Job description
Hybrid Schedule: Ability to work on a hybrid schedule out of our Itasca office.
Position Summary:
The IT Infrastructure & Security Officer ensures that the company is in compliance with relevant ISO standards and guidelines related to quality management, social, and environmental responsibility and risk management by working closely with 3rd party auditors and upper management. The ISO also develops, reviews, and maintains a company's ISO management system, as well as workplace safety, performs quality control inspections, and audits internal and external systems. This role is also responsible for directing all IT functions within the company to ensure effective, efficient and secure operation of all computer hardware, software, networks, servers, systems and applications. The IT Infrastructure & Security Officer will create and manage long-term goals and develop a budget and operating plan for the organization.
Duties and Responsibilities:
Information Security Office functions (50%):
- Maintain and ensure the facility’s compliance with the requirements of federal, state and local rules, and regulations pertaining to data security including, but not limited to, the HIPAA Security Standards.
- Develop and maintain up-to-date enterprise information security policy and program by aligning the company’s risk tolerance with our business goals.
- Implement and maintain all components of information security (e.g., system security, physical protection of computer systems, and related buildings and equipment).
- Perform technical and non-technical evaluations or audits on security processes in order to find and correct weaknesses and guard against potential threats to security.
- Receive, document, track, investigate, and act on suspected information security breaches and complaints concerning Information Security policies, procedures, and standards.
- Facility compliance with Trionfo Information Security policies, procedures, standards, and toolkits.
- Maintain reporting system and respond to security incidents (as well as violations of regulations).
- Interact with management to determine acceptable levels of risk as the business lines and subsequent risk profile changes and align the information security program accordingly.
- Create, implement, and maintain an information security awareness training program for all employees, a well as coordinate with department managers to ensure appropriate information security procedures are integrated into operations.
- Maintain physical security of areas where sensitive information is stored (e.g., ePHI, PCI and PMI data).
- Review internal and external network and system vulnerability scan results and identify areas of concern and possible improvement. Approve the scope of external penetration assessments and internal vulnerability scans.
- Support and monitor Information Technology concerning security related aspects of their job including: Firewall Administration, Intrusion Detection, Communication Systems, Incidence Response, Data Encryption, Access Controls, Threat Management and other information security related functions. Make recommendations for improvement to security standards, respond to policy violations and act as a participant in the event of a breach.
- Fulfills the role of Security Officer for HIPAA requirements and performs responsibilities to be in compliance with this and other laws and regulations related to maintaining confidential business information and system security. This includes establishment and maintaining policies and procedures.
IT Infrastructure functions (50%):
- Leads, mentors, and directs IT professionals to ensure departmental goals and objectives are met and that projects are completed within budget.
- Evaluates current system capacity and business goals, researches new IT products and resources to meet business needs, and recommends technical solutions.
- Oversees the development and implementation of network infrastructure designs and the ongoing management of the computer hardware, network, telephony, server environment, desktop, and other systems environment.
- Manages application, software and hardware vendor relationships including associated licenses and works with vendors and external contractors to implement and maintain software systems, databases, websites, and system applications.
- Oversees the maintenance of network servers ensuring system security and integrity.
- Supervises the implementation of network security including maintaining firewalls, configuring VPN, managing host security and user management.
- Required Teleworking as needed. Must adhere to Trionfo’s Teleworking Policy by demonstrating fundamental controls and practices in protecting Trionfo’s information/assets required by candidate to complete job duties at remote location as specified in policy.
- Responsibilities and tasks outlined in this document are not exhaustive and may change as determined by the needs of the company.
Education, Experience and Other Skills:
- Bachelor's degree in computer science or related technical field or combination of equivalent education and related experience
- Minimum of 7 years experience in Information Technology.
- A combination of education and/or experience may be considered.
- Demonstrated knowledge in following areas: Firewall Administration, Intrusion Detection, Incident Response, Data Encryption, Network Access Controls, Threat Management, and proper IT related Security Controls.
- Ability to create accurate network diagrams and documentation for design and planning network communication systems.
- Comprehensive understanding of network architecture and client/server technology.
- Working knowledge of HiTrust, PCI, or ISO preferred.
- Ability to lift, carry, and move all components of PC workstations, servers, network equipment, peripherals, and other ancillary equipment weighing approximately 50 pounds.
- Strong oral and written communication skills, and analytical and problem solving skills.
- Ability to work out of our Itasca office when necessary, as well as up to 10% travel may be required within the state of Illinois to our data centers (currently located Chicago and Franklin Park).
- Must hold a valid driver’s license with no restrictions and possess reliable transportation.
- Must be legally authorized to work in the United States for any employer without sponsorship.
Job Type: Full-time
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Flexible schedule
- Health insurance
- Life insurance
- Paid time off
- Professional development assistance
- Retirement plan
- Vision insurance
Experience level:
- 7 years
Schedule:
- 8 hour shift
- Monday to Friday
- Weekend availability
Ability to commute/relocate:
- Itasca, IL 60143: Reliably commute or planning to relocate before starting work (Required)
Application Question(s):
- What are your salary requirements?
- Are you able to work a hybrid schedule out of our Itasca office? Please answer yes or no.
- Do you now, or will you in the future, require sponsorship for employment visa status (i.e. H-1B visa status, etc)? Please answer Yes or No.
Experience:
- IT or related: 7 years (Required)
Work Location: Hybrid remote in Itasca, IL 60143
abouteureka.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, abouteureka.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, abouteureka.com is the ideal place to find your next job.