Medix Technology · 2 weeks ago
Sr. Security Engineer - 249079
Medix Technology is seeking a Senior Security Engineer who will be a key contributor to their cybersecurity program. The role focuses on strengthening Risk Management and Incident Response capabilities by performing risk assessments and collaborating with cross-functional teams.
Responsibilities
Support the implementation, execution, and ongoing enhancement of the Information Security Program, including policy and documentation maintenance, risk assessments, security controls, and technical oversight
Maintain and update information security policies, procedures, and standards
Conduct periodic risk analyses and risk management assessments
Develop and coordinate application security reviews; manage vulnerability and incident response activities
Evaluate, select, and support the implementation of information security tools and technologies
Troubleshoot and remediate security issues in complex, matrixed environments
Work effectively in fast-paced settings with diverse personalities and work styles
Perform well under pressure, managing tight deadlines with a strong sense of urgency
Demonstrate strong written, verbal, and active listening communication skills
Perform additional duties as required
Qualification
Required
Experience with security and compliance frameworks such as HIPAA, HITECH, PCI, NIST, and similar standards
Hands-on experience securing information systems and related technologies
Proven ability to work effectively with stakeholders at all organizational levels
Proficiency with productivity tools such as Microsoft Outlook, Excel, Word, Visio, and SharePoint (or equivalent)
Strong understanding of security concepts, including cyber threats, attack techniques, threat vectors, risk management, and incident response
Knowledge of multiple operating systems (e.g., Windows, Linux, Unix)
Skilled in preparing reports, dashboards, and formal documentation
Excellent communication, leadership, analytical, and problem-solving skills
Ability to manage high-pressure situations involving key stakeholders
Strong organizational skills with the ability to work independently and collaboratively
Adaptable and effective in dynamic work environments
Bachelor's degree in a related field required
One or more security certifications required (e.g., CEH, CISSP, GCIH, GSEC, or equivalent)
Preferred
Background in both Technical Security Engineering and Governance, Risk, and Compliance (GRC) is strongly preferred
Experience in regulated industries is preferred
Experience supporting privacy and security due diligence for third-party relationships or mergers and acquisitions is a plus
2–3 years of leadership or supervisory experience preferred