Engineer, Information Security (Healthcare Consulting - Microsoft Security & Identity Stacks)
Sellers DorseyAbout the role
About Sellers Dorsey
Sellers Dorsey is a leading and fast-growing national healthcare consulting firm specializing in Medicaid financing, policy, and operations. We deliver impactful outcomes for our clients with a combination of technical expertise and deep understanding of public policy, government, and national and local political landscape. Together with its clients, Sellers Dorsey realizes opportunities that enhance the bottom-line and ultimately improve the lives of people and is committed to expanding access to healthcare in the US.
About the Role
Sellers Dorsey is seeking a Security Engineer who will design, implement, and manage secure cloud environments. In this role, you will play a critical part in safeguarding our cloud infrastructure, applications, and data across platforms such as Microsoft Azure. This position requires deep expertise in Microsoft security solutions, a strategic mindset, and the ability to adapt to evolving cybersecurity threats. The Security Engineer collaborates with cross-functional teams to ensure that organizational security objectives align with business goals, fostering a resilient and secure technological environment.
Key Responsibilities
Design and Implementation:
- Design and implement security controls and threat protection strategies to mitigate risks and protect against data breaches, unauthorized access, and other threats.
- Develop and maintain a comprehensive security architecture aligned with organizational goals and industry best practices.
- Lead the integration of security measures into the existing IT infrastructure, applications, and networks.
- Ensure compliance with regulatory requirements and standards such as HIPAA, HITRUST, SOC2, ISO 27001, and NIST.
- Manage and secure access through Entra ID, implementing Multi-Factor Authentication (MFA), conditional access, and role-based access controls.
Risk Assessment and Vulnerability Management:
- Conduct regular assessments to identify vulnerabilities and threats within the organization’s systems and implement timely mitigations.
- Develop risk management strategies and prioritize security efforts based on potential impact.
- Conduct threat modeling, risk assessments, and security architecture reviews for new and existing cloud deployments.
- Collaborate with stakeholders to ensure compliance with regulatory and legal requirements.
- Implement vulnerability management tooling and ensure consistent coverage.
Monitoring and Incident Response
- Implement systems to monitor security incidents, breaches, and abnormal activities in real-time, such as Sentinel and Defender.
- Work closely with the IT and security teams to develop and execute incident response plans.
- Lead response efforts to security incidents, coordinate with other teams, and execute remediation strategies effectively.
- Ensure post-incident analysis and recommendations to prevent future occurrences.
Continuous Improvement and Program Optimization
- Stay informed about emerging threats, technologies, and trends in cybersecurity.
- Develop strategies for adapting the organization’s security infrastructure to meet evolving demands.
- Analyze and optimize existing security systems to improve efficiency and reduce operational costs.
- Maintain accurate documentation of security protocols, configuration settings, and incident reports.
Team Collaboration and Training
- Work closely with IT teams, stakeholders, and external vendors to deliver integrated security solutions.
- Collaborate with DevOps and application development teams to integrate security into CI/CD pipelines.
- Provide training and guidance to employees on security policies, practices, and awareness.
- Act as a mentor to junior security professionals within the organization.
Key Qualifications
- Bachel
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s