Full-Time

Information Security Compliance Engineer

Confirmed live in the last 24 hours

Axle

Axle

201-500 employees

Provides informatics solutions for biomedical research

Data & Analytics
Enterprise Software
Biotechnology
Healthcare

Compensation Overview

$150k - $160kAnnually

Mid, Senior

North Bethesda, MD, USA

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
Git
ServiceNow
Docker
JIRA
Confluence
Development Operations (DevOps)
Splunk
Linux/Unix
Requirements
  • Must Have hands on Linux/Unix experience and know how secure the systems.
  • Understand how to implement security controls based on NIST 800-53.
  • Must be able to conduct and lead technical reviews and analysis with infrastructure and application teams.
  • Must be able to troubleshoot security incidents and lead the other technical teams to resolve incidents as well as remediate the threats and concerns.
  • Must be able to provide guidance on security control implementation and perform technical tasks when needed for Windows, Linux/Unix environments.
  • Must be familiar with networking and other infrastructure components such as traffic flow, access management and Active Directory etc.
  • Be able to manage cyber risks by providing guidance to secure system designs, baseline configuration assistance and administer ATO preparation activities.
  • Be able to manage and administer the security tools and have hands on working experience with Tenable Nessus, Netsparker, Trellix suite, Palo Alto, BigFix, Splunk, etc. and cloud-based equivalents.
  • Must have experience with DevOps security controls implementation.
  • Must be familiar with GitHub, Docker and in general with the CI/CD pipeline security.
  • Assist in security incident response efforts.
  • Work with other teams to integrate the NCATS Threat and Vulnerability Management processes with the patching cycles, baseline configurations and CIS benchmarks.
  • Must be familiar with database server architecture and be able to provide security support to the database team.
  • Must be familiar with Cloud environments and tools.
  • Must be familiar with Risk Management Framework (RMF) and Government mandates such as continuous diagnostic mitigation (CDM) and Binding operations directives (BODs)
  • Identify, analyze, and develop mitigation or remediation actions for POA&Ms
  • Assist with a reliable patch and compliance management mechanism for all on-premises and cloud systems.
  • Recommend, configure, and install advanced firewalls and centrally manage other security tools in multiple cloud environments.
Responsibilities
  • Manage daily Cybersecurity Operational activities.
  • Proactively Manage Cybersecurity Operations projects and tasks and ensure on time delivery.
  • Take initiatives to identify, analyze and remediate weaknesses and present reports to the management.
  • Lead and mentor the NCATS CSS Cybersecurity Operations team.
  • Must be able to represent NCATS CSS team and provide technical security guidance in troubleshooting calls.
  • Must have hands on experience with firewalls, load balancers switches, routers, Windows and Linux/Unix servers.
  • Must have expert understanding of TCP/IP and networking principles.
  • Take the lead on securing NCATS system and applications through system hardening.
  • Must be able to secure DevOps pipelines by providing technical security guidance and support to the application and infrastructure teams.
  • Lead the security operations in proactively managing threats, vulnerabilities and remediation efforts.
  • Must be familiar with Risk Management Framework (RMF), NIST 800-53 and other Government mandates.
  • Lead NCATS Cybersecurity ATO preparations efforts to follow the Risk Management Framework (RMF).
  • Have a solid understanding of the ATO preparation and security controls implementation process.
  • Lead ATO technical guidance efforts and help write documents such as System Security Plans (SSPs).
  • Schedule and coordinate operational activities, sessions, and meetings with the stakeholders.
  • Provide security controls implementation guidance.
  • Provide effective guidance to the stakeholders on secure baseline configurations.
  • Manage work through tools such as NIH incident response (IRT) portal, Splunk, ServiceNow, Jira, Confluence etc.
  • Establish communications with vendors for the release of newly identified vulnerabilities and to ensure they understand the specialized requirements of the client’s information systems.
  • Develop daily, weekly, and annual NCATS security landscape metrics.
  • Help the Vulnerability Management team to Identify, analyze, and develop mitigation or remediation actions for system and network vulnerabilities.
  • Monitor the progress of internal and external organizations to ensure operational requirements are fulfilled for audits and reviews.

Axle Informatics provides specialized solutions that combine bioscience and information technology, focusing on translational research, health informatics, and data science. Their products help research centers and healthcare organizations turn scientific discoveries into practical applications, such as new treatments and diagnostics. Axle develops research tools that enhance decision-making by utilizing advanced analytical models, algorithms, and visualization tools to manage large volumes of data. This automation allows researchers to efficiently track and analyze data, leading to improved healthcare outcomes. Unlike many competitors, Axle emphasizes customized software and data management platforms that facilitate the transition from laboratory research to clinical application, known as moving from "bench to bedside." The company's goal is to advance public health by providing effective informatics solutions that support biomedical and clinical research.

Company Stage

N/A

Total Funding

N/A

Headquarters

Rockville, Maryland

Founded

N/A

Growth & Insights
Headcount

6 month growth

6%

1 year growth

6%

2 year growth

6%
Simplify Jobs

Simplify's Take

What believers are saying

  • Collaborations with major institutions like NIH and NCI provide significant opportunities for impactful research and career growth.
  • The company's focus on cutting-edge technology and advanced analytical models offers employees the chance to work on innovative projects that drive healthcare advancements.
  • Axle's role in high-profile projects, such as the development of COVID-19 histopathology image collections, underscores its influence and potential for future growth.

What critics are saying

  • The highly specialized nature of Axle's work may limit its market to niche segments, potentially constraining growth opportunities.
  • Dependence on large-scale collaborations and government contracts could pose risks if such partnerships are not sustained.

What makes Axle unique

  • Axle Informatics uniquely combines bioscience expertise with advanced IT solutions, specifically targeting translational research and health informatics, unlike competitors who may focus solely on one domain.
  • Their ability to automate data aggregation and provide intuitive digital tools for large-scale data interpretation sets them apart in the biomedical research market.
  • Axle's collaborative projects with high-profile institutions like the NIH and NCI highlight their credibility and specialized capabilities in the field.

Help us improve and share your feedback! Did you find this helpful?