Senior Security Engineer

3 Months ago • 3-5 Years • Cyber Security

Job Summary

Job Description

This is a Senior Security Engineer role leading the Cyber Incident Response Team (CIRT). You'll be responsible for detecting, analyzing, and mitigating security threats, ensuring timely and effective incident response. Must-have skills include experience with security engineering across various areas like network segmentation, firewalls, and cloud security.
Must have:
  • Security Engineering
  • Incident Response
  • Cybersecurity Analysis
  • Threat Hunting
Good to have:
  • Vulnerability Management
  • Risk Assessment
  • Cloud Security
  • ISO 27001
Perks:
  • Team Leadership
  • Professional Growth

Job Details

About the job

Summary:

The Sr Security Engineer/Lead Cyber Incident Response Team (CIRT) Member will play a critical role in managing and coordinating responses to cybersecurity incidents. This position is responsible for overseeing the detection, analysis, and mitigation of security threats, ensuring timely and effective incident response, and leading the organization's efforts to protect its assets from cyberattacks. The Sr Security Engineer acts as a point of contact during security events, liaises with other IT and security departments, and ensures proper procedures are followed to minimize damage and prevent future incidents.

Principal duties and responsibilities:

Incident Detection and Analysis:

  • Monitor security systems and event logs to detect potential security breaches.
  • Perform detailed analysis of security incidents to determine their scope, root cause, and impact.
  • Lead investigations into complex cybersecurity incidents, such as data breaches or advanced persistent threats (APTs).

Incident Response and Mitigation:

  • Coordinate the immediate response to security incidents, including containment, eradication, and recovery activities.
  • Lead incident response teams to quickly mitigate active threats and prevent further damage.
  • Ensure the deployment of countermeasures and corrective actions to safeguard the organization.

Communication and Reporting:

  • Act as the main point of contact during active incidents, communicating status updates to executives, IT teams, and relevant stakeholders.
  • Prepare detailed incident reports, outlining actions taken and lessons learned.
  • Provide briefings to senior management on incident findings, risks, and mitigations.

Team Leadership and Coordination:

  • Lead a team of cybersecurity analysts, providing guidance, mentorship, and oversight on incident response practices.
  • Collaborate with other IT and security departments to ensure a unified approach to incident handling and remediation.
  • Organize regular incident response drills and tabletop exercises to test and improve the team's readiness.

Post-Incident Analysis and Documentation:

  • Conduct post-incident reviews to evaluate the effectiveness of the response, identify any gaps, and recommend improvements.
  • Update and maintain incident response plans and playbooks based on new threats and lessons learned from past incidents.

Proactive Threat Hunting and Vulnerability Management:

  • Lead proactive threat hunting activities to identify weaknesses or potential attack vectors.
  • Work closely with vulnerability management teams to ensure prompt remediation of security vulnerabilities.

Required Qualification

  • Bachelor’s degree in computer science or related field plus 5 years related experience, OR Master’s degree plus 3 years related experience.
  • Confirmed experience related to hands on technical focus across many areas of security engineering (Ex: Network Segmentation, firewalls, secure remote access, cloud security, IAM, PAM, EDR, DLP etc.)
  • A proven track record in developing information security policies and procedures, and successful execution.
  • Extensive knowledge of business risk, risk assessment and risk-based decision making.
  • Able to communicate security and risk-related concepts to both technical and non-technical audiences (in business terms), including executive level.
  • Ability to inspire and motivate cross-functional, interdisciplinary teams to achieve tactical and strategic goals; an innovative leader, problem solver and consultant.
  • Ability to evangelize IT security to make it a critical part of business operations; build trust and respect for the security function.
  • Management experience with demonstrated deliveries in developing a team.
  • Excellent written and verbal communication, interpersonal and collaborative skills.
  • Experienced with contract and vendor negotiations.
  • Ability to effectively prioritize and execute tasks in high-pressure situations.
  • Knowledge of security, risk and control frameworks and standards such as ISO 27001 and 27002, NIST 800-53, HITRUST and FedRAMP.
  • Understanding of cloud, SaaS, and IoT architectures, and their implications on information security strategy.
  • Technical acumen including but not limited to: Security Engineering, IT infrastructure, cloud, application development languages, tools and frameworks, database technologies, web technologies, next gen mobile, network architecture, enterprise architecture, and directory services.
  • Security technology acumen and experience including but not limited to:
  • firewall, intrusion detection, cyber-attack tools and defenses, encryption,
  • certificate authority, web filtering, anti-malware, anti-phishing, identity and
  • access management, multi factor authentication.

SKILLS RELATED TO POSITION:

  • Cyber Security, AWS

GHX: It's the way you do business in healthcare

Global Healthcare Exchange (GHX) enables better patient care and billions in savings for the healthcare community by maximizing automation, efficiency and accuracy of business processes.

GHX is a healthcare business and data automation company, empowering healthcare organizations to enable better patient care and maximize industry savings using our world class cloud-based supply chain technology exchange platform, solutions, analytics and services. We bring together healthcare providers and manufacturers and distributors in North America and Europe - who rely on smart, secure healthcare-focused technology and comprehensive data to automate their business processes and make more informed decisions.

It is our passion and vision for a more operationally efficient healthcare supply chain, helping organizations reduce - not shift - the cost of doing business, paving the way to delivering patient care more effectively. Together we take more than a billion dollars out of the cost of delivering healthcare every year. GHX is privately owned, operates in the United States, Canada and Europe, and employs more than 1000 people worldwide. Our corporate headquarters is in Colorado, with additional offices in Europe.

Disclaimer

Global Healthcare Exchange, LLC and its North American subsidiaries (collectively, “GHX”) provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, national origin, sex, sexual orientation, gender identity, religion, age, genetic information, disability, veteran status or any other status protected by applicable law. All qualified applicants will receive consideration for employment without regard to any status protected by applicable law. This EEO policy applies to all terms, conditions, and privileges of employment, including hiring, training and development, promotion, transfer, compensation, benefits, educational assistance, termination, layoffs, social and recreational programs, and retirement.

GHX believes that employees should be provided with a working environment which enables each employee to be productive and to work to the best of his or her ability. We do not condone or tolerate an atmosphere of intimidation or harassment based on race, color, national origin, sex, sexual orientation, gender identity, religion, age, genetic information, disability, veteran status or any other status protected by applicable law. GHX expects and requires the cooperation of all employees in maintaining a discrimination and harassment-free atmosphere. Improper interference with the ability of GHX’s employees to perform their expected job duties is absolutely not tolerated.

Similar Jobs

Flutter International - Security Engineer III

Flutter International

Bengaluru, Karnataka, India (On-Site)
3 Months ago
ION - Markets Governance, Risk and Controls Manager

ION

India (On-Site)
4 Months ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Hillsboro, Oregon, United States (On-Site)
2 Months ago
Microsoft - Software Engineer II/Senior Software Engineer - CTJ - POLY

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
Axinous - Senior Sales Engineer - Alberta or British Columbia

Axinous

Canada (Remote)
1 Week ago
Rockstar Games - Lead Product Manager, Security

Rockstar Games

Carlsbad, California, United States (On-Site)
2 Months ago
ION - Cyber Product Owner, Italy

ION

Italy (Hybrid)
4 Months ago
Infoblox - Enterprise Technical Support Engineer

Infoblox

Thiruvananthapuram, Kerala, India (On-Site)
3 Months ago
Saviynt - Senior Principal Software Engineer - Privileged Access Management (PAM)

Saviynt

El Segundo, California, United States (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Axinous - Director, Partner & Alliances - Public Sector

Axinous

Washington, District Of Columbia, United States (Remote)
1 Month ago
Axinous - Tax Manager - US

Axinous

Hyderabad, Telangana, India (Remote)
1 Week ago
Bounteous - Manager Cloud Infrastructure Engineering - BOT

Bounteous

India (Remote)
3 Months ago
Second Dinner - Principal Software Engineer, Platform Services

Second Dinner

United States (Remote)
3 Weeks ago
King - Gaming Cloud Security Engineer

King

(Remote)
1 Week ago
Microsoft - Software Engineer 2 - Cloud and Enterprise Security

Microsoft

Hyderabad, Telangana, India (On-Site)
2 Weeks ago
Axinous - Manager, Customer Success

Axinous

United Arab Emirates (Remote)
1 Week ago
Axinous - Account Executive

Axinous

Finland (Remote)
4 Weeks ago
Luxoft - Orchestrade - Azure infrastructure cloud Senior engineer

Luxoft

Poland, Ohio, United States (Remote)
2 Months ago
Animoca Brands - Security Operations Engineer

Animoca Brands

Hong Kong (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Hyderabad, Telangana, India

Coinbase - Senior Data Scientist

Coinbase

Hyderabad, Telangana, India (Remote)
4 Months ago
Swiss Re - Technical Writer

Swiss Re

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Workspend  Inc  - MSP Program Coordinator

Workspend Inc

Hyderabad, Telangana, India (On-Site)
4 Months ago
Postman - Engineeering manager

Postman

Karnataka, India (On-Site)
4 Months ago
CleverTap - Senior Manager - Email Marketing

CleverTap

Mumbai, Maharashtra, India (On-Site)
4 Months ago
Zeta - Implementation Analyst II

Zeta

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - AES SAP Security Manager - Operate

PwC

Hyderabad, Telangana, India (On-Site)
4 Months ago
Smytten - SDE II - IOS Developer

Smytten

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Silly Science - Illustrator Intern - 5,000/month

Silly Science

India (Remote)
4 Months ago
Granicus - Site Reliability Engineer 1

Granicus

Bengaluru, Karnataka, India (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Interactive Brokers - Senior Cloud Security Engineer

Interactive Brokers

Greenwich, Connecticut, United States (Hybrid)
4 Months ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Santa Clara, California, United States (Hybrid)
2 Months ago
ByteDance - Senior Software Engineer, Anti-DDoS

ByteDance

Singapore (On-Site)
3 Weeks ago
Marvell India - Security Vulnerability Management Professional

Marvell India

Hyderabad, Telangana, India (On-Site)
4 Months ago
PwC - IT Associate - Jordan

PwC

Amman, Amman Governorate, Jordan (On-Site)
4 Months ago
SmileGate - Security Threat and Incident Analysis Specialist

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
5 Days ago
Virtuos - IT Security Operation Specialist

Virtuos

Ukraine (Hybrid)
1 Month ago
Trek - IT Security Operations Analyst

Trek

Haryana, India (On-Site)
2 Months ago
Unity - Senior Security Operations Engineer

Unity

Montreal, Quebec, Canada (On-Site)
1 Month ago
ByteDance - Security Engineer - Application/Product Security, APAC

ByteDance

Singapore (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded