Principal Cybersecurity Engineer & Security Auditor

CyberCoders - Denver, CO

Hiring: Principal Cybersecurity Engineer & Security Auditor Company: CyberCoders Location: Denver, CO Job Posted Time: 2026-09-12 11:20:21 Employment Type: Remote Target Skills & Keywords : Azure, Azure AD, HIPAA, Linux, PowerShell, Python, Risk Management, SIEM, TCP/IP, VPN About the job Experience: •10+ years of progressive cybersecurity experience with substantial hands-on engineering and assessment work in enterprise environments; experience in healthcare or HealthTech strongly preferred. Required Skills: •Lead and execute hands-on technical security assessments, penetration tests, red team activities, and vulnerability validation across complex enterprise and clinical environments. •Design, implement, and optimize security architecture and controls for network, endpoints, identity, cloud, and clinical systems (PACS, RIS, VNA, DICOM, HL7). •Perform independent security audits and compliance assessments focused on HIPAA and healthcare-specific regulations; prepare audit evidence and remediation roadmaps. •Administer and tune Fortinet FortiGate devices and centralized management/analytics (FortiManager, FortiAnalyzer) to enforce network segmentation, IDS/IPS, and VPN security. •Deploy, configure and tune Microsoft Defender for Endpoint, Azure AD identity protections, and Azure Sentinel (or equivalent SIEM) for detection, hunting, and automated response. •Develop and execute ransomware resilience programs including detection rules, backup validation, IR playbooks, containment strategies, and tabletop exercises. •Investigate security incidents and lead forensic analysis and remediation planning to remove adversary persistence and restore secure operations. •Evaluate, harden, and secure clinical imaging and information systems (PACS, RIS, VNA) and their interfaces (DICOM, HL7) to maintain patient safety and data confidentiality. Qualifications: •Bachelors degree in Computer Science, Information Security, or a related field, or equivalent experience; advanced degree preferred. •Demonstrated experience conducting technical security assessments, penetration tests, and red/blue team exercises in complex environments. •Strong hands-on experience with Fortinet FortiGate, FortiManager, and FortiAnalyzer administration and policy management. •Practical experience deploying and tuning Microsoft Defender for Endpoint, identity protection (Azure AD), and Sentinel or equivalent SIEM for threat detection and response. •Proven incident response, digital forensics, and ransomware mitigation experience including playbook creation and tabletop leadership. •Operational familiarity with clinical systems and protocols including PACS, RIS, VNA, DICOM, and HL7 and understanding of their security and patient-safety implications. •Deep knowledge of HIPAA requirements, healthcare compliance, and experience performing HIPAA readiness assessments and audits. •Relevant professional certifications such as HCISPP, OSCP, CRISC, and GIAC certifications are highly desirable and demonstrate required technical and governance skills. •Strong networking, scripting, and systems skills (TCP/IP, routing/switching, Linux, Windows, cloud platforms, automation with PowerShell/Python). •Excellent written and verbal communication skills with ability to produce audit reports and present technical findings to executive leadership. Compensation: •$160,000 - $200,000 / year •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!