
Staff Cyber Security Engineer
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Design, evaluate, and oversee security architectures for AWS, Azure, GCP, and on-premises systems.
• Ensure compliance with enterprise security standards, threat models, and regulatory obligations.
• Offer security design recommendations for platforms, applications, and services.
• Engage in architecture and design assessments to pinpoint risks and suggest mitigations.
• Implement and manage cloud security measures, including IAM, network security, data protection, logging, and monitoring.
• Secure servers, networks, virtualization platforms, and hybrid integrations.
• Support secure configuration baselines and hardening standards.
• Lead and manage the vulnerability management lifecycle from identification to verification.
• Analyze scan results and penetration testing outcomes to evaluate risk and business impact.
• Collaborate with engineering and infrastructure teams to prioritize remediation efforts.
• Conduct security risk assessments, threat modeling, and impact evaluations.
• Convert technical findings into risk statements and actionable recommendations.
• Monitor and report risks for leadership and audit preparedness.
• Contribute technical insights to incident response investigations.
• Assist compliance efforts by providing technical evidence and assessments.
• Develop and sustain security standards, patterns, and reference architectures.
• 8–12 years of experience in cybersecurity engineering.
• Practical expertise in cloud and on-premises environments.
• Extensive experience with AWS, Azure, or GCP and their associated security services.
• Strong background in security architecture, design reviews, and infrastructure security.
• Hands-on experience with vulnerability scanning tools, risk assessment methodologies, and remediation processes.
• Knowledge of network security, operating system security, and identity and access management.
• Ability to communicate security risks to both technical and non-technical audiences.
• Familiarity with security frameworks and standards such as NIST, ISO 27001, CIS, and OWASP.
• Experience with container security and Kubernetes.
• Background in supporting hybrid or large-scale enterprise environments.
• Bachelor's Degree in Computer Science or related STEM fields with advanced experience.
• For U.S.-based positions, a minimum of 4 years of experience is specified alongside the required bachelor's degree.
• Experience in implementing and governing cybersecurity frameworks like NIST 800-53, ISO 27001, and IEC 62443.
• Program and project management experience; proficiency with Agile development teams.
• Familiarity with secure coding principles, code signing, and secure boot.
• Experience with penetration testing and ethical hacking.
• Knowledge of CI/CD and automation tools such as Chef, Git, and Jenkins.
• Understanding of identity management and identity federation protocols including SAML, OAuth, SCIM, and XACML.
• Experience in developing SOAP/REST web services.
• Must be available for on-call security response duties.
• Knowledge of application risk identification and evaluation methods.
• Experience in securing applications within AWS, Azure, or similar cloud environments.
• Familiarity with information security technologies and processes in SaaS, IaaS, PaaS, or cloud settings.
• Must be legally authorized to work in the United States.
• GE HealthCare will not provide sponsorship for employment visas for this position.
• Successful completion of a drug screening may be required.
• Medical, dental, and vision insurance coverage.
• Paid time off.
• 401(k) plan with options for employee and company contributions.
• Life, disability, and accident insurance.
• Tuition reimbursement.
• Opportunities for professional development.
• Engaging and challenging career paths.
• Competitive salary.
• Performance-based incentive compensation, which may include cash bonuses and/or long-term incentives (LTI).
• Relocation assistance.
• Potential customer vaccination mandates may be applicable to certain employees.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.