HCA Healthcare - Nashville, TN

posted 14 days ago

Part-time,Full-time - Mid Level
Nashville, TN
5,001-10,000 employees
Hospitals

About the position

The Network Security Engineer II at HCA Healthcare plays a crucial role in enhancing and implementing network security controls to protect the organization's infrastructure, patients, and data from cyber threats. This position involves assessing security policies, identifying vulnerabilities, and collaborating with IT teams to ensure compliance with regulatory requirements while continuously improving the security posture of the organization.

Responsibilities

  • Assist in the evaluation, recommendation, and implementation of appropriate security measures, including next-generation firewall features, intrusion detection/prevention systems, VPN, network segmentation/zero trust, multifactor and access control mechanisms.
  • Conduct firewall rule reviews, security audits, baseline and best practice compliance, forensic network investigation to support data transmission adherence and implement or oversee recommendations.
  • Support and contribute to network security solutions under the guidance of senior engineers to protect the organization's infrastructure, applications, and data from cyber threats in accordance with regulatory and industry requirements, such as PCI DSS, SOX, NIST, ISO 27000, and HIPAA.
  • Evaluate vulnerability assessments, penetration tests, metrics and security audits to identify potential hardening opportunities and provide remediation recommendations and solutions.
  • Assist with the implementation of solutions and configuration changes within a large enterprise network under the guidance of senior engineers in support of continuous security control maturity and risk reduction.
  • Participate in incident response and disaster recovery planning and testing.
  • Collaborate with other IT teams to ensure that network security controls are integrated with other systems and applications and are up to security standards.
  • Conduct routine network security audits and control tests on deployed technologies, collecting and consolidating indicators of performance, risks, trends and providing recommendations, baseline and regulatory compliance ratings.
  • Participate in relationships with vendors and contractors to ensure that security services are timely delivered and implemented in alignment to security policies.
  • Collaborate with senior engineers on the development and documentation of security policies and procedures, training and awareness.
  • Assist department leads with training peers on compliance and best practices.
  • Assist with research and design enhancements of automated solutions or best of breed technologies while assisting with integration tests with vendors.
  • Keep up-to-date with the latest threats and vulnerabilities, as well as relevant regulations and industry best practices, and implement recommendations to improve the organization's security posture and control maturity.

Requirements

  • Bachelor's degree preferred
  • 3+ years of relevant work experience required
  • Relevant experience with security technologies, such as next-generation firewalls, intrusion detection/prevention systems, VPN, network segmentation, access control mechanisms, and security design, management, best practices, policy, standards in large 1000+ firewall environments.
  • Experience in Checkpoint Firewall, CMA, Provider-1, Maestro, VSX/VSLS, Cloud Guard
  • Administration of one or many of the following Cisco Network Security Products & Technologies (i.e. Firepower, ASA, VPN, WSA, ISE, Stealthwatch, etc.)
  • Strong understanding of network protocols, topologies, tools, subnetting and architectures
  • Aptitude in Network Security Policy Management tools (Algosec, Tufin) and/or conducting risk assessments, firewall rule review, and security audits
  • Strong knowledge of enterprise security technologies and processes (Zscaler, A10, F5, WAF, Advanced Threat Detection Tools, Antibot, Antimalware, Threat Emulation, SIEM, IDS/IPS, Network Packet Analysis, Netflow, etc.)
  • Experience administrating solutions for security standards and frameworks, such as HIPAA, SOX, PCI DSS, HITECH, ISO/IEC 27001, and NIST Cybersecurity Framework
  • Knowledge of Network Security Management Tools/Technologies (e.g.: Splunk, TrustSec, segmentation, syslog, etc.)
  • Excellent verbal and written communication, interpersonal, analytical and problem-solving skills.
  • Ability to work independently and as part of a team.
  • Relevant certification from ISC2 (CISSP), GIAC (GISP), ISACA (CISA), Cisco Security or CompTIA are a plus.

Nice-to-haves

  • Relevant certification from ISC2 (CISSP), GIAC (GISP), ISACA (CISA), Cisco Security or CompTIA are a plus.

Benefits

  • Comprehensive medical coverage that covers many common services at no cost or for a low copay.
  • Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
  • Free counseling services and resources for emotional, physical and financial wellbeing.
  • 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service).
  • Employee Stock Purchase Plan with 10% off HCA Healthcare stock.
  • Family support through fertility and family building benefits with Progyny and adoption assistance.
  • Referral services for child, elder and pet care, home and auto repair, event planning and more.
  • Consumer discounts through Abenity and Consumer Discounts.
  • Retirement readiness, rollover assistance services and preferred banking partnerships.
  • Education assistance (tuition, student loan, certification support, dependent scholarships).
  • Colleague recognition program.
  • Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence).
  • Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service