Demo

Information Security Principal Engineer

TalentBurst, Inc.
Philadelphia, PA Full Time
POSTED ON 2/17/2025
AVAILABLE BEFORE 5/14/2025

Title : Information Security Principal Engineer

Duration 4 months

Philadelphia PA Position is primarily remote - however, there is potential to come onsite so local candidates highly preferred.

Position has the option to extend beyond 6 / 30 / 25.

Security certifications are preferred but not required.

Job Summary :

Demonstrates specialized & comprehensive knowledge in Information security management practices, disciplines, regulations, industry standards, related frameworks, project management principles, and methodologies, security engineering concepts, security operations model; industry standards around architecture principles.

Demonstrates exceptional skills in managing multiple projects and priorities in order to meet strategic goals and timelines.

Exhibits the ability to plan, manage and implement highly complex enterprise architecture and security implementations, enhancements or modifications that require in-depth knowledge across multiple technical areas and business segments.

Exhibits exceptional understanding of emerging regulatory and healthcare issues in order to develop internal and external checks and controls to ensure proper governance, security and quality of information assets.

Demonstrates exceptional troubleshooting and collaborative skills required to identify, analyze and resolve complicated security issues.

Demonstrates advanced proficiency in creating detailed documentation, perform budget planning and oversight, and providing input on Client infrastructure strategic planning, technology standards, and information security and risk practices.

Exhibits ability to communicate effectively with clients, colleagues, vendors, management and the ability to translate complex technical solutions into non-technical requirements documents.

Performs planning, development, implementation, and delivery of enterprise architecture and engineering principles for new, existing and future strategic and operational activities.

Demonstrates the ability to provide technical expertise and consultation to the CIO, CTO, CISO, executive leadership and other business and clinical leaders.

Job Functions :

A Principal Information Security Specialist has similar responsibilities to Information Security Specialist III personnel. However, a Principal Information Security Specialist is deemed to be the subject matter expert and in-house advisor on complex problems and issues. A Principal Information Security Specialist also :

  • Works independently to initiate assignments and draws upon extensive professional knowledge and experience to make independent judgments regarding analysis, evaluation, development, and implementation of enterprise long-term solutions and operating initiatives to ensure that enterprise architectural objectives are aligned with organizational needs and strategic goals.
  • Optimizes information management approaches through an understanding of evolving business needs and technology capabilities and ensures that projects do not duplicate functionality or diverge from each other and business and DTS strategies.
  • Shapes, designs, and plans specific service lines in product area and manages the risks associated with information and DTS assets through appropriate standards and security policies.
  • Functions as the Subject Matter Expert (SME) to maintain an understanding of CHOP DTS business and clinical applications and the relationship to InfoSec and compliance solutions; assist Hospital stakeholders in understanding information protection needs that support the Hospital's business.

Job Functions (cont'd) :

  • Works with other architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs and takes ownership of a particular solution offering.
  • Works with highly matrixed team of DTS personnel to support enterprise architecture and information security operations including, but not limited to, architecture and InfoSec principles around identity & access management models, cloud identify management providers, security information and event monitoring, and data loss prevention, perimeter (e.g. firewalls, IPS, web filtering), cloud and virtualization environments and network security (host-based firewalls, anti-virus, disk encryption).
  • Support and / or lead activities around InfoSec standards for business continuity and change management activities (e.g., table tops and change review board) and educates DTS Hospital management on security issues (e.g., Identity and Access Management (IAM), Role Based Access Control (RBAC) models.
  • Top Skillsets Sought :

    Technical, hands-on experience with information security project implementations.

    Technical experience with security logging and security monitoring technology (i.e., security incident & event management technology, managed detection and response technology, etc.). Microsoft technology experience a plus.

    Experience working with Managed Security Service Providers (MSSPs) and Cloud providers.

    Experience with managing governance over security initiatives, such as security logging governance.

    Able to work independently and draws upon extensive professional knowledge and experience to make independent judgement regarding analysis, evaluation, development and implementation of enterprise long-term solutions and operating initiatives.

    Excellent communication and documentation skills a must.

    Education : Skills (cont'd) :

    Demonstrates comprehensive knowledge and understanding of Information security principles, general and IT controls (e.g., access controls, risk management, change management, cloud security) and related information security policies and procedures. Exhibits knowledge of industry regulatory standards and accreditation requirements or control frameworks (HIPAA, PCI, Joint Commission, NIST, Red Flags, ISO 27000 series). Comprehensive knowledge of information security regulations, standards and leading practices, including understanding of EHR, cloud frameworks, identity access controls. Good knowledge of basic database query techniques & data mining to analyze data or other related database functionality. Knowledge of Microsoft Active Directory, UNIX, and Clinical Applications a plus. Experience implementing application level security in clinical and financial systems (e.g., Epic, Lawson). ERP experience a plus. General understanding of networking and communication techniques including WANs, LANs, Internet, Intranet, protocols, such as TCP / IP and their impact on security. Microsoft, UNIX, Lawson, and Clinical Applications, Experience with industry standard SDLC methodologies; hands-on experience in Project Server methodologies, PMO project management skills, including use of MS productivity tools (Access, Word, PowerPoint, Visio, Project). Experience with risk management frameworks. Information Security Requirements Understand and comply with all enterprise and IS departmental information security policies, procedures and standards. Support the integration of information security in the development, design, and implementation of Hospital Technology Resources that process, transmit, or store CHOP information. Support all compliance activities related to state, federal regulatory requirements, healthcare accreditation standards, and all other applicable regulations that govern the use and disclosure of patient, financial, or other confidential information.

    Required Education :

    Bachelor's Degree Preferred Education : Bachelor's Degree in Computer Science, Information Systems, or related field Required Experience : At least twelve (12) years industry related experience, including experience in one to two IT disciplines (such as technical architecture, network management, application development, middleware, information analysis, database management or operations) in a multitier environment. At least six (6) years experience with information security, regulatory compliance and risk management concepts. At least three (3) years experience with Identity and Access Management, user provisioning, Role Based Access Control, or control self-assessment methodologies and security awareness training. Experience with Cloud and / or Virtualization technologies.

    Preferred Experience :

    At least three (3) years in working with matrixed high performance teams. level 2a

    TB_EN

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Information Security Principal Engineer?

    Sign up to receive alerts about other jobs on the Information Security Principal Engineer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $102,189 - $143,024
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at TalentBurst, Inc.

    TalentBurst, Inc.
    Hired Organization Address DE Full Time
    Title : Certified Pharmacy Technician Duration : 3 months ( Possible extension ) Location : Newark DE 19718 Shift Timing...
    TalentBurst, Inc.
    Hired Organization Address Princeton, WV Full Time
    Job Description TalentBurst, Inc is seeking a travel Dialysis Technician for a travel job in Princeton, West Virginia. J...
    TalentBurst, Inc.
    Hired Organization Address NH Full Time
    Job Title : Registered Nurse - Emergency Department Submission Requirements : WILL TAKE LOCALS - Local rate (less than 5...
    TalentBurst, Inc.
    Hired Organization Address Knoxville, TN Temporary
    Job Title : Security Guard, Unarmed Location : Knoxville TN Duration : 9 Months contract Hours / Shift : 2nd shift 4pm t...

    Not the job you're looking for? Here are some other Information Security Principal Engineer jobs in the Philadelphia, PA area that may be a better fit.

    Information Security Principal Engineer

    IntePros, Philadelphia, PA

    Information Security Principal Engineer

    Signature Consultants, Philadelphia, PA

    AI Assistant is available now!

    Feel free to start your new journey!