Job description
GetixHealth is seeking an experienced Security Engineer II, SecOps to join our Information Technology team. This mid-level role is responsible for implementing, maintaining, and improving technical security controls across cloud, endpoint, network, identity, and application environments.
The ideal candidate will have hands-on cybersecurity engineering experience and an understanding of security and regulatory requirements within healthcare or another highly regulated environment. This role will partner closely with Infrastructure, DevOps, Software Engineering, IT, Compliance, and GRC teams to identify risks, strengthen security controls, respond to security events, and help maintain a secure and resilient environment.
Location: Remote
Department: Information Technology
Compensation: $110,000–$135,000 annually
Position Type: Full-Time
Travel: Up to 10%, as needed
Key Responsibilities:
Design, implement, configure, and maintain security controls across cloud, endpoint, network, identity, and application environments
Manage and improve security technologies including SIEM, EDR/XDR, vulnerability management, email security, DLP, identity protection, firewalls, and cloud security platforms
Monitor and investigate security alerts, suspicious activity, potential threats, and security incidents
Develop and tune security detections, alerts, dashboards, and automated response workflows
Perform vulnerability scanning and support remediation across servers, endpoints, applications, cloud infrastructure, and network devices
Support penetration testing, security assessments, and remediation efforts
Support identity and access management controls, including SSO, MFA, conditional access, and privileged access management
Investigate suspicious login activity, compromised accounts, and identity-related threats
Help secure cloud infrastructure and services within Microsoft Azure and/or AWS
Partner with DevOps and Software Engineering to incorporate security into CI/CD pipelines and software development practices
Participate in incident response, including investigation, containment, eradication, recovery, and post-incident analysis
Analyze security logs, endpoint telemetry, authentication events, network activity, and forensic evidence
Support compliance with HIPAA, HITRUST, SOC 2, PCI-DSS, and applicable contractual and regulatory requirements
Assist GRC teams with technical evidence for audits, assessments, and customer security reviews
Maintain security documentation, procedures, standards, diagrams, and technical control evidence
Qualifications:
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience
3–5 years of professional cybersecurity, security engineering, security operations, or related IT security experience
Hands-on experience with several of the following:
SIEM and security monitoring platforms
EDR/XDR technologies
Vulnerability management platforms
Identity and access management
Microsoft 365 / Entra ID or similar enterprise identity platforms
Azure and/or AWS cloud security
Firewalls, network security, and secure remote access
Email and phishing protection
Data Loss Prevention (DLP)
Experience investigating security alerts and responding to security incidents
Working knowledge of vulnerability management and remediation
Understanding of TCP/IP, DNS, HTTP/S, VPNs, firewalls, and network segmentation
Understanding of Windows and Linux security fundamentals
Ability to analyze logs and security telemetry across multiple systems
Familiarity with scripting or automation using PowerShell, Python, Bash, APIs, or similar technologies
Strong troubleshooting, analytical, and documentation skills
Ability to communicate technical security risks to both technical and non-technical audiences
Experience in healthcare, healthcare technology, revenue cycle management, medical billing, or another highly regulated industry
Experience securing environments that store, process, or transmit PHI
Preferred Certifications:
Relevant certifications are preferred but not required, including:
Security+ | CySA+ | SSCP | GSEC | AZ-500 | SC-200 | Cisco | AWS Certified Security – Specialty
What We’re Looking For:
Strong technical problem-solving and troubleshooting skills
In-depth knowledge of incident response
A curious, investigative mindset and willingness to dig into complex technical issues
Strong organizational and planning skills
Ability to manage multiple priorities in a fast-paced environment
Commitment to continuous learning as cybersecurity threats and technologies evolve
Additional Information:
Position Type: Full-Time
Work Location: Remote
Travel: Approximately 10%, as needed
Benefits & Incentives:
Comprehensive Health Benefits: Choose from a variety of medical, dental, and vision plans designed to support your overall well-being.
Life & Disability Coverage: Receive company-paid Basic Life and AD&D insurance, short-term and long-term disability coverage, with the option to purchase additional voluntary Life and AD&D benefits.
401(k) Retirement Plan: Become eligible to participate in the company's 401(k) plan on the first day of the quarter following three months of continuous employment, with a company match to help you invest in your future.
Paid Time Off: Begin accruing PTO on your first day of employment, promoting a healthy work-life balance from the start.
Flexible Benefit Options: Tailor your benefits package with a variety of options to meet your individual and family needs.
About GetixHealth:
Founded in 1992, GetixHealth has grown into a leading provider of healthcare revenue cycle management services, with offices across the United States and India. We work with healthcare organizations to optimize their financial performance, offering solutions that enhance efficiency and profitability. Our team of 1,800 dedicated professionals delivers exceptional patient care, compliance, and cutting-edge technology to help clients succeed. With a relentless commitment to patient satisfaction, we ensure that every step of the revenue cycle is streamlined and patient centered.
Note:This job description outlines the primary duties and qualifications for the role. It is not intended to be an exhaustive list of responsibilities or working conditions.
GetixHealth is an equal opportunity employer and participates in E-Verify.
Originally posted on Himalayas
Who can apply
Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.