Staff SecOps Engineer

Kyruus Health • Remote

Company

Kyruus Health

Location

Remote

Type

Full Time

Job Description

At Kyruus Health, our mission is to connect people to the right care, in pursuit of our vision: a better healthcare system- one that's transparent and accessible- where everyone gets the care they need. Our values are at the heart of everything we do:


We care deeply – We do the right thing even if it’s the harder thing. 
We are fiercely driven – We harness our curiosity to pursue continuous improvement and create simple solutions to complex problems.
We lead with respect – We celebrate the individual traits that make each of us unique and seek out diverse voices to listen and learn.
We are accountable – We do what we promise for each other and our customers.


Here’s what that would mean for you in the Staff SecOps Engineer role. 


Care: You care about our patients, our customers, our employees and our company. You want to do everything you can to keep them and their data safe. 
Driven: You want to build the best Information Security program possible. 
Respect: You respect the other departments at Kyruus Health. Security should be an enabler of their success. 
Accountable: You value our compliance certifications and look to improve with each assessment cycle. 

What you will do in a Staff SecOps Engineer role at Kyruus Health:

  • Monitoring and Response: Continuously monitor security systems and alerts to identify potential threats or breaches. Respond to and investigate security incidents, analyzing them to mitigate immediate risks and prevent future occurrences. 
  • Incident Management: Manage and coordinate the response to security incidents, including data breaches, malware attacks, and other security threats. Mature processes to contain, eradicate, and recover from incidents while documenting the process.
  • Threat Intelligence: Lead efforts to integrate advanced threat intelligence into security operations. Develop and implement proactive measures based on emerging threat landscapes.
  • Vulnerability Management: Lead the vulnerability management program in partnership with CloudSec and AppSec to identify weaknesses in the organization’s infrastructure and platform. Guide the prioritization and remediation of vulnerabilities and risks, ensuring with business objectives. Partner with Product Teams to build vulnerability remediation into roadmaps across the organization.
  • Collaboration: Act as a liaison between the security team and other departments, such as IT, legal, and executive management. Communicate complex security concepts and issues in a clear and actionable manner to non-technical stakeholders. 
  • Continuous Improvement: Identify opportunities for process improvements and enhancements in security operations. Lead initiatives to upgrade or replace outdated systems and practices.
  • Documentation and Reporting: Maintain detailed records of security incidents, responses, and resolutions. Prepare reports and summaries for stakeholders, including recommendations for improving security posture. Identify metrics to continuously monitor program effectiveness. 
  • Contribute to a Collaborative Security Strategy: Engage with various teams in defining and implementing the overall security strategy related to infrastructure, ensuring that security is an enabler for our business. 
  • Help Us Achieve our Certification Goals: Participate in our journey to HITRUST or FedRamp certification.
  •  You’ll report to the Senior Director, Information Security in the Information Security Department within the Engineering & Technology Division.

How You Can Grow

  • Kyruus Health will bring you through an onboarding process that is both structured and self-guided, designed to enable connection and productivity as you learn more about our company, functions and products. Additionally, we have a culture of feedback, inclusive of our performance review process that provides you with the coaching, resources and opportunities to help you learn and grow with us. 
  • Kyruunauts in the Staff SecOps Engineer role can move in a more linear career path to a Senior Staff SecOps Engineer position. From there, you could move into a more senior individual contributor role or explore a management position within the security vertical. 
  • Kyruus Health also loves to see an internal transfer. If a linear career path is not what you’re looking for, you can work with your manager and HR to explore lateral moves to other parts of the organization as you continue to grow with us. 

What you will bring:

  • 8+ years of experience, Bachelor's degree, or equivalent experience 
  • Has comprehensive knowledge of security principles, technologies, and best practices, including encryption, authentication, firewalls, intrusion detection/prevention systems, and incident response.
  •  Comprehensive knowledge of security principles, technologies, and best practices, including encryption, authentication, firewalls, intrusion detection/prevention systems, and incident response.
  • Mastery of security testing tools and techniques, such as vulnerability scanning, penetration testing, and secure code analysis.
  • Proficiency in multiple programming and scripting languages, such as Python, Java, C++, or Bash, to automate tasks, analyze data, and develop advanced security tools. 
  • Extensive experience with cloud platforms (AWS, Azure, or Google Cloud) and their security features, best practices, and configurations, including hybrid and multi-cloud environments.
  • Deep understanding of regulatory compliance standards, such as GDPR, HIPAA, PCI-DSS, or ISO 27001, and experience in leading the implementation and maintenance of compliance programs.
  • Exceptional analytical and problem-solving skills, with the ability to identify and address complex security risks and develop innovative, comprehensive mitigation strategies.
  • Strong leadership and project management skills, with the ability to plan, execute, and monitor security projects and initiatives, effectively prioritizing based on risk and business impact.
  • Excellent communication and collaboration skills, enabling effective interaction with both technical and non-technical stakeholders, including presenting findings to executive leadership and board members.
  • Experience in mentoring, coaching, and developing less experienced team members, building a strong team culture and fostering collaboration across the organization.
  • Ability to drive strategic security initiatives and influence decision-making at the organizational level, aligning security practices with business objectives. 

Equal Opportunity Employer


Kyruus Health is dedicated to providing equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, gender, national origin, citizenship, age, disability, sexual orientation, genetic information. We will not discriminate, in any employment decision, against any individual or group on the basis of race, color, religion, sex, gender, national origin, citizenship, age, disability, sexual orientation, genetic information, or veterans/national guard/military reserve status. This shall be done in compliance with all applicable federal, state, and local laws in every location in which Kyruus Health has facilities. 

Apply Now

Date Posted

10/17/2024

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Linux Support Engineer - Voltage Park

Views in the last 30 days - 0

Voltage Park is seeking a Linux Support Engineer for a fulltime remote position The ideal candidate will have command line level Linux sys administrat...

View Details

Technical Architect - CDW

Views in the last 30 days - 0

CDW offers a rewarding career opportunity for a Technical Architect with expertise in ServiceNow The role involves delighting customers by collaborati...

View Details

Senior React.js & Python Developer - Lemon.io

Views in the last 30 days - 0

Lemonio is a marketplace that connects Senior Developers with handpicked startups in the US and Europe They offer projects based on the developers exp...

View Details

Federal Security Solutions Engineer - Rapid7

Views in the last 30 days - 0

Rapid7 is seeking a Federal Solutions Engineer with 5 years of experience in cybersecurity solutions engineering or technical sales focusing on federa...

View Details

Sales Engineer - Dandy

Views in the last 30 days - 0

Dandy a venturebacked company is revolutionizing the 200B dental industry with advanced technology They are looking for a Sales Engineer with 5 years ...

View Details

Engineering Manager (Group Practice Tooling & Provider CX) - Headway

Views in the last 30 days - 0

Headway is a mental healthcare company founded in 2019 aiming to build a new mental health care system accessible to everyone They have a national net...

View Details