Cyber User Behavior Engineer

7 days ago


Honolulu, HI, United States Highmark Health Full time

Company :

Highmark Health

Job Description :

JOB SUMMARY

CANDIDATE MUST BE US Citizen (due to contractual/access requirements)

For candidates residing within a 50-mile radius of a Highmark office, a hybrid work schedule of three days per week (Tuesday, Wednesday, and Thursday) in the office is required.

The Cyber User Behavior Engineer is a pivotal role at Highmark, dedicated to enhancing our organization's security by cultivating a robust "security-first" culture. This individual will lead the design, implementation, and ongoing management of comprehensive security awareness programs. Their primary responsibility will be to educate, train, and inspire all Highmark employees to effectively identify and report security threats, ensuring adherence to Highmark's security policies and industry best practices. This role is crucial in minimizing human-centric security risks and fostering a vigilant and informed workforce.

ESSENTIAL RESPONSIBILITIES

  • Develop, implement, and continuously improve a proactive program to identifying internal threats.

  • Establish close relationships with business stakeholders outside of the security discipline, working closely with privacy, physical security, fraud, legal, human resources and senior leadership.

  • Perform predictive analysis of behavior, anomalies, and concerns to identify internal threats.

  • Execute campaigns designed to improve enterprise security posture.

  • Continually enhance insider risk program to increase efficiencies and measure program effectiveness and report accordingly on progress.

  • Utilize change management methodologies to mitigate identified security risks.

  • Provide insider threat support to security operations and incident response teams in advance of and during cyber security incidents.

  • Ensure clear lines of communication including but not limited to; transparency to the business on upcoming security initiatives, identifying impact to the business and to consumers, helping shape remediation, and developing external and internal communications.

  • Ensure the education and awareness program is aligned with the Information Security Program, Policies and Standards.

  • Other duties as assigned or requested.

EDUCATION

Required

  • Bachelor's Degree in Business Education, Marketing or Information Systems

Substitutions

  • Six (6) years relevant, progressive experience?

Preferred

  • Bachelors in Information Security

EXPERIENCE

Required

  • 3 years in IT or IT Security Focus

  • 3 years of Insider Threat Program focus

To include:

  • 3 years with Human Intelligence (HUMINT) OR as an Open-source Intelligence Analyst

Preferred

  • 1-3 years in a Security Awareness or adjacent role

LICENSES or CERTIFICATIONS

Required

  • None

Preferred

  • Security + OR

  • GSEC OR

  • CISSP OR

  • CERT Insider Threat

  • SANS Security Awareness Professional (SSAP)Proofpoint Certified Security Awareness Specialist

SKILLS

  • Change Management

  • Presentation Delivery

  • Prioritizing

  • Analytical and Logical Reasoning/Thinking

  • Communication Skills

  • Cyber Security

  • User Behavior

  • Continuous Improvement

Language (Other than English):

None

Travel Requirement:

0% - 25%

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Office-based

Teaches / trains others regularly

Frequently

Travel regularly from the office to various work sites or from site-to-site

Rarely

Works primarily out-of-the office selling products/services (sales employees)

Never

Physical work site required

Yes

Lifting: up to 10 pounds

Occasionally

Lifting: 10 to 25 pounds

Rarely

Lifting: 25 to 50 pounds

Never

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.

Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.

As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.

Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.

For accommodation requests, please contact HR Services Online at HRServices@highmarkhealth.org

California Consumer Privacy Act Employees, Contractors, and Applicants Notice

Req ID: J272819



  • Honolulu, HI, United States InstantServe LLC Full time

    DESCRIPTION OF RESPONSIBILITIES: Administer servers, desktop computers, software deployments, security updates and patches Perform daily system monitoring, verifying the integrity and availability of all hardware, server resources, systems, and key processes, reviewing system and application logs, and verifying completion of scheduled jobs such as backups...


  • Honolulu, HI, United States InstantServe LLC Full time

    DESCRIPTION OF RESPONSIBILITIES: Administer servers, desktop computers, software deployments, security updates and patches Perform daily system monitoring, verifying the integrity and availability of all hardware, server resources, systems, and key processes, reviewing system and application logs, and verifying completion of scheduled jobs such as backups...


  • Honolulu, HI, United States Noblis Full time

    Responsibilities Are you a Cyber Security professional or a Cloud Computing Engineer/Architect interested in Cyber Security? Are you looking to make an impact across the entire federal government? Do you want to help reshape the Federal Security assurance model? Do you love researching new technologies and capabilities? Are you self-driven and detail...


  • Honolulu, HI, United States Kaiser Permanente Full time

    Upon start, selected candidate must reside in CA, CO, GA, HI, MD, OR, or WA. Also, since this position is designed as Flexible, at least part of the time each week you may be required to report to the office. Technical Summary: Kaiser Permanente is seeking a seasoned Cyber Threat Intelligence (CTI) Principal to join our Threat Intelligence and Detection...


  • Honolulu, HI, United States Amentum Full time

    Please note this position is based on Contract Award and is located on the island of Diego Garcia. Facility-Related Control System (FRCS) Cybersecurity Manager The Contractor shall provide a FRCS Cybersecurity Manager to install, configure, calibrate, operate, and maintain hardware and software of IT, and OT of FRCS. The FRCS Cybersecurity Manager will...


  • Honolulu, HI, United States Amentum Full time

    Please note this position is based on Contract Award and is located on the island of Diego Garcia. Facility-Related Control System (FRCS) Cybersecurity Manager The Contractor shall provide a FRCS Cybersecurity Manager to install, configure, calibrate, operate, and maintain hardware and software of IT, and OT of FRCS. The FRCS Cybersecurity Manager will...


  • Honolulu, HI, United States Kaiser Permanente Full time

    Job Summary: The Splunk Systems Administrator & Developer is responsible for maintaining and administering servers and infrastructure supporting Kaiser Permanente's Security Information & Event Management platform as well as Splunk administration and Splunk development activities.  The position requires the individual to be a highly knowledgeable with...


  • Honolulu, HI, United States Kaiser Permanente Full time

    Upon start, selected candidate must reside in CA, CO, GA, HI, MD, OR, VA, or WA.   Technical Summary: Kaiser Permanente is expanding our Cyber Risk Defense program and seeking a highly skilled individual which can facilitate department missions in the areas of data science and python development with deep expertise in the Splunk Enterprise platform. This...


  • Honolulu, HI, United States Kaiser Permanente Full time

    Upon start, selected candidate must reside in CA, CO, GA, HI, MD, OR, VA, or WA.   Technical Summary: Kaiser Permanente is expanding our Cyber Risk Defense program and seeking a highly skilled individual which can facilitate department missions in the areas of data science and python development with deep expertise in the Splunk Enterprise platform. This...


  • Honolulu, HI, United States HMSA Full time

    Cyber Security Operations Leadership and Team Management: Lead and mentor a team of security analysts and engineers. Foster a culture of security awareness and continuous improvement within the team. Conduct performance evaluations and provide ongoing feedback and development opportunities. Security Operations Management: Oversee the Security Operations...