Cyber Security Engineer - Corporate Headquarters
Listed on 2026-06-07
-
IT/Tech
Cybersecurity, Information Security
Cyber Security Engineer - Corporate Headquarters
Job Category: Information Technology
Requisition Number: CYBER
001499
- Posted :
March 16, 2026 - Full-Time
Green Bay, WI 54311, USA
Job SummaryBay Care Clinic Corporate Headquarters is looking for a Cyber Security Engineer to join our team in Green Bay, WI. We’re looking for a compassionate, thoughtful candidate who wants to contribute to a positive experience for all our patients. The hours of this role are primarily Monday-Friday between 8:00 a.m.
- 5:00 p.m. No Holidays! No Weekends!
Bay Care Clinic offers part-time and full-time employees a comprehensive benefits package including health, dental, disability and life insurance, as well as flexible spending options. We also offer a 401k retirement plan with a company match, generous PTO, and paid holidays.
The Job- Implement and maintain network segmentation controls across clinic sites and data center infrastructure, including Palo Alto next-generation firewall rule sets, zone architecture, and security policies.
- Harden system configurations against established baselines (CIS Benchmarks, DISA STIGs, or equivalent) across Windows Server, Active Directory, and network infrastructure.
- Manage and enforce conditional access policies, multi-factor authentication configurations, and identity protection controls within Microsoft Entra (Azure AD) and on-premises Active Directory.
- Administer and optimize Microsoft 365 security tooling including Defender for Endpoint, Defender for Office 365, and Microsoft Purview compliance features.
- Performs ongoing risk assessments of environments based on security best practices and/or compliance frameworks and report findings, risks, and recommendations.
- Monitors SIEM tools or other security tools for alerts, triage alerts, and performs follow-up investigations.
- Prioritize and coordinate remediation of identified vulnerabilities with IT infrastructure and application teams, tracking progress against established risk treatment timelines.
- Manage patching cadence for internet-facing systems, servers, endpoints, and network appliances; validate patch deployment and document compliance.
- Maintain vulnerability metrics and gap-to-goal reporting for leadership visibility.
- Evaluate and recommend security tool improvements; participate in technology selection, proof-of-concept testing, and implementation planning.
- Stay current on emerging threats, vulnerabilities, and attack techniques relevant to healthcare environments; translate threat intelligence into actionable defensive improvements.
- Serve as the primary internal point of contact for security incidents; lead internal triage, containment, and remediation activities.
- Execute incident response procedures in accordance with the organization’s IR plan, including evidence preservation, stakeholder notification, and post-incident review.
- Coordinate with external incident response resources, legal counsel, and cyber insurance carrier requirements (including notification timelines and documentation) as directed by security leadership.
- Participate in and help facilitate tabletop exercises, purple team engagements, and other simulation activities to test and improve response capabilities.
- Support HIPAA Security Rule compliance activities including risk assessments, control documentation, and evidence collection for audit and regulatory requirement.
- Maintain current documentation for security architectures, network diagrams, standard operating procedures, and configuration baselines.
- Assist with cyber insurance application attestation validation by maintaining evidence of deployed controls (MFA, EDR, backup, patching, segmentation) aligned to policy requirements.
- Creates
ITand Information Security Standard Operating Procedures. - Design and executes audit procedures to assess and measure company compliance with its security policies and procedures.
- Collects, analyzes, and prepares reports required for management, regulators, and other relevant stakeholders. Also produces reports on the adherence to frameworks and standards.
- In conjunction with IT management, disaster recovery and cybersecurity solutions, plans, and processes develop.
- Validates that…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).