Jobs
>
New York City

    IT Security Engineer - New York, United States - MetroPlus Health Plan

    Default job background
    Description
    IT Security Engineer


    Do you have the right skills and experience for this role Read on to find out, and make your application.

    Job Ref: 99336


    Category:
    Information Technology


    Department:

    MHP INFORMATION SECURITY
    Location: 50 Water Street, 7th Floor,
    New York,
    NY 10004


    Job Type:
    Regular


    Employment Type:
    Full-Time


    Hire In Rate:
    $117,000.00


    Salary Range:
    $117, $127,000.00

    Empower. Unite. Care. MetroPlusHealth is committed to empowering New Yorkers by uniting communities through care. We believe that Health care is a right, not a privilege. If you have compassion and a collaborative spirit, work with us. You can come to work being proud of what you do every day.

    About NYC Health + Hospitals MetroPlus Health provides the highest quality healthcare services to residents of Bronx, Brooklyn, Manhattan, Queens and Staten Island through a comprehensive list of products, including, but not limited to, New York State Medicaid Managed Care, Medicare, Child Health Plus, Exchange, Partnership in Care, MetroPlus Gold, Essential Plan, etc.

    As a wholly-owned subsidiary of NYC Health + Hospitals, the largest public health system in the United States, MetroPlus Health's network includes over 27,000 primary care providers, specialists and participating clinics.

    For more than 30 years, MetroPlus Health has been committed to building strong relationships with its members and providers to enable New Yorkers to live their healthiest life.

    Position Overview
    The security engineer is responsible for implementing, maintaining, monitoring and managing secure solutions. The engineer delivers these solutions in accordance with the organization's architectural designs, best practices, and regulatory or compliance requirements.

    As risks change, the security engineer is responsible for recommending modifications and enhancements to ensure the organization is evolving with the threat landscape.

    The security engineer is expected to contribute to the corporate security strategy with security leadership and other senior security staffers and technologists.

    Recipients of the engineer's implementations and management include IT infrastructure, application development, security operations, security audit and end users.

    With an emphasis on securing systems, applications, third-party connections, service providers and ancillary systems, the security engineer is responsible for securing business-to-business initiatives, third-party relationships, outsourced solutions and vendors.

    Considered a highly knowledgeable individual, the security engineer is expected to implement, monitor and manage secure solutions that address modern day issues.

    Job Description Handle day-to-day implementation, monitoring and operational support of security hardware, software, customer applications, and managed solutions.
    Actively participate security team meetings that facilitate secure design.

    Engage in information security projects that evaluate existing security infrastructure and propose changes as defined by security leadership and architects.

    Additionally, deliver projects on time and within budget.
    Assist with incident response and system stability issues as they occur. This may include involvement outside of regular work hours, and responsiveness is expected.

    Implement solutions observing compliance - Health Information Portability and Accountability Act (HIPAA), Payment Card Industry (PCI), New York State Department of Financial Services Cybersecurity Requirements (23 NYCRR 500).

    Work in tandem with architects, the security operations center (SOC), incident responders (in cases of anomalous activity and host compromise), and technology infrastructure and development team members.

    Respond to and handle service and escalation tickets within SLA expectations.
    Develop security test plans from architectural design. Identify deficiencies and make enhancements to ensure production is not impacted.
    Participate in change project and change management meetings as required.
    Research, validate and deploy solutions meeting security and business needs.
    Follow security engineering fundamentals and processes as outlined in NIST

    Influence the planning and execution of incident response and postmortem exercises, with a focus on creating measurable benchmarks to show progress (or deficiencies requiring additional attention).

    Focus on driving security efficiencies, enabling security team members to work on more advanced tasks.

    Conduct performance testing to stress the limitations of security solutions while at the same time ensuring business innovation and day-to-day processes are not negatively impacted.

    Minimum Qualifications Bachelor's degree in computer science, information assurance, Cybersecurity or related field, or equivalent.
    10+ years of related experience required.
    Bachelor's degree in computer science, information assurance, Cybersecurity or related field, or equivalent.
    CISSP (preferred); CISM and/or SANS certification or Cisco-related certifications a plus.

    Experience with:
    Microsoft Azure or Amazon Web Services (AWS).
    Vulnerability tools such as Rapid7, Qualys, Nessus, NMAP, Kismet, Airsnort
    SIEM platforms and technologies
    Private and Public PKI Infrastructure
    Network security management, design, and deployment.
    DevOps background with experience in compliance obligations.
    Experience with one or more of the following standard frameworks:

    ISO 27001, NIST, PCI Data Security Standard (PCI DSS), HIPAA, Health Information Technology for Economic and Clinical Health (HITECH) Act, Center for Internet Security (CIS) standards or Service Organization Controls (SOC) 2.

    Working knowledge of Windows and Linux.
    Familiarity with state privacy laws.
    Ability to think strategically and tactically, with effective decision-making skills.
    Highly trustworthy; leads by example.
    Experience supporting and utilizing SIEM platforms.
    Working technical knowledge of Advance Threat Protection tools such as Crowdstrike, Trellix, etc.
    Next Generation Firewalls (NGFW), Software-Defined Wide Area Networking (SD-WAN), Advanced Threat Protection and Sandboxing solutions.

    Detection/Prevention Systems:
    Anomaly-based, signature-based, and host-based.
    DLP and Data in rest encryption
    #LI-Hybrid


  • HDI Service AG New York, United States

    Ihre Aufgaben: · Verantwortung für den Betrieb und die Architektur der Splunk Infrastruktur · Weiterentwicklung der Splunk Plattform · Technische Beratung und Umsetzung von (Security) Use Cases · Ausbau der Interkonnektivität der Splunk Plattform · Integration, regelmäßige Ü ...


  • HDI Service AG New York, United States

    Ihre Aufgaben: · Betrieb und Weiterentwicklung der technischen Cyber Security Lösungen (z.B. EDR, NDR, SIEM, Vulnerability-Scanning) · Administration von Security Agenten auf Endsystemen · Unterstützung bei der Planung, Installation, Konfiguration und Migration von innovativen ...


  • Deutsche Telekom AG New York, United States

    Aufgabe · Als Web Application Security Engineer (w/m/d) unterstützt Du unser Betriebsteam bei folgenden Aufgaben: · Konzeption, Implementierung und Betrieb der WAF- (Web Application Firewall), Reverse-Proxy- und Loadbalancing-Systeme · Unterstützung bei Netzwerk- und Security-Th ...


  • Aurora Ventures College City, United States

    As a major regional employer, the Diocese of Essen employs professionals and leaders from over 30 different professions. · The Diocese of Essen is the sponsor of numerous educational institutions such as schools of various types, adult and family education facilities, kindergarte ...

  • Paragon Alpha - Hedge Fund Talent Business

    Security Engineer

    2 weeks ago


    Paragon Alpha - Hedge Fund Talent Business New York, United States

    Our client are a Tier 1 Hedge Fund, who take a quant approach to investing, and look after $63 billion in assets. After consistent and strong returns across their portfolios, they are hiring technical talent for both the London and NY office. · This hedge fund places security at ...

  • Green Key Resources

    Security Engineer

    1 week ago


    Green Key Resources New York, United States

    Department: Infrastructure Services · StaffTitle: Security Engineer · Reportsto: Director of IT · FLSAStatus: Exempt · WorkingConditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only (No excep ...

  • MedReview Inc.

    Security Engineer

    1 week ago


    MedReview Inc. New York, United States

    WorkingConditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only . · PositionSummary –The Security Engineer is responsible for securing – maintaining and monitoring MedReview's enterprise infra ...

  • Locke and McCloud

    Security Engineer

    2 weeks ago


    Locke and McCloud New York, United States

    Security Engineer (SOC) - Hybrid Role · Are you a seasoned Security Engineer with a passion for protecting critical assets and ensuring operational resilience? We are thrilled to announce an exciting opportunity for a Security Engineer (SOC) to join a leading organization in Okla ...

  • Meta Defunct

    Security Engineer

    3 weeks ago


    Meta Defunct New York, United States

    Summary: · Meta Security is looking for a Security Engineer with experience in threat modeling, TTP identification, and detection engineering. You'll work alongside Software Engineers and Offensive Security Engineers to identify critical assets, assess the top risks, and evaluate ...

  • NYC Health Hospitals

    IT Security Engineer

    3 weeks ago


    NYC Health Hospitals New York, United States

    MetroPlusHealth provides the highest quality healthcare services to residents of Bronx, Brooklyn, Manhattan, Queens and Staten Island through a comprehensive list of products, including, but not limited to, New York State Medicaid Managed Care, Medicare, Child Health Plus, Exchan ...

  • Nationstaff

    Security Engineer

    2 weeks ago


    Nationstaff New York, United States

    About This Role · We are seeking a highly capable Security Engineer / Senior Security Engineer, who will be responsible for various technical and cryptographic security aspects. This role requires a certain range of experience and an in-depth understanding of security engineerin ...

  • Green Key Resources

    Security Engineer

    1 week ago


    Green Key Resources New York, United States

    Vulnerability detection through scanning platforms (Rapid7) · Implementation and planning with business and engineering team of found vulnerabilities · Remediation of vulnerabilities through multiple vectors (WSUS, GPO) · Antivirus policy creation, reporting, and remediation on ...

  • TSR Consulting

    Security Engineer

    2 weeks ago


    TSR Consulting New York, United States

    About TSR: · TSR is a relationship-based, customer-focused IT and technical services staffing company. · For over 40 years TSR, Inc. and its wholly owned subsidiary, TSR Consulting Services, have prospered in the Information Technology staffing business, earning the respect of co ...

  • Celonis GmbH

    Security Engineer

    3 weeks ago


    Celonis GmbH New York, United States

    We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join ...

  • Green Key Resources

    Security Engineer

    1 week ago


    Green Key Resources New York, United States

    Department: Infrastructure Services · Staff Title: Security Engineer · Reports to: Director of IT · FLSA Status: Exempt · Working Conditions: Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only ( ...

  • Foursquare

    Security Engineer

    2 weeks ago


    Foursquare New York, United States

    About Foursquare · Foursquare is the leading independent location technology and data cloud platform, dedicated to building meaningful bridges between digital spaces and physical places. Our proprietary technology unlocks the most accurate, trustworthy location data in the worl ...

  • Betterment

    Security Engineer

    3 weeks ago


    Betterment New York, United States

    About Betterment · Betterment is a leading, technology-driven financial services company that offers investing and retirement solutions for retail investors and investment advisors as well as financial wellness solutions, including a 401(k) for small and medium-sized businesses. ...

  • Phyton Talent Advisors

    Security Engineer

    1 week ago


    Phyton Talent Advisors New York, United States

    Responsible for engineering and administrating Network and Security infrastructures. Ability to · Support large enterprise mission critical networks and develop new technology solutions. Provide · technical expertise in working with clients and other GS-IT groups on networks and ...

  • Datadog

    Security Engineer

    3 weeks ago


    Datadog New York, United States

    We are looking for a Security Engineer for the Software Integrity and Trust team to build systems that protect Datadog against various forms of supply-chain attacks. · You'll join at an ideal time to make a big impact: supply-chain attacks continue to be one of the fastest growin ...

  • X (formerly Twitter)

    Security Engineer

    3 weeks ago


    X (formerly Twitter) New York, United States

    Are you prepared to join the X team and help build the ultimate real-time information-sharing app, revolutionizing how people connect? At X, we're on a mission to become a trusted global digital public square, committed to minimal censorship within legal boundaries. Our goal is t ...