Senior Security Engineer

USA - NC - Durham - 10 Moore Drive, United States

Labcorp

Labcorp helps patients, providers, organizations, and biopharma companies to guide vital healthcare decisions each and every day.

View all jobs at Labcorp

Apply now Apply later

Laboratory Corporate of America (LCA) is seeking a Senior Security Engineer to join the Office of Information Security, reporting to the Senior Manager of Threat and Vulnerability Management. The Senior Security Engineer will lead and implement an enterprise strategy on vulnerability management and tooling, and will partner with various technical teams to ensure this strategy is carried out. The Senior Security Engineer will also work closely with other security staff and represent the interests of the broader Information Security team to the rest of the enterprise.

Responsibilities:

  • Partner with IT stakeholders and other technical teams to perform vulnerability management.

  • Conduct vulnerability assessments, coordinate, and validate remediation efforts.

  • Articulate and highlight common threats and vulnerability vectors to infrastructure

  • Perform vulnerability assessments with Tenable.io network and agent based scanning

  • Act as a subject matter expert on both Tenable products and vulnerability management

  • Develop vulnerability management standards and evangelize to appropriate technical staff.

  • Work closely with team members from Risk Management and Compliance in order to understand external compliance requirements.

  • Represent the interests of the broader Information Security team to other technical staff and business stakeholders.

  • Develop and share application security expertise within the broader Information Security team.

  • In partnership with the broader Information Security team, research and recommend emerging security technologies/tools to address current and future threats.

  • Provide guidance for security remediation to business and IT partners by conducting technical risk assessments (includes vulnerability assessment).

  • Participate in security incident handling and investigations as required.

  • Interact and manage vendors, outsourcers, and contractors regarding security products and services.

  • Manage and/or provide guidance to junior members of the team.

Education/Experience:

  • Minimum 7 years’ experience in information security.

  • Bachelor’s degree

  • Proven experience in vulnerability management to include multi vendors

  • Familiarity with vulnerability management tools such as Tenable.io and CrowdStrike

  • Proven experience with information security best practices.

  • Proven project management and organizational skills, specifically managing multiple, concurrent projects.

  • Strong interpersonal, written, and oral communication skills.

  • Highly self-motivated and directed professional, with keen attention to detail.

  • Excellent analytical, problem-solving and decision-making abilities.

  • Able to effectively prioritize tasks in a high-pressure environment.

  • Strong customer service and solution-focused orientation.

  • Experience working in a team-oriented, collaborative environment.

Preferred Skills:

  • Relevant security certifications.

  • Understanding of industry standards and compliance requirements related to information security and application security—especially ISO 27001, HIPAA, and PCI DSS.

  • Current or prior LabCorp experience preferred

Benefits: Employees regularly scheduled to work 20 or more hours per week are eligible for comprehensive benefits including: Medical, Dental, Vision, Life, STD/LTD, 401(k), Paid Time Off (PTO) or Flexible Time Off (FTO), Tuition Reimbursement and Employee Stock Purchase Plan.  Casual, PRN & Part Time employees regularly scheduled to work less than 20 hours are eligible to participate in the 401(k) Plan only.  For more detailed information, please click here

Labcorp is proud to be an Equal Opportunity Employer:

As an EOE/AA employer, Labcorp strives for diversity and inclusion in the workforce and does not tolerate harassment or discrimination of any kind. We make employment decisions based on the needs of our business and the qualifications of the individual and do not discriminate based upon race, religion, color, national origin, gender (including pregnancy or other medical conditions/needs), family or parental status, marital, civil union or domestic partnership status, sexual orientation, gender identity, gender expression, personal appearance, age, veteran status, disability, genetic information, or any other legally protected characteristic. Additionally, all qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law.

We encourage all to apply

If you are an individual with a disability who needs assistance using our online tools to search and apply for jobs, or needs an accommodation, please visit our accessibility site or contact us at Labcorp Accessibility.

For more information about how we collect and store your personal data, please see our Privacy Statement.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Application security Compliance CrowdStrike HIPAA ISO 27001 PCI DSS Privacy Risk assessment Risk management Strategy Vulnerability management

Perks/benefits: Equity / stock options Flex hours Flex vacation Health care

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.