PointClickCare is a leading North American healthcare technology platform enabling meaningful care collaboration and realtime patient insights. For over 20 years the company has been focused on realizing its vision: to help create a world in which providers and plans can confidently deliver frictionless care. Since its inception PointClickCare has grown exponentially with over 2200 employees working to impact millions across North America. Recognized by Forbes as one of the top 100 private cloud companies and acknowledged by Waterstone Human Capital as Canadas Most Admired Corporate Cultures PointClickCare leads the way in creating cloudbased healthcare software.
At PointClickCare we offer a wealth of opportunities and a vibrant culture that empowers our employees. Our dynamic environment is the perfect place to advance your career while engaging in meaningful work alongside incredible colleagues. Here youll discover a space where your talents can thrive your career can grow and your work will have a lasting impact on healthcare across North America. We believe that work becomes profoundly fulfilling when driven by a higher purpose.
Join us and be part of a team that is making a real impact.
Job Summary:
The Senior Product Security Engineer is responsible for proactively identifying and mitigating product security level issues while working with the overall product team to detect potential issues in production. This multifaceted role involves engineering solutions guiding product teams on best practices performing reviews conducting thorough investigations creating detection rules monitoring security alerts and collaborating with other security teams to enhance the organizations overall security posture. The ideal candidate will have a strong technical background in software engineering cyber security excellent analytical skills and a proactive approach to threat detection and response.
Key Responsibilities:
Detection Rule Development: Create and maintain detection rules and signatures for various security tools (e.g. SIEM IDS/IPS) to identify potential threats and anomalies.
Product Advisement: Shiftleft to work with existing product teams to identify remediate and fix new or existing product deficiencies.
Incident Response: Collaborate with the incident response team to analyze and respond to security incidents ensuring timely and effective mitigation.
Data Analysis: Analyze security data from various sources including logs SIEM(s) network traffic and endpoint data to identify patterns trends and anomalies indicative of potential threats.
Tool Development & Management: Solution develop and maintain custom scripts tools and techniques to enhance threat detection and response capabilities. Manage and optimize security detection tools and platforms.
Threat Intelligence: Integrate threat intelligence feeds and data into detection mechanisms to improve the accuracy and relevance of alerts.
Reporting: Understand the nature of threats potential impact response actions taken and recommended mitigation strategies.
Collaboration: Work closely with other cyber security professionals product teams and external partners to share threat intelligence and improve overall security posture.
Continuous Improvement: Stay uptodate with the latest cyber threats trends and technologies to continuously improve threat hunting and detection methodologies and tools.
Qualifications:
Education: Bachelors degree in Cyber Security Information Technology Computer Science or a related field. Certifications are not required however being a Certified Ethical Hacker is a plus.
Experience: Minimum of 1015 years of experience in software engineering and/or cyber security with a focus on product security app security threat hunting security detection incident response or related areas.
Technical Skills: Expert level understanding of software engineering skills with Java C# or other OOO languages with focus on app security best practices. Proficiency in using security tools and technologies such as SIEM IDS/IPS EDR network analysis tools and OWASP Top 10 knowledge. Strong scripting skills (e.g. Python PowerShell) are highly desirable.
Analytical Skills: Excellent analytical and problemsolving skills with the ability to think critically and creatively to identify and mitigate threats.
Communication: Strong written and verbal communication skills with the ability to convey complex technical information to both technical and nontechnical stakeholders.
Team Player: Ability to work effectively both independently and as part of a team in a fastpaced dynamic environment.
#LIremote
#LIAJ1
PointClickCare Benefits & Perks:
Benefits starting from Day 1!
Retirement Plan Matching
Flexible Paid Time Off
Wellness Support Programs and Resources
Parental & Caregiver Leaves
Fertility & Adoption Support
Continuous Development Support Program
Employee Assistance Program
Allyship and Inclusion Communities
Employee Recognition and more!
It is the policy of PointClickCare to ensure equal employment opportunity without discrimination or harassment on the basis of race religion national origin status age sex sexual orientation gender identity or expression marital or domestic/civil partnership status disability veteran status genetic information or any other basis protected by law. PointClickCare welcomes and encourages applications from people with disabilities. Accommodations are available upon request for candidates taking part in all aspects of the selection process. Please contact should you require any accommodations.
PointClickCare is committed to Information Security. By applying to this position if hired you commit to following our information security policies and procedures and making every effort to secure confidential and/or sensitive information.