IT Security Engineer
Company Overview ClearView Healthcare Partners is a premier life sciences strategy consulting firm headquartered in Boston, with offices in San Francisco, New York City, London, Zurich and Gurgaon. Serving clients in the biopharmaceutical, medical device, and diagnostic spaces, we provide world-class strategic decision-making support across a diverse range of business issues. Our goal is to inform actionable recommendations that allow companies to achieve their business objectives.ClearView is looking for an Information Security Professional to join our Information Technology team. This role will be responsible for three main areas: Supporting our Policy Review/Creation, User Awareness Training, and Monitoring/Testing to ensure compliance. This position requires the ability to work with minimal direction, flexibility to changing demands and having an eye for process improvement. This position will work in our India office but will be responsible for ClearView’s Information Security globally. Responsibilities Security monitoring and incident support Monitor security tools and dashboards (e.g., SIEM, endpoint security, email security) for alerts and suspicious activity and help triage and escalate as needed. Tune SIEM rules, correlation searches, and alert thresholds to reduce noise and improve detection quality under the guidance of senior staff. Build and maintain SIEM dashboards and reports that give IT and leadership visibility into security events and trends. Assist in initial investigation of security incidents (log collection, basic analysis, documentation) and support remediation steps defined by senior engineers. Follow established runbooks and procedures for incident response and request enhancements when gaps are identified. Cloud and infrastructure security Help configure and monitor security controls in Azure and AWS (e.g., security center, logging, IAM, security groups, baseline configurations). Work with IT teams to ensure logging, alerting, and basic hardening are in place for servers, applications, and network devices. Assist with periodic reviews of access controls, MFA configurations, and conditional access policies across cloud and onprem environments. Support vulnerability management activities by collecting scan results, tracking remediation status, and validating fixes with relevant teams. Endpoint and identity security Help manage endpoint security tools (EDR/AV, disk encryption, device posture checks) and respond to endpoint alerts following documented procedures. Assist with implementation and maintenance of identity and access controls (e.g., rolebased access, privilege reviews, account lifecycle processes). Contribute to standard build/hardening checklists for laptops, servers, and cloud resources, and ...