Los Angeles, CA 90032 – Hybrid, local preferred
Direct Hire
$49 – $56/hr
Large Los Angeles based healthcare system of hospitals, clinics, and primary care providers is looking to hire an Information Security Engineer on a permanent direct hire basis.
- Provide operational, administrative and project support for the Information Security department whose purpose is to ensure the integrity of Information Systems Assets and to protect systems from unauthorized access or destruction.
- This role includes, but is not limited to:
- network security, systems security, IS policy, security solutions, incident response, monitoring, reporting, and general Information Technology concepts.
- Provide escalation support to senior engineers for most complex issues.
- The Security Engineer II will perform technical analysis, installation, maintenance & modification of systems and software.
- Monitor, analyze and report on performance of systems.
- Participate in security solution implementations, incident response & remediation for identified incidents, participate in the development of policies, standards, procedures for the general operation of the InfoSec Team.
Responsibilities for this position include Implementing and monitoring security measures for the protection of computer systems, networks and organizational data; designing cyber security processes including but not limited to Incident Response, Eradication, etc. Carry out security measures to protect an organization’s computer networks and systems: Detect, Respond, Mitigate, Report, Recover, Remediate, Lesson Learned. Identify and define system security requirements. Responsibilities will continually expand as the number and type of cyber attacks increase and change.
Minimum Education:
- Associate’s Degree
Minimum Experience / Accountabilities:
- 5 years of experience in general Information Security.
- Healthcare experience.
- PCI, HIPAA, NIST experience.
- Security control concepts: physical, logical, administrative.
- Proven work experience as a system security engineer or information security engineer
- Experience in working with and maintaining security systems
- Detailed technical knowledge of operating system security
- Hands on experience in security systems including: intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc.
- Experience with network security and networking technologies
- Experience with security systems and tools
- Understanding of the latest security principles, techniques, and protocols
- Performs/follows all procedures to ensure the safety of Information Systems assets and to protect systems from intentional or inadvertent access or destruction.
- Ability to develop and implement IT security standards and procedures.
- Knowledge and understanding of IT industry trends and emerging technologies and an ability to relate them to the organization and its objectives.
- Knowledge of information security industry and regulatory obligations (PCI DSS, SOX, HIPAA, NIST Framework 800 series, etc.)
- Problem solving skills and ability to work under pressure
- Good communication (oral and written) and interpersonal skills
- Able to solve a range of problems in stressful situations
- Able to analyze possible solutions and assess each using standard procedures
- Able to effectively explain information and influence others in straightforward situations
- Able to make appropriate decisions within guidelines and policies
- Able to effectively prioritize own work to meet changing deadlines
- Provide after-hours and weekend on-call support for service-related issues
- Follow established IS procedures to ensure the safety of the IT systems and assets.
- Investigate and remediate incidents with standard Incident Response protocols. Inclusive of escalations and communications.
- Forecast and recommend short- and long-term solutions and strategies; lead implementation of those strategies.
- Implement and monitor security measures for the protection of computer systems, networks and information. Prepare and document standard operating procedures and protocols.
- Take appropriate actions to ensure minimal disruption to business customers.
- Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
- Recommend security enhancements to management or senior IT staff.
- Collaborate with other IS teams on incidents, remediation, security systems & solutions, communications, etc.
- Prepare reports that document security breaches and the extent of the damage caused by the breaches.
- Identify and define system security requirements.
- Configure and troubleshoot security infrastructure devices.