Triages, analyses, and resolves requests from internal and external customers, prioritizing them based upon risk.
Responsible for one or more information security system and maintains those systems to all applicable policies and procedures.
Assists with break/fix of tools and automation that are owned by the Information Security Team.
Analyzes and responds to security threats, applying sound reasoning and logic, based upon risk.
Provides expert advice to management on identified security risks.
Investigates and documents security incidents using industry standard methods.
Makes recommendations to management in the “lessons learned” phase.
Manages dynamically changing operational priorities (70% of the week overall) and project priorities (30% of the week overall) to meet SLAs and deliverables.
Researches and recommends new tools to reduce significant organizational risk.
Collaborates with other internal information technology teams to support internal and external systems.
Writes, performs peer-reviews, and updates documentation (e.g., processes, FAQs, flow diagrams, how-tos) for information security systems.
Contributes and participates in the Information Security Team daily stand-ups and other internal and external meetings.
Participates in regular reporting, maintaining accountability and transparency within the Information Security Team.
Remains current on industry trends in cyber risk with industry standards (ISO 27001/2, NIST, CIS) and regulatory requirements (HIPAA, HITECH, HITRUST, etc.)
Performs all work in an ethical manner consistent with contractual, regulatory, and legal obligations. Diligently upholds Alignment Healthcare’s core values.
Requirements
3+ years’ experience working in a technical, hands-on role (e.g., Systems Administrator, Help Desk, etc.)
Associate degree in Computer Science, Computer Engineering, or related technical discipline, and/or equivalent work experience.
A proven ability to think analytically.
Demonstrated creativity in solving problems.
An ability to notice, capture, and process relevant information to make informed decisions.
Moral character with virtues such as integrity, fortitude, honesty, and dedication.
Curiosity to learn how something works, and an aptitude to offer suggestions to improve it.
Excellent oral and written communication skills, and an ability to present and discuss information in a way that establishes rapport and trust.
Detail oriented, with an ability and desire to implement “perfection,” but being ok with “imperfection” to meet defined SLAs.
An ability to be productive as an individual contributor with little supervision to meet agreed upon deliverables.
Technical knowledge of common information security tools and systems.
A working knowledge of the NIST CSF and/or CIS Critical Security Controls (CSC).
Demonstrated practical experience with one or more programming or scripting languages (PowerShell, Python, C#, VB, VBA, Ruby, NodeJS, SQL, etc.)
A working knowledge of Git and GitHub.
Demonstrated practical experience with one or more of the major cloud providers (AWS, Azure, GCP).
Previous experience contributing to projects using agile tools and processes.
Prior experience in healthcare or another regulated industry.
Segment Risk Manager supporting the Cybersecurity segment with risk management and governance. Collaborating on risk assessments and providing advisory on standards and practices.
Penetration Testing Coordination Leader managing pre - testing activities and pipelines. Mentoring teams and ensuring timely execution of penetration tests in financial services context.
Sales Representative responsible for B2B IT - Security Consulting services. Focused on active sales, relationship management, and new business opportunities in cybersecurity.
Leading Cybersecurity Consulting initiatives and teams to drive client security strategies at Schönbrunn TASC GmbH. Ensuring the development of secure digital solutions and fostering client relationships.
Security Engineer focusing on detection and response and collaborating with teams to secure infrastructure at Semperis. Building security monitoring solutions and contributing to risk management.
IT Engineer managing network and security infrastructures for industrial clients. Focused on proactive development and troubleshooting in a collaborative team environment.
Cyber Security Management Consultant supporting clients with ISMS implementation and transitional audit preparation. Focused on secure implementation of information security management systems and client relationship management in cyber security.
Information Security Officer ensuring effective ISMS for aedifion's energy - efficient building solutions. Focusing on continuous development, employee safety, and security controls in a tech - driven environment.