Information Security Engineer
Procom - United States
Hiring: Information Security Engineer Company: Procom Location: United States Job Posted Time: 2026-09-11 10:21:53 Target Skills & Keywords : AI, AWS, Azure, IAM, Linux, Okta, PCI DSS, Regulatory Compliance, SaaS, iOS, macOS About the job Experience: •5 years of experience in cybersecurity, with at least 3 years focused on vulnerability management, compliance validation, or threat analysis. •Minimum 5 years of experience in cybersecurity, with at least 3 years focused on vulnerability management, compliance validation, or threat analysis. Required Skills: •· Conduct continuous identification and assessment of SaaS exposures, to include misconfigurations, permission sprawl, insecure integrations, and identity-centric risks across enterprise SaaS platforms. •· Analyze security findings and provider advisories to identify and prioritize corrective action(s) based on exposure, exploitability, and business criticality. •· Document and track SaaS security risks, remediation actions, and posture trends using automated risk registers, POA&Ms, and exception requests. Generate and brief technical and executive-level reports aligned to applicable regulatory and audit requirements. •· Develop, implement, and sustain security configuration baselines and hardening standards, mapped to organizationally mandated frameworks. •· Partner with SaaS application owners and identity, GRC, and enterprise teams to coordinate remediation of customer-controlled SaaS risks. •· Plan and execute SaaS security posture assessments to measure connected application compliance and alignment across the SaaS portfolio. •· Participate in cross-functional risk and threat modeling activities and provide actionable recommendations for reduction or transference of risk. •· Develop, implement, and update vulnerability management policies, standards, and TTPs supporting SaaS vulnerability and exposure management processes. Qualifications: •· Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent experience). •· Professional certification as Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP+), GIAC Security Leadership Certification (GSLC), or equivalent. •· Minimum 5 years of experience in cybersecurity, with at least 3 years focused on vulnerability management, compliance validation, or threat analysis. •· Hands-on experience with SSPM, CASB, IAM, or equivalent SaaS vulnerability management tools (e.g., Wiz, Microsoft Defender, Netskope, Entra ID, Okta). •· Familiarity with prompt engineering and leveraging of AI tools to automate manual processes and supplement data analysis. •· A strong understanding of networking, infrastructure, application, and information concepts and associated security principles. •· Strong analytical, documentation, and communication skills. •· Ability to lead cybersecurity engineering projects and effectively communicate with business partners. •· Excellent interpersonal and communications skills, with the ability to work collaboratively in a team environment. •· Ability to work under pressure and effectively handle multiple responsibilities in a fast-paced and critical heath care environment. Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!