Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Infrastructure Security Engineer

$150k - $160k

OnMed

Who We Are and Why Join Us At OnMed our purpose is simple but powerful...to improve the quality of life and sense of well‑being in our communities by bringing access to healthcare to everyone, everywhere. Our path to everywhere has already begun, with our innovative CareStation, a small but mighty, Clinic-in‑a‑Box, bringing #healthcareaccess anywhere with an outlet to plug it in. Poised to become a key component in America’s public health infrastructure, the OnMed CareStation is the only tech‑enabled, AI‑powered, human‑delivered, hybrid care solution that combines the comprehensive experience, trust and outcomes of a clinic, with the rapid scalability of virtual care. At OnMed, every role, everyday, is directly impacting the communities we serve. You’ll join a high‑performing purpose‑driven team, innovating to break down the barriers that keep people from the care they need. This is not just a job...it’s a movement to bring access to healthcare where and when people need it most. It’s healthcare that shows up. Who You Are You are a hands‑on, deeply technical infrastructure engineer who treats security as part of the job rather than someone else’s department. You are fluent in the Microsoft Azure and Entra ecosystem, you understand networking and firewall rules cold, and you move comfortably between building cloud infrastructure, administering identity and endpoints, tuning detections in an XDR/SIEM console, working an incident to ground, and closing out a ticket queue. You automate what should be automated, you document as you go, and you would rather fix the underlying cause than absorb the same escalation twice. You’ll be the front line dedicated engineer in this seat, working directly with the Head of Security and Infrastructure, who owns the architecture, the compliance program, and the vendor relationships. You take the operational reins: you’ll inherit an environment currently supported through an interim vendor engagement, so you’re someone who can work productively from imperfect documentation and improve it as you go. You thrive in a new, fast‑paced, high‑demand environment and take pride in the availability, security, and resilience of the systems that protect our patients’ healthcare data. The Role This is a hands‑on infrastructure and security engineering role reporting to the Head of Security and Infrastructure. The role owns day‑to‑day Azure infrastructure and identity operations, IT service management, security engineering and incident response, the operational posture of customer- and public‑facing endpoints, and compliance evidence and vendor coordination — taking over work currently supported through an interim vendor engagement. Key Responsibilities Infrastructure & Cloud Operations Owning day‑to‑day Microsoft Azure operations hands‑on — resource configuration, patching, backup and recovery, monitoring, and cost and capacity hygiene. Building and maintaining infrastructure across cloud and on‑prem, and automating provisioning and routine administration through scripting. Administering identity and access in Entra ID — provisioning and deprovisioning, access reviews, privileged account audits, MFA/SSO enforcement, and vendor access processes. Managing endpoint administration and device hardening across corporate laptops, mobile, and field‑deployed customer‑facing systems. Maintaining and documenting network architecture in partnership with the Head of Security and Infrastructure — segmentation, firewall rule sets, VPN, and Zero Trust access for the remote workforce and field devices. IT Service Management Running IT service management end to end: ticket intake, triage, assignment, escalation coordination, and resolution tracking across OnMed, its managed service providers, and other vendors — with clear SLAs and no dropped handoffs. Serving as the technical escalation point for infrastructure and security issues, including after‑hours events affecting internal systems and patient‑facing endpoints. Building the runbooks, documentation, and self‑service that reduce repeat tickets over time. Security Engineering & Operations Deploying, configuring, and managing security controls hands‑on across cloud, network, and endpoint environments — implementing the architecture, not just monitoring it. Hardening the Azure and M365/Entra environment — network security groups, firewall rules, conditional access, and encryption at‑rest and in‑transit across corporate, field, and customer‑facing endpoints. Operating and tuning the security stack day to day: XDR/MDR, SIEM, and SOC workflows — refining detections, triaging alerts, and working them hands‑on. Executing incident response: triage, containment, eradication, root cause analysis, and documentation, escalating to the Head of Security and Infrastructure as severity warrants. Running vulnerability management — scanning, prioritization, patch and configuration remediation, and tracking exceptions to closure. Contributing to security review of integrations, vendor systems, and system designs, and partnering with engineering on remediation. Customer- and Public‑Facing Endpoint Fleet Owning the operational and security posture of customer‑and public‑facing endpoints deployed in unattended settings — device identity, network isolation, remote access, telemetry, physical tamper considerations, and secure update and recovery paths. Partnering with product and field operations teams so that manageability and security are designed into new endpoint deployments rather than retrofitted after they ship. Compliance Support & Vendor Coordination Producing and maintaining control evidence for SOC 2, HITRUST, FedRAMP, HIPAA, and related frameworks in support of the compliance program — refreshing evidence on cadence, responding to auditor and assessor requests, and tracking assigned findings through to remediation. Implementing HIPAA‑scoped PHI handling practices: data classification, Security Rule technical safeguards, minimum necessary access, and breach notification readiness. Serving as the day‑to‑day technical point of contact for managed service and managed security providers — coordinating work, escalating issues, and validating that deliverables actually landed. Supporting vendor and third‑party risk assessment, security awareness training, and responses to customer and vendor security questionnaires. Transition & Stabilization (First 90 Days) Taking over the operational work currently covered by an interim vendor engagement, working alongside the Head of Security and Infrastructure through the handoff. Building out the asset, identity, and network documentation the environment is missing, and establishing the operating cadence for tickets, patching, access reviews, and evidence collection. Knowledge, Skills and Abilities Must Have: Deep, hands‑on experience building, deploying, and operating infrastructure and security controls across multiple technology stacks — engineering it yourself, not directing others. Strong hands‑on expertise with Microsoft Azure operations and security, and the M365/Entra ID stack — identity, network security, and workload protection. Excellent understanding of networking and firewall rules — segmentation, NGFW and Azure Firewall rule administration, VPN, IDS/IPS, and Zero Trust Network Access across remote users and field devices. Practical IT service management experience — working an ITSM platform and queue day to day, including intake, triage, escalation, and resolution tracking across internal teams and external vendors. Endpoint management and device hardening experience, with encryption at‑rest and in‑transit across cloud, corporate, and field‑deployed devices. Hands‑on experience operating XDR/MDR, SIEM, and SOC environments — tuning detections and working alerts directly. Hands‑on incident response experience — triage, containment, root cause analysis, and documentation. Vulnerability management experience — scanning, prioritizing, and driving remediation to closure. Scripting and automation ability (e.g., PowerShell, Python, KQL) to automate administration, hardening, detection, and response. Working knowledge of at least one major compliance framework (SOC 2, NIST, CIS, HITRUST, or FedRAMP) and practical experience producing control evidence for auditors. Working knowledge of HIPAA‑scoped PHI handling, data classification, and Security Rule technical safeguards. Experience coordinating with managed service or managed security providers as part of a small internal team. Clear written communication and a documentation habit — this role writes runbooks, evidence narratives, and incident write‑ups regularly. Comfort working from imperfect documentation in a rapidly growing, fast‑paced, high‑demand environment. Nice‑to‑Have: Experience securing IoT, embedded devices, or infrastructure deployed in unattended public settings. Application security exposure — reviewing integrations, code, or system designs for vulnerabilities, with familiarity with the OWASP Top 10 and SAST/DAST tooling. Direct experience carrying an organization through a SOC 2, HITRUST, or FedRAMP audit or authorization cycle. Hands‑on experience with Palo Alto NGFW, Azure Firewall administration, and Cloudflare security services. Advanced security operations automation (e.g., leveraging Elastic). Experience with ITSM platforms and endpoint/RMM tooling (e.g., ServiceNow, Jira Service Management, Freshservice, Microsoft Intune). Experience implementing and managing cloud service provider, SaaS, and PaaS security. Infrastructure‑as‑code experience (e.g., Terraform, Bicep, ARM). Familiarity with securing AI tools and platforms in use across an organization, or with GRC and compliance tracking platforms. Prior healthcare or other regulated‑industry experience. Education and Experience Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent practical experience. 7+ years of hands‑on experience across IT infrastructure and information security, preferably in a regulated industry. 5+ years operating and securing cloud (Azure preferred) and on‑prem environments hands‑on. AZ‑104, AZ‑500, Security+, or CySA+ preferred; GSEC, GCIH, ITIL Foundation, or CISSP/CISM are good nice‑to‑haves. OnMed provides a competitive salary and benefits package, including unlimited PTO and paid holidays. The base salary for this role is $150,000 - $160,000 commensurate with the candidate's experience. OnMed is a proud equal opportunity employer. All qualified applicants will be considered without regard to race, color, creed, religion, gender, sexual orientation, national origin, genetic information, disability, age, marital status, veteran status, or any other category protected by law. #J-18808-Ljbffr

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Infrastructure Security Engineer in White Plains, NY vacancy
  •  ...motivated candidate to join our talented Team. Job Title: Infrastructure Engineer Location(s): White plains, NY Project Overview The...  ...of Architects, Network Support, Incident Management, Cyber Security and others to ensure resiliency and availability of key client... 
    Suggested
    Work experience placement

    Ampcus

    White Plains, NY
    1 day ago
  •  ...TradesFull TimeDaydaysJob Summary: The Network Engineer level III is a senior level position...  ...over a mix of dedicated backbone infrastructure and the Internet. The level III Engineer...  ...WMC Asset Management, Configuration and Security Standards are met. They are responsible... 
    Suggested

    HealthAlliance of the Hudson Valley

    Valhalla, NY
    4 days ago
  • $134.5k - $265.1k

    Position Summary Join Deloitte’s Cloud Cyber Security practice as a GCP Forward Deployed Engineer, Senior Consultant and help organizations secure...  ...generative AI services, container and data platforms, infrastructure-as-code, and secure delivery pipelines. This role... 
    Suggested
    Local area
    Visa sponsorship

    Deloitte

    Stamford, CT
    1 day ago
  • $120k - $150k

     ...certified Great Place to Work.THE JOBWe’re looking for someone who thinks like an attacker and builds like an engineer—and who’s genuinely excited about securing AI. At VEG, we find a way to say YES to adopting AI fast, and this role is what makes that safe. As our AI... 
    Suggested
    Casual work
    Work at office

    Veterinary Emergency Group

    White Plains, NY
    1 day ago
  • We are looking for experienced Network Security professionals to join the Crane Co. Global...  ...and administration of network security infrastructure including firewalls, networks sensors,...  ...other Business Unit network/systems Engineers and IT support teamsWork closely with business... 
    Suggested
    Full time
    Work experience placement
    Remote work

    Crane

    Stamford, CT
    3 days ago
  • Crane Company is seeking an Information Security professional to join its Global Information Security Team. This role involves supporting the company’s global information security program through exploitative testing for context-based risk analysis. The ideal candidate... 
    Full time
    Work experience placement
    Local area
    Remote work

    Crane

    Stamford, CT
    1 day ago
  • The position calls for a hard-working Network engineer with varied skills ranging from workstation support to network administration...  ...with Google Apps Design and Project Documenting: Basic Infrastructure design including IP addressing and Subnetting. Server Centric... 
    Local area
    Remote work

    Edu Tek Ltd.

    White Plains, NY
    1 day ago
  •  ...motivated candidate to join our talented Team.Job Title: Cloud Infrastructure EngineerLocation(s): Various LocationsJob Summary:This role...  ...manage and provision systems and services, and optimize costs and security across major platforms like Amazon Web Services (AWS),... 

    Ampcus

    White Plains, NY
    4 days ago
  •  ...motivated candidate to join our talented Team. Job Title: Cyber Security Analyst Location(s): White plains, NY Job Overview We are...  ...digital assets. This role focuses on protecting our network infrastructure through advanced firewall management, implementing Zero Trust... 
    Remote work

    Ampcus

    White Plains, NY
    1 day ago
  •  ...and Business consulting services. We are in search of a highly motivated candidate to join our talented Team. Job Title: Cyber Security Analyst Location(s): White Plains, NY Description:We are seeking a skilled Identity and Access Management (IAM) Analyst to join... 

    Ampcus

    White Plains, NY
    1 day ago
  • $90 - $100 per hour

    DescriptionKforce has a client that is seeking a highly experienced remote LinuxONE Infrastructure Engineer to support and manage the enterprise LinuxONE environment across multiple physical data centers for one of our clients.Overview:The ideal candidate will have strong... 
    Remote work

    KForce

    Armonk, NY
    1 day ago
  •  ...with AWS, automation, and high-impact infrastructure projects, this is a chance to step into...  ...K NY We’re looking for a Cloud Systems Engineer who thrives in a fast-moving environment...  ...Doing Architect and support scalable, secure AWS environments Drive automation using... 

    Top Prospect Group

    White Plains, NY
    1 day ago
  • Job Description Representing the technical solution of our SD-WAN client is the primary responsibility of the Systems Engineer. With an advance in technology and representing a solid solution for the networking industry, our client is changing the way enterprises handle... 

    Lightspeed Human Capital

    White Plains, NY
    4 days ago
  • $105k - $140k

     ...Westchester, NY $105-140K NY AWS, network engineering, cloud networking, VPC, VPN, routing, security, automation, network performance Design the...  ...Partner with DevOps, security, and infrastructure teams on cloud initiatives Monitor network performance... 
    Work at office

    HW Staffing Solutions

    White Plains, NY
    4 days ago
  • $82.6k - $162.8k

     ...ConsultantJoin Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Architect,...  ...in computer science, cybersecurity, information technology, engineering, or another technical field.Ability to travel 50%, on average,... 
    Local area
    Visa sponsorship

    Deloitte

    Stamford, CT
    1 day ago
  • $162.8k

     ...proven, hands-on, large-scale, senior leader of DevOps and Cloud Engineering by trade specializing in, containerization, serverless...  ...adheres to all designs, policies, procedures and standards for data security and regulatory compliance.Performs other duties as assigned.... 
    For contractors
    Work at office

    Western & Southern Financial Group

    White Plains, NY
    1 day ago
  • $122.2k - $240.5k

    Position Summary Senior Network Engineer Our Enterprise Networks practice, part of Hybrid Cloud Infrastructure within AI & Engineering, helps clients architect, modernize...  ...that improve agility, resilience, and security while reducing operational cost through... 
    Local area

    Deloitte

    Stamford, CT
    4 days ago
  • $150k - $180k

     ...certified Great Place to Work.THE JOBAs the ServiceNow Platform Engineer on the IT Infrastructure team, you will serve as VEG's senior technical owner of...  ...Enterprise, ChatGPT) to accelerate delivery, with the security judgment to apply them responsibly.Stakeholder... 
    Casual work
    Work at office
    2 days per week

    Veterinary Emergency Group

    White Plains, NY
    1 day ago
  • $105.4k - $207.8k

    Position Summary Cisco Network Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking and a creative... 
    Work experience placement
    Local area
    Visa sponsorship

    Deloitte

    Stamford, CT
    3 days ago
  • $145k - $181k

     ...the Senior Cloud Orchestration Automation Engineer will play a pivotal role in advancing automation throughout our infrastructure. This position is essential to the successful...  ...designing, implementing, and maintaining secure, scalable, and fully automated cloud infrastructure... 

    New York Power Authority

    White Plains, NY
    4 days ago
  • $140k - $180k

     ...Architect to design, lead, and deliver secure, scalable, and cost-effective cloud solutions...  ...closely with business stakeholders, engineering teams, and leadership to define cloud...  ...of experience in software engineering, infrastructure, or solution architecture ~4+ years... 
    Remote work
    Work visa

    FormativGroup

    White Plains, NY
    3 days ago
  •  ...with AWS, automation, and high-impact infrastructure projects, this is a chance to step into...  ...105-140K plus benefits AWS, System Engineer, Windows, Active Directory, Scripting,...  ...Architect and support scalable, secure AWS environments Drive automation using... 
    Work at office

    HW Staffing Solutions

    White Plains, NY
    4 days ago
  •  ...office /1 day remote)About your Team:We are looking for Web Infrastructure Engineer with at least 5+ years of hands-on experience in web...  ...troubleshootingStrong understanding of networking concepts and cyber security fundamentalsExperience with Akamai or similar CDN... 
    Temporary work
    Work at office
    Remote work

    Interactive Brokers

    Greenwich, CT
    14 hours ago
  •  ...Cyber Security Analyst | White Plains, NY | Hybrid Job Type: 12-Month Contract...  ...maintain the security posture of enterprise infrastructure. The ideal candidate will have strong...  ...- Work with cybersecurity, network engineering, and IT teams to strengthen overall security... 
    Contract work

    Trispoke managed services

    White Plains, NY
    1 day ago
  •  ...everyone our business touches.About the RoleThe Information Security Architect and Sr. Engineer is a technical role responsible for designing,...  ...this role embeds security into application, cloud, data, infrastructure, and platform designs early in the lifecycle while... 
    Temporary work
    Local area
    Flexible hours

    Lovesac

    Stamford, CT
    3 days ago
  •  ...Technology Group Job Title: Senior Network Engineer – Data Center Fabric & Multicast...  ...of next-generation data center network infrastructure. This role will focus on executing a critical...  ...or internal change control standards. Security & Segmentation: Apply VRF segregation,... 
    Contract work
    Work at office

    Gotham Technology Group

    Stamford, CT
    3 days ago
  •  ...We are seeking a Senior Fortinet Network Engineer with strong experience in Azure networking, enterprise routing, VPN, DNS, and...  ...existing Terraform configurations. Collaborate with cloud, infrastructure, security, and operations teams. Recommend improvements to network... 

    Techvilla Solutions

    Yonkers, NY
    1 day ago
  •  ...environment excites you, we encourage you to apply and join our team. Learn more at About The Role Honest Networks is hiring a Network Engineer to join our rapidly expanding team. This is a hybrid, full-time position. The hours for this full-time position would be 8am-4pm... 
    Full time
    Work at office
    Flexible hours

    Honest Networks

    Stamford, CT
    3 days ago
  •  ...our talented Team. Job Title: Solution Engineer Location(s): White plains, NY...  ...of systems and technical platforms from infrastructure to AI.Experience of identifying and selecting...  ...consolidation, IT infrastructure services, cyber security, data management services, etc.... 

    Ampcus

    White Plains, NY
    1 day ago
  • Duration: 12 Months THIS POSITION WILL REQUIRE THE CONSULTANT TO WORK 3 DAYS ONSITE & 2 DAYS REMOTE. Role: Enterprise Cloud Architect Location: 2 Broadway, NY Duration: 12 Months THIS POSITION WILL REQUIRE THE CONSULTANT TO WORK 3 DAYS ONSITE & 2 DAYS REMOTE. This position...
    Remote work

    Innovee Consulting LLC

    White Plains, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Infrastructure Security Engineer. Be the first to apply!