc.). We also offer a strong retirement plan with employer contributions. Benefits-eligible employees accrue PTO and Paid State Sick Time based on hours worked/scheduled hours and the primary work state. Employees may also receive paid holidays, volunteer time, jury duty, bereavement leave, and more, depending on eligibility. Non-benefits eligible employees can enjoy 401(k) contributions, Paid State Sick Time, wellness and employee assistance program benefits, and other perks. Please contact your recruiter for more information.We are an equal opportunity employerCareOregon is an equal opportunity employer. The organization selects the best individual for the job based upon job related qualifications, regardless of race, color, religion, sexual orientation, national origin, gender, gender identity, gender expression, genetic information, age, veteran status, ancestry, marital status or disability. The organization will make a reasonable accommodation to known physical or mental limitations of a qualified applicant or employee with a disability unless the accommodation will impose an undue hardship on the operation of our organization.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer III
Information Security Engineer III

CareOregon, Inc. • Oregon (WI)

On-site
USD 113,000 - 140,000
Information Security Engineer III
Information Security Engineer III

CareOregon • Wisconsin

On-site
USD 113,000 - 140,000
Total Rewards Program
Bonuses
Information Security Engineer III
Information Security Engineer III

CareOregon • Oregon (WI)

On-site
USD 113,000 - 140,000
Bonus target 5%
Total Rewards Program
Comprehensive benefits
Information Security Engineer III
Information Security Engineer III

CareOregon • Idaho

On-site
USD 114,000 - 139,000
Total Rewards Program
Benefits package
Information Security Engineer III
Information Security Engineer III

CareOregon • Nevada (IA)

On-site
USD 114,000 - 139,000
Bonus Target
Information Security Engineer III
Information Security Engineer III

CareOregon • Town of Montana (WI)

On-site
USD 113,000 - 140,000
Bonus - SIP Target 5% Annual
Information Security Engineer III
Information Security Engineer III

CareOregon • Utah

On-site
USD 113,000 - 140,000
Bonus - SIP Target 5%
Benefits package
Strong retirement plan
Information Security Engineer III
Information Security Engineer III

CareOregon • Arizona

On-site
USD 113,000 - 140,000
Bonus opportunity
Comprehensive benefits
Information Security Engineer III
Information Security Engineer III

CareOregon • Washington

On-site
USD 113,000 - 140,000
Facilities Manager
Facilities Manager

CareOregon • Portland (OR)

On-site
USD 102,000 - 125,000
Bonus - SIP Target 5% Annual
Total Rewards Program