Principal Information Security Engineer - IS Mod
Mayo ClinicAbout the role
The Principal Information Security Engineer on the Incident Response Team is a critical leadership role responsible for overseeing, coordinating, and enhancing the organization’s response to cyber threats and security incidents. Leads the technical aspects of incident detection, analysis, containment, eradication, and recovery for information security incidents. Develops and maintains incident response plans, playbooks, and procedures, ensuring alignment with industry best practices and regulatory requirements. Coordinates and drive investigations into suspicious activities, malware attacks, and advanced persistent threats (APTs). Serves as the primary escalation point for complex incidents, providing expert guidance and decision-making during critical events. Collaborates with security operations, threat intelligence, and IT teams to improve detection capabilities and reduce response times. Conducts post-incident reviews, root cause analyses, and lessons-learned sessions to strengthen the organization’s security posture. Mentors and trains incident response team members, fostering technical growth and knowledge sharing. Stays current with emerging threats, vulnerabilities, and attack techniques, recommending proactive measures to mitigate risks. Prepares and delivers detailed reports, metrics, and presentations to senior leadership and stakeholders. Technical expertise in incident response and digital forensics. Deep knowledge of cybersecurity frameworks, security technologies, and threat landscape. Proficiency in forensic analysis, malware reverse engineering, and network security monitoring tools. Strong analytical, problem-solving, and communication skills. Strong ethical standards and attention to detail.
The Information Security Principal Engineer acts as an information security liaison to various business units and the Information Technology Department to provide direction, training, and guidance for OIS staff. The Information Security Principal Engineer is considered an expert, leader and mentor; identifying and resolving technology related information security gaps based on the organization’s risk posture. Specifically, the Information Security Principal Engineer is knowledgeable, proficient and experienced in:
•Working with business partners across the organization to achieve organizational and OIS goals
•Working collaboratively with team members and other leaders to develop and implement cybersecurity strategy based on industry best practice
•Developing secure network and systems architecture
•Analyzing technology security posture and appropriate use of security defenses
•Matching technical solutions with business requirements and then designing and implementing them;
•Software development, testing, support/problem solving, and overall technology administration;
•Organizational procedures such as the system development lifecycle;
•Use of defensive measures and information to identify, analyze and report security events;
•Researching and understanding pertinent information technology laws, policies and procedures
•Providing direct support for acquiring information security technology and applications
•Applying IT-related laws and policies, and providing IT-related guidance throughout the software acquisition lifecycle
•Collecting and analyzing information to identify vulnerabilities and potential for exploitation
•Managing and administering processes and tools that enable the organization to identify, document, and access intellectual capital and information content
•Executing duties governing hardware, software, and information system acquisition programs and other program management policies
This is a full time, remote position within the United States. Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.
Master’s degree with three (3) years’ experience OR Bachelor’s degree in Computer Science, Information Systems, Engineering or related major and a minimum five (5) years�� experience in the information security field required.The Information Security Principal Engineer also requires the following skills/abilities.
•Understands the use and efficacy of information security tools, server configurations and controls with the ability to install, configure, test and operate them.
•Able to test, implement, deploy, maintain, review and administer the infrastructure hardware and software required to effectively secure the enterprise, protect data, identify and mitigate risks
•Ability to collect, process, preserve, analyze and present computer related evidence in support of network vulnerability mitigation and/or criminal, fraud, counterintelligence or law enforcement investigations.
•Provides advanced technical opinions/conclusions re. security tools, trends, and controls which are supported by documented evidence, based on multiple perspectives and leverage of a variety of
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s