Information Security Manager

🕒 vor 3 Tagen

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of AffirmedRx, a Public Benefit Corporation

AffirmedRx, a Public Benefit Corporation

11 - 50 Mitarbeiter

🏥 Gesundheitswesen

⚕️ Krankenversicherung

Healthcare • Healthcare Insurance

AffirmedRx ist eine gemeinnützige Gesellschaft, die sich der Transformation des Managements von Apothekenleistungen (PBM) verschrieben hat. Mit Fokus auf Transparenz, patientenorientierte Betreuung und innovative Lösungen strebt AffirmedRx danach, die Komplexitäten und Intransparenzen zu überwinden, die traditionell den PBM-Sektor plagen. Durch die Befähigung von Individuen und Organisationen bietet das Unternehmen Klarheit und unerschütterliche Unterstützung bei der Navigation von Apothekenleistungen. AffirmedRx steht für Integrität und Partnerschaft und bemüht sich, ein gesünderes und besser informiertes Erlebnis in Bezug auf Apothekenleistungen zu bieten, während es mutig den steigenden Kosten im Gesundheitswesen und für Arzneimittel entgegentritt.

Beschreibung

• Administer Microsoft Entra ID / Active Directory, including users, groups, conditional access, and MFA • Design, implement, and maintain single sign-on (SSO) integrations across the application portfolio (SAML / OIDC) • Run periodic user access reviews and account audits; document findings and drive remediation of access exceptions • Manage provisioning and deprovisioning; enforce least privilege and role-based access control • Operate and tune the SIEM (such as Microsoft Sentinel); review logs, alerts, and reports across endpoints, servers, network, and cloud • Triage and investigate alerts; participate in incident response (identify, contain, eradicate, recover, and document lessons learned) • Maintain and improve detection coverage in support of a defense-in-depth strategy • Maintain SOC 2 and URAC: own evidence collection, control mapping, and coordination with auditors • Lead and support the path to HITRUST CSF certification, including gap assessment, control implementation, evidence gathering, and validated-assessment readiness • Track remediation items, control owners, and audit timelines • Provide security oversight across the application portfolio • Document application and data flows, integrations, and trust boundaries • Support secure configuration, vulnerability remediation, and application access governance • Administer Microsoft Purview: data loss prevention (DLP), data classification and labeling, and retention • Execute eDiscovery, content and email search, and legal holds in support of legal and compliance requests • Evaluate, select, and recommend security products and enhancements to existing controls • Conduct and respond to vendor security assessments and support third-party risk review • Manage security tooling vendors: product selection, quote review, renewals, configuration, and invoice oversight • Respond to security and provision tickets in a timely, well-documented manner • Create and maintain security documentation: policies, standards, baselines, procedures, and runbooks

🎯 Anforderungen

• Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent experience • 4–7 years in information security or security engineering • Hands-on experience with the Microsoft security stack (Entra ID / Active Directory, Microsoft 365, Azure) • Experience supporting compliance frameworks such as SOC 2, HITRUST, URAC, or HIPAA • Demonstrated experience with IAM and SSO, SIEM operations, and data governance / eDiscovery (Purview or equivalent) • Experience with vendor security assessments and third-party risk • Healthcare, PBM, or other regulated-industry experience preferred • CISSP, CISM, or CompTIA Security+ (preferred) • Microsoft SC-200, SC-300, or AZ-500 (preferred) • HITRUST CCSFP (preferred) • Solid technical background with the ability to explain security concepts to a non-technical audience • Strong written and verbal communication • Customer-service orientation with a problem-solving attitude • Ability to work independently and prioritize across competing demands • Fully remote; must have reliable internet and a suitable home work environment • Occasional unscheduled overtime may be required to support incident response or audit deadlines • Willingness and ability to travel (10%-20%)

🏖️ Vorteile

• Competitive compensation, including health, dental, vision and other benefits

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 3 Tagen

Connected Logistics

51 - 200

📦 Logistik

💼 Beratung

🎖️ Verteidigung

Cybersecurity Assessment & Authorization SME responsible for managing cybersecurity in DLA IT systems. Ensuring compliance, authorizations, and briefings of cybersecurity processes and progress to senior management.

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 3 Tagen

Connected Logistics

51 - 200

📦 Logistik

💼 Beratung

🎖️ Verteidigung

Cybersecurity Assessment & Authorization SME managing cybersecurity implementation and compliance for DLA's IT capabilities. Overseeing accreditation processes and advising on cybersecurity strategies and risks.

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 3 Tagen

Connected Logistics

51 - 200

📦 Logistik

💼 Beratung

🎖️ Verteidigung

Cybersecurity SME managing cybersecurity implementation and monitoring for J6 Program Executive Officer's IT capabilities. Executing A&A processes and serving as the primary cybersecurity authority.

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 3 Tagen

Connected Logistics

51 - 200

📦 Logistik

💼 Beratung

🎖️ Verteidigung

Cybersecurity Assessment & Authorization SME managing cybersecurity implementation and monitoring. Serving as cybersecurity SME for A&A processes and briefing management on information systems.

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 3 Tagen

Connected Logistics

51 - 200

📦 Logistik

💼 Beratung

🎖️ Verteidigung

Cybersecurity Assessment & Authorization SME managing cybersecurity implementation and monitoring for DLA. Executing authorization processes and assessing cybersecurity risks and controls across IT capabilities.

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security