Join Martin's Point Health Care - an innovative, not-for-profit health care organization offering care and coverage to the people of Maine and beyond. As a joined force of "people caring for people," Martin's Point employees are on a mission to transform our health care system while creating a healthier community. Martin's Point employees enjoy an organizational culture of trust and respect, where our values - taking care of ourselves and others, continuous learning, helping each other, and having fun - are brought to life every day. Join us and find out for yourself why Martin's Point has been certified as a "Great Place to Work" since 2015.
Position Summary
The Information Security Associate Co-op role will assist in the development and implementation of strategic and operational Information Security programs designed to protect the organization's IT systems and software from malicious activity and technology breaches. The Information Security Co-Op Associate will be working closely with various members of the Information Security team on technology solutions that mature our incident response, sustain our governance, lower and protect our risk, and enhance our comprehensive compliance (GRC) program. This role will have the opportunity to assist in standards development, program development and strategies, risk assessment, and reporting related to information security.
Job Description
Key Outcomes:
- Assists the Information Security Team in the implementation, execution, and automation of the incident response, business continuity, disaster recovery, and audit programs
- Helps coordinate response to information security incidents and threats in alignment with MPHC policies
- Assesses, manages, documents and coordinates information and cyber vulnerabilities throughout the organization to ensure proper remediation
- Works with the technical experts in the IT department to streamline workflows and processes to ensure efficient and thorough support to meet organizational audit requirements
- Develops, defines, reviews, and enforces information security policy, standards and guidelines to support business operations and technology implementations
- Helps to proactively identify information and IT security risks including IT technical implementations or business processes to ensure proper remediation
- Assists the team with the coordination of group-wide and company-wide information security matters such as business continuity, disaster recovery, incident response, intrusion detection management, and cyber security advisories in alignment with industry best practices
- Assists with the preparation and coordination of disaster recovery and business continuity meetings with designated business owners to support the development and maintenance of BCP and DR plans
- Prepares and manages metrics for the incident response, business continuity, and disaster recovery programs to ensure progress is meeting desired outcomes
- Prepares and manages incident response, business continuity, and disaster recovery exercises to validate business resiliency and efficacy of the plans
Education/Experience:
- Bachelor’s degree in computer science, business administration, management, or equivalent combination of education and experience
- Experience with information security methodologies, business continuity, disaster recovery, policy and technical reporting writing, information security technologies, incident response, project management, open-source technologies, and various operating systems preferred
- Healthcare experience and familiarity with HIPAA/HITECH, PCI-DSS, NIST 800-53, and NIST 800-171 is highly desirable
Required License(s) and/or Certification(s):
Skills/Knowledge/Competencies (Behaviors):
- Demonstrates an understanding of and alignment with Martin’s Point Values
- Interest in learning or has knowledge of the security incident response lifecycle
- Has a thorough understanding of the latest security exploits and how to prevent or detect them
- Understanding of incident response, disaster recovery, contingency planning, encryption technologies, business methodologies, and/or vulnerability management
- Knowledge of Microsoft and Linux operating systems
- Proficient project management and documentation skills
- Strong interpersonal and communication skills and the ability to work effectively with a wide range of constituencies in a diverse community
- Maintains industry awareness regarding all information and cyber security trends and directions
- Ability to organize and prioritize multiple tasks independently
- Thorough understanding of traditional and mobile operating systems and applications
- Ability to test and analyze complex system, network, and database security settings
- Understanding of business continuity, disaster recovery, and incident response best practices
- Has knowledge of how best practices integrate with company objectives
In compliance with MPHC’s Department of Defense contract, all persons hired for this position will need to verify their U.S. citizenship and complete the required employment eligibility verification upon hire.
There are additional competencies linked to individual contributor, provider, and leadership roles. Please consult with your leader to discuss additional competencies that are relevant to your position.
This position is not eligible for immigration sponsorship.
We are an equal opportunity/affirmative action employer.
Martin's Point complies with federal and state disability laws and makes reasonable accommodations for applicants and employees with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact [email protected]
Do you have a question about careers at Martin’s Point Health Care? Contact us at:[email protected]