Cybersecurity Engineer I

Remote Phoenix AZ, United States

Banner Health

Banner Health makes health care easier, so your life can be better. Find a provider, schedule an appointment, or find the nearest Banner Health location near you.

View all jobs at Banner Health

Apply now Apply later

Primary City/State:

Arizona, Arizona

Department Name:

IT Data Protection-Corp

Work Shift:

Day

Job Category:

Information Technology

Innovation and highly trained staff. The Information Technology professionals at Banner Health are utilizing cutting edge technology to change health care for the better. If you’re ready to change lives, we want to hear from you.

The Detection Engineering team specializes in data analytics, researching threats, and building detections based on current-past-future cybersecurity threats to banner. The main responsibilities will be focused around SIEM(Specifically Splunk). They will be responsible for maintaining the infrastructure, making sure the system is running optimally, and helping with ingestion of new data sources. Also helping enhance Splunk Enterprise Security by implementing new features.

This position is any 8 hour period between 7am-7pm

This can be a remote position if you live in the following states only: Al, AK, AR,  FL, GA, ID, IN, IA, KS, KY, LA, MD,MI, MN, MS, MO, NH, NM, NY, NC, ND, OH, OK, OR, PA, SC, TN, TX, UT, VA, WA, WI AZ CA CO NE NV WY

Within Banner Health Corporate, you will have the opportunity to apply your unique experience and expertise in support of a nationally-recognized healthcare leader. We offer stimulating and rewarding careers in a wide array of disciplines. Whether your background is in Human Resources, Finance, Information Technology, Legal, Managed Care Programs or Public Relations, you'll find many options for contributing to our award-winning patient care.

POSITION SUMMARY
This position designs, develops, configures, implements, tunes, maintains solutions, resolve technical and business issues related to cybersecurity threat & vulnerability management, identity management, security operations center, forensics, and data protection. Cybersecurity Engineers work with Cybersecurity Architects to execute strategic cyber initiatives, evaluate security components of the network, applications and end-user devices, and provides guidance to ensure new systems meet regulatory and technical standards. Cybersecurity Engineers participate in root-cause analysis efforts to determine improvement opportunities when failures occur. Manage Cyber systems, ensures they are tuned, on the current release and manages appropriate change management across the IT organization and the business.

CORE FUNCTIONS
1. Participates in the design and implementation of cybersecurity solutions.

2. Participates in providing technical expertise and support for cybersecurity solutions, including operational aspects of the software.

3. Participates in the design, implementation, and compliance of secure baseline configurations for applications and infrastructure components.

4. Performs technical assessments of systems and applications to ensure compliance with policy, standards and regulations. 

5. Participates in the ongoing evaluation and development of security policies and procedures. Leads the revision of policies and procedures, as needed. 

6. Update, sustain, and administer a high level of security for in-house security infrastructures and services.

7. Participates in cybersecurity projects, including the development of project scope requirements, budgeting, work breakdown.

8. Under general direction, this position is responsible for cybersecurity across multiple departments system-wide and requires interaction at all levels of staff and management.

MINIMUM QUALIFICATIONS

Must possess strong knowledge of business, information security and/or computer science as normally obtained through the completion of a bachelor's degree in Computer Science, Information Security, Information Systems, or a related field.

0-3 years of experience of enterprise-scale information security engineering, preferably in healthcare. Experience with IT operations and or Security operations is also highly desirable. Experience with automation of security processes, coding and scripting languages. Ability to perform acquisition process, including vendor selection, define requirements, contractual documentation development. Ability to document security processes as well as Use case development. Proficient understanding of regulatory and compliance mandates, including but not limited to HIPAA, HITECH, PCI, Sarbanes-Oxley. Experienced assessing and reaching out to vendors for needed features via enhancement requests. Experienced in planning, designing and implementing cybersecurity solutions. Experienced in operating, maintaining and the lifecycle of cybersecurity solutions. Knowledge of Security Engineering Principles, including risk management, resilience, vulnerability management, Information Security, and security operations. Requires independent judgment, critical decision making, excellent analytical skills, with excellent verbal and written communications. Ability to think quickly under difficult or complex conditions and clearly communicate to appropriate staff; ability to balance project workloads with customer support and on-call demands. Must demonstrate general knowledge of information technology and information security principles and practices. Requires communication and presentation skills to engage technical and non-technical audiences. Requires ability to communicate and interact across facilities and at various levels. As is typical in this industry, variable shifts and hours and responding to after-hours notifications may be required. 

PREFERRED QUALIFICATIONS


Certification in one(1)of the following areas Systems Security Certified Practitioner (SSCP), HealthCare Information Security & Privacy Practitioner, (HCISPP), CompTIA Security+, Certified Information Systems Security Professional (CISSP) – Engineering (ISSEP), Certified Ethical Hacker (CEH), SANS GIAC, or Certified Information Systems Auditor (CISA).  Two years as a System Administrator, Security operations or in IT Operations. Or two years risk management or GRC experience in the healthcare/medical environment.

Additional related education and/or experience preferred.

EEO Statement:

EEO/Female/Minority/Disability/Veterans

Our organization supports a drug-free work environment.

Privacy Policy:

Privacy Policy

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  1  0

Tags: Analytics Automation CEH CISA CISSP Compliance CompTIA Computer Science Data Analytics Finance Forensics GIAC HIPAA Privacy Risk management SANS Scripting SIEM SOC Splunk SSCP Vulnerability management

Perks/benefits: Career development

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.