Senior Security Engineer

UNAVAILABLE

Framingham (MA)

Hybrid

USD 85,000 - 115,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

HealthDrive is seeking a Senior Security Engineer to design, implement, and operate security controls across on-premises and Microsoft Azure environments. The role focuses on hands-on build-and-run tasks, incident response, and third‑party risk management, working with an MSSP and IT leadership.

Hybrid work at Framingham, MA, with a compensation range of $85,000 to $115,000 depending on experience. Candidates should bring deep network security expertise, Azure AD proficiency, and experience with

Qualifications

  • Infrastructure-focused security engineering with hands-on execution.
  • Strong understanding of network security fundamentals.
  • Experience with enterprise firewalls and security tools.
  • Proficiency in Active Directory and Azure AD.
  • Knowledge of Azure cloud security best practices.
  • Experience with DLP/Proofpoint.
  • Experience leading or running third-party risk assessments.

Responsibilities

  • Build, deploy, and maintain security infrastructure—firewalls, MDM, identity platforms, email security, and cloud.
  • Implement and manage cloud security controls in Azure, focusing on IAM, network security, and data protection.
  • Collaborate with infrastructure teams to harden network/server configurations and access controls.
  • Manage Proofpoint Email Security and DLP policies, triage alerts and tune rules.
  • Conduct vulnerability assessments and coordinate remediation with IT teams.
  • Lead incident detection, containment, and response with internal and external partners.
  • Develop automation scripts to improve security operations.
  • Oversee Third-Party Risk Management end-to-end per HIPAA and vendor risk framework.
  • Ensure HIPAA compliance through policy enforcement and risk mitigation.
  • Document security configurations and train staff on best practices.
  • Coordinate with MSSP for threat monitoring and response.

Skills

Network security
Cloud security
Scripting (PowerShell/Python/Bash)
Threat detection & response
Vendor risk management
Communication
Cross-functional collaboration

Education

Bachelor’s degree in Cybersecurity or Computer Science

Tools

Proofpoint
Azure Active Directory
Microsoft Active Directory
Microsoft 365
Azure (IaaS/PaaS)
Microsoft Sentinel / SIEM
Okta MFA
Fortinet / Palo Alto firewalls

Job description

Overview

About HealthDrive:

HealthDrive delivers on-site healthcare services to residents of long-term care facilities, offering a comprehensive suite of specialties including primary care, behavioral health, dentistry, optometry, podiatry, and audiology. Our mission is to improve the quality of life for patients through compassionate and consistent care, while supporting our partners with reliable, integrated healthcare solutions tailored to the unique needs of senior populations.

About the Role:

The Senior Security Engineer is a hands‑on, implementation‑focused role responsible for protecting HealthDrive’s sensitive patient data and strengthening security across on‑premises and Microsoft Azure environments. This engineer builds, configures, and operates security controls, including firewalls, endpoint and email protection, cloud security, and vulnerability management, while leading incident detection, investigation, and response. Working closely with IT leadership and HealthDrive’s Managed Security Service Provider (MSSP), the engineer also manages the third‑party risk process from end to end. This is primarily a technical build‑and‑operate role, not a policy or oversight position.

Work Environment:

Based at HealthDrive’s Framingham, MA office (off Route 9, near Routes 90 and 495) on a hybrid schedule.

Compensation Range:

$85,000 to $115,000 / experience dependent

Responsibilities
  • Build, configure, deploy, and maintain security infrastructure—firewalls, MDM, identity platforms, email security, and cloud—using Fortinet (preferred), Microsoft Active Directory, Microsoft 365, and Azure; hands‑on experience with comparable firewalls such as Palo Alto is transferable.
  • Implement and manage cloud security controls in Microsoft Azure, focusing on identity and access management, network security, and data protection.
  • Partner hands‑on with infrastructure teams to design and harden secure network and server configurations, including firewall, VPN, and access controls.
  • Own and maintain the policy configuration for HealthDrive's Proofpoint platforms—Email Security, Email DLP, Endpoint DLP, and Data Security Posture Management (DSPM)—tuning detection and prevention rules, triaging alerts, and refining controls to protect against phishing, malware, and data exfiltration.
  • Conduct regular vulnerability assessments using tools such as SecureWorks or Qualys, and coordinate remediation efforts with IT teams.
  • Lead incident detection, investigation, containment, and recovery in collaboration with internal teams and external partners and operationalize threat intelligence to inform detection and response priorities.
  • Develop scripts in PowerShell, Python, or Bash to automate routine security tasks and improve operational efficiency.
  • Own and drive HealthDrive’s Third‑Party Risk Management (TPRM) program end to end, including inbound and outbound security‑questionnaire processes—assessing vendor and partner security posture, maintaining the vendor risk‑scoring framework, responding to security assessments HealthDrive receives from partners and payers, and managing ongoing third‑party risk in line with HIPAA and HealthDrive’s data‑protection obligations.
  • Ensure adherence to HIPAA and other regulatory requirements through policy enforcement and risk‑mitigation strategies.
  • Maintain detailed documentation of security configurations and procedures and provide guidance to business and IT staff on security best practices.
  • Manage HealthDrive's security awareness training program—building and scheduling campaigns and phishing simulations, tracking completion and results, and reporting on workforce risk to IT leadership.
  • Serve as liaison with HealthDrive’s Managed Security Service Provider to ensure effective threat monitoring and response.
Qualifications

Must have:

  • Infrastructure‑focused security engineering background, able to both set strategy and execute hands‑on.
  • Deep understanding of network security fundamentals (TCP/IP, DNS, routing, firewalls).
  • Hands‑on experience with enterprise‑grade firewalls and network security tools.
  • Proficiency in Microsoft Active Directory and Azure Active Directory (Microsoft Entra ID).
  • Strong knowledge of Azure cloud security best practices.
  • Experience with endpoint protection and data loss prevention (DLP) technologies, preferably Proofpoint tools.
  • Experience leading or running third‑party risk / vendor security assessment processes.
  • Excellent problem‑solving, communication, and collaboration skills, with the ability to work both independently and across cross‑functional teams.

Nice to have:

  • Microsoft Intune (MDM).
  • Scripting with PowerShell, Python, or Bash.
  • SIEM / XDR platforms such as Microsoft Sentinel or SecureWorks; experience with comparable platforms is transferable.
  • Experience working with MSSPs and vulnerability detection and response platforms.
  • Knowledge of healthcare compliance standards (HIPAA, HITECH).
  • Experience managing security awareness training.
  • Experience with Okta MFA configuration.

Education & Qualifications:

  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field.
  • Approximately 10+ years of security engineering experience, with demonstrated depth in infrastructure and cloud security.

Certifications & Licenses (Preferred):

CISSP; or at least one relevant security certification, such as Microsoft Certified: Azure Security Engineer Associate (AZ‑500), CompTIA Security+, CISM, CCSP, or HCISPP.

Core Competencies:

  • Communication
  • Cooperation and Team working
  • Adaptability
  • Expertise and Professionalism
  • Problem Solving / Analysis
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

U.S. Renal Care • Northern (KY)

Hybrid
USD 192,864,000 - 206,640,000
Security Engineer
Security Engineer

Healthmark Group • United States

Remote
USD 100,000 - 130,000
Security Engineer
Security Engineer

Birdirx • Plymouth (MI)

Remote
USD 90,000 - 130,000
IT Support Specialist II
IT Support Specialist II

HealthDrive Corporation • Framingham (MA)

Hybrid
USD 36,000 - 50,000
PPO Medical Insurance
Dental Insurance
Vision Insurance
+3
IT Support Specialist II
IT Support Specialist II

HealthDrive • Framingham (MA)

Hybrid
USD 55,000 - 75,000
401(k) + Company match
Paid Time Off
employee referral bonuses.
Security Engineer
Security Engineer

Birdi • Plymouth (MI)

Remote
USD 100,000 - 130,000
Security Engineer
Security Engineer

Cortavo, Inc. • Atlanta (GA)

Hybrid
USD 100,000 - 130,000
Competitive salary
Health benefits
Company cell phone plan
+2
Senior Security Engineer
Senior Security Engineer

Novva Inc. • West Jordan (UT)

On-site
USD 100,000 - 130,000
Comprehensive health, dental, and vision insurance
401k with company match
PTO
Senior Security Engineer
Senior Security Engineer

OnMed • City of White Plains (NY)

On-site
USD 130,000 - 140,000
Unlimited PTO
Paid holidays
Information Technology Security Manager
Information Technology Security Manager

Wheeler Staffing Partners • Dallas (TX)

Hybrid
USD 120,000 - 140,000