Information Security Architect - ENT -(T228715)
Description
Compensation :
Pay Range : $126,470 - $205,515 / year
Job Highlights :
A team of more than 400 professionals, Health System Information Services (HSIS) works to keep UAB Medicine’s IT systems and infrastructure running smoothly to deliver quality care to our patients. Join our nationally ranked team at UAB Medicine, the No. 1 Best Large Employer in 2021 as ranked by Forbes magazine.
UAB Medicine is Alabama’s largest single-site employer and operates over 1,200 beds and over 200 clinics in,Alabama. When you become part of UAB Medicine, you join a committed to education and advancing medical science through research.
Our success in patient care, innovation, and education is a direct result of our supportive and inclusive culture . Whether you are looking to start your career, fast-track your development, or diversify your skills, UAB Medicine offers avenues for advancement that other employers cannot match .
Duties
To independently employ a broad knowledge of principles, practices, and procedures in a particular field of specialization to plan, design, develop and support systems and projects. To conduct research and analysis and presents findings for review. To carry out complex assignments requiring the development of new or improved techniques and procedures. This position will commit to fostering an environment of heightened security following Information Technology Security Policies and participating in security training, such as Health Insurance Portability & Accountability Act (HIPAA) and Family Education Rights and Privacy Act (FERPA), on an annual basis.
Qualifications
Qualifications
Bachelor's degree in Information Systems or a related field and six (6) years of related experience required. Work experience may substitute for education requirement. Certified Information Systems Security Professional (CISSP) certification preferred.
PREFERRED SKILLS :
One of the following certifications preferred :
Experience with 1 or more of the items outlined below in a Healthcare setting preferred :
oWorking knowledge of TCP / IP, HTTP, SSL, SSH and other networking protocols
oManaging network security tools such as IPS, Firewall, SASE, etc….
oReviewing firewall requests to determine risk to organization
oManaging network configuration tools such as
oData protection policies
oCASB Administration
oBaseline Configuration (Conditional Access policies, NIST, CIS Benchmarks, Vendor best practices)
oSupport the development and execution of enterprise-wide Cloud security program
oManaging application security scanners (DAST, SAST)
oFamiliarity with software security frameworks (OWASP, NIST, BSIMM, OpenSAMM, etc…)
oExperience performing application security assessments that involve threat modeling and security testing
oPerforming technical risk assessments on new and existing systems in the environment
oProviding security configuration recommendations to network and infrastructure architects
oDeveloping security policies for cloud infrastructure
oAssisting with the implementation of a cybersecurity framework (NIST Cyber Security Framework, CIS top 20, etc.)
oMaintaining passive scanners to discover IoT and biomedical devices on the network
oReferencing MDS2 documents from vendors to determine risk
oProviding remediation plans for biomedical device vulnerabilities
Primary Location
: UAB Health System
Job Category
: Information Technology
Organization
: 702150000 Health System Information Services
Employee Status
: RegularShift : Day / 1st Shift
Security Architect • Birmingham, Alabama, US