At Children's Health, our mission is to Make Life Better for Children, and we recognize that their health plays a crucial role in achieving this goal. Through our cutting-edge treatments and affiliation with UT Southwestern, we strive to deliver an extraordinary patient and family experience, ensuring that every moment, big or small, contributes to their overall well-being. Our dedication to promoting children's health extends beyond our organization and encompasses the broader community. Together, we can make a significant difference in the lives of children and contribute to a brighter and healthier future for all.
IT Security Systems Senior Engineer
Location
United States
Posted
43 days ago
Salary
0
Seniority
Senior
Job Description
IT Security Systems Senior Engineer
Children's Health
Role Description The Senior Security Systems Engineer is responsible for architecting, implementing, and operating enterprise security engineering solutions focused on Identity & Access Management (IAM), data privacy, data security, AI, automated workflow creation and management, and infosec data analytics reporting for a large hospital system. This role engineers security controls across Microsoft 365 and Microsoft Azure, enabling secure clinical and corporate workflows while maintaining compliance with HIPAA and internal governance standards. This position requires deep hands-on experience with identity security, data protection, and automation-driven operations, including advanced Python scripting to maintain pre-existing solutions and expand AI capabilities internally to reduce security risk, improve security posture management from an observability and monitoring perspective, and support audit readiness in a regulated healthcare environment. Responsibilities - Identity & Access Management (Primary Focus) - Design, implement, and operate enterprise IAM controls including: - Microsoft Entra ID (Azure AD) authentication, authorization, and federation - Conditional Access (risk-based access, device trust, MFA, session controls) - Privileged Identity Management (PIM) and just-in-time administrative access - Identity lifecycle processes (joiner/mover/leaver) and access hygiene - Engineer least-privilege role models for clinical, research, and administrative users. - Integrate IAM with clinical systems, analytics platforms, and SaaS applications using SSO and modern auth standards (SAML, OAuth2, OIDC). - Develop and maintain detections and operational responses for identity compromise, abnormal access, and privilege escalation. - Data Privacy & Security Engineering - Implement Microsoft-native data protection controls for PHI/ePHI: - Sensitivity labels, encryption, and rights management - Data Loss Prevention (DLP) across Exchange, Teams, SharePoint, OneDrive, endpoints, and sanctioned SaaS - Enforce secure sharing controls and domain restrictions aligned with hospital policy. - Translate HIPAA privacy requirements into enforceable technical solutions. - Provide architectural guidance for secure analytics and collaboration environments handling sensitive healthcare data. - Microsoft 365 Security Administration - Administer and engineer security features across M365 workloads: - Exchange Online (anti-phishing, impersonation protection, secure mail routing) - Teams, SharePoint, and OneDrive sharing and access controls - Microsoft Defender and Microsoft Purview security features - Support investigations, legal holds, and security incidents in coordination with Privacy, Legal, and SecOps teams. - Tune policies to balance clinician usability with security and compliance. - Azure Security & Identity Engineering - Secure Azure identity and platform services: - Entra ID hardening, tenant security posture improvements - RBAC, managed identities, service principals, Key Vault - Integrate logging and telemetry with centralized monitoring/SIEM platforms. - Participate in design reviews, threat modeling, and security sign-off for new cloud initiatives. - Python Scripting & Security Automation - The Senior Security Systems Engineer is expected to actively design and maintain Python-based automation to support IAM, privacy, and security operations. - Ensure scripts follow secure coding practices, logging standards, and production change controls. - Governance, Risk & Compliance Support - Provide engineering input, evidence, and architecture documentation for HIPAA Security Rule compliance. - Support risk assessments, tabletop exercises, and control testing activities. - Collaborate with GRC teams to map technical controls to regulatory requirements and internal policies. Qualifications - At least 5 years experience in information security, with a focus on security systems engineering required. - Strong knowledge of security technologies, including firewalls, IDS/IPS, and encryption required. Requirements - Four-year Bachelor's degree or equivalent experience in Computer Science, Information Security, or a related field required. Benefits - Employee portion of medical plan premiums are covered after 3 years. - 4%-10% employee savings plan match based on tenure. - Paid Parental Leave (up to 12 weeks). - Caregiver Leave. - Adoption and surrogacy reimbursement.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Assess customer’s Falcon environment and ensure alignment with Falcon Complete standards. • Provide Falcon Complete customers with recommendations that align to improved security. • Create and recommend remediation for components of CrowdStrike products that may lead to improved security posture. • Contact customers directly upon identification of misalignment with Falcon Complete standards. • Document, update, and resolve all customer related issues in accordance with established procedures and SLAs. • Develop and provide customers with service reports and stats as requested. • Partner with internal teams to ensure customer satisfaction. • Liaise with support team to help troubleshoot and coordinate efforts to resolve technical issues.
Business Development Representative, Data Security
Thales GroupThales Group, also known as Thales e-Security, is an industry-leading data security solutions and services provider dedicated to protecting client information w
• Articulate value proposition to C-level decision-makers across multiple verticals to assess buying interest and improve consideration. • Meet and exceed quarterly goals consisting of marketing-generated leads, qualified meetings, and activity metrics. • Partner closely with sales teams in key GEOs and create account strategies together to drive penetration against very large businesses. • Daily, integrated use of Salesforce.com, and additional applications to manage all lead data and ensure data integrity. • Be involved in helping grow pipeline funnel through targeted marketing campaigns. • Drive pipeline opportunities through an account-based marketing approach. • Perform a variety of other marketing-related duties as assigned to improve the customer experience.
Senior Customer Success Manager, Identity Security
SaviyntThe #1 Converged Identity Platform with Intelligent Access Governance for Employees, Third Parties & Machines.
• Serve as the primary point of contact for customers after implementation. • Manage the subscription renewal pipeline and maintain cognizance of customer health in order to proactively eliminate barriers to adoption and value. • Participate with the Sales team to provide a strong customer-focused sales, orientation, and launch engagement process. • Develop a deep, trusting relationship with customer key personnel and larger teams to seek and develop up-sell / cross-sell opportunities. • Coordinate and conduct meetings between customers and Saviynt cross-functional teams to solve problems and advance customer adoption; ensure post-meeting follow-ups and action-item completion. • Monitor and identify product utilization trends, providing feedback to Saviynt cross-functional teams to support continuous improvement -- finding ways to better support customer use cases and corporate identity strategies. • Communicate with implementation Partners supporting Saviynt customers and seek opportunities to improve outcomes and relationships in the context of customer adoption. • Plan education for customers on new features and releases. • Act as the voice of the customer and collect feedback to drive continuous improvement across all areas including product.
Senior Security Advisor – Access Management
GuidePoint SecurityFounded in 2011 and headquartered in Herndon, Virginia, GuidePoint Security furnishes commercial and federal organizations with customized information security
• Responsible for creating new solutions to help provide customers with more advisory value • Leads IAM assessment discovery sessions in order to deep dive into custom Access Management solutions • Use discovery session information to build assessments containing recommendations and roadmaps • Help clients through the vendor selection process • Acts as trusted advisor for clients through the presales process in order to help figure out what services best fit with client needs



