Search jobs > New York, NY > Security engineer

Security Engineer

MedReview Inc.
New York, NY, United States
Full-time

Working Conditions : Full-time (M-F), Office Business Settings. This is an On-Premises position. Monday through Thursday (9-5) and remote on Fridays only .

Position Summary The Security Engineer is responsible for securing maintaining and monitoring MedReview’s enterprise infrastructure and networking security.

The role is tasked with detecting vulnerabilities, planning with departments for deployment, and remediating vulnerabilities within the infrastructure.

The Security Information Engineer is also tasked with deploying best practices for securing information as well as platforms in the infrastructure.

Job Responsibilities : This list does not represent all responsibilities for this position. Candidates must be willing and able to assume roles and responsibilities other than these to meet the needs of the organization.

  • Manage IT Security operations
  • Vulnerability detection through scanning platforms (Rapid7)
  • Implementation and planning with business and engineering team of found vulnerabilities
  • Remediation of vulnerabilities through multiple vectors (WSUS, GPO)
  • Antivirus policy creation, reporting, and remediation on malicious files (SentinelOne)
  • Plan for GPO policy upgrades to secure business operations (Active Directory)
  • Audit and remediation of access permissions for NFS / NTFS systems (Shared folders)
  • Adhere to best practices of securing currently used applications and platforms (MFA, Certificate)
  • Coordinate with staff for deployment of remediation’s with urgent vulnerabilities (Emergency Remediation, I.E WannaCry)
  • Participate in internal and external audits (HiTrust)
  • Maintain or create policies, procedures, and other documentation when necessary
  • Find security gaps within the infrastructure
  • Development and Documentation of Security Practices
  • Lead and execute projects for security

Required Experience :

  • Four-year degree or higher in Information Systems or Security, or related field or equivalent combination of work
  • Very strong Hands-on experience (Required 5+ years) of computer related security experience in a technical role within Information Technology
  • Previous engineering experience preferred
  • Working knowledge of various Identity and Access management systems a plus
  • CISSP, CISM, CISA, CCSP, ITIL, Security + or other related certification preferred
  • Advanced understanding of infrastructure. Active Directory, Exchange, Windows desktop / server OS, VMware, storage systems, DNS, firewalls
  • Advanced understanding of protocols. WMI, SNMP, TLS, SSL, SMB, Cypher Suites
  • Advanced understanding of securing systems and platforms through device / policy hardening
  • Understanding of SSL Certificates
  • Ability to communicate technical information in a clear manner, both written and verbally, to end users
  • Proficient knowledge of MS Outlook, Word, Excel, Visio and PowerPoint
  • Experience with HIPAA, HITRUST, HITECH, PCI, ISO 27001, ISO 27002, URAC regulations and awareness and / or experience with CMS, NIST and other healthcare industry related regulations
  • Availability to work nights and weekends during (un)planned outages and other special circumstances, with 24 / 7 accountability.
  • Availability to enter on call rotation
  • Ability to lift 50 lbs.

Benefits and perks include :

  • Healthcare that fits your needs - We offer excellent medical, dental, and vision plan options that provide coverage to employees and dependents.
  • 401(k) with Employer Match - Join the team and we will invest in your future
  • Generous Paid Time Off - Accrued PTO starting day one, plus additional days off when you’re not feeling well, to observe holidays.
  • Wellness - We care about your well-being. From Commuter Benefits to FSAs we’ve got you covered.
  • Learning & Development - Through continued education / mentorship on the job and our investment in LinkedIn Learning, we’re focused on your growth as a working professional.

Salary 125k-145k

30+ days ago
Related jobs
ADVANTIS Global Inc.
New York, New York

Understanding of best practices & fundamentals for security engineering including secure development, cloud security, application security. The Security Engineer will support programs that deliver new and innovative approaches to securing access management on a massive scale. You will collaborate di...

Point72
New York, New York

Implement and manage security testing tools and processes within the CI/CD pipeline, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and open source security (OSS). Stay abreast of emerging security threats, vuln...

Jane Street
New York, New York

We are looking for an experienced Network Automation Engineer to help our Network Security team run, scale, and continuously improve our network security infrastructure through hands-on operations, testing, and automation. You should have advanced programming skills, strong networking fundamentals, ...

SMBC Group
New York, New York

The Security Engineering role is part of a team responsible for administering security projects designed to safeguard the bank's information systems. The Engineer focuses on defining and documenting projects, creating and executing project plans, engaging in project cost management, resource managem...

Amazon.com Services LLC
New York, New York

As a Senior Security Engineer on our team, you will solve interesting security challenges that arise when Amazon invents new technologies. We strive to reduce manual security testing efforts through automation across all web and API application portfolio and inject continuous non-disruptive security...

Glocomms
New York, New York

You have extensive experience building cloud-native security architectures, particularly on GCP, with proven expertise in AWS security services (IAM, KMS, Security Hub, GuardDuty). Collaborate closely with core engineering, DevOps, and infrastructure teams to embed security best practices into every...

DApp360 Workforce LLC
New York, New York
Remote

A Dex is looking for an Application Security Engineer. Own application security review as well as security guidance documentation. Experience in web security, mobile security, or cryptography. You’ll collaborate with engineers from many disciplines to design and implement secure and usable...

HireTalent
New York, New York

A strong multi-tasker with a keen eye for detail, a successful Information Security Engineer should be familiar with common security exploits/vulnerabilities & their remediation. Information Security Engineers help plan and carry out an organization’s information security strategy. If a breach has o...

ACV Auctions
New York, New York

Manage Security Alerts and provide Incident Response support services, it's not expected someone knows everything but this person should be able to identify and perform triage to resolve a Security Incident. Identify required attributes, customizing login pages and implement security policies. Devel...

CVS Health
New York, New York
Remote

The Staff Security Engineer of IAM will be a product owner and lead engineer within Identity Access Management (IAM) space for CVS Health. This position will include leading multiple projects simultaneously and hands-on engineering of IAM solutions. Operating within DevOps and Agile frameworks as pa...