Skip to main content
IT@2X
J186280

Information Security Engineer

Highmark Health

  • Company Hignmark Health
  • Home, PA
  • IS/IT
  • Full time
  • Day (United States of America)

Company :

Highmark Health

Job Description : 

JOB SUMMARY

This job works with others to plan, research, evaluate, design and develop Information Security and Risk

Management (ISRM) Infrastructure systems by applying engineering, hardware and software design

theories and principles to develop a compatible system infrastructure in line with organizational strategies.

Assists with the design, development, and implementation of ISRM Infrastructure components such as

operating systems, software tools, and utilities. Supports studies of ISRM Infrastructure performance and

traffic analysis. Determines systems design requirements and ensures that system improvements are

successfully implemented and monitored to increase efficiency. Assists with the development of ISRM

Infrastructure engineering policies, standards and procedures.

Highmark Health is looking for aggressive, talented, and positive Information Security Engineer with specific experience in OAuth, LDAP and Federation. You will work as part of our Identity and Access Management (IAM) team providing your expertise in the implementation, integration, and operations of Authentication, Cloud Identity and Identity and Access Management solutions in a disparate, transforming environment. As an ideal candidate you will work well with others in an Agile environment to plan, research, evaluate, design, and develop secure IAM solutions. You will actively embrace out philosophy of outcomes over activities.

Job Description

This job works with others to plan, research, evaluate, design and develop Information Security and Risk

Management (ISRM) Infrastructure systems by applying engineering, hardware and software design

theories and principles to develop a compatible system infrastructure in line with organizational strategies.

Assists with the design, development, and implementation of ISRM Infrastructure components such as

operating systems, software tools, and utilities. Supports studies of ISRM Infrastructure performance and

traffic analysis. Determines systems design requirements and ensures that system improvements are

successfully implemented and monitored to increase efficiency. Assists with the development of ISRM

Infrastructure engineering policies, standards and procedures.

Your role will involve working daily with Agile scrum/kanban teams, as an individual contributor, and with business stakeholders to evaluate, design, articulate, and implement solutions within the IAM competency. Your primary responsibilities will include Federation tasks in OAM and Azure, various OAuth scenarios, working with Oracle Access Manager, LDAP, and Azure.

Our engineers work regularly within and outside of our team to help our internal and external customers achieve their goals. Strong interpersonal, communications, and empathetic skills are a required

ESSENTIAL RESPONSIBILITIES

General Skills

  • Work effectively as part of a team and scrum
  • Serve on or may lead teams in clearly defining requirements, deliverables and timeframes. Escalate issues and make recommendations to resolve them to the appropriate audience.
  • Conduct problem management as well as root cause analysis to identify and resolve complex problems and reduce the likelihood of reoccurrence impacting ISRM Infrastructure.
  • Develop and/or deliver technical training in complex technical areas. Mentor less senior staff in the execution of their duties.
  • Complete project tasks to enable the on time, within budget and scope delivery of ISRM Infrastructure projects.
  • Implement, monitor, configure, and maintain security systems.
  • Assure compliance to required standards, procedures, guidelines, processes, and defined patterns.
  • Excellent communications and interpersonal skills,
  • A desire for professional development and learning.
  • Other duties as assigned or requested.

Technical Capabilities

  • Ability to support day-to-day tasks, monitoring, and troubleshooting of cloud and Enterprise based IAM infrastructure.
  • Develop or propose and implement authentication and federation solutions and patterns.
  • You should be able to identify scenarios where automation is preferable and work with automation specialists to enable these solutions.
  • Configuration and tuning of Federation and Authentication tools.
  • Direct demonstrable experience with OAuth and one or more of LDAP, OAM, and Azure Federation.
  • Bring a technical and strategic consultative mindset to achieve objectives and improve customer experience.
  • Experience installing, configuring, patching, and maintaining Oracle Access Manager or Oracle Unified Directory
  • Experience with Smile CDR or other FHIR experience is a plus.

REQUIRED EDUCATION

  • Bachelor’s Degree - Computer science, information systems, or related field or 6+ years of specific IAM Industry experience.

PREFERRED EDUCATION

None

Experience

  • 3 - 5 years' experience with information security and systems analysis
  • 3 - 5 years' with information security and/or information risk management and/or information
  • Technology
  • 2+ years specific OAuth and Federation experience
  • 3-5 years general IAM experience

Preferred

  • 5 - 7 years' experience with information security and systems analysis
  • 1 - 3 years' experience working within an information security function using the HITRUST
  • Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
  • Direct experience with the concepts and execution of HIPAA or HITRUST compliance
  • Direct experience with the FHIR
  • Cloud engineering experience
  • Familiarity with SDLC best practices
  • Experience in working in a SaFE / AGILE environment

Licensure / Certifications (Preferred)

  • Certified Information Systems Security Professional (CISSP), Security+
  • One or more of MS Azure Certifications
    • Azure Security Engineer (AZ-500)
    • Azure Solution Architect – Expert (AZ-303 / AZ-304)
    • Azure Devops Engineer (AZ-400)

REQUIRED LICENSURE  

None

PREFERRED LICENSURE

Certified Information Systems Security Professional (CISSP), Security +

TRAVEL REQUIREMENT:
0% - 25%

LANGUAGE REQUIREMENT ( other than English )?  

None

PHYSICAL, MENTAL DEMANDS AND WORKING CONDITIONS
( The physical, mental demands and working conditions described here are representative of those that must be met by an employee to successfully perform the essential function of their job. Reasonable accommodations will be made when necessary to enable individuals with disabilities to perform the essential duties of the position, to the extent that they do not cause undue hardship.

Position Type:

WFA - ( Work From Anywhere )

Office-Based Positions

An employee in this position works in an office environment.  The position frequently requires the employee to communicate effectively with others both inside and outside the workplace (e.g., in person, via telephone, via email).  The employee must be able to understand, interpret and analyze data, solve problems, concentrate, and research, use available technological resources and systems (e.g., computers and computer programs), multi-task, prioritize, and meet multiple deadlines to complete essential tasks.  The employee generally works in a fast-paced and frequently stressful environment, must attend work on a regular and reliable basis as well as adhere to all workplace policies, and may be called upon to work outside regular business hours.

Teaches/Trains others regularly

Occasionally

Travels regularly from the office to various work sites or from site-to-site

Occasionally

Works primarily out-of-the office selling products/services (Sales employees)

Does Not Apply

Physical Work Site Required

Yes

Most On-The-Road Positions

An employee in this position may work in a home or company office environment but is also frequently driving to and from various locations to perform the work off-site.  The position frequently requires the employee to communicate effectively with others both inside and outside the workplace (e.g., in person, via telephone, via email).  The employee must be able to understand, interpret and analyze data, solve problems, concentrate, and research, use available technological resources and systems (e.g., computers and computer programs), multi-task, prioritize, and meet multiple deadlines to complete essential tasks.  The employee generally works in a fast-paced and frequently stressful environment, must attend work on a regular and reliable basis as well as adhere to all workplace policies, and may be called upon to work outside regular business hours.

Non-Office-Based Positions

An employee in this position is frequently required to move throughout the workplace, sit, stand and walk, use hands and fingers to hold objects, tools or controls, possess fine motor skills (e.g., to write and operate a computer or to steer transportation equipment), possess gross motor skills (e.g., to carry items), reach with hands and arms, climb stairs and ladders, balance, stoop, kneel crouch and crawl, communicate effectively, and talk and hear. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust focus.  The employee must be able to work in a busy environment where decisions often must be made quickly, must attend work on a regular and reliable basis, must adhere to all workplace policies, and may be called upon to work outside regular business hours.  This work occurs in a [example: warehouse, hospital or provider’s office or mailroom].

Lifting: up to 10 pounds

Does Not Apply

Lifting: 10 to 25 pounds

Does Not Apply

Lifting: 25 to 50 pounds

Does Not Apply

ADDITIONAL INFORMATION

Changes Approved By:

Kathleen Thompson

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.

Compliance Requirement: This position adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies

As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements. 

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, national origin, sexual orientation/gender identity or any other category protected by applicable federal, state or local law. Highmark Health and its affiliates take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sex, national origin, sexual orientation/gender identity, protected veteran status or disability.

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, age, religion, sex, national origin, sexual orientation/gender identity or any other category protected by applicable federal, state or local law. Highmark Health and its affiliates take affirmative action to employ and advance in employment individuals without regard to race, color, age, religion, sex, national origin, sexual orientation/gender identity, protected veteran status or disability. 

EEO is The Law

Equal Opportunity Employer Minorities/Women/Protected Veterans/Disabled/Sexual Orientation/Gender Identity ( https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf )

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact number below.

For accommodation requests, please contact HR Services Online at HRServices@highmarkhealth.org

California Consumer Privacy Act Employees, Contractors, and Applicants Notice


Thumbnail Join Talent Community@2X

Connect with a career that’s right for you.

Introduce yourself and we'll get in touch monthly to share career insights and company news.

Join Our Talent Community