1

Information Security Engineer Ii Jobs (NOW HIRING)

The Information Security Engineer II is a key member of the Information Security team, responsible for designing, implementing, and leading core security engineering and architectural deliverables.

The Information Security Engineer will be responsible for implementing and maintaining the security infrastructure to protect applications, networks, and data from cyber threats. Responsibilities ...

New

Description Keeper Security is seeking an Information Security Engineer to help strengthen and ... Experience in compliance-driven environments (FedRAMP, GovRAMP, SOC 2, ISO 27001, NIST 800-53) and ...

next page

Showing results 1-20

Information Security Engineer Ii information

See salary details

$68K

$126.8K

$191.5K

How much do information security engineer ii jobs pay per year?

As of Jun 27, 2026, the average yearly pay for information security engineer ii in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What is the difference between Information Security Engineer II vs Security Analyst?

AspectInformation Security Engineer IISecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials
Work EnvironmentDesigning and implementing security solutions, technical troubleshootingMonitoring security systems, analyzing threats, incident response
Employer & Industry UsageTech companies, finance, healthcareIT departments, government agencies, financial institutions

Information Security Engineer II focuses on developing and deploying security measures, while Security Analysts primarily monitor and analyze security threats. Both roles require similar certifications and often work in overlapping industries, but their daily tasks differ in scope and technical depth.

What are the key skills and qualifications needed to thrive as an Information Security Engineer II, and why are they important?

To thrive as an Information Security Engineer II, you need expertise in network security, vulnerability assessment, incident response, and a relevant degree in computer science or cybersecurity. Familiarity with security tools such as SIEM platforms, firewalls, intrusion detection/prevention systems, and certifications like CISSP or CEH are typically required. Strong analytical thinking, attention to detail, and effective communication skills help distinguish top performers in this role. These skills and qualifications are vital to proactively protect organizational assets, ensure compliance, and effectively mitigate security threats.

What does an Information Security Engineer II do?

An Information Security Engineer II is responsible for protecting an organization’s computer systems and networks from cyber threats and vulnerabilities. They design, implement, and maintain security measures such as firewalls, intrusion detection systems, and encryption protocols. Additionally, they monitor security systems, respond to incidents, and ensure compliance with security policies and regulations. This role often involves collaborating with IT teams to assess risks and develop strategies to safeguard sensitive information.

What are some common challenges faced by an Information Security Engineer II in balancing security needs with business objectives?

As an Information Security Engineer II, one common challenge is finding the right balance between implementing robust security measures and supporting business operations. Often, new security protocols or tools can introduce friction for end users or slow down development cycles. Successfully navigating this requires strong collaboration with IT, development, and business teams to communicate risks, understand operational priorities, and propose practical solutions that align with both security best practices and business goals.
More about Information Security Engineer Ii jobs
What job categories do people searching Information Security Engineer Ii jobs look for? The top searched job categories for Information Security Engineer Ii jobs are:
Infographic showing various Information Security Engineer Ii job openings in the United States as of June 2026, with employment types broken down into 96% Full Time, 1% Part Time, and 3% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.

Information Security Engineer II

e4health

Bridgeton, NJ • On-site

Full-time

Posted 14 days ago


Job description

At e4health, we Empower Better Health. The e4health Team is on a relentless mission to care for those teams who care for others. We bring our passion, ingenuity, and expertise to every engagement. In joining our Team, we want your help to provide our customers with powerful solutions in the pursuit of quality, integrity, clinical and financial value across healthcare.
Our People make the difference. Serving more than 400 hospitals and health systems nationwide for nearly two decades, e4health provides solutions to tackle the toughest problems in healthcare with unmatched technology, mid-revenue cycle, and operational expertise. e4health solutions streamline clinical, financial, and health information data and workflows, optimize coding, quality, and clinical documentation integrity processes, and address health IT operational challenges to deliver material results for healthcare organizations across the country. Learn more about us at www.e4.health .
JOB DESCRIPTION
The Information Security Engineer II is a key member of the Information Security team, responsible for designing, implementing, and leading core security engineering and architectural deliverables. This role requires deep technical expertise and the ability to work independently, driving security initiatives across the healthcare system. The Information Security Engineer II collaborates with leadership, stakeholders, and subject matter experts to develop secure, scalable solutions that align with regulatory requirements, business objectives, and evolving cybersecurity threats.
The Information Security Team's primary purpose is to ensure the resiliency, security, and integrity of the organization's computing environment, protect patient and employee confidential information, and comply with regulatory requirements nationally. In partnership with Clinical, Financial, Knowledge Management, Ambulatory and Systems Engineering teams, the Information Security Team drives Information Security standards into delivered solutions. This position provides a hybrid work environment allowing the Information Security Engineer to work from a home environment and on site.
RESPONSIBILITIES
  • Lead the architectural design and implementation of enterprise security solutions, ensuring alignment with industry best practices and regulatory requirements (e.g., HIPAA, PCI, NIST).
  • Independently drive security engineering projects, including but not limited to:
  • Zero Trust architecture adoption
  • Network segmentation and redesign
  • Identity and Access Management (IAM) modernization
  • Cloud security governance
  • Advanced threat protection and endpoint security solutions
  • Design, implement, and maintain secure systems, including servers, firewalls, intrusion detection/prevention systems, and other security devices.
  • Establish and enforce security policies, standards, and best practices across IT, Infrastructure, and third-party integrations.
  • Conduct security risk assessments and vulnerability management, overseeing proactive threat hunting efforts to mitigate risks in healthcare IT environments
  • Act as a subject matter expert (SME) in security architecture, advising on secure network and system design, including micro-segmentation, software-defined networking, and next-generation firewalls
  • Spearhead the evaluation, selection, and deployment of security technologies such as:

- Extended Detection and Response (XDR)
- Security Information and Event Management (SIEM)
-Managed Detection and Response (MDR)
-Privileged Access Management (PAM)
-Network Access Control (NAC)
-Data Loss Prevention (DLP)
  • Lead incident response efforts, forensic investigations, and root cause analysis of security events.
  • Provide mentorship and technical guidance to Information Security Analysts and junior engineers, fostering a culture of continuous improvement and knowledge sharing.
  • Oversee and improve security monitoring, log analysis, and automated security response workflows using SIEM and SOAR platforms.
  • Ensure compliance with cybersecurity frameworks such as NIST CSF, CIS Benchmarks, HITRUST, and ISO 27001.
  • Develop and maintain security documentation, including security architecture diagrams, standard operating procedures, project plans, and governance reports.
  • Collaborate with executive leadership and IT teams to align security initiatives with business objectives, balancing security with operational efficiency.

Requirements
  • High School diploma or GED required. BA or BS Degree in Computer Information Technology or related degree is preferred. Candidates must meet any minimum position experience and/or certification requirements to be eligible for consideration.
  • 5+ years of experience in the Information Security field as an Information Security Analyst or Engineer
  • 3+ years of experience leading enterprise-class security projects with minimal supervision.
  • Ability to design, implement and maintain security solutions such as EDR (Endpoint Detection & Response), MDR (Managed Detection & Response) solutions, Vulnerability Management solutions, and DLP (Data Loss Prevention) programs.
  • Extensive hands-on experience with security tools and technologies, including SIEM, SOAR, network traffic analysis, email security gateways, and asset management systems.
  • Strong understanding of network security principles, segmentation strategies, and Zero Trust methodologies.
  • Experience with forensic analysis, penetration testing, and security event correlation.
  • Strong documentation skills and experience creating Project Plans, Visio Diagrams, SOPs, RFPs, etc.
  • Experience leading security automation initiatives using scripting languages such as Python, PowerShell, or Bash is a plus.
  • Familiarity with Infrastructure as Code (IaC) security in DevSecOps environments is highly desirable.
  • Strong interpersonal skills, in addition to effective customer interaction skills
  • Familiarity with threat hunting and overseeing vulnerability management programs.
  • Knowledge of Logical Access Controls and Least Privilege reviews
  • Strong knowledge in NIST Risk Management Framework, HIPAA compliance, PCI Guidelines and CIS Benchmarks
  • Ability to work well under deadlines and in a fast-paced environment.
  • Certification/ Licensure:
  • CompTIA Security+ preferred.
  • CompTIA Advanced Security Practitioner (CASP+) preferred.

e4health is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.
At our organization, we believe in the principles of pay transparency to foster a fair and equitable workplace for all employees. In alignment with this commitment, we openly communicate salary ranges, bonus structures, and additional financial benefits associated with each position. We believe that transparency in compensation not only promotes trust and accountability but also helps mitigate wage gaps and biases. By providing clear and comprehensive information about compensation in our job descriptions, we aim to create a transparent and inclusive environment where all employees feel valued and respected. Join us in building a culture of fairness and transparency as we strive for excellence together.

About e4health

Sourced by ZipRecruiter

Industry

Health care and social assistance

Company size

501 - 1,000 Employees

Headquarters location

Wyomissing, PA, US

Year founded

2004