Vital Care Infusion Services is a premier pharmacy franchise business committed to improving the lives of patients and healthcare professionals. The Senior Security Engineer will enhance the operational security posture and IT ecosystem, ensuring solutions meet the highest security and privacy standards while collaborating with various stakeholders across the organization.
Responsibilities:
- Monitoring computer security including intrusion detection/intrusion prevention, firewalls, encryption, anti-virus, log reviews and other software or appliances
- Proactive continuous improvement of technical security controls
- Proficient in NIST Cyber Policies and Governance, Risk
- Manage the vulnerability management process
- Manage security escalations and analyzes information security threats, requests, and audit findings
- Provides recommendations to resolve issues and/or findings
- Collaborates with external vendors and partners as necessary, to implement secure solutions and resolve issues/incidents
- Propose and support the implementation of technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks
- Participate in security incident management and disaster recovery procedures and plans
- Develop and maintain information security policies and procedures adhering to HIPAA regulations and standards
- Coordinate security practices with Franchisees ensuring adequate coverage and timely response to security events
- Oversee third party IT organizations that manage franchise IT standards
- Review and validate security alerts and incidents escalated by the SOC analysts, conducting in-depth analysis and investigation using threat intelligence and forensic tools
- Proactively identify and hunt for potential threats, security gaps, and vulnerabilities in the network, systems, and applications, using various tools and techniques
- Manage and configure the security monitoring tools, ensuring optimal performance and accuracy
- Create and update security documentation, such as policies, standards, guidelines, reports, and metrics
- Research and stay updated on the latest security trends, threats, and best practices
Requirements:
- Experience in building and maintaining security systems
- Detailed technical knowledge of infrastructure and operating system security
- Hands on experience in security systems, including vulnerability management, intrusion detection systems, anti-virus software, authentication systems, log management and content filtering
- Understanding of the latest security principles, techniques, and protocols
- Problem solving skills and ability to work under pressure
- Bachelor's or master's degree in computer science, Engineering, or 5 years of related experience
- Technical Leadership experience in data engineering, database development, or related roles, focusing on designing and building data pipelines and infrastructure
- Additional technical training, including CCSP, CISSP, or cybersecurity related certifications
- Healthcare background