Essential Duties & Responsibilities
The essential functions include, but are not limited to the following:
HITRUST (Compliance & Data Protection)
- Assist with remediation tracking:
- Understand HIPAA data privacy and best practice general security awareness
- Assist with HIPAA risk assessment interviews and documentation
- Review and update existing security procedures to align with new HITRUST 11.4 policies
- Review and assist with optimizing Qualys scans and reporting
- Participate in process refinement for VMP.
Trend Micro Vision One (XDR/Threat Detection)
- Configuration & Optimization:
- Review and suggest refinement for detection rules and policies.
- Review and suggest optimization agent placement.
- Threat Hunting & Incident Response:
- Conduct proactive threat hunting exercises using insights from different sources.
- Review and refine playbooks for common threat scenarios.
- Reporting & Analytics:
- Generate reports and dashboards on threat trends and security posture.
- Use insights to identify areas for improvement.
AWS Security Fundamentals (Cloud Security Basics)
- Review and understand “cloud basics” and “Security in the cloud” vs “Security of the cloud”.
- IAM Overview
- Explain difference and appropriate use cases
- Users, Groups, Roles
- Actions, Resources, Effects, Conditions
- Principle of Least Privilege/ SCP’s / Identity
- Explain the concept of least privilege.
- RBAC/ABAC
- Discuss its importance in minimizing the attack surface.
- Explain how SCP’s enforce org-wide permission boundaries.
- Dragonfly Architecture and Micro Services
- Review all services that make up the application.
- Threat Detection and Monitoring in the Cloud
- Review and understand how the following services work together
Minimum Qualifications (Knowledge, Skills, and Abilities)
Education:
Other:
- Written and verbal communication skills.
- Critical thinking and problem-solving skills.
- Analytical and has an attention for detail.
Supervisory Responsibilities
This role does not have any direct reports and is a single contributor role.
Working Environment and Travel Requirements
Work is typically in a normal office administrative environment involving minimal exposure to physical risks. Position requires little to moderate physical activity. Mostly sedentary work exerting up to 10 pounds of force occasionally or a negligible amount of force to lift, carry, push, pull, or otherwise move objects. Work involves sitting most of the time, but may involve walking or standing for brief periods of time. No significant stooping is usually required.