远程工作雷达

信息安全工程师 II

IS Security Engineer II

开发工程职能支持限定地区(需当地身份)
公司CareOregon, Inc.
薪资$102,330 - $125,070/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

信息安全工程师 II
信息安全工程师 II 负责实施和维护企业安全,同时影响并推荐有效的解决方案以支持业务策略。此职位对 CareOregon 安全模型的成熟至关重要。该职位将花费大量时间评估、设计和实施 IS 策略和系统(计划、设计、安装和维护)。
预计招聘范围:
102,330.00 - 125,070.00 美元
奖金目标:
奖金 - SIP 目标,5% 年度
CareOregon 当前员工:请使用内部 Workday 网站提交此职位申请。

核心职责
安全设计与开发

  • 积极参与安全技术的设计和维护,包括但不限于防火墙、代理系统、日志记录和其他安全设备。
  • 向组织提供高级安全技术知识;参与并咨询项目。
  • 为其他 IS 团队提供安全设计的最佳实践建议。

安全运维与操作

  • 执行与工单和服务请求相关的基础到高级任务。
  • 积极维护安全系统,包括防火墙、代理系统、日志记录和其他安全设备以及供应商提供的服务。
  • 分析业务需求;研究并推荐包含潜在风险和缓解措施的解决方案。
  • 协助定义、构建、运行和审查信息安全系统性能和事件异常报告;根据发现进行小规模和高级内部调整,并识别重大差距。
  • 编写和维护适当的技术文档,包括当前设计和操作。

标准与政策管理

  • 提出信息安全的要求和标准。
  • 参与持续审查现有系统,确保其设计符合既定标准并支持业务运营。
  • 参与制定和维护信息安全政策。
  • 将网络工程师纳入安全策略和系统的开发与管理中,如防火墙、入侵检测和入侵预防设备。
  • 参与规划和支持灾难恢复和业务连续性计划。

供应商协调与关系

  • 开发、监控和维护与外部实体的电子数据交换。
  • 维护服务合同
查看英文原文

IS Security Engineer IIThe IS Security Engineer II is responsible for implementing and maintaining corporate security along with influencing and recommending the selection of effective solutions to support business strategies. This role is essential toward maturing CareOregon’s security model. This position will spend substantial time evaluating, architecting, and implementing IS policies and systems (plan, design, install, and maintain).Estimated Hiring Range:
$102,330.00 - $125,070.00Bonus Target:
Bonus - SIP Target, 5% AnnualCurrent CareOregon Employees: Please use the internal Workday site to submit an application for this job.
Essential Responsibilities
Security Design and Development

  • Actively participate in the design and maintenance of security technologies, including but not limited to firewalls, proxy systems, logging, and other security devices.
  • Provide advanced security technology knowledge to the organization; participate in and consult on projects.
  • Advise other IS teams about best practices for security design.

Security Administration and Operations

  • Execute tasks related to tickets and service requests for basic to advanced activities.
  • Actively maintain security systems, including firewalls, proxy systems, logging, and other security devices, and vendor provided services.
  • Analyze business needs; research and recommend solutions which include potential risks and mitigation.
  • Help define, as well as build, run, and review, reports on information security system performance and event anomalies; make minor and advanced internal adjustments and identify substantial gaps based on findings.
  • Develop and maintain appropriate technology documentation, including current design and operation.

Standards and Policy Administration

  • Propose requirements and standards for information security.
  • Participate in the ongoing review existing systems to ensure they are designed to comply with established standards and to empower business operations.
  • Participate in developing and maintaining information securing policies.
  • Integrate network engineers in the development and management of security policies and systems, such as firewalls, intrusion detection, and intrusion prevention devices.
  • Participate in planning for and supporting disaster recovery and business continuity initiatives.

Vendor Coordination and Relations

  • Develop, monitor, and maintain electronic data exchanges with outside entities.
  • Maintain service contracts and licensing; monitor adherence to SLAs with outside parties; escalate issues as needed.

Experience and/or Education
Required
· Minimum 3 years’ experience delivering information security solutions and related services. Experience should include some or all of the following:
· WAN firewalls, load balancers and proxies

  • Designing, configuration, and ongoing support of a network DMZ
  • Developing secure collaboration solutions for external partners or affiliates
  • Computer security combined with risk analysis, audit, and compliance objectives
  • ITIL concepts and practices

Preferred

  • Palo Alto Firewalls experience
  • One or more of the following certifications: CISSP, GIAC certifications (GSEC, GCIA, GCIH, GPEN, etc.), CCSP, CISM and/or Microsoft Security certifications (SC-100, SC-200, AZ-500).
  • Additional experience in related technology support and/or operational positions

Knowledge, Skills and Abilities Required
Knowledge

  • Knowledge of Vulnerability Management systems and processes
  • Knowledge of Security Incident and Event Management (SIEM) systems

Skills and Abilities

  • Advanced in data loss prevention (DLP), Intrusion Detection systems (IDS), and Intrusion Prevention systems (IPS)
  • Advanced in troubleshooting of system performance issues and root cause
  • Advanced in network transport protocols and industry standards
  • Ability to program using scripting languages Python, Powershell, VB, C++, and/or others
  • Strong process-oriented individual with awareness or knowledge of ITIL concepts
  • Effective communication skills, including listening, verbal, written, and customer service
  • Ability to clearly articulate policies and instructions
  • Demonstrated progress in conveying appropriate level of detail effectively to all levels of the organization including non-technical staff
  • Demonstrated progress in simplifying and presenting complex concepts in an easily understood way
  • Ability to proactively and appropriately communicate status and needs
  • Ability to recommend policies, document risks, and propose solutions to information technology management and senior leadership
  • Possess a high degree of initiative and motivation
  • Ability to effectively collaborate with coworkers, staff, and leaders across all departments
  • Demonstrated progress in leading teams of people without oversight
  • Demonstrated progress in seeing the big picture beyond a request and takes appropriate holistic action, employing “systems thinking”
  • Effective project management skills
  • Effective vendor management skills
  • Effective organizational skills
  • Prioritizes work based on business need and direction
  • Effective analytical and research skills
  • Demonstrated progress in being able to see patterns in data and draw appropriate conclusions.
  • Demonstrated progress in proposing solutions and communicating business value
  • Positive attitude
  • Understanding of and ability to adhere to governance and process
  • Ability to work effectively with diverse individuals and groups
  • Ability to learn, focus, understand, and evaluate information and determine appropriate actions
  • Ability to accept direction and feedback, as well as tolerate and manage stress
  • Ability to see, read, and perform repetitive finger and wrist movement for at least 6 hours/day
  • Ability to hear and speak clearly for at least 3-6 hours/day

Working Conditions
Work Environment(s): ☒ Indoor/Office ☐ Community ☐ Facilities/Security ☐ Outdoor Exposure
Member/Patient Facing: ☒ No ☐ Telephonic ☐ In Person
Hazards: May include, but not limited to, physical and ergonomic hazards.
Equipment: General office equipment and ladders
Travel: May include occasional required or optional travel outside of the workplace; the employee’s personal vehicle, local transit or other means of transportation may be used.
Work Location: Work from home
Schedule: Ability to occasionally work outside of standard office hours
We offer a strong Total Rewards Program. This includes competitive pay, bonus opportunity, and a comprehensive benefits package. Eligibility for bonuses and benefits is dependent on factors such as the position type and the number of scheduled weekly hours. Benefits-eligible employees qualify for benefits beginning on the first of the month on or after their start date. CareOregon offers medical, dental, vision, life, AD&D, and disability insurance, as well as health savings account, flexible spending account(s), lifestyle spending account, employee assistance program, wellness program, discounts, and multiple supplemental benefits (e.g., voluntary life, critical illness, accident, hospital indemnity, identity theft protection, pre-tax parking, pet insurance, 529 College Savings, etc.). We also offer a strong retirement plan with employer contributions. Benefits-eligible employees accrue PTO and Paid State Sick Time based on hours worked/scheduled hours and the primary work state. Employees may also receive paid holidays, volunteer time, jury duty, bereavement leave, and more, depending on eligibility. Non-benefits eligible employees can enjoy 401(k) contributions, Paid State Sick Time, wellness and employee assistance program benefits, and other perks. Please contact your recruiter for more information.
We are an equal opportunity employer
CareOregon is an equal opportunity employer.  The organization selects the best individual for the job based upon job related qualifications, regardless of race, color, religion, sexual orientation, national origin, gender, gender identity, gender expression, genetic information, age, veteran status, ancestry, marital status or disability. The organization will make a reasonable accommodation to known physical or mental limitations of a qualified applicant or employee with a disability unless the accommodation will impose an undue hardship on the operation of our organization.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

IS数据仓库架构师III

CareOregon, Inc.United States$126,720 - $154,880/年Full Time今天
开发工程限定地区(需当地身份)

← 返回全部职位