Cybersecurity Engineer II PAM
Remote Tempe AZ, United States
Banner Health
Banner Health makes health care easier, so your life can be better. Find a provider, schedule an appointment, or find the nearest Banner Health location near you.Primary City/State:
Arizona, ArizonaDepartment Name:
IT Identity Access Mgmt-CorpWork Shift:
DayJob Category:
Information TechnologyAs a Cybersecurity Engineer II, you will join an Enterprise-wide Cybersecurity Engineering team responsible for Privileged Account Management (PAM), tasked with the planning, implementation, and support of the Enterprise PAM System Platform.
This critical role involves the shared responsibility for designing, deploying, configuring, and maintaining a Privileged Access Management (PAM) platform within a multi-state enterprise environment. Ideal candidates should possess 2 to 4 years of hands-on experience with PAM solutions, preferably with CyberArk PSM, Conjur, and SecureLink, or other PAM tools such as BeyondTrust Password Safe, Thycotic Privilege Manager, Centrify Privileged Access Service, or similar. Additionally, experience with DevSecOps and Secrets Management is highly desirable, and a background in software development is a plus. Candidates should also have a basic to moderate understanding of PAM best practices to drive the maturity and adoption of the platform across the enterprise.
In addition, candidates with experience in onboarding user accounts for Windows, Unix, Linux, network devices, database and cloud environments, planning and implementing platform upgrades, implementation and integration of IDM, AD, RBAC and Mainframe IAM tools is highly desired. The successful individual will be a self-motivated, detail-oriented team player who enjoys working against aggressive delivery goals in a fast-paced, dynamic and technically complex environment. He/she will also have a passion to drive process simplification and accelerate end-user satisfaction.
This position can be Remote if you live in the following states only: AK, AL, AR, AZ, CA, CO, FL, GA, IA, ID, IN, KS, KY, MI, MN, MO, MS, NC, ND, NE, NH, NM, NV, NY, OH, OK, OR, PA, SC, TN, TX, UT, VA, WA, WI & WY.
Within Banner Health Corporate, you will have the opportunity to apply your unique experience and expertise in support of a nationally-recognized healthcare leader. We offer stimulating and rewarding careers in a wide array of disciplines. Whether your background is in Human Resources, Finance, Information Technology, Legal, Managed Care Programs or Public Relations, you'll find many options for contributing to our award-winning patient care.POSITION SUMMARY
This position designs, develops, configures, implements, tunes, maintains solutions, resolve technical and business issues related to cybersecurity threat & vulnerability management, identity management, security operations center, forensics, and data protection. Cybersecurity Engineers work with Cybersecurity Architects to execute strategic cyber initiatives, evaluate security components of the network, applications and end-user devices, and provides guidance to ensure new systems meet regulatory and technical standards. Cybersecurity Engineers participate in root-cause analysis efforts to determine improvement opportunities when failures occur. Manage Cyber systems, ensures they are tuned, on the current release and manages appropriate change management across the IT organization and the business.
CORE FUNCTIONS
1. Leads in the design and implementation of cybersecurity solutions.
2. Leads in providing technical expertise and support for cybersecurity solutions, including operational aspects of the software, hardware, network/firewall.
3. Leads in the design, implementation, and compliance of secure configurations for applications and infrastructure components.
4. Leads in technical assessments of systems and applications to ensure compliance with policy, standards and regulations.
5. Leads in the ongoing evaluation and development of security policies and procedures. Leads the revision of policies and procedures, as needed.
6. Serves as technical lead of cybersecurity projects, including the development of project scope requirements, cybersecurity product implementation, tuning, operational support model creation.
7. Under general direction, this position is responsible for cybersecurity across multiple departments system-wide and requires interaction at all levels of staff and management. Work closely on cross functional IT Teams.
MINIMUM QUALIFICATIONS
Must possess strong knowledge of business, information security and/or computer science as normally obtained through the completion of a bachelor's degree in Computer Science, Information Security, Information Systems, or related field.
Four to six years of experience of enterprise-scale information security engineering, preferably in healthcare. Must also possess one to three years’ experience in a healthcare environment or an equivalent combination of relevant education, technical, business and healthcare experience. Experience, IT operations, automation of cybersecurity processes, coding and scripting languages, ability to document cybersecurity processes as well as use case development. Experience with the assessing cyber products, including vendor selection, define requirements, contractual documentation development. Experienced in planning, designing and implementing cybersecurity solutions. Experienced in operating, maintaining and implementing, upgrading and lifecycle of cybersecurity solutions. Proficient understanding of regulatory and compliance mandates, including but not limited to HIPAA, HITECH, PCI, Sarbanes-Oxley. Advanced knowledge of Security Engineering Principles, including risk management, resilience, vulnerability management, Information Security, NIST, MITRE ATT@CK, etc. Expertise in Cyber products supporting Data Loss Prevention, EDR, AntiVirus, Perimeter services, Threat systems, cyber platform analytics, SIEM, CASB, CLOUD Security, ETC. Requires independent judgment, critical decision making, excellent analytical skills, with excellent verbal and written communications. Ability to think quickly under difficult or complex conditions and clearly communicate to appropriate staff; ability to balance project workloads with customer support and on-call demands. Must demonstrate knowledge of information technology and information security principles and practices. Requires communication and presentation skills to engage technical and non-technical audiences. Requires ability to communicate and interact across facilities and at various levels. Incumbent will have skills to mentor less experienced team members. As is typical in this industry, variable shifts and hours and responding to after-hours notifications may be required.
PREFERRED QUALIFICATIONS
Certification in two or more of the following areas: Systems Security Certified Practitioner (SSCP), HealthCare Information Security & Privacy Practitioner, (HCISPP), CompTIA Security+, Certified Information Systems Security Professional (CISSP) – Engineering (ISSEP), Certified Ethical Hacker (CEH), SANS GIAC, or Certified Information Systems Auditor (CISA). Three plus years as a System Administrator, Security Operations or in IT Operations. Or three plus years in risk management or GRC experience in the healthcare/medical environment. Must also possess three plus years’ experience in a healthcare environment or an equivalent combination of relevant education, technical, business and healthcare experience.
Additional related education and/or experience preferred.
EEO Statement:
EEO/Female/Minority/Disability/Veterans
Our organization supports a drug-free work environment.
Privacy Policy:
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Antivirus Automation CASB CEH CISA CISSP Cloud Compliance CompTIA Computer Science Cyberark DevSecOps EDR Finance Firewalls Forensics GIAC HIPAA IAM Linux Mainframe NIST Privacy Risk management SANS Scripting SIEM SOC SSCP UNIX Vulnerability management Windows
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.