- Company Name
- Minaris Advanced Therapies
- Job Title
- Information Security Engineer
- Job Description
-
**Job Title:** Information Security Engineer
**Role Summary:**
Responsible for safeguarding the integrity, confidentiality, and availability of company data across desktop, server, cloud, and mobile environments. Plans, implements, tests, and maintains security technologies, drives continuous improvement, and ensures compliance with regulatory and industry standards.
**Expectations:**
- Apply security best practices and standards organization‑wide.
- Detect, analyze, and respond to security incidents promptly.
- Conduct vulnerability assessments, penetration testing, and risk analyses.
- Communicate findings and recommendations to management and staff.
- Lead security projects with multiple stakeholders and maintain up‑to‑date knowledge of threat landscapes.
**Key Responsibilities:**
- Develop, document, and enforce security policies, SOPs, and standards.
- Implement security controls (firewalls, VPNs, IDS/IPS, endpoint protection, encryption, data masking).
- Perform regular vulnerability scans, penetration tests, and threat modeling.
- Monitor networks and systems using SIEM tools; manage external SIEM vendor relationships.
- Provide incident response, forensic analysis, and post‑incident reporting.
- Ensure compliance with industry/government regulations (e.g., ISO/IEC 27001, ITIL).
- Produce metrics and reports on security program effectiveness; recommend enhancements.
- Educate employees on security awareness, policies, and best practices.
- Stay current on emerging threats, hacker methodologies, and security technologies.
**Required Skills:**
- Strong knowledge of LAN/WAN (MPLS, IPsec), IIS, wireless, cloud, and mobile security architectures.
- Proficiency with firewalls, VPNs, IDS/IPS, endpoint protection, disk encryption, and data masking solutions.
- Experience with vulnerability assessment tools, penetration testing, and ethical hacking.
- Familiarity with disaster recovery, computer forensics, and SIEM platforms.
- Understanding of risk assessment methodologies and regulatory compliance (e.g., GDPR, HIPAA).
- Project management capability; ability to lead large, multi‑stakeholder initiatives.
- Excellent analytical, communication, and documentation skills.
- Self‑motivated learner; team‑oriented collaborator.
**Required Education & Certifications:**
- Bachelor’s degree in Cyber Security, Management Information Systems, Computer Science, or related field (or equivalent work experience).
- Minimum 3 years experience in cyber security, risk management, or audit roles.
- Professional certifications preferred: CISSP, CISM, ISO/IEC 27001 Lead Implementer, ITIL Foundation.
Philadelphia, United states
On site
Junior
09-09-2025