Principal Cybersecurity Engineer & Security Auditor
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+18 more
Job description
We are seeking a Principal Cybersecurity Engineer & Security Auditor to lead technical security engineering and independent auditing for a complex healthcare organization environment. This role combines hands-on offensive and defensive capabilities with compliance and risk management responsibilities driving security architecture, executing technical assessments, operating and tuning security platforms, and ensuring HIPAA and clinical system protections. The objective is to reduce risk, detect and respond to threats (including ransomware and malicious remote access), and enable secure delivery of clinical and business services across enterprise systems., * Lead and execute hands-on technical security assessments, penetration tests, red team activities, and vulnerability validation across complex enterprise and clinical environments.
- Design, implement, and optimize security architecture and controls for network, endpoints, identity, cloud, and clinical systems (PACS, RIS, VNA, DICOM, HL7).
- Perform independent security audits and compliance assessments focused on HIPAA and healthcare-specific regulations; prepare audit evidence and remediation roadmaps.
- Administer and tune Fortinet FortiGate devices and centralized management/analytics (FortiManager, FortiAnalyzer) to enforce network segmentation, IDS/IPS, and VPN security.
- Deploy, configure and tune Microsoft Defender for Endpoint, Azure AD identity protections, and Azure Sentinel (or equivalent SIEM) for detection, hunting, and automated response.
- Develop and execute ransomware resilience programs including detection rules, backup validation, IR playbooks, containment strategies, and tabletop exercises.
- Investigate security incidents and lead forensic analysis and remediation planning to remove adversary persistence and restore secure operations.
- Evaluate, harden, and secure clinical imaging and information systems (PACS, RIS, VNA) and their interfaces (DICOM, HL7) to maintain patient safety and data confidentiality.
- Perform risk assessments (including CRQ/Risk Register updates), third-party security reviews, and vendor security management.
- Create clear, actionable audit reports, technical findings, and executive-level briefings; track remediation and verify closure.
- Mentor and coach engineering and security teams; drive security best practices, secure development guidance, and cross-functional collaboration.
- Contribute to security policy, standards, and architecture documentation while staying current with threat trends, tools, and healthcare cybersecurity guidance.
Requirements
- Bachelors degree in Computer Science, Information Security, or a related field, or equivalent experience; advanced degree preferred.
- 10+ years of progressive cybersecurity experience with substantial hands-on engineering and assessment work in enterprise environments; experience in healthcare or HealthTech strongly preferred.
- Demonstrated experience conducting technical security assessments, penetration tests, and red/blue team exercises in complex environments.
- Strong hands-on experience with Fortinet FortiGate, FortiManager, and FortiAnalyzer administration and policy management.
- Practical experience deploying and tuning Microsoft Defender for Endpoint, identity protection (Azure AD), and Sentinel or equivalent SIEM for threat detection and response.
- Proven incident response, digital forensics, and ransomware mitigation experience including playbook creation and tabletop leadership.
- Familiarity with clinical systems and protocols including PACS, RIS, VNA, DICOM, and HL7 and understanding of their security and patient-safety implications.
- Deep knowledge of HIPAA requirements, healthcare compliance, and experience performing HIPAA readiness assessments and audits.
- Relevant professional certifications such as HCISPP, OSCP, CRISC, and GIAC certifications are highly desirable and demonstrate required technical and governance skills.
- Strong networking, scripting, and systems skills (TCP/IP, routing/switching, Linux, Windows, cloud platforms, automation with PowerShell/Python).
- Excellent written and verbal communication skills with ability to produce audit reports and present technical findings to executive leadership.
- Proven ability to lead cross-functional teams, manage remediation projects, and influence security outcomes across a large organization.
Benefits & conditions
Base salary: $160,000 - $200,000 DOE *
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Dev Digest 134 - Where pixels sing?
Understanding and Mitigating Common Web Vulnerabilities