Cyber Security Analyst - Medical Devices
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+4 more
Job description
Serves as lead for day-to-day operational specialist in the area of information security for healthcare technology management. Oversight of the medical device security framework for integration and supplemental support into Childrenās Medical Equipment Management plan. Job duties include supporting the technical aspects of Clinical Engineeringās new equipment, software upgrades, patching, password management, and and is to be the liaison with IS&T resources on such projects. The Sr. Healthcare Technology Cybersecurity Analyst also provides both technical and reporting guidance and support to team members as it relates to systems used for computerized maintenance management software. Additionally, they will partner with the IS&T security team on the collection and reporting of designated metrics and ensures that all identified medical devices are monitored for patching status, password management and vulnerability management. Understands multiple security platforms and layers, including vulnerability management, intrusion prevention systems, logging correlation/management, incident response, operating systems, protocols, and antivirus., * Develops capabilities necessary to monitor and detect indicators of compromise using security scripts, tools, and services. Ensures the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
- Assists and leads with the definition and implementation of countermeasures or mitigating controls to help monitor and detect indicators of compromise using security scripts, tools, and services.
- Works closely with the Biomedical Network Analyst, Information Security Analyst, Security Architect, Network infrastructure team, and business units to help implement security infrastructure and technical controls. Serves as an escalation point for complex and sensitive information security issues.
- Performs periodic and on-demand system audits and vulnerability assessments, including user accounts, application access, file system, and external web integrity scans to determine compliance.
- Performs detailed analysis of business need, identifies IT security impacts or considerations, and translates into secure, viable technical solutions. Develops project charters and objectives.
- Provides presentations regarding proposals, soliciting feedback, promoting buy-in.
- Maintains current knowledge of relevant technology as assigned. Provides system performance monitoring and troubleshooting.
- Prepares incident reports of analysis methodology and results. Works independently or as a lead on projects of medium to high complexity. Establishes and maintains project plans; adjusts for potential impacts to meet deadlines.
- Evaluates new equipment (both hardware and disposables) and new technology from a design, modification, and usage perspective.
- As part of a Vendor Quality Assurance effort, evaluates vendor competencies and examines product history as it relates to hardware and software.
- Assists in developing and implementing consistent policies and procedures which guide and support the goals and objectives of the department as it relates to information security.
- Advises and participates in āad hocā committees on medical equipment issues, as assigned.
- Assists with oversight of all healthcare technology hardware and software upgrades.
- Healthcare Technology Management: Maintains or oversees the integrity of IS&T related technical fields in existing CMMS platform, updates the operational security status of equipment in existing management platform, and monitors and communicates compliance with specifications, codes, and hospital standards.
Requirements
- Three years of experience in any combination of support and monitoring of security endpoints/servers, e.g., patch deployment/risk assessment/vulnerability scanners/security incident and event monitoring solutions/antivirus products, network security protocols and methodologies, information security and information technology controls, security penetration and vulnerability assessments, systems/network administration, * Five years of experience in computer operations, information security, and/or risk management
- Experience in a healthcare setting
- Experience specifically with Medical Equipment security and management, * Bachelorās degree in computer sciences, information technology, related field, or equivalent senior experience, * Solid knowledge of Health Insurance Portability and Accountability Act, Joint Commission, and other information technology security governing bodies
- Strong knowledge of accepted information systems and technology security regulations
- Demonstrated knowledge of generally known information technology platforms, standards, and software development language(s)
- Well-developed organizational, written communication, and analytical skills
- Must be able to function in a dynamic environment subject to impromptu changes in schedules and priorities
About the company
Childrenās is one of the nationās leading childrenās hospitals. No matter the role, every member of our team is an essential part of our mission to make kids better today and healthier tomorrow. Weāre committed to putting you first, and that commitment is at the heart of our company culture: People first. Children always. Find your next career opportunity and make a difference doing what you love at Childrenās.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role ā technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Best Paying Jobs in Technology
Walking Into The Era of Supply Chain Risks
Dev Digest 134 - Where pixels sing?