Responsibilities
- Implementing and maintaining Microsoft Defender for Cloud, Azure Policy, security baseline controls, and cloud posture recommendations;
- Configuring and supporting RBAC, Conditional Access, privileged access, and identity governance models for Azure and Microsoft 365;
- Maintaining centralized logging, alerting, and monitoring pipelines for cloud workloads and security investigations;
- Supporting security gates in deployment workflows, including policy validation, access review, and exception management;
- Providing security input during architecture reviews, workload intake, and production go-live readiness;
- Moving security from after-the-fact review into design-time and pipeline-integrated governance;
- Standardizing cloud security baselines and reducing dependency on manual security validation;
- Translating existing security policies into Azure Policy, RBAC standards, and operational control requirements;
- Improving auditability by aligning monitoring, logging, access review, and compliance reporting to cloud workloads;
- Supporting security operations including firewall management, IDS/IPS/EDR management, security monitoring, auditing, vulnerability management, and patch- related security coordination;
- Investigating alerts, participating in incident response, and supporting threat hunting, log review, and risk analysis activities;
- Assisting with security reviews for applications, systems, third-party vendors, and hybrid cloud implementations;
- Supporting compliance activities related to HIPAA, PCI, access control, vulnerability remediation, and audit evidence;
- Communicating security risks and remediation recommendations to technical teams and business stakeholders.
Requirements
- Employee must be 18 years of age or older;
- High school diploma or equivalent;
- At least three years of experience in cybersecurity, security operations, cloud security, or hybrid infrastructure security roles;
- Experience with Azure security services, Microsoft Defender for Cloud, Sentinel or SIEM tools, identity, RBAC, and access control concepts;
- Understanding of vulnerability management, logging, alerting, incident response, and compliance evidence expectations;
- Working knowledge of hybrid environments including Windows/Linux systems, networking, firewalls, SaaS/PaaS/IaaS security, and Microsoft 365;
- Ability to communicate risk, remediation options, and control requirements clearly across technical and non-technical audiences;
- Experience in regulated, or compliance-driven environments; healthcare experience preferred;
- Knowledge of NIST, HIPAA, PCI, CIS, COBIT, or similar security frameworks;
- Azure Security Engineer Associate, CISSP, or comparable security certification;
- Experience with SIEM/SOAR, DLP, EDR, vulnerability scanning, and cloud security posture management tools.
Salary Range: $125,000 - $150,000 annually, depending on experience.
Benefits and Other Compensation
- Health, Dental and Vision insurance for employees and dependents
- Disability, Life and Long Term care insurance
- Employee Assistance Program, Flexible Spending accounts, 401(k) Retirement Plan (with employer match)
- Paid Annual Leave, Volunteer Time Off Pay, Bereavement Leave, Emergency Leave Bank
- Holiday Pay
- Discounted medical treatment at any Patient First location for employees and immediate family
- Bonuses include: - Recruitment bonus
Since opening our first medical center in 1981, Patient First's vision remains the same: making access to quality medical care as convenient and cost-effective as possible. To achieve this objective, we have adopted and continue to embrace many innovative operating systems and practices. All 78 Patient First centers in the mid-Atlantic region are open every day of the year- including weekends and holidays. Patient First provides both primary and urgent care services as well as a broad range of Occupational Health services. X-rays, lab tests, and prescription drugs are available on-site to save time and reduce the need for extra trips. Patient First offers excellent benefits packages, flexible hours, and competitive compensations for Nurses, Lab and Radiologic Technologists, Medical Assistants, and Front Office staff. Medical candidates with at least 1-2 years of experience in a physician's office or hospital setting are preferred.