Director Cybersecurity Engineering & Automation
Fairview Health Services
**Overview**
The Director, Cybersecurity Engineering & Automation, is the leader responsible for executing Cybersecurity strategy, deploying secure and easy to adopt controls, discovering configuration gaps and continuously improving controls. The leader will be accountable to identify, evaluate new tools and technologies meeting enterprise security needs and automating the enforcement of controls as required. Leader will oversee Zero Trust Access contributing controls and tools such as Enterprise Directories and SSO/Federation, MFA, PKI, Digital IDM, Privileged IDAM, SOAR etc. Successful candidate will oversee teams of skilled Cyber Engineers and Subject Matter Experts to ensure tools are deployed, well integrated and configured to log telemetry and signals for early and accurate detection of a cyberattack and contribute to building resilient controls/tools from cyber threats directed at Fairview. Operating under Cyber Security Risk Management (CSRM) group, this leader will promote Security First culture and contribute to deploying and defending frictionless security controls that can be risk adaptive.
**Responsibilities Job Description**
Director, Cybersecurity Engineering & Automation will assist the CISO to formulate and execute cybersecurity engineering and resilient control deployment strategy, aligned with organizational objectives. Responsibilities include the following:
+ Manage cybersecurity managers/leaders and oversee three core groups of Cybersecurity Engineering – Digital Identity & Privileged Identity Systems; Role Analytics & On-demand access; Authentication, MFA, SSO & Federation Services; Data Security & Data Loss Prevention; Cloud Security & PURPLE Team etc.
+ Will assist CISO with prioritization of strategic initiatives, remediate security risks in a cost-effective manner, in collaboration with Finance and other IT leadership teams
+ Formulate Cyber automation strategy and oversee conversion of manual response playbooks into autonomous processes to auto-detect and defend from cyber threats
+ Partner with Infrastructure, Applications, Data Analytics, AI and other CSRM leadership to identify friction for end users and workforce in day-to-day workflows and engineer solutions to remove and/or reduce friction, promote productivity gains across the enterprise
+ Will oversee a combination of in-house and managed services partners to execute design engineering, piloting, deployment of new tools and processes that are resilient to cyber threats
+ Drive end-to-end Cybersecurity tools & processes integration using API and other standards, promote seamless interoperability, estimate and scale tools for capacity, both for on-prem and cloud compute environments
+ Oversee Business Analysis and Quality Assurance of Cybersecurity solutions and deliver to business and IT transformation needs
+ Conduct reviews of system capacity, HA, BCP/DR needs of Cybersecurity tools and participate in periodic heath checks of various solutions deployed
+ Drive continuous refinement and improvement of existing controls through periodic PURPLE Teaming, Refining Operational Standard Operating Processes (SOPs) through automation, autonomous response orchestration
+ Hire, coach, mentor high performing diversified teams in Cybersecurity Engineering & Automation groups
+ Partner with CISO to actively manage the Annual Operating and Capital Budgets allocated for assigned departments
**Qualifications**
**Required**
**Education**
+ Bachelors degree any field or equivalent combination of experience and education.
**Experience**
+ Minimum of 15 Years of cumulative experience in Information Technology/Operations leading teams with three or more of these specialized areas – Cyber Security Engineering, Automation, Operations, 24x7 Operations and Customer Service Management, Digital Identity & Access Management, User On/Offboarding, Security Orchestration & Automated Response, Data Security & Loss Prevention, Application Security, Cloud Security,
+ 5+ years of direct leadership/management of IT/Cybersecurity teams, particularly delivering enterprise scale initiatives with globally diversified and distributed teams
+ Experience with project, program management, agile methodology, product and service oriented delivery, business expectations management
+ Deep experience with most common operating systems (Windows, macOS, Linux, iOS, Android) and associated vulnerabilities at various OS layers
+ Working experience with automation technologies or SOAR platforms such as Terraform, Ansible, AWS Cloud Security, XSOAR, Splunk, Sentinal, etc.
+ Exposure to Zero Trust Security, defense-in-depth approaches
+ Understanding of tools, techniques used by threat actors to breach networks, server systems, cloud workloads or applications, familiarity with MITRE ATT&CK framework and its use in cyberattack detection, containment and prevention
+ Experienced in securing public cloud environments in either AWS, AZURE, or GCP
+ Understanding of common cybersecurity frameworks and methods such as NIST CSF 2.0, regulatory compliance such as HIPAA, PCI 4.0 etc and understanding of certifications with HITRUST
+ Understanding of AI/GenAI/ML powered compute methods, pattern recognitions, AI BOTs, TOR Networks and associated attack patterns
+ Demonstrated understanding of security related technologies and practices, including authentication and authorization systems, endpoint protection, encryption, segmentation strategies, vulnerability management, network and Host Incident Detection and Prevention, Data Loss Prevention, Data Security, risk based and strong authentication, cloud access security, secure remote access, firewalls, Application Security etc.
+ Excellent problem-solving skills including triage, root cause determination, cross functional & cross team collaboration
+ Leadership presence, comfortable presenting to and collaborating with all levels
+ Proven ability to successfully manage and execute multiple, large-scale projects to achieve target state
+ Strong team and individual coaching and mentoring skills
+ Experience in managing department budgets, planning, forecasting etc
+ Excellent oral, written, and interpersonal communication and presentation skills.
+ Ability to facilitate problem solving among groups with varying needs and priorities
**Preferred**
**Education**
+ Master’s in Computer Science/Cybersecurity or related fields
**Experience**
+ Prior experience as a Senior Manager/Director in IT, Infrastructure or Cybersecurity areas
+ Prior experience in executing large scale strategic and transformational projects of budgets >$1M with multi-location sourced and dispersed teams
+ Prior Experience in managing P&L of department or organizational unit, product or service-oriented delivery with attribution to cost of services etc.
**License/Certification/Registration**
+ Cybersecurity Industry recognized certifications such as CISSP, CISA, CISM, GCFE, GCIH, CCE, EnCE etc.
**EEO Statement**
EEO/AA Employer/Vet/Disabled: All qualified applicants will receive consideration without regard to any lawfully protected status
Confirm your E-mail: Send Email
All Jobs from Fairview Health Services