CybersecurityJobs.io
← Back to all jobs

Job Description

HealthDrive offers a hybrid, Framingham based security role that centers on protecting patient data across on premises and Azure environments. This hands on Senior Security Engineer position comes with a competitive salary, the opportunity to lead incident response, and a clear path to influence end to end third party risk management with the MSSP partner. You will work closely with IT and business stakeholders to implement robust security controls, strengthen detection capabilities, and drive compliant, safe operations.

What you’ll do

  • Security infrastructure management: Build, configure, deploy, and maintain security stack including firewalls, MDM, identity platforms, email security, and cloud controls using Fortinet as the preferred platform, plus Microsoft Active Directory, Microsoft 365, and Azure. Experience with comparable firewalls such as Palo Alto is transferable.
  • Cloud security: Implement and manage cloud security controls in Microsoft Azure, with a focus on identity and access management, network security, and data protection.
  • Secure network and server design: Collaborate with infrastructure teams to design and harden secure network and server configurations, including firewall, VPN, and access controls.
  • Endpoint and data protection: Own policy configuration for Proofpoint platforms — Email Security, Email DLP, Endpoint DLP, and DSPM tuning. Triage alerts and refine controls to mitigate phishing, malware, and data exfiltration.
  • Vulnerability management: Conduct regular assessments using SecureWorks or Qualys and coordinate remediation efforts with IT teams.
  • Incident response: Lead detection, investigation, containment, and recovery in coordination with internal teams and external partners; apply threat intelligence to shape detection and response priorities.
  • Security automation: Develop scripts in PowerShell, Python, or Bash to automate routine security tasks and improve efficiency.
  • Third party risk management: Own HealthDrive’s TPRM program end to end, including inbound and outbound security questionnaires, assessing vendor security posture, maintaining the vendor risk scoring framework, responding to assessments from partners and payers, and managing ongoing third party risk in line with HIPAA and data protection obligations.
  • Compliance and risk management: Ensure adherence to HIPAA and other regulatory requirements through policy enforcement and risk mitigation strategies.
  • Documentation and training: Maintain detailed security configuration documentation and provide guidance to business and IT staff on security best practices.
  • Security awareness training: Manage the security awareness program, including campaigns and phishing simulations, tracking completion and results, and reporting workforce risk to IT leadership.
  • Collaboration with MSSP: Serve as liaison to HealthDrive’s Managed Security Service Provider to ensure effective threat monitoring and response.

What we’re looking for

  • Infrastructure focused security engineering background with the ability to set strategy and execute hands on.
  • Strong grasp of network security fundamentals including TCP/IP, DNS, routing, and firewalls.
  • Hands on experience with enterprise grade firewalls and network security tools.
  • Proficiency in Microsoft Active Directory and Azure Active Directory (Microsoft Entra ID).
  • Solid knowledge of Azure cloud security best practices.
  • Experience with endpoint protection and data loss prevention technologies, preferably Proofpoint.
  • Experience leading or running third party risk and vendor security assessments.
  • Excellent problem solving, communication, and collaboration skills, with the ability to work independently and across cross functional teams.

Technologies

  • Fortinet, Palo Alto (transferable)
  • Microsoft Active Directory, Microsoft Entra ID
  • Microsoft 365, Azure
  • Proofpoint, DSPM, Email Security, Email DLP, Endpoint DLP
  • SecureWorks, Qualys
  • PowerShell, Python, Bash
  • Microsoft Intune
  • Okta MFA
  • Microsoft Sentinel

Work environment

Based at HealthDrive’s Framingham, MA office (off Route 9, near Routes 90 and 495) on a hybrid schedule.

Compensation

Salary range: USD 85,000 – 115,000 per year, experience dependent.

Certifications

  • Preferred CISSP; or at least one relevant security certification, such as Microsoft Certified: Azure Security Engineer Associate (AZ-500), CompTIA Security+, CISM, CCSP, or HCISPP

Core competencies

  • Communication
  • Cooperation and Team working
  • Adaptability
  • Expertise and Professionalism
  • Problem Solving / Analysis

Similar Jobs