IT Security Engineer

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

IT Security Engineer supporting security operations, incident response, and GRC for CONMED, a global medical device company. Contributing to regulated product security, audits, risk tracking, and compliance reporting.

Responsibilities:

  • Assist in monitoring security alerts and events using SIEM/XDR tools such as Microsoft Sentinel and Defender
  • Support incident response activities including triage, documentation, and escalation
  • Help maintain endpoint security, vulnerability scanning, and patch tracking
  • Participate in security investigations under guidance of senior analysts
  • Support development and maintenance of security policies, procedures, and standards
  • Assist with risk assessments for IT systems, applications, and medical devices
  • Track and document risks, remediation plans, and control effectiveness
  • Contribute to audit preparation and evidence gathering for FDA cybersecurity requirements, ISO 13434 / ISO 27001, and the NIST Cybersecurity Framework
  • Maintain compliance documentation and assist in control testing activities
  • Support implementation and monitoring of controls for sensitive data, access control, and identity management
  • Assist with user access reviews and least privilege enforcement
  • Help monitor data protection tools including DLP, encryption, and logging
  • Learn medical device cybersecurity and secure product lifecycle practices
  • Document security requirements for systems supporting product development and manufacturing
  • Track vulnerabilities and issues impacting device software or connected systems
  • Help coordinate cybersecurity awareness campaigns, phishing simulations, and user training
  • Maintain records of incidents, risks, and compliance activities
  • Assist in developing dashboards and reports on risk posture, compliance status, and security metrics

Requirements:

  • Bachelor’s Degree in Cybersecurity, Information Technology, Information Systems or a related field
  • In lieu of a Bachelor’s degree, 3–5 years of experience in Cybersecurity, Information Technology, or Information Systems
  • Basic understanding of networking and operating systems
  • Understanding of information security concepts, including the CIA triad, access control, and vulnerabilities
  • Strong interest in cybersecurity within regulated environments
  • Strong organizational, analytical, and communication skills
  • Familiarity with NIST CSF, ISO 27001, and basic compliance concepts such as audits, controls, and risk
  • Academic or hands-on exposure to SIEM tools, vulnerability scanning tools, and identity and access management
  • Interest in medical devices, healthcare technology, or manufacturing environments
  • Must be able to work without employer visa sponsorship

Benefits:

  • Competitive compensation
  • Excellent healthcare including medical, dental, vision and prescription coverage
  • Short & long term disability plus life insurance -- cost paid fully by CONMED
  • Retirement Savings Plan (401K) -- CONMED matches your contributions dollar for dollar, with the potential for up to 7% per pay period
  • Employee Stock Purchase Plan -- allows stock purchases at discounted price
  • Tuition assistance for undergraduate and graduate level courses
  • Employee Referral Program incentives
  • Training and certification milestones