Optum Logo

Optum

Information Security Engineer Consultant

Posted 4 Hours Ago
Be an Early Applicant
In-Office
Gurugram, Haryana
Senior level
In-Office
Gurugram, Haryana
Senior level
The role involves supporting information security policies, ensuring compliance, managing vulnerabilities, and communicating with stakeholders about security measures. Requires analyzing risks and implementing security controls.
The summary above was generated by AI
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
Job Description
support information security policies, standards, and procedures to secure and protect data. Work directly with Service/Technology/Business owners and team members to ensure compliance to security policies and procedures.
Primary Responsibilities:
  • Review and ensure implementation of UHG and ESRO security policies, standards and procedures
  • Perform checks to identify compliance gaps on sources such as security portal, eGRC and other enterprise portals and reports to identify compliance gaps and implement corrective action plans
  • Work with technology teams and ensure timely remediation of technical vulnerability
  • Create executive summaries with compliance status, risk, recommendations and direction regarding remediation efforts
  • Working with Subject matter experts or technical consultant on EIS policy to identify solutions where SLOs face challenge to remediate open non compliances or vulnerabilities and support them to find a solution
  • Follow-up on closure of open security observations and ESRO directives on security priorities.
  • Monitor compliance with corrective action plans, and address non-compliance issues appropriately
  • Demonstrate understanding of discovery technologies to identify system vulnerabilities (e.g. scanning tools)
  • Establish appropriate security controls based on defined data classifications to align with applicable laws or regulations or standards
  • Facilitate security incident investigation to support SLO and security officer
  • Analyze business requirements and ensure that solutions meet established security policies and controls
  • Proactively review the security risk/policy exception and mitigation
  • Maintain current knowledge on information security topics and their applicability program requirements. Understanding of security policies, standards and IT infrastructure frameworks (e.g., ISO 2700x, NIST, ITIL)
  • Communicate professionally with stakeholders/end users through multiple communication
  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so

Required Qualifications:
  • Bachelor's degree or higher level of education
  • 6+ years of Information security experience
  • Experience with ISO27001 (ISMS), ISO31000 (Risk management), HITRUST CSF, NIST Cybersecurity Framework, SOC Type1/2
  • Demonstrated ability to manage risk assessments or projects independently
  • Proven excellent communication skills both verbal and written
  • Proven good presentation skills particularly ability to present technology elements in manner personnel can follow and act

Preferred Qualification:
  • CISSP, CISA or ISO27001 Lead Implementer or Lead Auditor certification.

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
#NJP #SStech

Top Skills

Hitrust Csf
Iso 27001
Iso 31000
Nist Cybersecurity Framework
Soc Type 1
Soc Type 2

Similar Jobs at Optum

3 Hours Ago
In-Office
3 Locations
Senior level
Senior level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
The Sr. Software Engineer will develop, automate, and test software applications within an Agile team, participating in sprint ceremonies and ensuring product quality while resolving technical issues.
Top Skills: AWSAzureAzure Cosmos DbAzure Kubernetes ServicesAzure SqlCi/CdDatabricksDockerFortifyGitGoGradleGroovyJavaJenkinsJmeterMavenMicrosoft SqlMicrosoft SsisNewrelicOpenshiftPythonReactRedisSnowflakeSonarTerraform
4 Hours Ago
In-Office
Gurugram, Haryana, IND
Senior level
Senior level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
The Senior Information Security Engineer Analyst designs automation scripts, ensures compliance with security standards, and mentors team engineers.
Top Skills: APIsAutomation FrameworksCi/Cd PipelinesGitJavaScriptNode.jsPythonRestful IntegrationsSql Management StudioSQL Server
4 Days Ago
In-Office
Gurugram, Haryana, IND
Senior level
Senior level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Assist in configuring, testing, and deploying ERP solutions like Workday, support data migration, and resolve related issues in a collaborative environment.
Top Skills: APIsInfor CloudsuiteIntegration ToolsJavaPythonSQLWeb ServicesWorkday

What you need to know about the Mumbai Tech Scene

From haggling for the best price at Chor Bazaar to the bustle of Crawford Market, the energy of Mumbai's traditional markets is a key part of the city's charm. And while these markets will always have their place, the city also boasts a thriving e-commerce scene, ranking among the largest in the region. Driven by online sales in everything from snacks to licensed sports merchandise to children's apparel, the local industry is worth billions, with companies actively recruiting to meet the demands of continued growth.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account