Covenant Health

Job Title
CYBERSECURITY ENGNR
ID
4326701
Facility
Covenant Health Corporate
Department Name
IT Cyber Security

Overview

COVENANT HEALTH 5.8.2023

 

 

 

Senior Systems Analyst, IT Cyber Security

Full Time, 80 Hours Per Pay Period, Day Shift

 

Covenant Health Overview:

Covenant Health is the region’s top-performing healthcare network with 10 hospitals, outpatient and specialty services, and Covenant Medical Group, our area’s fastest-growing physician practice division. Headquartered in Knoxville, Covenant Health is a community-owned integrated healthcare delivery system and the area’s largest employer. Our more than 11,000 employees, volunteers, and 1,500 affiliated physicians are dedicated to improving the quality of life for the more than two million patients and families we serve every year. Covenant Health is the only healthcare system in East Tennessee to be named a Forbes “Best Employer” seven times. 

 

Position Summary: 

The Cybersecurity Engineer is responsible for the technical implementation and management of cybersecurity measures within Covenant Health. This role involves extensive hands-on work with security technologies, developing and maintaining security protocols, and ensuring the protection of sensitive data. The Cybersecurity Engineer collaborates within the various IT teams of Covenant Health to integrate security solutions into business projects and solutions, while supporting overall compliance with HIPAA regulations.

 

Recruiter: Suzie McGuinn || apply@covhlth.com

Responsibilities

Technical Implementation

  • Design, implement, and manage advanced security solutions, including firewalls, intrusion detection systems, encryption, and vulnerability management tools.
  • Implement and manage security measures for network infrastructure, including routers, switches, and wireless access points.
  • Configure and manage security settings for Active Directory (AD) and Azure AD environments.
  • Deploy and manage endpoint protection solutions and security information and event management (SIEM) systems.
  • Implement and manage M365 security features, including conditional access policies, data loss prevention (DLP), and advanced threat protection (ATP).

 

Security Operations

  • Monitor, detect, and respond to security incidents, ensuring timely resolution and documentation.
  • Conduct regular risk assessments and vulnerability scans to identify and mitigate potential threats.

8. Lead the technical response to security breaches, coordinating with the incident response team to resolve

  • Manage and monitor identity and access management (IAM) systems to ensure secure access to resources.
  • Perform vulnerability scanning and threat detection to identify areas to improve.
  • Perform digital forensics and incident response when necessary.

 

Compliance

  • Ensure compliance with HIPAA and other relevant regulations and standards.
  • Develop and implement technical security controls to protect sensitive data and support organizational goals.

 

Collaboration

  • Work closely with other IT teams to ensure security measures are integrated into systems and applications.
  • Provide training and support to staff on cybersecurity best practices and emerging threats.

 

Documentation

  • Maintain detailed documentation of security protocols, configurations, and incident reports.
  • Stay current with the latest cybersecurity trends and technologies, recommending improvements to existing security measures.

 

Security Audits

  • Conduct both routine and irregular security audits to ensure compliance with security policies and standards.

 

  • Draft and update security standards and policies to ensure they meet the latest industry’s best practices and regulatory requirements.

 

Security Infrastructure Maintenance and Monitoring

  • Configure, troubleshoot, and maintain security infrastructure software and hardware.
  • Install and manage software that monitors systems and networks for security breaches and intrusions. 

 

Security Strategy Development

  • Assist with the planning, development, implementation, and updating of the organization’s information security strategy 
  • Follows policies, procedures, and safety standards. Completes required education assignments annually. Works toward achieving goals and objectives, and participates in quality improvement initiatives as requested.
  • Performs other duties as assigned.

Qualifications

Minimum Education:           

Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, or a related field is required.

 

Minimum Experience:         

Minimum of five years of experience in cybersecurity engineering, with a proven track record in designing and implementing security solutions within an enterprise environment.

 

Licensure Requirement:      

Industry certifications, such as CISSP, CISM, or CISA are required.

Apply/Share

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed