The Cybersecurity EngineerWebAppSec position supports the Attack Surface Management (ASM) program for CommonSpirit Health. This program provides web application security services, performs technical security assessment services, maintains WebAppSec security systems and workflows, and provides engagement and reporting services on specific and systemic security vulnerability and configuration issues for the enterprise. The Cybersecurity Engineer will report to the Manager, WebAppSec, as part of the overall Cyber Vigilance and Defence group, focused on identifying, protecting, responding and containing threats and vulnerabilities to the overall CommonSpirit organization. The Cybersecurity Engineer performs web application security services related to PCI compliance such as payment scripts monitoring, web application security scans, activities to identify CommonSpirit systems, applications, services, and repositories available on the Internet, assesses system and application weaknesses, misconfigurations, or other flaws in operating systems, network devices, web applications, or other technologies that could lead to security compromises, as well as gaps in current control states. Monitors the threat and vulnerability landscape and changing business requirements to identify functional, technological and/or control solutions. Develops, integrates, and maintains WebAppSec tools and platforms. Integrates all cybersecurity solutions in an optimal manner to best discover and protect the organization from cyber threats and exposures. May drive one or more projects, acts as a subject matter expert (SME) for one or more discovery or scanning methods, tools, and target environments. Develops and maintains operational security processes, and assists in the remediation of the identified issues. May act as team-lead for other security personnel.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level