Data Loss Prevention Security Engineer Principal

Children's Hospital of Philadelphia - Philadelphia, PA

Hiring: Data Loss Prevention Security Engineer Principal Company: Children's Hospital of Philadelphia Location: Philadelphia, PA Job Posted Time: 2026-09-16 19:36:11 Employment Type: Full-time Target Skills & Keywords : Change Management, EHR, Encryption, Enterprise Architecture, Epic Systems, HIPAA, IAM, Microsoft PowerPoint, Project Management, RBAC, Regulatory Compliance, Risk Management, TCP/IP, Vendor Management, Visio About the job Required Skills: •Optimizes information management approaches through an understanding of evolving business needs and technology capabilities and ensures that projects do not duplicate functionality or diverge from each other and business and DTS strategies. •Shapes, designs, and plans specific service lines in product area and manages the risks associated with information and DTS assets through appropriate standards and security policies. •Functions as the Subject Matter Expert (SME) to maintain an understanding of CHOP DTS business and clinical applications and the relationship to InfoSec and compliance solutions; assist Hospital stakeholders in understanding information protection needs that support the Hospital's business. •Works with other architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs and takes ownership of a particular solution offering. •Support and/or lead activities around InfoSec standards for business continuity and change management activities (e.g., table tops and change review board) and educates DTS Hospital management on security issues (e.g., Identity and Access Management (IAM), Role Based Access Control (RBAC) models. Qualifications: •Bachelor's Degree Required •Bachelor's Degree Computer Science, Information Systems, or related field Preferred •At least three (3) years in working with matrixed high performance teams. Preferred •Demonstrates comprehensive knowledge and understanding of Information security principles, general and IT controls (e.g., access controls, risk management, change management, cloud security) and related information security policies and procedures. •Exhibits knowledge of industry regulatory standards and accreditation requirements or control frameworks (HIPAA, PCI, Joint Commission, NIST, Red Flags, ISO 27000 series). •Comprehensive knowledge of information security regulations, standards and leading practices, including understanding of EHR, cloud frameworks, identity access controls. •Good knowledge of basic database query techniques & data mining to analyze data or other related database functionality. •Knowledge of Microsoft Active Directory, UNIX, and Clinical Applications a plus. •General understanding of networking and communication techniques including WANs, LANs, Internet, Intranet, protocols, such as TCP/IP and their impact on security. •Microsoft, UNIX, Lawson, and Clinical Applications, Experience with industry standard SDLC methodologies; hands-on experience in Project Server methodologies, PMO project management skills, including use of MS productivity tools (Access, Word, PowerPoint, Visio, Project). Compensation: •$129,700 - $171,900 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!