Cybersecurity Engineer II
Azure
Azure Ad / Entra Id
Cloud
Cloud Iam
Cloud Native Application Protection Platform
Cloud Platform
Cloud Platforms
Cloud Security
Cloud Security Assurance
Cloud Security Posture Management
Cybersecurity Tools
Data Security
Identity and Access Management
Information Security
InfoSec
Microsoft Entra Id
Risk Governance
Security
Security Compliance
Security Engineer
Security Operations
Security Standards
Job Description
Atlantic Health System is hiring a Cybersecurity Engineer II focused on cloud security and identity protection for AWS and enterprise identities.
Responsibilities
- Support the design, implementation, and ongoing operation of security controls across cloud environments, with primary emphasis on AWS and coverage for Microsoft Azure and Microsoft 365.
- Administer and optimize a cloud-native application protection platform (for example, Wiz) to continuously discover cloud assets, detect misconfigurations, excessive permissions, exposed data, and vulnerable workloads, then route findings for triage.
- Conduct risk-based analysis and prioritize cloud security findings using severity, exploitability, data sensitivity, and business context.
- Drive remediation to closure in partnership with cloud, infrastructure, application, and vendor teams.
- Assess cloud environments against benchmarks and best practices, including CIS Benchmarks and the AWS Well-Architected Framework security pillar, and manage configuration drift and remediation over time.
- Support cloud identity and entitlement security, including review and right-sizing of AWS IAM roles, policies, and permission boundaries and reduction of standing and excessive privilege across cloud accounts.
- Administer and support Microsoft Entra ID and hybrid Active Directory identity services, including conditional access, multifactor authentication, authentication methods, application registrations, and single sign-on integrations.
- Configure and operate Microsoft Entra Privileged Identity Management (PIM), supporting privileged access practices such as just-in-time elevation and periodic access reviews and certifications.
- Monitor, triage, and investigate cloud and identity security alerts from sources such as Wiz, AWS GuardDuty, AWS Security Hub, AWS CloudTrail, Microsoft Defender for Cloud, Microsoft Entra ID Protection, and the enterprise SIEM.
- Contribute to secure cloud onboarding and architecture reviews for new cloud services, SaaS applications, and third-party integrations, including evaluation of authentication, authorization, logging, encryption, and data handling.
- Maintain familiarity with infrastructure-as-code and container technologies (including Terraform or CloudFormation, CI/CD pipelines, and Kubernetes) to review security findings and route them appropriately.
- Participate across the broader security program as team priorities require, assisting with vulnerability management, data protection, application security, and endpoint and email security.
- Serve on the cybersecurity incident response team, supporting detection, triage, investigation, containment, and remediation for security incidents, including cloud and identity-based attacks.
- Develop and maintain cloud and identity security metrics, dashboards, runbooks, and technical documentation for technical teams and leadership.
- Collaborate with ISS and partner teams including Privacy and Compliance to support protection of ePHI and alignment with HIPAA and other regulatory requirements.
- Contribute to development and implementation of cybersecurity strategies, policies, standards, and procedures, especially those covering cloud and identity.
- Participate in a rotating on-call schedule for incident response and time-sensitive security matters outside standard business hours.
Requirements
- Bachelor's degree or higher in Cybersecurity, Information Technology, or a related field is preferred; equivalent professional experience may be considered in lieu of a degree.
- 3+ years of experience in cybersecurity, cloud engineering, identity and access management, or information technology with meaningful security responsibilities in a large organization, preferably healthcare.
- Hands-on experience securing AWS environments, including working knowledge of AWS IAM (roles, policies, trust relationships, permission boundaries), organizational structure and guardrails, VPC and network controls, S3 and data storage security, encryption and key management, plus native services such as CloudTrail, GuardDuty, Security Hub, and Config.
- Working experience with Microsoft Azure and Microsoft 365 security, including Defender for Cloud, subscription and resource-level controls, and cloud workload protection.
- Practical experience with a cloud security posture management or CNAPP platform such as Wiz, Prisma Cloud, Orca, or Microsoft Defender for Cloud, including interpreting findings, tuning policies, and using the platform to drive remediation.
- Solid working knowledge of Microsoft Entra ID and hybrid identity, including conditional access, multifactor authentication, Entra Connect and directory synchronization, application registrations and enterprise applications, SSO protocols (SAML, OAuth 2.0, OpenID Connect), and Privileged Identity Management.
- Understanding of core identity and access management concepts, including least privilege, RBAC, separation of duties, joiner-mover-leaver processes, access reviews, and privileged access management.
- Familiarity with common cloud and identity attack techniques (credential and token theft, consent phishing, privilege escalation via misconfigured roles, and abuse of public or misconfigured resources) and the controls that mitigate them.
- Well-rounded knowledge beyond cloud and identity, including vulnerability management, data protection, application security, network security, and endpoint and email security.
- Working knowledge of HIPAA requirements for protecting electronic protected health information (ePHI) in a hospital or healthcare environment, or ability to develop that knowledge quickly.
- Hands-on experience contributing to incident response: alert triage, investigation, containment, and remediation as part of a team.
- Scripting or automation experience with PowerShell, Python, or the AWS CLI, plus comfort working with APIs to extract data and reduce manual effort (plus).
- Willingness and availability to participate in the rotating on-call schedule.
Technologies
- AWS, Microsoft Azure, Microsoft 365
- Wiz, Microsoft Entra ID, Microsoft Entra Privileged Identity Management (PIM)
- Hybrid Active Directory, Entra Connect, conditional access, multifactor authentication
- AWS IAM, AWS Well-Architected Framework security pillar, CIS Benchmarks
- Microsoft Defender for Cloud, Microsoft Entra ID Protection, GuardDuty, Security Hub, CloudTrail
- Terraform, CloudFormation, Kubernetes, CI/CD pipelines, Infrastructure-as-code
- Prisma Cloud, Orca, enterprise SIEM
- S3, VPC, Config
- SAML, OAuth 2.0, OpenID Connect
- PowerShell, Python, AWS CLI
- HIPAA, ePHI, CNAPP
Benefits
- Medical, Dental, Vision, Prescription Coverage
- Life & AD&D Insurance
- Short-Term and Long-Term Disability (with options to supplement)
- 403(b) Retirement Plan: Employer match and additional non-elective contribution
- PTO & Paid Sick Leave
- Tuition Assistance, Advancement & Academic Advising
- Parental, Adoption, Surrogacy Leave
- Backup and On-Site Childcare
- Well-Being Rewards
- Employee Assistance Program (EAP)
- Fertility Benefits, Healthy Pregnancy Program
- Flexible Spending & Commuter Accounts
- Pet, Home & Auto, Identity Theft and Legal Insurance
Education, Training and Certification
- Cloud certifications are highly desirable, including AWS Certified Security – Specialty or AWS Certified Solutions Architect.
- Microsoft certifications such as AZ-500 (Azure Security Engineer) or SC-300 (Identity and Access Administrator) are valued.
- Broad security certifications such as CompTIA Security+, GIAC GCLD (Cloud Security Essentials) or GCSA, or (ISC)² CCSP are valued.
- Progress toward or interest in a senior-level certification such as CISSP is viewed favorably.
About Atlantic Health
- Headquarters in Morristown, New Jersey, and a leading non-profit health care system.
- Facilities and sites of care include Atlantic Health Morristown Medical Center, Atlantic Health Overlook Medical Center, Atlantic Health Newton Medical Center, Atlantic Health Chilton Medical Center, Atlantic Health Hackettstown Medical Center, Atlantic Health Goryeb Children's Hospital, Atlantic Health CentraState Healthcare System, Atlantic Medical Group, Atlantic Visiting Nurse, Atlantic Mobile Health, and Atlantic Rehabilitation.
- More than 900 community-based healthcare providers affiliated through Atlantic Medical Group.
Location: Morristown, NJ (onsite)
Minimum Experience: 3 years