Security Engineer II
PATIENT ACCOUNTING SERVICE CENTER
Job description
GetixHealth is seeking an experienced Security Engineer II, SecOps to join our Information Technology team. This mid-level role is responsible for implementing, maintaining, and improving technical security controls across cloud, endpoint, network, identity, and application environments.
The ideal candidate will have hands-on cybersecurity engineering experience and an understanding of security and regulatory requirements within healthcare or another highly regulated environment. This role will partner closely with Infrastructure, DevOps, Software Engineering, IT, Compliance, and GRC teams to identify risks, strengthen security controls, respond to security events, and help maintain a secure and resilient environment.
Location: Remote
Department: Information Technology
Compensation: $110,000–$135,000 annually
Position Type: Full-Time
Travel: Up to 10%, as needed
Key Responsibilities:
-
Design, implement, configure, and maintain security controls across cloud, endpoint, network, identity, and application environments
-
Manage and improve security technologies including SIEM, EDR/XDR, vulnerability management, email security, DLP, identity protection, firewalls, and cloud security platforms
-
Monitor and investigate security alerts, suspicious activity, potential threats, and security incidents
-
Develop and tune security detections, alerts, dashboards, and automated response workflows
-
Perform vulnerability scanning and support remediation across servers, endpoints, applications, cloud infrastructure, and network devices
-
Support penetration testing, security assessments, and remediation efforts
-
Support identity and access management controls, including SSO, MFA, conditional access, and privileged access management
-
Investigate suspicious login activity, compromised accounts, and identity-related threats
-
Help secure cloud infrastructure and services within Microsoft Azure and/or AWS
-
Partner with DevOps and Software Engineering to incorporate security into CI/CD pipelines and software development practices
-
Participate in incident response, including investigation, containment, eradication, recovery, and post-incident analysis
-
Analyze security logs, endpoint telemetry, authentication events, network activity, and forensic evidence
-
Support compliance with HIPAA, HITRUST, SOC 2, PCI-DSS, and applicable contractual and regulatory requirements
-
Assist GRC teams with technical evidence for audits, assessments, and customer security reviews
-
Maintain security documentation, procedures, standards, diagrams, and technical control evidence
Qualifications:
-
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience
-
3–5 years of professional cybersecurity, security engineering, security operations, or related IT security experience
-
Hands-on experience with several of the following:
-
SIEM and security monitoring platforms
-
EDR/XDR technologies
-
Vulnerability management platforms
-
Identity and access management
-
Microsoft 365 / Entra ID or similar enterprise identity platforms
-
Azure and/or AWS cloud security
-
Firewalls, network security, and secure remote access
-
Email and phishing protection
-
Data Loss Prevention (DLP)
-
-
Experience investigating security alerts and responding to security incidents
-
Working knowledge of vulnerability management and remediation
-
Understanding of TCP/IP, DNS, HTTP/S, VPNs, firewalls, and network segmentation
-
Understanding of Windows and Linux security fundamentals
-
Ability to analyze logs and security telemetry across multiple systems
-
Familiarity with scripting or automation using PowerShell, Python, Bash, APIs, or similar technologies
-
Strong troubleshooting, analytical, and documentation skills
-
Ability to communicate technical security risks to both technical and non-technical audiences
-
Experience in healthcare, healthcare technology, revenue cycle management, medical billing, or another highly regulated industry
-
Experience securing environments that store, process, or transmit PHI
Preferred Certifications:
Relevant certifications are preferred but not required, including:
Security+ | CySA+ | SSCP | GSEC | AZ-500 | SC-200 | Cisco | AWS Certified Security – Specialty
What We’re Looking For:
-
Strong technical problem-solving and troubleshooting skills
-
In-depth knowledge of incident response
-
A curious, investigative mindset and willingness to dig into complex technical issues
-
Strong organizational and planning skills
-
Ability to manage multiple priorities in a fast-paced environment
-
Commitment to continuous learning as cybersecurity threats and technologies evolve
Additional Information:
Position Type: Full-Time
Work Location: Remote
Travel: Approximately 10%, as needed
Benefits & Incentives:
-
Comprehensive Health Benefits: Choose from a variety of medical, dental, and vision plans designed to support your overall well-being.
-
Life & Disability Coverage: Receive company-paid Basic Life and AD&D insurance, short-term and long-term disability coverage, with the option to purchase additional voluntary Life and AD&D benefits.
-
401(k) Retirement Plan: Become eligible to participate in the company's 401(k) plan on the first day of the quarter following three months of continuous employment, with a company match to help you invest in your future.
-
Paid Time Off: Begin accruing PTO on your first day of employment, promoting a healthy work-life balance from the start.
-
Flexible Benefit Options: Tailor your benefits package with a variety of options to meet your individual and family needs.
About GetixHealth:
Founded in 1992, GetixHealth has grown into a leading provider of healthcare revenue cycle management services, with offices across the United States and India. We work with healthcare organizations to optimize their financial performance, offering solutions that enhance efficiency and profitability. Our team of 1,800 dedicated professionals delivers exceptional patient care, compliance, and cutting-edge technology to help clients succeed. With a relentless commitment to patient satisfaction, we ensure that every step of the revenue cycle is streamlined and patient centered.
Note: This job description outlines the primary duties and qualifications for the role. It is not intended to be an exhaustive list of responsibilities or working conditions.
GetixHealth is an equal opportunity employer and participates in E-Verify.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.