Overview:
Medpace is a full-service clinical contract research organization (CRO). We provide Phase I-IV clinical development services to the biotechnology, pharmaceutical and medical device industries. Our mission is to accelerate the global development of safe and effective medical therapeutics through its scientific and disciplined approach. We leverage local regulatory and therapeutic expertise across all major areas including oncology, cardiology, metabolic disease, endocrinology, central nervous system, anti-viral and anti-infective. Headquartered in Cincinnati, Ohio, employing more than 5,000 people across 40+ countries.
Responsibilities:
* Become proficient in security tools in a wide variety of disciplines including network, cloud, email, threat detection and response, compliance, etc
* Analyze, follow up, and directly remediate ticket queue of suspicious/malicious events (SIEM, email security tools, network security tools, etc)
* Follow up on ticket queue of internal IT requests/approvals
* Follow up on security-related communications from users, vendors, sponsors (topics: Threats reported by users, vendor breaches, verification of the safety of files/emails, etc)
* Maintain informational assets database and coordinate the review process to assure the appropriate permission levels to those assets
* Perform security audits to assure policies and procedures are being followed
* Research and perform write-ups for complex technical topics, vendor proposals, company policy recommendations, etc
* Assist Information Security Engineers on enterprise-wide projects including deploying security technologies, cooperating with compliance requests, and supporting other IT teams
Qualifications:
Minimum of bachelor's degree, preferably in Information Technology;
* Prior Internship/co-op experience within Information Security or other security-related jobs
* Experience with using and maintaining some of the following:
* SIEM
* Endpoint Detection & Response
* Cloud based architecture such as Azure
* Privileged Access Management/Identity Access
* Active Directory
* Soft skills including exceptional communication skills, working well in small groups, and analytical thinking with the ability to solve complications
* The ability to prioritize projects
* Fundamental scripting skills, such as PowerShell/Python
Nice to have:
* Experience with vulnerability assessment tools such as Nessus and Tenable;
* Experience with enterprise web proxy solutions, web filters, and VPN such as Zscaler;
* Experience with governing Windows environment including GPO;
* Previous employment or experience in a highly regulated industry such as healthcare, financial, or defense experience with standards such as ISO, NIST, HIPPA, and/or SOC2; and
* Auditing and policy-writing experience
Share this job:
Share this Job