Position Summary
Provide cyber-security planning, event analysis, investigation, escalation and support for Cyber-security technologies both within the Cyber Security Operations Center (CSOC) and to the infrastructure operational teams.
Participate and coordinate Cyber Security Incident Response Team (CSIRT) with evidence gathering / processing, cyber-security incident investigation, attack / malware remediation, forensic analysis, threat mitigation, vulnerability detection, and data leakage prevention.
Looking for an individual that is excited about working for a company that is growing with a great culture and will be an example of living the Core Values of Arkansas Heart Hospital: Highest Expectations in Quality, Excellence through Innovation, Accountability through Ownership, Resilience without Compromise, Teamwork with Results.
Primary Duties
- Identify, analyze and respond to malicious activity, and gather evidence to assist in determining which events should be declared as a security incident.
- Work with vendor/partners to produce reports on intrusion activities, security incidents, and other threat indications and warning information to help maintain day to day status, develop and report on trends, and provide focus and situational awareness on all issues.
- Perform second tier analysis of exploits such as malware, network intrusions, and unauthorized usage to help determine attack-surface, patient zero, and accessible pivot-points.
- Continuously monitor and research industry trends + best practices to be implemented at the hospital
- Assist with security awareness content and provide education on security policies and practices.
- Monitors and reports on project activities and reports on status within published timelines.
- Manages partner and vendor relationships, including licenses, contracts, issue resolution and service level expectations.
- Provide guidance and support to the other infrastructure and application teams for problem management, service outages, service requests, and changes.
- Prepare and present in Quarterly CompSec Mtg’s, and Monthly IT staff meeting
- Organize bi-annual cybersecurity table top sessions with internal and external team members
- Build relationships with internal and external partners
- Performs other duties as assigned.
Qualifications/Specifications
- Education: Bachelor degree or equivalent professional-level experience required.
- Licensure/Certifications: None required.
- Experience: Minimum of 5 years’ experience in several different facets of IT and cybersecurity including, but not limited to the following: Software applications, Networking, Firewalls, End-user computing, Mobile device management, Active Directory, Microsoft 365, Webfiltering, IDS/IPS, Vulnerability Scanning, Antivirus/Malware detection,