Information Technology Security Engineer

Widescope Consulting and Contracting Services
United States
18 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Microsoft Azure Cloud Computing Cyber Security Information Leak Prevention Information Management Information Security Management Software Engineering Symantec Endpoint Protection Firewalls (Computer Science) Tanium Platform Expertise Information Technology

Job description

The Senior Information Technology Security Engineer is responsible for serving as a Subject Matter Expert (SME) for cybersecurity across Optum Serve. This role will work as part of the security team to implement new technology solutions and ensure alignment with Enterprise Information Security (EIS) standards. The selected candidate will work to standardize the security controls to safeguard networks and systems.

Responsibilities include ensuring all information security needs are implemented promptly, requiring collaboration with the Infrastructure and Operations team, ESRO, and Optum Serve Information Security team. This role ensures alignment with ESRO standards and government frameworks, such as NIST 800-53, NIST 800-171, to obtain and maintain ATO and CMMC Level 2 certification. The candidate will manage security controls to safeguard Optum Serve’s networks and systems.

Optum Serve helps federal agencies and communities across the nation tackle some of the biggest challenges in health care. We help our clients and the communities they serve prevent, prepare for, respond to, and recover from emergencies and long-term public health challenges.

Essential Functions Include

  • Serves as a Subject Matter Expert (SME) for security tool sets

  • Work with Optum security teams to implement new software, policy configurations & settings

  • Evaluate and recommend security controls and tooling for on-premises and cloud infrastructure

  • Develop innovative approaches and solves complex problems

  • Liaise with Business and IT Groups in the security analysis, design and planning phases of IT and business-related projects

  • Create and maintain new and existing playbooks/runbooks, work with multifunctional team members to maintain high-quality work standards

  • Evaluate vulnerabilities that exist and make recommendations for remediation

  • Ensure day-to-day operational tasks are performed and security metrics are relevant and current

  • Maintain expertise in the area of Information Security, including industry trends, strategies, vulnerabilities and threats to ensure the company’s assets are effectively and appropriately secured

  • Participate in security incident response processes on a per-occurrence basis

  • Availability off hours as needed to support incidents

Requirements

  • Experience leveraging AI tools in the software development (or product) lifecycle in order to improve quality and efficiency

  • Five plus (5+) years of information security experience; including three (3) years of FISMA related experience.

  • Three (3) years of experience with Assessment and Authorization (A&A) and Independent Verification & Validation (IV&V)

  • Experience with federal cyber security standards (such as NIST 800-53, NIST 800-171)

  • Experience with certification and accreditation process (DIACAP, NIST RMF)

  • Possess at least one of the following certifications: CISSP, CISM, CISA, CCSP or other relevant security certifications

  • Network/application/system vulnerability and threat management experience

*

  • Ability to obtain favorable adjudication following submission of Department of Defense

Preferences:

  • Bachelor’’s degree in Computer Science, Information Management, related field, OR 4+ years of information security experience

  • Work experience supporting federal security programs (DoD, VA, DHS preferred)

  • Prior military service

  • Tanium security platform administration

  • Tenable administration

  • Experience with Symantec Endpoint Protection

  • Experience with Azure Government

  • Experience working in a large enterprise

  • Experience working with Palo Alto Firewalls

  • Experience with data loss prevention (DLP) and endpoint detection and response (EDR) systems

  • Demonstrated written executive communication and presentation skills

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all