Jobs · Information Technology · Georgia

Network/Firewall Security Engineer - Information Tech (Onsite) (Days)

Tanner Health · Carrollton, GA · 1 mo ago
Information TechnologyFull-time

About the role

The IT Security Engineer develops and maintains enterprise-wide security architecture and strategies for all aspects of the security domain in alignment with the business strategy and goals. They provide technical and security expertise to IT and business teams to understand technical constraints, identify security technology solutions, and develop security reference architectures and strategies to achieve business results. The IT Security Engineer identifies and drives remediation for vulnerabilities discovered across Tanner Medical Center's systems and applications, builds automation platforms for triage and prioritization of security deviations, and provides insight into the state of security. This role also acts as a consultant to other analysts and development teams for planning and implementation of IT initiatives across Tanner Business Units.

Responsibilities

  • Develop and maintain enterprise-wide security architecture and strategies.
  • Provide technical and security expertise to IT and business teams to identify security technology solutions and develop security reference architectures.
  • Identify and drive remediation for vulnerabilities across systems and applications.
  • Build automation platforms for triage, prioritization, and closure of security deviations.
  • Provide insight into the state of security at Tanner Medical Center.
  • Act as a consultant for planning and implementation of IT initiatives across business units.
  • Apply cybersecurity methods such as firewalls, demilitarized zones, and encryption.
  • Create technical procedural documentation.
  • Work with Security Information Event Management (SIEM), event log management, Privileged Access Management Systems (PAM), Vulnerability Management, Managed Detection and Response, and Intrusion Detection Prevention Systems.
  • Participate in incident response processes and forensic investigations related to cyber incidents.

Requirements

  • Bachelor's degree in computer science or IT Technology.
  • Six years of related experience.
  • Prior experience performing in the role of an IT Security Engineer.
  • Prior experience working in IT within the healthcare industry.

Skills

  • Understanding of Information Security frameworks and good practices (e.g., ISO, NIST, MITRE ATT&CK).
  • Understanding of computer, application, and network exploits and vulnerabilities.
  • Knowledge of authentication, authorization, and access control methods.
  • Knowledge of Identity Management Protocols and Software (e.g., ADFS, SAML, OKTA).
  • Knowledge of cryptography and cryptographic key management concepts.
  • Working knowledge of system component installation, integration, and optimization.
  • Working knowledge of cybersecurity principles and organizational requirements (confidentiality, integrity, availability, authentication, non-repudiation).
  • Working knowledge of network access, identity, and access controls.
  • Working knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
  • Knowledge of network design processes, including security objectives, operational objectives, and tradeoffs.
  • Working knowledge of key concepts in security management (e.g., Release Management, Patch Management).
  • Working knowledge of configuration management techniques.
  • Working knowledge of device and client firewall policies within endpoint management systems targeting Windows, iOS, Android, MacOS, and ChromeOS devices.
  • Experience with Security Information Event Management (SIEM) and event log management.
  • Experience with Privileged Access Management Systems (PAM).
  • Experience with Vulnerability Management, Managed Detection and Response, and Intrusion Detection Prevention Systems.
  • Experience in incident response processes and forensic investigations related to cyber incidents.
  • Strategic thinking and strong tactical execution.
  • Strong written and verbal communication skills.
  • Strong customer service skills during interactions with clinical staff, end-users, contractors, and vendors.

Preferred Qualifications

  • Certifications: CISSP, GIAC.

Similar jobs