This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Information Security (InfoSec) Engineering and Architecture (ISEA) Engineer III follows a “Security by Design” Methodology ensuring Security is built-into products, technologies, SaaS solutions, etc. in the early phases of a technology or solution implementation. This position engineers, implements, and maintains information security systems and controls for L.A. Care Health Plan. The ISEA Engineer III works closely with the Cyber Defense Operations Center (CDOC) Analysts and the various departments and technical staff within Information Technology (I.T.). This position collaborates with business units on the front end in the build of a new solution to ensure security measures are in place from the beginning of the project. Acts as a Subject Matter Expert (SME), serves as a resource and mentor for other staff.
Job Responsibility:
Ensures all InfoSec tools are configured appropriately and running at their current supported versions
Proactively develops and enforces security plans and standards
Interfaces directly with technical and business staff to design and implement security architectures
Develops systems and processes to prevent information and infrastructure breaches
Designs and implements elegant solutions to complex security and risk problems
Applies appropriate technologies while following security engineering best practices
Conducts research to identify attack vectors
Identifies and assesses vulnerabilities and risks
Develops and implements technical solutions to counter vulnerabilities and risks
Develops plans for incident response
Acts as the technical expert in multiple domains to lead the Information Security team during incident and breach responses
Leads security projects (including security reviews, tool development, and creation of new security practices)
Creates security guidance and documentation
Develops security tools and automation
Supports the enterprise data loss prevention program
Provides on-call support on a rotational basis
Applies subject expertise in evaluating business operations and processes
Provides training, recommends process improvements, and mentors junior level staff
Requirements:
Bachelor's Degree in Science or Technology
At least 6 years of experience in a senior Information Security role
Operational experience configuring and managing a Security Information and Event Management (SIEM) platform
Operational experience using and configuring a vulnerability management platform
Operational experience using a static application security testing platform
Strong working knowledge in one or more of the following disciplines: DevOps, Digital Forensics, Penetration Testing, Programming (Java preferred), and/or System or Network Administration
Working knowledge of data loss prevention (DLP) toolsets
Strong understanding of networking and communication protocols (such as TCP/IP, UDP, SSL/TLS, IPSEC, HTTP/S, etc.)
Understanding of web service frameworks and service architectures (such as event-driven, service-oriented, or server less architectures)
Ability to collaborate with internal and external key stakeholders
Combination of strong troubleshooting, technical, and communication skills
Nice to have:
Operational experience building or reviewing threat models
Operational experience in a regulated environment (e.g., classified networks, healthcare, finance, banking, etc.)
One or more of the following certifications: Certified Information Systems Security Professional (CISSP)