Zane Networks, LLC is a staffing partner of CRISP – a non-profit that serves as a regional health information exchange (HIE) serving Maryland and the District of Columbia. ZaneNet is a leading local small business that helps organizations leverage health technology to better care for individuals and populations. Our projects often address the reduction of health disparities and urgent healthcare crises. As a staffing partner of CRISP, we employ top professionals in the fields of healthcare, technology, finance and management and we are looking for candidates who can join our team to help expand equitable access to care in the DC/MD metropolitan area.
For more information about Zane Networks, please visit: www.zanenetworks.com.
The Security Program Manager manages the CRISP Security Management System and ensures compliance with necessary certifications and regulations. The PM works with others on the Security Team, as well as the Integrations and Development Teams, to implement security controls across the enterprise. The PM will have the ability to anticipate potential problems, respond to security incidents and use analytical skills to fix problems and maintain overall system security. This role detects, prevents, and resolves security threats to CRISP networks, and plays a technical role in maintaining the integrity, availability and confidentiality of associated data and information systems. The Security Program Manager leads projects related to security, infrastructure and enterprise architecture.
For more information about CRISP, please visit: https://www.crisphealth.org/
ESSENTIAL DUTIES AND RESPONSIBILITIES
Include the following. Other duties may be assigned.
The individual in this role is responsible for:
Administration and implementation of the company’s security management system
Monitoring computer networks for security threats or unauthorized users
Analyzing security risks and developing response procedures
Developing and testing software deployment tools, firewalls, and intrusion detection systems
investigating incidents and submitting reports (including root cause analysis and corrective actions)
Researching latest technological advances and recommending enhancements to improve existing security systems
Working with both Security Architect and Compliance Manager
Structuring what our approach to security is; owns/ensures HITRUST controls and management system
Identification of security gaps, selecting appropriate tools, and managing implementation
Requirements gathering/design/vetting/RFP process
Defining ongoing management program for each tool/project
Reviewing analysis results, investigating, reporting out, working with Security Architect
Analyzes/communicates on Splunk alerts and Nessus scans (Security Architect will lead configuration areas of concern)
Manages risk, risk decisions (by PSO) and risk responses / mediations for IT security-related areas.
Maintains the risk register in coordination with Security Architect (for analysis and prioritization)
To perform this job successfully, the incumbent must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Strong project management, written and verbal communication skills
Ability to manage priorities required, both individually and for a team
Ability to prioritize and manage multiple job duties, including personal time management and organization skills
2-5 years of experience in networking systems or network security
Demonstrated knowledge in network access control, intrusion prevention and detection systems, firewalls, routers, incident response, information security methods, and basics of risk analysis
SSCP or CISSP certification
Program management experience
Education and/or Experience
4-year college degree
Preferred advanced degree in relevant field (Cybersecurity, IT)
2+ years of work experience in security, auditing, and compliance arenas
Job Type: Full-time
Do you have program management experience?
Do you have 2+ years of work experience in security, auditing, and compliance arenas?