Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Sr Windows Security Engineer

AT CVS Health
CVS Health

Sr Windows Security Engineer

Scottsdale, AZ

At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.As the nation's leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues - caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day. Position Summary CVS Health is seeking a highly skilled and experienced Senior Security Vulnerability Management Engineer (Windows) to join our dynamic team. This role is for a Senior Security Engineer, who will provide hands on guidance and direction in ensuring that the Windows environment is compliant to the CVS vulnerability management program. Key Responsibilities: The Senior Security Vulnerability Management Engineer (Windows) will be expected to: Operations:

Want more jobs like this?

Get jobs in Scottsdale, AZ delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.
  • Oversee the administration, and implementation of the Windows/ESXi monthly vulnerability and Minimum Security Baseline program.
  • Utilize SCCM to ensure patching jobs are configured properly prior to deployment and verify the closure of vulnerabilities.
  • Communicate with customers to ensure environmental compliance.
  • Manage and troubleshoot physical and virtual servers to validate the remediation of vulnerabilities.
  • Modernize and optimize current environment to ensure SLAs are met.
  • Liaise with key vendors on upcoming threats and fixes.
  • Plans and remediates ad-hoc, off cycle patches for Windows and ESXi. On call support as L3 escalation for outage and critical incidents.
Engineering:
  • Collaborate with threat and vulnerability management, system administrators, and architectural teams.
  • Assess new products for integration and automation for remediation effort. (e.g. BladeLogic, BigFix, NinjaOne, Tanium, etc.).
  • Lead technology initiatives for enterprise vulnerability management programs involving integrating and reporting with Qualys and ServiceNow dataset.
  • Manage and troubleshoot physical and virtual servers for ensuring closure of vulnerabilities. Modernize and optimize current environment to ensure SLAs are met.
  • Act as liaison with key vendors on upcoming threats and fixes.
Security and Compliance:
  • Partner with the security team to implement and enforce security best practices, ensuring that Windows servers and associated services meet CVS Health's security and compliance standards.
  • Collaborate with the security team to conduct regular vulnerability assessments and apply patches, updates, and security configurations to mitigate potential threats as needed.
  • Respond to audits relating to security frameworks (e.g. FTC, PCI, SOX, SOC, SOC2 etc.). Adhere to CIS benchmarks by maintaining the Windows Minimum Security Baseline
Performance Optimization and Capacity Management:
  • Stays current on active threats and develops a proactive program to remediate as soon as possible.
  • Develops dashboards and metrics to not only show where possible threats exist, but to display compliance of the Windows environment.
  • Ensure best practices are adopted across the enterprise for security and vulnerability remediation.
Automation and Scripting:
  • Automate routine tasks and processes through scripting and automation tools to streamline operations and reduce manual intervention. Develop other IAC tools as appropriate to optimize the environment.
Documentation and Knowledge Sharing:
  • Maintain up-to-date documentation of vulnerability best practices, procedures, and policies.
  • Share knowledge and expertise with junior team members, facilitating skill development and fostering a culture of continuous learning.
  • Educates internal team on best practices.
Stakeholder Interaction:
  • Educate clients on current and upcoming threats, and actions being taken to remediate.
  • Liaise with internal security on plans and actions around vulnerability management.
Required Qualifications
  • 5 plus years of experience in a hands-on security engineering role, with a focus on vulnerability management and remediation on Windows platform.
  • 5 plus years of experience with patch management tools and systems such as WSUS, SCCM, or similar.
  • 5 plus years of solid understanding of networking protocols, operating systems, and cloud platforms.
  • 2 plus years of experience with vulnerability scanning tools such as Nessus, Qualys, or similar.
  • 2 plus years of strong understanding of common vulnerabilities and exposure (CVE) database, Common Vulnerability Scoring System (CVSS), and related standards.
  • 2 plus years of proficiency in scripting and automation using languages such as Python or PowerShell
  • 2 plus years of experience with ESXi and other virtual platforms.
Preferred Qualifications
  • Microsoft Certified: Azure Administrator, MCSE, or similar certifications are a plus.
  • Experience with Terraform, Ansible or other IAC tools preferred.
  • Relevant certifications such as CISSP, CISM, CEH, or similar are a plus.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently and as part of a team in a fast-paced environment.
  • Knowledge of Config Manager (SCCM) administration
Education
  • Bachelor's degree in computer science, Information Security, or a related field. Or equivalent work experience.
Anticipated Weekly Hours
40Time Type
Full timePay Range

The typical pay range for this role is:$92,700.00 - $222,480.00This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.Great benefits for great peopleWe take pride in our comprehensive and competitive mix of pay and benefits - investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include:
  • Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan.
  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching.
  • Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility.
For more information, visit https://jobs.cvshealth.com/us/en/benefitsWe anticipate the application window for this opening will close on: 04/08/7202Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Client-provided location(s): Scottsdale, AZ, USA
Job ID: CVS-R0489127_1002
Employment Type: Full Time

Perks and Benefits

  • Health and Wellness

    • Health Insurance
    • Dental Insurance
    • Vision Insurance
    • Life Insurance
    • HSA
    • HSA With Employer Contribution
    • Pet Insurance
    • Mental Health Benefits
  • Parental Benefits

    • Fertility Benefits
    • Adoption Assistance Program
    • Family Support Resources
  • Work Flexibility

    • Flexible Work Hours
    • Remote Work Opportunities
    • Hybrid Work Opportunities
  • Vacation and Time Off

    • Paid Vacation
    • Paid Holidays
    • Personal/Sick Days
  • Financial and Retirement

    • 401(K) With Company Matching
  • Professional Development

    • Tuition Reimbursement
  • Diversity and Inclusion

    • Employee Resource Groups (ERG)
    • Diversity, Equity, and Inclusion Program