Information Security Engineer

Clinical Reference Laboratory Inc
  • Lenexa, KS
  • $95,000–$180,000 Per Year
3 days ago

Job Description

GENERAL STATEMENT OF RESPONSIBILITY: Identify, implement and monitor security systems and processes for the protection of the computer systems, networks and data.

ESSENTIAL FUNCTIONS:

  • Coordinate and execute on IT security projects.
  • Identify and define system security requirements.
  • Assist with the development and documentation of Information Security standard operating procedures and policies ensuring best practices for the organization.
  • Develop strategies to respond to and recover from a security breach. Take a lead role in investigating security incidents, communicate information to management as quickly as possible to minimize risks and assist in root cause analysis.
  • Select, architect, operate and configure systems to protect data and information infrastructure, including firewalls, data encryption, network devices, Intrusion Prevention Systems, security appliances and software, etc.
  • Develop automated solutions for repeatable tasks.
  • Conduct periodic scans of the networks to identify vulnerabilities.
  • Conduct penetration testing to identity system weaknesses or process failures and help to remediate vulnerabilities.
  • Monitor the organizations networks and systems for security events.
  • Monitor computing environment and infrastructure logs, and network traffic for activities including but not limited to policy violations, abnormal behaviors, attacks, intrusions, best practice recommendations and security events.
  • Recommend and perform system hardening for OnPrem and Azure / AWS Cloud Environments.
  • Collaborate with internal resources to properly scope Identity and Access Management, configure roles and monitor for compliance.
  • Generate queries for correlation of logs and events using a SIEM solution.
  • Certificate and Key generation, issuance and management.
  • Assist with Data Classification within the environment and develop governance controls.
  • Assist in complying with SOC 2 Type 2 controls.
  • Help maintain high security standards within SDLC and CI/CD pipeline for development practices.
  • Develop strategy and coordination of disaster recovery and business continuity planning.
  • Maintain and protect the confidentiality of all CRL, CRL subsidiaries, legal entities and client information.
  • Comply with all applicable federal, state, and local safety and health regulations that would apply to this job.
  • Keep work area neat and clean.

Other duties as assigned.

JOB QUALIFICATIONS:

EDUCATION: Bachelor's Degree in Information Systems, Computer Science, Information Security or a related technical discipline, or the equivalent combination of education, professional training or work experience.

EXPERIENCE:

  • 8 years IT experience
  • 5 years of security specific experience with increasing responsibility
  • Qualifications to acquire CISSP (ISC2), GISCP (GIAC), GSLC (GIAC), or CSQE (ASQ) certification within 12 months of hire required.

SKILLS & ABILITIES:

  • Direct experience with anti-virus software, intrusion detection, firewalls and content filtering
  • Knowledge of risk assessment tools, technologies and methods
  • Experience designing secure networks, systems and application architectures
  • Knowledge of disaster recovery, computer forensic tools, technologies and methods
  • Experience in the development, deployment and maintenance of security policies, procedures, standards and strategies.
  • Professional experience in a system administration role supporting multiple platforms and applications
  • Ability to communicate network security issues to peers and management
  • Ability to read and use the results of mobile code, malicious code, and anti-virus software
  • Experience in Azure and/or AWS Cloud environments and associated security toolsets
  • Experience managing security appliances e.g. F5, Firewalls, and SIEM solutions.
  • Familiarity with IPS / IDS
  • Experience with Web Security Proxies and Data DLP Solutions
  • Experience creating queries with Splunk or other SIEM solution
  • Knowledge of configuration and integration MFA solutions
  • Working knowledge of Security Solutions.
  • Understanding of the Encryption Protocols and managing high strength ciphers
  • Working knowledge and understanding of SOC, ISO27001, or similar certification standards.
  • Some scripting / Coding experience preferred: Bash, PowerShell, Java, .NET, Python, AWS CLI
  • Ability to be at work and on time
  • Ability and judgment to interact and communicate appropriately with other employees, clients and management

PHYSICAL REQUIREMENTS: The physical demands described here are representative of those that must be met to successfully perform the essential functions of this job. Reasonable accommodations may be available to enable qualified individuals with disabilities to perform the essential functions.

The following physical attributes are required for this position:

  • Sitting for extended lengths of time
  • Close vision requirements due to computer work
  • Repetitive use of hands, fingers, wrists, and elbows for operating a computer and telephone
  • Light lifting, up to 10 pounds

EQUIPMENT: PC and communications equipment

OTHER: Overtime and weekend work as necessary according to workload and/or projects; occasional travel is required; this is an "on-call" position requiring the use of wireless phone for after-hours contact.

The employer shall, in its discretion, modify or adjust this position to meet the company's changing needs.

This job description is not a contract and may be adjusted as deemed appropriate in the employer's sole discretion.

  • denotes essential job function

An Equal Opportunity Employer

Pay Range: $95,000 - $180,000

Starting Pay Range: $95,000 - $115,000

Benefits for Full Time Employees:

  • Medical, Dental, Vision
  • Life/AD&D
  • Supplemental Life/AD&D
  • Section 125 FSA Plan
  • 401(k)
  • Short and Long-Term Disability
  • Paid Time Off
  • Holidays
  • Tuition Reimbursement

Numbers & Facts

LocationLenexa, KS
Salary$95,000–$180,000 Per Year

Skills

  • Accidental Death and Dismemberment (AD&D)unmatched
  • Accreditation Standardsunmatched
  • Amazon Web Services (AWS)unmatched
  • American Society for Quality (ASQ)unmatched
  • Anti-Virus Softwareunmatched
  • Bash Scriptingunmatched
  • Best Practicesunmatched
  • Business Continuity Planning (BCP)unmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • Computer Forensicsunmatched
  • Computer Networksunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Computer Systemsunmatched
  • Content Filtering Softwareunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Integrationunmatched
  • Cryptographic Protocolsunmatched
  • Cryptographyunmatched
  • Disaster Recoveryunmatched
  • Documentationunmatched
  • Environmental Monitoringunmatched
  • F5 Network Softwareunmatched
  • Firewallsunmatched
  • Flexible Spending Accountsunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • GSLC - GIAC Security Leadership Certificateunmatched
  • ISO (International Organization for Standardization)unmatched
  • Identity Data Managementunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • International Information Systems Security Certification Consortium (ISC)2unmatched
  • Internet Securityunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Prevention Systemsunmatched
  • Javaunmatched
  • Legalunmatched
  • Maintain Complianceunmatched
  • Malwareunmatched
  • Microsoft .NETunmatched
  • Microsoft Windows Azureunmatched
  • Multiplatform/Cross-Platformunmatched
  • Network Designunmatched
  • Network Monitoringunmatched
  • Network Securityunmatched
  • Network Systemsunmatched
  • Penetration Testingunmatched
  • Physical Demandsunmatched
  • Python Programming/Scripting Languageunmatched
  • Requirements Managementunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Root Cause Analysisunmatched
  • Scripting (Scripting Languages)unmatched
  • Section 125 Pre-Tax Planunmatched
  • Security Attacksunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Security Softwareunmatched
  • Software Development Lifecycle (SDLC)unmatched
  • Splunkunmatched
  • Standard Operating Procedures (SOP)unmatched
  • Standards Strategyunmatched
  • Strategic Planningunmatched
  • System Architectureunmatched
  • System Operationsunmatched
  • Systems Administration/Managementunmatched
  • Time Managementunmatched
  • Willing to Travelunmatched
  • Windows PowerShellunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder