Covenant Health (Tennessee)
Overview
Senior Systems Analyst, IT Cyber Security
Full Time, 80 Hours Per Pay Period, Day Shift
Covenant Health Overview:
Covenant Health is the region’s top-performing healthcare network with 10 hospitals (http://www.covenanthealth.com/hospitals/) , outpatient and specialty services (http://www.covenanthealth.com/services/) , and Covenant Medical Group (http://www.covenantmedicalgroup.org/) , our area’s fastest-growing physician practice division. Headquartered in Knoxville, Covenant Health is a community-owned integrated healthcare delivery system and the area’s largest employer. Our more than 11,000 employees, volunteers, and 1,500 affiliated physicians are dedicated to improving the quality of life for the more than two million patients and families we serve every year. Covenant Health is the only healthcare system in East Tennessee to be named a Forbes “Best Employer” seven times.
Position Summary:
The Cybersecurity Engineer is responsible for the technical implementation and management of cybersecurity measures within Covenant Health. This role involves extensive hands-on work with security technologies, developing and maintaining security protocols, and ensuring the protection of sensitive data. The Cybersecurity Engineer collaborates within the various IT teams of Covenant Health to integrate security solutions into business projects and solutions, while supporting overall compliance with HIPAA regulations.
Recruiter: Suzie McGuinn || apply@covhlth.com
Responsibilities
Technical Implementation
Design, implement, and manage advanced security solutions, including firewalls, intrusion detection systems, encryption, and vulnerability management tools.
Implement and manage security measures for network infrastructure, including routers, switches, and wireless access points.
Configure and manage security settings for Active Directory (AD) and Azure AD environments.
Deploy and manage endpoint protection solutions and security information and event management (SIEM) systems.
Implement and manage M365 security features, including conditional access policies, data loss prevention (DLP), and advanced threat protection (ATP).
Security Operations
Monitor, detect, and respond to security incidents, ensuring timely resolution and documentation.
Conduct regular risk assessments and vulnerability scans to identify and mitigate potential threats.
Lead the technical response to security breaches, coordinating with the incident response team to resolve
Manage and monitor identity and access management (IAM) systems to ensure secure access to resources.
Perform vulnerability scanning and threat detection to identify areas to improve.
Perform digital forensics and incident response when necessary.
Compliance
Ensure compliance with HIPAA and other relevant regulations and standards.
Develop and implement technical security controls to protect sensitive data and support organizational goals.
Collaboration
Work closely with other IT teams to ensure security measures are integrated into systems and applications.
Provide training and support to staff on cybersecurity best practices and emerging threats.
Documentation
Maintain detailed documentation of security protocols, configurations, and incident reports.
Stay current with the latest cybersecurity trends and technologies, recommending improvements to existing security measures.
Security Audits
Conduct both routine and irregular security audits to ensure compliance with security policies and standards.
Draft and update security standards and policies to ensure they meet the latest industry’s best practices and regulatory requirements.
Security Infrastructure Maintenance and Monitoring
Configure, troubleshoot, and maintain security infrastructure software and hardware.
Install and manage software that monitors systems and networks for security breaches and intrusions.
Security Strategy Development
Assist with the planning, development, implementation, and updating of the organization’s information security strategy
Follows policies, procedures, and safety standards. Completes required education assignments annually. Works toward achieving goals and objectives, and participates in quality improvement initiatives as requested.
Performs other duties as assigned.
Qualifications
Minimum Education:
Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, or a related field is required.
Minimum Experience:
Minimum of five years of experience in cybersecurity engineering, with a proven track record in designing and implementing security solutions within an enterprise environment.
Licensure Requirement:
Industry certifications, such as CISSP, CISM, or CISA are required.
Apply/Share
Job Title CYBERSECURITY ENGNR
ID 4326701
Facility Covenant Health Corporate
Department Name IT Cyber Security
Senior Systems Analyst, IT Cyber Security
Full Time, 80 Hours Per Pay Period, Day Shift
Covenant Health Overview:
Covenant Health is the region’s top-performing healthcare network with 10 hospitals (http://www.covenanthealth.com/hospitals/) , outpatient and specialty services (http://www.covenanthealth.com/services/) , and Covenant Medical Group (http://www.covenantmedicalgroup.org/) , our area’s fastest-growing physician practice division. Headquartered in Knoxville, Covenant Health is a community-owned integrated healthcare delivery system and the area’s largest employer. Our more than 11,000 employees, volunteers, and 1,500 affiliated physicians are dedicated to improving the quality of life for the more than two million patients and families we serve every year. Covenant Health is the only healthcare system in East Tennessee to be named a Forbes “Best Employer” seven times.
Position Summary:
The Cybersecurity Engineer is responsible for the technical implementation and management of cybersecurity measures within Covenant Health. This role involves extensive hands-on work with security technologies, developing and maintaining security protocols, and ensuring the protection of sensitive data. The Cybersecurity Engineer collaborates within the various IT teams of Covenant Health to integrate security solutions into business projects and solutions, while supporting overall compliance with HIPAA regulations.
Recruiter: Suzie McGuinn || apply@covhlth.com
Responsibilities
Technical Implementation
Design, implement, and manage advanced security solutions, including firewalls, intrusion detection systems, encryption, and vulnerability management tools.
Implement and manage security measures for network infrastructure, including routers, switches, and wireless access points.
Configure and manage security settings for Active Directory (AD) and Azure AD environments.
Deploy and manage endpoint protection solutions and security information and event management (SIEM) systems.
Implement and manage M365 security features, including conditional access policies, data loss prevention (DLP), and advanced threat protection (ATP).
Security Operations
Monitor, detect, and respond to security incidents, ensuring timely resolution and documentation.
Conduct regular risk assessments and vulnerability scans to identify and mitigate potential threats.
Lead the technical response to security breaches, coordinating with the incident response team to resolve
Manage and monitor identity and access management (IAM) systems to ensure secure access to resources.
Perform vulnerability scanning and threat detection to identify areas to improve.
Perform digital forensics and incident response when necessary.
Compliance
Ensure compliance with HIPAA and other relevant regulations and standards.
Develop and implement technical security controls to protect sensitive data and support organizational goals.
Collaboration
Work closely with other IT teams to ensure security measures are integrated into systems and applications.
Provide training and support to staff on cybersecurity best practices and emerging threats.
Documentation
Maintain detailed documentation of security protocols, configurations, and incident reports.
Stay current with the latest cybersecurity trends and technologies, recommending improvements to existing security measures.
Security Audits
Conduct both routine and irregular security audits to ensure compliance with security policies and standards.
Draft and update security standards and policies to ensure they meet the latest industry’s best practices and regulatory requirements.
Security Infrastructure Maintenance and Monitoring
Configure, troubleshoot, and maintain security infrastructure software and hardware.
Install and manage software that monitors systems and networks for security breaches and intrusions.
Security Strategy Development
Assist with the planning, development, implementation, and updating of the organization’s information security strategy
Follows policies, procedures, and safety standards. Completes required education assignments annually. Works toward achieving goals and objectives, and participates in quality improvement initiatives as requested.
Performs other duties as assigned.
Qualifications
Minimum Education:
Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, or a related field is required.
Minimum Experience:
Minimum of five years of experience in cybersecurity engineering, with a proven track record in designing and implementing security solutions within an enterprise environment.
Licensure Requirement:
Industry certifications, such as CISSP, CISM, or CISA are required.
Apply/Share
Job Title CYBERSECURITY ENGNR
ID 4326701
Facility Covenant Health Corporate
Department Name IT Cyber Security