Cybersecurity Engineer
Remote - New York, United States
We’re a physician-led, patient-centric network committed to simplifying health care and bringing a more connected kind of care.
Our primary, multispecialty, and urgent care providers serve millions of patients in traditional practices, patients' homes and virtually through VillageMD and our operating companies Village Medical, Village Medical at Home, Summit Health, CityMD, and Starling Physicians.
When you join our team, you become part of a compassionate community of people who work hard every day to make health care better for all. We are innovating value-based care and leveraging integrated applications, population insights and staffing expertise to ensure all patients have access to high-quality, connected care services that provide better outcomes at a reduced total cost of care.
Please Note: We will only contact candidates regarding your applications from one of the following domains: @summithealth.com, @citymd.net, @villagemd.com, @villagemedical.com, @westmedgroup.com, @starlingphysicians.com, or @bmctotalcare.com.
Job DescriptionAs a Cybersecurity Engineer at VillageMD you will play an invaluable role in defending our organization by creating, implementing, and monitoring security controls that keep our patients and employees’ data safe. You will be exposed to new technologies from leading vendors and challenged with their implementation and operational management.
Core Responsibilities
- Participate in our vulnerability management program, collaborating with peers on effective deployment of hardening benchmarks and vulnerability identification.
- Work across business and IT teams to define security requirements, identify and address security gaps with appropriate control solutions.
- Work closely with peers in network security, vulnerability management, email / messaging hygiene.
- Implement, and manage secure network architectures, ensuring segmentation and zero-trust principles.
- Collaborate with security operations and incident response teams to help analyze, contain, and coordinate elements of security incidents.
Experience and Qualifications
- Excellent understanding of common cybersecurity organizational practices, operations risk management processes, architectural requirements, and vulnerability risk.
- Familiarity with network security best practices and common network security control platforms (Cisco, Palo Alto, Checkpoint etc.)
- Familiarity with / exposure to leading security solutions in endpoint, network, zero-trust, messaging, data protection, vulnerability management, cloud security realms.
- Deep understanding of hybrid cloud environments, including both on-premises and cloud server, storage, and networking technologies.
- Knowledge of zero trust principles and experience implementing network segmentation strategies in hybrid cloud environments.
- Experience with systems administration, IT infrastructure, and network management.
- Familiarity with governing security and regulatory frameworks. (PCI, ISO 27000 series, NIST 800-53, HIPAA, HITRUST)
Personal Traits
- Results oriented with proven ability to mobilize and energize large, complex cross-functional teams to drive down vulnerability risk.
- Able to self-start and complete projects and perform daily tasks w/minimal supervision.
- Capable of working under pressure in a continually changing fast-paced environment.
- Ability to effectively collaborate with stakeholders across a large enterprise environment.
- Strong written and verbal communication skills.
- Strong analytical and problem-solving skills.
Preferred Skills / Experience / Certifications:
- Experience with M&A / multi-organizational environments.
- Operating experience in a large organization (10,000+ employees)
- Comptia Security+, Network+
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- Zero Trust platform integrations.
This is an exempt position. The base compensation range for this role is $101,700 - $127,400. At VillageMD, compensation is based on several factors including but not limited to education, work experience, certifications, location, etc. The selected candidate will be eligible for a valuable company benefits plan, including health insurance, dental insurance, life insurance, and access to a 401k plan.
About Our CommitmentTotal Rewards at VillageMD
Our team members are essential to our mission to reshape healthcare through the power of connection. VillageMD highly values the critical role that health and wellness play in the lives of our team members and their families. Participation in VillageMD’s benefit platform includes Medical, Dental, Life, Disability, Vision, FSA coverages and a 401k savings plan.
Equal Opportunity Employer
Our Company provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to, and does not discriminate on the basis of, race, color, religion, creed, gender/sex, sexual orientation, gender identity and expression (including transgender status), national origin, ancestry, citizenship status, age, disability, genetic information, marital status, pregnancy, military status, veteran status, or any other characteristic protected by applicable federal, state, and local laws.
Safety Disclaimer
Our Company cares about the safety of our employees and applicants. Our Company does not use chat rooms for job searches or communications. Our Company will never request personal information via informal chat platforms or unsecure email. Our Company will never ask for money or an exchange of money, banking or other personal information prior to the in-person interview. Be aware of potential scams while job seeking. Interviews are conducted at select Our Company locations during regular business hours only. For information on job scams, visit, https://www.consumer.ftc.gov/JobScams or file a complaint at https://www.ftccomplaintassistant.gov/.
ApplyJob Profile
Fully remote Only contact via specified domains
Benefits/PerksCompassionate community Fully remote Health insurance Valuable company benefits plan
Tasks- Collaborate on incident response
- Define security requirements
- Develop security controls
- Ensure regulatory compliance
- Implement network security
- Manage hybrid cloud security
- Manage vulnerability programs
- Monitor security systems
Analytical Checkpoint CISCO Cloud environments Cloud Security Communication Cybersecurity Data Protection Endpoint Security Healthcare HIPAA HITRUST Hybrid Cloud Incident Response Insurance ISO 27000 ISO 27000 series IT Infrastructure M&A Messaging hygiene Network management Network security Network Segmentation NIST 800-53 Organizational Palo Alto PCI Problem-solving Regulatory Compliance Regulatory Frameworks Risk Management Security Architecture Security Controls Security frameworks Security Operations Security platforms System Administration Systems Administration Value-based care Vulnerability Management Zero-Trust
Experience3 years
CertificationsCompTIA Network+ CompTIA Security+
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9