Job Title: Cybersecurity Engineer
Organisation Overview
Our Client is a leading provider of healthcare IT managed services and cybersecurity solutions dedicated to protecting health information across complex healthcare environments. Renowned for their innovative approach and strong commitment to delivering secure, compliant, and efficient technology solutions, they foster a culture of collaboration, professional development, and technological excellence. The organisation offers a dynamic and inclusive workplace where employees can make a meaningful impact on patient safety and healthcare delivery.
Role Summary
In response to organisational growth, Our Client seeks an experienced Cybersecurity Engineer to fortify their healthcare systems and client environments. This vital role supports the strategic initiative to enhance security infrastructure, ensure regulatory compliance, and safeguard sensitive health data. The successful candidate will have the opportunity to shape security architecture and influence best practices across diverse healthcare IT landscapes, making a tangible difference in the protection of patient information and organisational integrity.
Responsibilities
- Design, implement, and oversee robust security frameworks across various healthcare systems, including electronic health records (EHR), medical devices, and health information exchanges.
- Configure and manage security tools such as firewalls, intrusion detection/prevention systems, SIEM, DLP solutions, multi-factor authentication, endpoint detection and response, and encryption protocols.
- Conduct vulnerability assessments and penetration tests to proactively identify and mitigate potential risks.
- Monitor security alerts and logs, swiftly investigating and responding to incidents, performing root cause analysis, and documenting findings.
- Develop and maintain incident response and breach management plans compliant with healthcare regulations such as HIPAA, HITECH, and HITRUST.
- Support forensic investigations and breach reporting activities, ensuring all actions meet compliance standards.
- Generate regular security reports and dashboards for internal teams and clients, providing insights and recommendations.
- Collaborate with cross-functional teams to embed security best practices into daily workflows and technological operations.
- Lead or assist with audit preparations and maintain documentation to support compliance exercises.
- Promote a security-aware culture through training and stakeholder engagement.
Essential Skills & Experience
- Bachelor’s degree in Computer Science, Information Security, or related discipline; professional certifications (e.g., CISSP, CISA, CISM) are advantageous.
- 3-5 years’ experience in cybersecurity, preferably within healthcare settings or Managed Service Provider (MSP) environments.
- Proven hands-on expertise with security infrastructure including firewalls, IDS/IPS, SIEM, DLP, MFA, EDR, and encryption technologies.
- Experience supporting or preparing for HIPAA, HITECH, HITRUST, or SOC 2 Type II audits.
- Familiarity with cloud security practices, particularly AWS, Azure, or GCP environments.
- Strong analytical skills with the ability to resolve complex security issues effectively.
- Ability to communicate technical details clearly to both technical teams and non-technical stakeholders.
- Demonstrates professionalism, meticulous attention to detail, and integrity.
Desirable Skills & Experience
- Scripting skills in Python or PowerShell for automation and security enhancement.
- Knowledge of healthcare-specific security challenges and regulatory requirements.
- Experience with forensic tools and breach investigation procedures.
- Previously worked with security tools in a healthcare environment, or experience with HITRUST compliance framework.
Call to Action
If you possess the expertise and passion for advancing healthcare cybersecurity, we invite you to submit your CV for consideration. This is a unique opportunity to be a key contributor in a forward-thinking organisation dedicated to protecting vital health data and supporting critical healthcare operations. We welcome applications from those who meet the essential criteria and are eager to make a significant impact in a vital sector.