Senior Cyber Security Engineer, Security Validation (Remote)

Remote, USA Full-time
Job Summary As a Senior Cybersecurity Engineer in the Security Validation team, you will be a key member of our Red Team operations, leading efforts to emulate real-world threat scenarios and validate the effectiveness of enterprise defenses across our expansive healthcare environment. This role requires advanced offensive security capabilities, deep knowledge of adversary tactics, and the ability to communicate findings clearly to both technical and executive stakeholders. You will design and execute advanced threat simulations against our infrastructure—cloud, clinical systems, APIs, IoT medical devices, and enterprise platforms—helping CHS proactively identify and mitigate systemic weaknesses. You will also work with internal teams and third parties to provide feedback on the relevance of vulnerabilities to CHS systems, ensuring alignment between threat findings and risk remediation efforts. Your work will directly impact patient safety, data integrity, and regulatory compliance across a network of hospitals and clinics. Essential Functions • Lead Red Team engagements emulating real-world threat actors, including APTs and insider threats, aligned with MITRE ATT&CK. • Conduct Security Validation Exercises across cloud, on-prem, hybrid, and medical environments to measure resilience against defined threat scenarios. • Develop and maintain custom tools, exploits, and payloads to simulate evolving adversarial behavior. • Collaborate with Blue and Purple Teams to refine detections, validate logging, and improve response capabilities. • Identify and characterize security risks in critical systems such as EMRs, PACS, medical IoT, and enterprise SaaS platforms. • Produce detailed reports and executive summaries, translating technical findings into actionable mitigation strategies. • Design tabletop and live-fire exercises that evaluate organizational readiness, incident response workflows, and security control efficacy. • Monitor threat intelligence specific to the healthcare industry and adjust validation activities accordingly. • Perform continuous threat hunting to identify vulnerabilities and gaps in monitoring across the CHS enterprise. • Ensure Red Team operations follow defined rules of engagement, safeguarding patient care and system availability. • Participate in compliance-driven assessments (e.g., HIPAA Security Rule, HITRUST) by providing validation evidence and attack simulations. • Mentor junior staff and foster a culture of offensive security awareness and continuous improvement. Qualifications • Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, or related field • Master’s Degree or professional coursework in Offensive Security, Information Assurance, or Threat Intelligence Duration: • 5+ years of cybersecurity experience • 3+ years in offensive security or Red Team roles Activities: • Proven experience performing Red Team or Purple Team engagements in large enterprise environments • Expertise in security validation, threat modeling, and adversary simulation • Demonstrated experience in regulated environments—healthcare industry experience highly preferred • Hands-on proficiency with tools such as Cobalt Strike, Metasploit, BloodHound, Covenant, Caldera, or similar • Familiarity with security challenges in cloud platforms (Azure/AWS/GCP), medical IoT, and EHR/EMR systems Competencies: • Deep understanding of attack lifecycle, threat emulation frameworks, and operational security • Strong written and verbal communication skills—ability to brief executive leadership Apply tot his job
Apply Now

Similar Jobs

[Remote] Entry level Cybersecurity Engineer

Remote, USA Full-time

Cyber Security Engineer - Remote

Remote, USA Full-time

cybersecurity engineer lead, detection engineer (Remote, US)

Remote, USA Full-time

[Remote] Cybersecurity Engineer - Third Party Risk Management

Remote, USA Full-time

CyberSecurity Engineer (Insider Threat Tool)

Remote, USA Full-time

cybersecurity engineer senior, Identity Lifecycle and Authentication Services (Remote, US)

Remote, USA Full-time

Cyber Incident Response Analyst

Remote, USA Full-time

Cybersecurity/Data Privacy Incident Response Attorneys (Remote Engagement)

Remote, USA Full-time

Cyber Analyst, Digital Forensics Incident Response

Remote, USA Full-time

Dahl Consulting – Cybersecurity Engineer: Incident Response – Remote – Ohio

Remote, USA Full-time

Experienced Part-time Customer Service Representative – Delivering Exceptional Support and Driving Customer Satisfaction at arenaflex

Remote, USA Full-time

**Experienced Remote Chat Moderator – Safeguard Online Communities and Earn $25-$35/hr at blithequark**

Remote, USA Full-time

Experienced Data Scientist and Analyst – Remote Work Opportunity with Competitive Hourly Rate at arenaflex

Remote, USA Full-time

Energy Consultant - PE Reviewer & IDF Validator

Remote, USA Full-time

Counsel, Legal Affairs - Television Animation

Remote, USA Full-time

Experienced Full Stack Software Engineer – Web & Cloud Application Development

Remote, USA Full-time

**Experienced Phone and Chat Specialist with Bonus Opportunity at arenaflex**

Remote, USA Full-time

Coding and Cost Analyst I - medical claims coding and claim edit review, Geising

Remote, USA Full-time

Senior Legal Assistant / Paralegal – Criminal & Juvenile Law (Remote) (California Applicants Only)

Remote, USA Full-time

Automotive Equipment Dispatcher

Remote, USA Full-time
Back to Home