Blue Cross Blue Shield - Omaha, NE

posted 5 months ago

Full-time - Mid Level
Remote - Omaha, NE
Insurance Carriers and Related Activities

About the position

As a Cloud Security Engineer at Blue Cross and Blue Shield of Nebraska (BCBSNE), you will play a crucial role in ensuring the security and integrity of our cloud-based systems and networks. This position is designed for forward-thinking professionals who are eager to work with the latest Azure technologies. Your primary responsibilities will include designing, implementing, securing, maintaining, and continuously improving our cloud infrastructure. You will oversee the operations of secure cloud environments and security platforms across various domains, ensuring that our cloud computing environment is robust and secure. In this role, you will implement, deploy, and maintain security solutions that protect the Azure Cloud environment. You will be tasked with recommending procedural changes to enhance the Security Team's effectiveness and identifying opportunities to automate or streamline processes using AI. Your expertise will be essential in the implementation and maintenance of security cloud solutions that assist with cloud posture management (CSPM) and Azure Information Protection. You will also research and design security solutions for new technologies across all platforms and environments, ensuring that BCBSNE remains at the forefront of cybersecurity best practices. Additionally, you will be responsible for investigating changes and updates in current security solutions and the cybersecurity industry, implementing best practices in design and delivery. You will handle general inquiries regarding information security practices and security access, write technical specifications for the procurement and implementation of security appliances and software products, and participate in audit support activities related to Cyber Security, Identity & Access Management, and Cloud Networking. Your role will also involve troubleshooting and resolving security system issues, executing scans and reports related to vulnerability and configuration management, and leading security incident response exercises.

Responsibilities

  • Implement, deploy, and maintain security solutions for the Azure Cloud environment.
  • Recommend procedural changes to enhance the Security Team.
  • Identify opportunities to automate or streamline current processes utilizing AI.
  • Implement and maintain security cloud solutions for cloud posture management (CSPM) and Azure Information Protection.
  • Research and design security solutions for new technologies across all platforms and environments.
  • Investigate changes/updates in current security solutions and implement best practices.
  • Answer general inquiries regarding information security practice or security access.
  • Write technical specifications for procurement and implementation of security appliances and software products.
  • Participate in audit support activities for Cyber Security, Identity & Access Management, and Cloud Networking.
  • Perform required activities to resolve open audit issues.
  • Provide input for Key Performance Indicators (KPIs) and Metrics reporting.
  • Write and review policies/procedures for audit and regulatory compliance.
  • Troubleshoot and resolve security system issues.
  • Execute scans and reports related to vulnerability and configuration management.
  • Participate and lead in security incident response exercises.

Requirements

  • Bachelor's degree and five years of experience in Information Technology/Information Services, including at least four years in Information Security or Identity and Access Management.
  • Two years of project management or project completion experience.
  • Six or more years of experience granting role-based access within applications.
  • Six or more years of experience in Active Directory administration.
  • Understanding of GPO/PSO and RSOP hierarchies.
  • Experience in securing, implementing, managing, and maintaining Azure cloud environments.
  • Understanding of best practices for securing cloud environments and staying updated with trends and risks.
  • Deep knowledge of NTFS and file share/server volume security hierarchies.
  • Knowledge of an Identity and Access Management Platform (SailPoint, CyberArk, Oracle IDM, etc.).

Nice-to-haves

  • Familiarity with IT Audit lifecycle and frameworks.
  • Familiarity with MTRE threat model and other threat modeling techniques.
  • Familiarity with multiple operating systems (Windows, CISCO, Linux, etc.) and various hardening techniques.
  • Understanding of change control practices and experience building solutions in lab/dev environments.
  • Basic understanding of Linux root permissions.
  • Familiarity with cloud computing concepts.
  • Familiarity with various cybersecurity techniques and principles, such as forensics, threat hunting, penetration testing, threat intelligence, Federated Identity Management, and/or data loss prevention.

Benefits

  • Flexible work designations including 100% in-office, hybrid options, and 100% remote work.
  • Opportunities for professional development and career growth.
  • Supportive work environment that values diversity and inclusion.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service