Principal Cybersecurity Engineer & Security Auditor

ASGN Incorporated
Phoenix, AZ, United States
8 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$160,000.0 - $200,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Software System Penetration Testing Microsoft Azure Cloud Computing Cyber Security Information Systems Linux Dicom Digital Forensics Identity and Access Management Intrusion Detection Systems Virtual Private Networks (VPN)
+18 more
Python (Programming Language) Routing Network Segmentation Performance Tuning Windows PowerShell Remote Access Technology Azure Active Directory Red Team (Cyber Security) Security Information and Event Management TCP/IP Scripting Computer Networking Systems Malware Azure Security Center Information Technology Health Level Seven International Fortinet Blue Team (Cyber Security)

Job description

We are seeking a Principal Cybersecurity Engineer & Security Auditor to lead technical security engineering and independent auditing for a complex healthcare organization environment. This role combines hands-on offensive and defensive capabilities with compliance and risk management responsibilities driving security architecture, executing technical assessments, operating and tuning security platforms, and ensuring HIPAA and clinical system protections. The objective is to reduce risk, detect and respond to threats (including ransomware and malicious remote access), and enable secure delivery of clinical and business services across enterprise systems., * Lead and execute hands-on technical security assessments, penetration tests, red team activities, and vulnerability validation across complex enterprise and clinical environments.

  • Design, implement, and optimize security architecture and controls for network, endpoints, identity, cloud, and clinical systems (PACS, RIS, VNA, DICOM, HL7).
  • Perform independent security audits and compliance assessments focused on HIPAA and healthcare-specific regulations; prepare audit evidence and remediation roadmaps.
  • Administer and tune Fortinet FortiGate devices and centralized management/analytics (FortiManager, FortiAnalyzer) to enforce network segmentation, IDS/IPS, and VPN security.
  • Deploy, configure and tune Microsoft Defender for Endpoint, Azure AD identity protections, and Azure Sentinel (or equivalent SIEM) for detection, hunting, and automated response.
  • Develop and execute ransomware resilience programs including detection rules, backup validation, IR playbooks, containment strategies, and tabletop exercises.
  • Investigate security incidents and lead forensic analysis and remediation planning to remove adversary persistence and restore secure operations.
  • Evaluate, harden, and secure clinical imaging and information systems (PACS, RIS, VNA) and their interfaces (DICOM, HL7) to maintain patient safety and data confidentiality.
  • Perform risk assessments (including CRQ/Risk Register updates), third-party security reviews, and vendor security management.
  • Create clear, actionable audit reports, technical findings, and executive-level briefings; track remediation and verify closure.
  • Mentor and coach engineering and security teams; drive security best practices, secure development guidance, and cross-functional collaboration.
  • Contribute to security policy, standards, and architecture documentation while staying current with threat trends, tools, and healthcare cybersecurity guidance.

Requirements

  • Bachelors degree in Computer Science, Information Security, or a related field, or equivalent experience; advanced degree preferred.
  • 10+ years of progressive cybersecurity experience with substantial hands-on engineering and assessment work in enterprise environments; experience in healthcare or HealthTech strongly preferred.
  • Demonstrated experience conducting technical security assessments, penetration tests, and red/blue team exercises in complex environments.
  • Strong hands-on experience with Fortinet FortiGate, FortiManager, and FortiAnalyzer administration and policy management.
  • Practical experience deploying and tuning Microsoft Defender for Endpoint, identity protection (Azure AD), and Sentinel or equivalent SIEM for threat detection and response.
  • Proven incident response, digital forensics, and ransomware mitigation experience including playbook creation and tabletop leadership.
  • Familiarity with clinical systems and protocols including PACS, RIS, VNA, DICOM, and HL7 and understanding of their security and patient-safety implications.
  • Deep knowledge of HIPAA requirements, healthcare compliance, and experience performing HIPAA readiness assessments and audits.
  • Relevant professional certifications such as HCISPP, OSCP, CRISC, and GIAC certifications are highly desirable and demonstrate required technical and governance skills.
  • Strong networking, scripting, and systems skills (TCP/IP, routing/switching, Linux, Windows, cloud platforms, automation with PowerShell/Python).
  • Excellent written and verbal communication skills with ability to produce audit reports and present technical findings to executive leadership.
  • Proven ability to lead cross-functional teams, manage remediation projects, and influence security outcomes across a large organization.

Benefits & conditions

Base salary: $160,000 - $200,000 DOE *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

3:30 min

Scaling agile frameworks and data interoperability in healthcare

Leo Lindhorst · WWC 2022

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all