Sr. Linux Systems Engineer (Data Security)

Columbia University Information Technology

New York (NY)

On-site

USD 110,000 - 150,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Columbia University Information Technology in New York is seeking a Sr. Research Engineer to design, develop, and manage secure research environments, with a focus on restricted data handling and compliance requirements.

The role spans on-premises data enclaves, cloud implementations, and secure data transfer services. The engineer will lead in security design, guidance, and automation, collaborating with researchers and central IT to ensure robust, scalable, and compliant infrastructure across

Qualifications

  • Bachelor’s degree or equivalent required.
  • 4-6 years’ related experience in security engineering.
  • Experience with secure data environments or enclaves.
  • Familiarity with HIPAA, IRB, and data privacy.
  • Experience with automation scripting (Python/Bash/Terraform).
  • Experience with virtualization and cloud platforms (AWS/GCP).
  • Excellent written and verbal communication skills.

Responsibilities

  • Administers and supports on-premises Secure Data Enclave (SDE) across Windows and Linux.
  • Collaborates with researchers, IT, and compliance teams for secure data use.
  • Manages Globus High Assurance Subscription and CUIT support.
  • Provides consulting cloud services for researchers using Columbia-provisioned cloud services.
  • Advices on AWS, GCP, and security practices for cloud and on-prem infrastructure.
  • Plans and designs new cloud research computing services.
  • Recommends security best practices during the research lifecycle.
  • Performs design reviews and risk assessments for new apps.
  • Considers cloud infrastructure design and monitoring for security services.
  • Represents RCS at campus events; contributes to best practices documentation.
  • Develops training materials for researchers on cloud and security RC resources.

Skills

Security engineering
Python
Git
Terraform
Docker
VMware vSphere
ESXi
Cloud security
NIST/HIPAA frameworks
Communication skills

Education

Bachelor’s degree
Bachelor’s degree in CS/Engineering/Related field

Tools

Git
Terraform
Docker
VMware vSphere
ESXi

Job description

Reporting to the Sr. Manager of Research Computing Services (RCS); the Sr. Research Engineer provides technical consultation to departmental research groups and IT teams to support and design on-premise secure research technology systems and services, new cloud implementations, research platforms, and data storage and transfer services. The Sr. Engineer is responsible for designing, developing, and managing robust, scalable, and highly-available secure environments with a special focus on meeting requirements for restricted research (Controlled Unclassified Information, Personally Identifiable Information, Protected Health Information, Research Health Information, and other potentially sensitive data), including the Cybersecurity Maturity Model Certification, NIST SP 800-53, NIST SP 800-171 and HIPAA requirements.

Responsibilities:
  • Administers and supports the on-premises Secure Data Enclave (SDE) platform across Windows and Linux environments. Responsibilities include patching and maintaining virtual machines, deploying and managing software, performing regular system log review and analysis of logs and data outputs, troubleshooting user-reported issues and ensuring continuous adherence to security and compliance requirements.
  • Collaborates with researchers, IT, and compliance teams to enable secure and efficient data use.
  • Administers and manages Columbia’s Globus High Assurance Subscription. POC with Globus and CUIT support. Make sure full administrative capabilities are enabled on the Globus Connect server such as management console, usage reports etc. Develops documentation and training materials for CUIT support and end users.
  • Provides consulting cloud services for researchers that would like to use Columbia-provisioned cloud services for their research computing. This includes: an overview of the features of the Cloud service providers; creation and initial configuration of images; software installation and license management; storage configuration; planning workflow for efficiency and/or price.
  • Collaborates with researchers, embedded support personnel, and key central IT personnel (e.g. systems, operations, and security) to recommend and advise on AWS, GCP, and industry best security practices with cloud and on-prem enterprise infrastructure and information security considerations in a research environment to establish security policies and best practices.
  • Takes a primary role in the planning and design of new cloud research computing services.
  • During the research lifecycle, recommends and advises security best practices for the updated applications and infrastructure.
  • Manages design reviews and risk assessments for new applications integrating with core services.
  • Considers cloud infrastructure, cloud application design and cloud management and monitoring when designing and implementing new cloud security services.
  • Proactively represents RCS at campus or departmental events with a focus on research cyberinfrastructure, networking and cloud across the campus.
  • Regularly contributes to best practices documentation and knowledge transfer.
  • Helps build curriculum and lead training workshops for researchers on the use of public cloud, cloud-native technologies, and security RC resources.
  • Stay up to date with trends in the information security community including new vulnerabilities, methodologies, and products.
  • All other duties as assigned.
Minimum Qualifications:
  • Bachelor’s degree and/or its equivalent required.
  • Minimum 4-6 years’ related experience.
  • 4+ years’ experience in security engineering, preferably in regulated or research environments.
  • Experience with secure data environments, enclaves, or controlled-access systems.
  • Familiarity with data privacy and compliance frameworks (e.g., HIPAA, IRB protocols).
  • Knowledge of server operating systems, networking, system and network security.
  • Experience in at least one programming language (Ex. Python, Java).
  • Knowledgeable in implementing automation through scripting (Python/Bash/Terraform) and utilizing third-party products and tools for migration and solution delivery.
  • Familiarity with virtualization tools (e.g., VMware vSphere) and managing virtualized environments for on-premises server infrastructure.
  • System administration experience with virtualization (ESXi, hypervisors, VDI deployment)
  • Experience with technologies like Git, Terraform, Docker.
  • Excellent written and verbal communication skills.
  • Demonstrated ability to work in a fast-paced, deadline driven environment.
  • Demonstrated excellence in a variety of competencies including teamwork/collaboration, analytical thinking, communication and influencing skills, and technical expertise.
  • Ability to be precise and attentive to detail is essential.
  • Ability to work with changing priorities and with multiple projects.
  • Ability to be precise and attentive to detail is essential.
  • Ability to work with minimal supervision.
  • Ability to work weekend and off-hour work on occasion.
Preferred Qualifications:
  • Bachelor's degree in Computer Science, Engineering, Computer Security, Information Systems, or related field.
  • 4+ years of experience in infrastructure engineering.
  • 2+ years of security experience in a cloud-based infrastructure.
  • Experience adopting security practices across an enterprise.
  • Familiarity with NIST 800-53, NIST 800-171 (CUI), and HITRUST framework control requirements; hands-on experience with HIPAA Compliance for handling of PHI.
  • Understanding of system development in cloud environments, including Software as a Service (SaaS), Platform as a Service (PaaS), and Infrastructure as a Service (IaaS).
  • Experience in understanding the architecture, migration, and deployment of on-prem applications in the cloud (AWS/GCP) and hybrid environments: on-prem as well as cloud.
  • Knowledge of attack vectors (malware, web application, social engineering, etc.) and attack surfaces (ports, firewalls, incoming data processing, interfaces, etc.).
  • Certifications in CompTIA Security+ (SY0-701) preferred.

Equal Opportunity Employer / Disability / Veteran

Columbia University is committed to the hiring of qualified local residents.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Research Systems Engineer (Secure Data & Research Computing)
Sr. Research Systems Engineer (Secure Data & Research Computing)

Columbia University • New York (NY)

On-site
USD 110,000 - 125,000
Senior Research Systems Engineer – Secure Data & Cloud
Senior Research Systems Engineer – Secure Data & Cloud

Columbia University • New York (NY)

On-site
USD 110,000 - 125,000
Senior Research Cloud & Security Engineer
Senior Research Cloud & Security Engineer

Columbia University Information Technology • New York (NY)

On-site
USD 110,000 - 150,000
Cybersecurity Analyst (Digital Forensics/Incident Response)
Cybersecurity Analyst (Digital Forensics/Incident Response)

Columbia University Information Technology • New York (NY)

On-site
USD 80,000 - 110,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Sr. Cloud Security Engineer (NIN-AE4-18.062325)
Sr. Cloud Security Engineer (NIN-AE4-18.062325)

Capital Solutions Group (CSG) • Emeryville (CA)

On-site
USD 120,000 - 160,000
Information Systems Security Engineer 1
Information Systems Security Engineer 1

Columbia Technology Partners • Corridor North (MD)

On-site
USD 110,000 - 150,000
Medical plans
Vision and Dental
401k
+5
Sr. Linux Systems Administrator
Sr. Linux Systems Administrator

Astrion • Columbia (MD)

On-site
USD 145,000 - 165,000