- Assist with planning, researching, evaluating, designing, and developing Information Security and Risk Management (ISRM) infrastructure systems
- Assist with design, development, and implementation of less complex ISRM infrastructure components, including operating systems, software tools, and utilities
- Conduct less complex ISRM infrastructure performance studies and traffic analysis
- Help determine systems design requirements and monitor successful implementation of system improvements
- Assist with developing ISRM infrastructure engineering policies, standards, and procedures
- Define requirements, deliverables, and timeframes with teams
- Escalate issues and recommend resolutions to appropriate audiences
- Conduct root cause analysis for complex ISRM infrastructure problems
- Develop and/or deliver technical training in less complex technical areas
- Complete project tasks for on-time, on-budget, in-scope delivery of ISRM infrastructure projects
- Implement, monitor, configure, and maintain security systems
- Assure compliance with required standards, procedures, guidelines, and processes
- Perform other duties as assigned or requested
Requirements
- Bachelor's degree in Computer Science, Information Systems, or related field required
- 6 years of related and progressive experience may substitute for the Bachelor's degree
- 1 year of experience in information security and systems analysis
- 1 year of experience in information security, information risk management, and/or information technology
- 1 year of experience with operating systems and software administration
- 1 year of experience developing, communicating, and presenting information security and risk management concepts to varying audiences
- 1 year of experience with IPS, firewalls, endpoint protection, web/email filtering, DLP, digital rights management, encryption, SIEM, and virtualization platforms
- Knowledge of HITRUST CSF, NIST 800-83, PCI, HIPAA, HITECH, COBIT, ISO 27001/2, and ITIL 3
- Familiarity with secure SDLC best practices
- Knowledge of Microsoft Apps and Suites, Windows Server, SharePoint, and related technologies
- Strong teamwork and interpersonal skills
- No language other than English required
- Travel requirement: 0%-25%
- Preferred: experience with HITRUST CSF or NIST 800-83, IT/information security risk advisory, network security architecture and protocols, database management, system administration, software development lifecycle, IoT/IoMT/OT security, MDM, Linux or Mac management, and modern Windows endpoint management tooling
- Preferred certifications: CISSP, Security+, CISA, CISM, or GSEC
- Must comply with HIPAA, company privacy and information security policies, Code of Business Conduct, applicable laws, regulations, and training requirements
Core Competencies
Demonstrates expertise in Information Security and Risk Management (ISRM) infrastructure, including the design, implementation, and compliance with security standards and policies. Proficient in conducting performance studies, root cause analysis, and delivering technical training in security concepts.
Highest-signal resume keywords
- Information Security
- Risk Management
- Operating Systems Administration
- ISRM Infrastructure Design
- Compliance with HIPAA
ATS Optimization Keywords
Hard Skills
- Information Security
- Systems Analysis
- ISRM Infrastructure Development
- Traffic Analysis
- Root Cause Analysis
- Security Systems Implementation
- Software Administration
- Encryption
- Virtualization Platforms
- Secure SDLC Best Practices
Soft Skills
- Teamwork
- Interpersonal Skills
- Communication
- Problem-Solving
Certifications & Qualifications
- CISSP
- Security+
- CISA
- CISM
- GSEC
Industry Keywords
- HITRUST CSF
- NIST 800-83
- PCI
- HIPAA
- HITECH
- COBIT
- ISO 27001/2
- IT Risk Advisory
- Network Security Architecture
- Database Management
Tools & Technologies
- IPS
- Firewalls
- Endpoint Protection
- Web/Email Filtering
- DLP
- SIEM
- Microsoft Apps and Suites
- Windows Server
- SharePoint
- ITIL 3