Lead Cyber Security Engineer, Technology & Digital, FT, 08A-4:30P
Baptist Health26 days ago
Remote, United StatesStaff+
Base Salary
$126k - $164k/yr
Responsibilities
- Plan, implement, manage, and enhance security controls for data, applications, systems, and networks across on-premises and cloud environments.
- Guide team members on the secure use of cloud platforms, CI/CD pipelines, infrastructure as code, automation, and version-control systems.
- Guide troubleshooting and security decisions for complex cloud infrastructure, AI, application, and third-party technology issues.
- Develop security standards, technical requirements, and secure practices for cloud, AI, and enterprise technologies.
- Secure cloud-based AI applications and use cases, including LLM gateways, access controls, and supporting security controls.
- Evaluate IAM, authentication and authorization, machine-to-machine authentication, logging and monitoring, network controls, data protection, and application/API security.
- Configure and support Cloudflare edge security controls, including WAF, for exposed external-facing applications.
- Analyze vulnerabilities and security risks across cloud, AI, application, and infrastructure technologies, including infrastructure-as-code reviews.
- Collaborate with cross-functional teams to gather requirements, evaluate risk, troubleshoot issues, and secure technical solutions.
- Ensure technical implementations align with organizational security standards and requirements.
Requirements
- Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, Information Technology, Electrical Engineering, or a related field; comparable industry experience may be considered.
- At least 7 years of experience is required; the qualifications section specifies 8+ years in application security, cloud security, infrastructure security, or related technology disciplines.
- Working knowledge of cloud security and implementation, preferably AWS and GCP, with familiarity with Azure and enterprise infrastructure.
- Understanding of cloud operations, security policies and controls, IAM, network security, encryption, logging and monitoring, secure configuration, and vulnerability remediation.
- Familiarity with CI/CD pipelines, Git, infrastructure as code, configuration management, containers, Terraform, Ansible, or comparable technologies.
- Working knowledge of TCP/IP, TLS, DNS, OAuth, SAML, OIDC, certificates, APIs, firewalls, authentication, and authorization.
- Experience reviewing infrastructure as code, configurations, scripts, or source code for security weaknesses.
- Strong knowledge of OWASP Top 10 risks for web applications, APIs, and LLM applications, including remediation.
- Ability to troubleshoot complex security issues and communicate requirements and risks to technical and business stakeholders.
- Relevant technical or cloud certifications such as AWS, GCP, Azure, OSCP, GWAPT, or eWPT are preferred; a master’s degree is preferred.
Benefits
- Full-time position with an 08A–4:30P schedule.
- Career growth and development opportunities with clear pathways and ongoing support.
- Comprehensive health and wellness resources.
- Wellness program that can help employees eliminate their medical plan deductible.
- Tuition reimbursement for continued learning and advancement.