Sr Info Security Engineer

TriWest Healthcare Alliance
Topeka, KS, United States
3 days ago
Apply on www.disabledperson.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$134,000.0 - $144,000.0
Working hours
Regular working hours

Tech stack

Microsoft Word Software Applications Software System Penetration Testing Public-Key Cryptography User Authentication Microsoft Azure Microsoft Outlook Cyber Security Computer Literacy Data Security Digital Assets Digital Signature
+24 more
Cryptographic Protocols Federal Information Processing Standards (FIPS) Information Management Networking Hardware Intrusion Detection and Prevention Virtual Private Networks (VPN) Local Area Networks Microsoft Servers Reverse Proxy Syslog Traffic Analysis Wide Area Networks Network Routers Scripting Data Classification Cyberark Test Scripts Firewalls (Computer Science) Information Technology Cybercrime SailPoint Firewall Services Module Servicenow Vulnerability Analysis

Job description

Senior Information Security Engineers play a crucial role in safeguarding an organization’s digital assets. The responsibilities include designing and implementing security measures to protect systems, networks, and data from cyber threats. Conduct risk assessments, vulnerability analyses, and penetration testing to identify and mitigate potential security risks. Professionals are skilled in areas such as encryption technologies, network security protocols, and incident response. Validate compliance with security standards and regulations for a secure IT environment. Advanced proficiency in network and cybersecurity infrastructure, experience in LAN, WAN, and VPN design, as well as the deployment and management of firewalls, routers, and endpoint protection solutions., * Evaluates and implements security controls to meet or exceed the Federal Information Security Management Act (FISMA), the National Institute of Standards and Technology (NIST) and the Federal Information Processing Standards (FIPS) in “high” information classification boundary.

  • Implements Information Security Technology, Physical Security Controls and Federal data security requirements.
  • Proactively plans security systems by evaluating network and security technologies; develops requirements for local area networks (LANs), wide area networks (WANs), virtual private networks (VPNs), routers, firewalls, and related security, network devices and workstations; designs public key infrastructures (PKIs), including use of certification authorities (CAs) and digital signatures as well as hardware and software; adhering to federal and industry standards.
  • Plans delivery of solutions; answers technical and procedural questions from less experienced team members; teaches improvement processes; mentors team members and provides security technical leadership to other Information Security and Information Technology team members.

  • Determines security requirements by evaluating business strategies and requirements; researches information security standards; conducts system security and vulnerability analyses and risk assessments; studies architecture/platform; identifies integration issues; prepares cost estimates for review by Manager, Information Systems Security.
  • Verifies security control compliance by developing, implementing and maintaining test scripts.
  • Maintains security by monitoring and ensuring compliance to standards, policies, and procedures; conducts incident response analyses; in collaboration with Training department, develops and conducts security education and training programs.
  • Upgrades security systems by monitoring security environment; identifies security gaps; evaluates and implements enhancements.
  • Prepares system security reports by collecting, analyzing, and summarizing data and trends.
  • Tracks and understands emerging security practices and standards; participates in educational opportunities; reads professional publications; maintains personal networks; participates in professional organizations.
  • Authors security system and application processes for both operation and management, including as-build service configuration documents.

  • Performs detailed and routine assessment to ensure use of established security policies, practices and expectations across all platforms, operating systems and applications.
  • Drafts and recommend changes to Security Policy, Procedures, Standards and Guidelines to meet or exceed corporate or contractual security requirements.
  • Conducts network/system forensics and traffic analysis using protocol and intrusion detection analyzers.
  • Accepts ownership for accomplishing new and different requests; explores opportunities to add value to job accomplishments.
  • Performs other duties as assigned.
  • Regular and reliable attendance and on call availability are required.

Requirements

  • High School Diploma or GED
  • U.S. Citizenship
  • Must be able to receive a favorable Interim and adjudicated final Department of Defense (DoD) background investigation
  • 7-10 years of directly related experience in information technology; 5 of which must be in information security programs to include the development, implementation and administration of information security controls, solutions and programs
  • Microsoft Azure environment
  • DoD 8570/8140 advanced certification, DoD approved equivalents or higher

Preferred:

  • Bachelor’s Degree in Computer Science, Computer Information Systems, or Business
  • Experience in a role that has lead security operations, security tools and solutions, secure applications and networking in the implementation of NIST and Security Best Practices to meet or exceed compliance with the FISMA Moderate/High requirements
  • Prior experience in healthcare, insurance, or government contracting environments
  • Experience with one of the following: ServiceNow GRC, CyberArk, SailPoint, MathCraft, Purview, or CrowdStrike suite
  • Python Scripting, Communication / People Skills: Ability to influence or persuade others under positive or negative circumstances; adapt to different styles; listen critically; collaborate.

Computer Literacy: Ability to function in a multi-system Microsoft environment using Word, Outlook, TriWest Intranet, the Internet, and department software applications.

Coping / Flexibility: Resiliency in adapting to a variety of situations and individuals while maintaining a sense of purpose and mature problem-solving approach is required.

Creativity / Innovation: Ability to develop unique and novel solutions to problems; view change as a necessity.

Empathy / Customer Service: Customer-focused behavior; helping approach, including listening skills, patience, respect, and empathy for another’s position.

Information Management: Ability to manage large amounts of complex information easily, communicate clearly, and draw sound conclusions.

High Intensity Environment: Ability to function in a fast-paced environment with multiple activities occurring simultaneously while maintaining focus and control of workflow.

Multi-Tasking / Time Management: Prioritize and manage actions to meet changing deadlines and requirements within a high volume, high stress environment.

Problem Solving / Analysis: Ability to solve problems through systematic analysis of processes with sound judgment; has a realistic understanding of relevant issues.

Technical Skills: Conceptual and intimate knowledge of all information security tools, i.e., intrusion prevention, vulnerability scanning, syslog, firewall policies, reverse proxy, authentication.

Benefits & conditions

  • Limited infrequent travel may be required to TriWest remote locations to present security awareness material or to assess information security posture
  • Act as a primary point of contact for all information security related incidents requiring consultation or response, 24 hour accessibility
  • Provide high level of customer service to employees, business leadership and IT
  • Work in a cubed office environment with multiple computers and monitors
  • Heavy computer usage and documentation review
  • Extensive computer work with prolonged sitting, We’re more than just a health care company. We’re passionate about serving others! We believe in rewarding loyal, hard-working people who are willing to learn as they grow. TriWest Healthcare Alliance values teamwork. Join our team, fulfill your responsibilities, and you may also be considered for frequent pay raises, overtime opportunities to earn even more, recognition and reward programs, and much more. Of course, we also offer a comprehensive and progressive compensation and benefits package that includes:
  • Medical, Dental and Vision Coverage
  • Paid time off
  • 401(k) Retirement Savings Plan (with matching)
  • Short-term and long-term disability, basic life, and accidental death and dismemberment insurance
  • Tuition reimbursement
  • Paid volunteer time

TriWest job postings typically include a salary range, which can vary based on the specific role and location, but generally this position ranges from around $134,000 - $144,000 per year.

About the company

Taking Care of Our Nation’s Heroes.

It’s Who We Are. It’s What We Do.

Do you have a passion for serving those who served?

Join the TriWest Healthcare Alliance Team! We’re On a Mission to Serve®!

Our job is to make sure that America’s heroes get connected to health care in the community.

At TriWest Healthcare Alliance, we’ve proudly been on that important mission since 1996.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.disabledperson.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

46 sec

Automating telemetry collection through robust Telegraf deployment

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:30 min

Discovering and instrumenting services using systemd process enumeration

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

4:11 min

Building a unified stack leveraging core open source tools

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all