The Information Security Engineer is a front-line defender in the organization’s cybersecurity operations responsible for monitoring, detecting, analyzing, and responding to cybersecurity incidents. Executes initial triage, containment, eradication, and recovery steps according to established playbooks and incident response policies. Maintains detailed records of security incidents, investigations, and remediation steps and prepares summary reports for technical and non-technical audiences. Works collaboratively with other departments, such as IT, compliance, and risk management to ensure integrated security measures are being addressed. Participates in post-incident reviews and lessons learned sessions to refine incident response processes and strengthen the organization’s security posture. Provides input to security awareness initiatives and contributes to a culture of security throughout the organization.
The Information Security Engineer independently implements, administers, and supports security solutions across enterprise systems. This role applies specialized technical knowledge to analyze security posture, design controls aligned with business requirements, and protect organizational systems and data.
This vacancy is not eligible for sponsorship/ we will not sponsor or transfer visas for this position. Also, Mayo Clinic DOES NOT participate in the F-1 STEM OPT extension program.
Bachelor's degree and four (4) years experience in the information security field required, OR Associates degree and 6 years' experience in the information security field. Pertinent fields of study include Computer Science, Information Systems, Engineering or related field.
Master's Degree in applicable field and two (2) years experience preferred. Pertinent fields of study include Computer Science, Information Systems, Engineering or related field.
One or more of the following certifications (or equivalent) are required at time of hire or must be obtained within two years of hire: CISSP, CISM, GSEC, OSCP.

