> Markdown version of [/jobs/ext/2866010-sr-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/2866010-sr-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr Information Security Engineer - **Company:** Baylor Genetics - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, User Authentication, Microsoft Azure, Cloud Computing Security, Cyber Security, Information Leak Prevention, Identity and Access Management, Intrusion Detection Systems, Network Security, Performance Tuning, Systems Development Life Cycle, Cloud Services, Zero Trust Network Access, Security Information and Event Management, Software Vulnerability Management, Cloud Platform System, Data Classification, In-Plane Switching (IPS), Firewalls (Computer Science), Information Technology, Microsoft Sentinel - **Published:** September 12, 2026 - **Apply:** https://www.dice.com/job-detail/21981b94-fb36-4cf1-a126-f38d5fb7c524 ## About the Role Required Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field - or an equivalent combination of education and experience. Minimum of 6-8 years of experience in information security engineering, security operations, or a related discipline. Hands-on expertise with SIEM/MDR and EDR platforms (e.g., CrowdStrike, Microsoft Sentinel) and security event monitoring, triage, and tuning. Strong knowledge of network security, firewalls, IDS/IPS, cryptography, authentication, and authorization principles. Experience with vulnerability management, penetration test remediation, incident response, and endpoint/OS hardening. Working knowledge of cloud security (Azure and/or AWS) and identity platforms (SSO, MFA, conditional access). Understanding of compliance frameworks and regulations relevant to healthcare data, including HIPAA, HITRUST, NIST, and GDPR. Excellent written and verbal communication skills, with the ability to convey complex security concepts to technical and non-technical stakeholders. Preferred Advanced certifications such as CISSP, CISM, GCIA, GCIH, or a cloud security specialty (e.g., Azure/AWS Security). Experience with privileged access management (PAM), SOAR, and Zero Trust architectures. Familiarity with data loss prevention (e.g., Microsoft Purview) and data classification programs. Prior experience in a healthcare, clinical laboratory, or other regulated (HIPAA/PHI) environment. COMPETENCIES Strong analytical and problem-solving skills with a risk-based, outcome-driven mindset. Sound judgment and composure when responding to security incidents under pressure. Collaborative, cross-functional approach with the ability to influence peers and mentor others. Self-directed, detail-oriented, and able to prioritize competing demands in a fast-moving environment. ## Description Baylor Genetics is seeking a Senior Information Security Engineer to serve as a senior technical leader within our Information Security team. As one of the nation's leading clinical genetic testing laboratories, we safeguard some of the most sensitive data that exists - patient genomic and health information - and this role is critical to protecting it. Reporting to the Director of Information Security, the Senior Information Security Engineer designs, implements, and operates the security controls that protect Baylor Genetics' systems, networks, endpoints, and cloud environments. This role leads key operational security initiatives - including managed detection and response (MDR/SIEM), privileged access management, vulnerability management, and Zero Trust - and provides technical mentorship to other engineers. Scope may evolve as organizational needs change. KEY RESPONSIBILITIES Lead and operate the organizational detection and response capabilities, including SIEM/MDR and EDR/XDR, and SOAR (e.g., CrowdStrike or Microsoft Sentinel), tuning detections with organization specific policies and response actions. Establish and mature a centralized, risk-based vulnerability management program with enforced patch SLAs, secure configuration baselines, and remediation of penetration test findings. Design and implement identity and access security controls, including Privileged Access Management (PAM), Just-in-Time (JIT) access, MFA, SSO, Conditional Access, and least-privilege . Advance the Zero Trust roadmap across identity, endpoints, networks, cloud, and data. Respond to and investigate security incidents end to end - detection, containment, investigation, and recovery - in line with the incident response playbook, and lead post-incident reviews. Implement and manage data protection controls for PHI/PII, including auto-classification and DLP (e.g., Microsoft Purview) across endpoints and cloud services. Collaborate with IT, Privacy, Compliance, and application teams to embed security best practices into system designs, cloud deployments, and the SDLC. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [ZEISS & Microsoft - Building the Next Generation Medical Ecosystem in the Cloud](https://www.wearedevelopers.com/videos/424-zeiss-microsoft-building-the-next-generation-medical-ecosystem-in-the-cloud) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)