Jobs · Information Technology · Washington

Information Security Architect II (2026-0465)

Valley Medical Center & Clinics · Renton, WA · 2 wk ago
On-siteInformation Technology$95k/yrFull-time

About the role

The position is responsible for ensuring the confidentiality, integrity, and availability (CIA) of VMC computer systems and information to safeguard personnel and patient safety, while also maintaining compliance with HIPAA, PCI-DSS, cybersecurity industry best practices, frameworks, and standards.

Responsibilities

  • Monitor all security solutions, investigate all alerts, and respond appropriately to all identified threats, incidents, and/or compromises.
  • Maintain the ticket queue, provide first tier support, and escalate as needed.
  • Provide excellent customer service.
  • Assist staff with access-related issues.
  • Provide certificate assistance to other teams as needed.
  • Document all team-related procedures and resources, including notes, training, templates, knowledge bases, databases, change control, and SOPs.
  • Perform performance maintenance and patch management on all security tools and databases.
  • Provide IT policy guidance to assist staff with security compliance.
  • Configure, manage, and operate all security tools, including firewalls, AV, SIEMs, SEG, PKI, etc.
  • Conduct internal risk assessments.
  • Research, recommend, and implement changes to procedures, systems, or infrastructure to enhance security and/or address non-compliance with information security standards.
  • Review and recommend updates to all team-related procedures and resources, including notes, training, templates, knowledge bases, databases, change control, and SOPs.
  • Research and recommend patching for known threats and zero-day vulnerabilities.
  • Research new technology requests and recommend appropriate security guidance.
  • Provide security training and implement awareness campaigns to help educate staff.
  • Assist and provide guidance to lower-level analysts with assigned duties and responsibilities.

Requirements

  • Education: Master's degree in computer science related field plus two (2) years industry related experience, OR Bachelor's degree in computer science related field plus three (3) years industry related experience, OR Associate's degree in computer science related field plus four (4) years industry related experience, OR five (5) years industry related experience.
  • Certification: Intermediate-level information security certification from a cybersecurity industry standard such as (ISC)2, OffSec, EC-Council, GIAC, CompTIA, and other related certifications on approval. Current certification required.
  • Applied Job Experience: Industry experience preferred as a Cybersecurity Practitioner, Security Operations Center (SOC) Analyst, Risk Assessment Auditor, Penetration Tester, Incident Response Handler, or Computer Forensic Investigator. Experience as a Systems Administrator or Network Engineer to be considered up to three (3) years as time towards.

Qualifications

  • Working knowledge with scripting languages and automation such as Python, PowerShell, etc.
  • Working knowledge with securing cloud computing and cloud services such as Azure and AWS.
  • Working knowledge with securing operating system environments such as Windows, Mac, Linux, etc.
  • Working knowledge with securing networking, wireless and virtual environments.
  • Working knowledge with subnetting, segmentation, and zero-trust zones.
  • Professional experience with PKI/certificate authority and OpenSSL.
  • Professional experience with SEG, NGFW, AV and EDR.
  • Professional experience with various SIEMs and SOC management.
  • Professional experience with multi factor authentication implementation.
  • Familiarity with security compliance standards such as HIPAA, PCI-DSS, GDPR, etc.
  • Familiarity with security frameworks such as HITRUST, NIST, OWASP, ISO 27000, SANS CIS 20, STIGs, ITIL, etc.
  • Familiarity with the full stack OSI model, as well as TCP/IP protocol suite.
  • Familiarity with vulnerability management and patch cycles.
  • Familiarity with risk assessments, pen-tests, table-top exercises, BCDR, and change management.
  • Familiarity with writing and implementing IT policy, CSIRT plans, and training & awareness programs.

Similar jobs

Information Security Architect

Westfield InsuranceWestfield Center, OH· 4 wk ago
Information Technologyapply on fa-exdv-saasfaprod1.fa.ocs.oraclecloud.com