Ensemble Health Partners Logo

Ensemble Health Partners

Sr Engineer, Penetration Test & Cybersecurity

Reposted 9 Days Ago
Remote
Hiring Remotely in United States
84K-126K Annually
Senior level
Remote
Hiring Remotely in United States
84K-126K Annually
Senior level
The Senior Penetration Testing Engineer leads penetration tests and red team exercises, ensuring security across various environments. Responsibilities include vulnerability assessment, mentoring juniors, and enhancing security policies.
The summary above was generated by AI

Thank you for considering a career at Ensemble Health Partners!

Ensemble Health Partners is a leading provider of technology-enabled revenue cycle management solutions for health systems, including hospitals and affiliated physician groups. They offer end-to-end revenue cycle solutions as well as a comprehensive suite of point solutions to clients across the country.

Ensemble keeps communities healthy by keeping hospitals healthy. We recognize that healthcare requires a human touch, and we believe that every touch should be meaningful. This is why our people are the most important part of who we are. By empowering them to challenge the status quo, we know they will be the difference!

O.N.E Purpose:

  • Customer Obsession: Consistently provide exceptional experiences for our clients, patients, and colleagues by understanding their needs and exceeding their expectations.

  • Embracing New Ideas: Continuously innovate by embracing emerging technology and fostering a culture of creativity and experimentation.

  • Striving for Excellence: Execute at a high level by demonstrating our “Best in KLAS” Ensemble Difference Principles and consistently delivering outstanding results.

The Opportunity:

The Senior Penetration Testing Engineer, Cybersecurity will be a key member of the Cybersecurity Technical Assessments team, responsible for leading advanced penetration testing engagements, red team exercises, and vulnerability research to detect and exploit security vulnerabilities across the enterprise environments. This role requires deep technical expertise, strategic influence, and leadership in shaping the security posture of the organization. The ideal candidate possesses a strong background in offensive security, including exploit development, red teaming, and advanced attack simulation techniques. Additionally, they will provide mentorship to junior team members, contribute to security strategy, and engage with executive leadership to enhance security resilience.

Essential Job Functions

Customer Obsession: Consistently provide exceptional experiences for our clients, patients, and colleagues by understanding their needs and exceeding their expectations.

Embracing New Ideas: Continuously innovate by embracing emerging technology and fostering a culture of creativity and experimentation.

Striving for Excellence: Execute at a high level by demonstrating our “Best in KLAS” Ensemble Difference Principles and consistently delivering outstanding results.

  • Lead, scope and conduct penetration testing engagements, ensuring comprehensive coverage of modern attack vectors across networks, cloud, applications, and hardware.
  • Develop and execute advanced red team exercises, including adversary emulation, lateral movement, and breach simulation to assess real-world attack resilience.
  • Develop reports and deliver presentations that explain the findings of research and vulnerability assessments to both technical and executive-level audiences.
  • Participate in the validation of threat models for Ensemble developed systems, ensuring the attack simulation is accurate.
  • Lead the coordination and execution of red team/purple team exercises to enhance detection and response capabilities, as well as test the functionality of security systems.
  • Leverage tools commonly used to perform security testing (e.g., Nmap, Burp Suite, evilginx, hashcat, Metasploit, Nessus, impacket, C2 frameworks, nuclei, gophish, Dradis, Ghostwriter, etc.), and develop custom payloads to support testing engagements as necessary.
  • Oversee the optimizing scan profiles in DAST and pentest frameworks to ensure comprehensive coverage of testing; review and validate findings these tools.
  • Advise development resources on security threats and potential remediation and control adjustments to address the current threat landscape.
  • Design and perform social engineering activities (e.g., phishing, USB drops) to assess organizational security posture.
  • Provide tracking and remediation oversight for resolving security issues during all stages of the development process.
  • Enhance enterprise security policies, procedures, and documentation.
  • Deliver security awareness training and lead knowledge-sharing initiatives within the security team and broader organization.
  • Create security-related metrics and increase security visibility across the organization by translating complex vulnerabilities into actionable business risks.

Employment Qualifications

  • 5-7 years of related pentesting cybersecurity experience
  • Bachelors degree or equivalent experience
  • A minimum of 7+ years of experience in Information Technology
  • A minimum of 5 years of experience in performing penetration tests
  • Proven mastery with common penetration toolsets (i.e. Metasploit, Burp Suite, Kali Linux, etc.)
  • Experience with Vulnerability Management platforms (i.e. Wiz, Qualys, Nessus, etc.)
  • Expert-level knowledge of OWASP Top10 and the OWASP Web Security Testing Guide
  • Demonstrated understanding of network and application protocols (e.g., TCP, UDP, SMB, HTTP, FTP)
  • Knowledge of how software works and interacts at various layers
  • Experience in conducting security assessments, source code reviews, and vulnerability analysis against web applications, thick clients, and network infrastructure.
  • The ability to read and understand stack traces and source code call trees to verify issues reported by tooling is legitimate.
  • Familiarity with malware analysis, reverse engineering, and binary exploitation is a plus.
  • Excellent problem solving and analysis skills, including the ability to logically create structure and order from unstructured inputs
  • Strong familiarity with Linux and Windows operating systems, cloud provider ecosystems like Azure and Amazon AWS, and containerization technologies like Docker and Kubernetes.
  • Ability to develop and execute automated security testing workflows using Python, PowerShell, Bash, or similar scripting languages.
  • Adherence to change management process.
  • Great Communication Skills – you will be a Security ambassador to other teams, partnering to add security to their delivery pipelines.
  • Experience in creating and delivering technical documentation and presentations to a variety of audiences, including technical teams and executive management.
  • Ability to own and resolve problems.
  • This position pays between $84,000 - 126,000 based on experience 

This posting addresses s state specific requirements to provide pay transparency.  Compensation decisions consider many job-related factors, including but not limited to geographic location; knowledge; skills; relevant experience; education; licensure; internal equity; time in position.  A candidate entry rate of pay does not typically fall at the minimum or maximum of the role’s range.

#LI-MT1

#LI-Remote

­­­­

Join an award-winning company

Five-time winner of “Best in KLAS” 2020-2022, 2024-2025

Black Book Research's Top Revenue Cycle Management Outsourcing Solution 2021-2024

22 Healthcare Financial Management Association (HFMA) MAP Awards for High Performance in Revenue Cycle 2019-2024

Leader in Everest Group's RCM Operations PEAK Matrix Assessment 2024

Clarivate Healthcare Business Insights (HBI) Revenue Cycle Awards for strong performance 2020, 2022-2023

Energage Top Workplaces USA 2022-2024

Fortune Media Best Workplaces in Healthcare 2024

Monster Top Workplace for Remote Work 2024

Great Place to Work certified 2023-2024

  • Innovation

  • Work-Life Flexibility

  • Leadership

  • Purpose + Values

Bottom line, we believe in empowering people and giving them the tools and resources needed to thrive. A few of those include:

  • Associate Benefits We offer a comprehensive benefits package designed to support the physical, emotional, and financial health of you and your family, including healthcare, time off, retirement, and well-being programs. 
  • Our Culture – Ensemble is a place where associates can do their best work and be their best selves. We put people first, last and always. Our culture is rooted in collaboration, growth, and innovation.  
  • Growth – We invest in your professional development. Each associate will earn a professional certification relevant to their field and can obtain tuition reimbursement. 
  • Recognition – We offer quarterly and annual incentive programs for all employees who go beyond and keep raising the bar for themselves and the company. 

Ensemble Health Partners is an equal employment opportunity employer. It is our policy not to discriminate against any applicant or employee based on race, color, sex, sexual orientation, gender, gender identity, religion, national origin, age, disability, military or veteran status, genetic information or any other basis protected by applicable federal, state, or local laws.  Ensemble Health Partners also prohibits harassment of applicants or employees based on any of these protected categories.

Ensemble Health Partners provides reasonable accommodations to qualified individuals with disabilities in accordance with the Americans with Disabilities Act and applicable state and local law. If you require accommodation in the application process, please contact [email protected].

This posting addresses state specific requirements to provide pay transparency.  Compensation decisions consider many job-related factors, including but not limited to geographic location; knowledge; skills; relevant experience; education; licensure; internal equity; time in position.  A candidate entry rate of pay does not typically fall at the minimum or maximum of the role’s range.

EEOC – Know Your Rights
FMLA Rights - English

La FMLA Español

E-Verify Participating Employer (English and Spanish)

Know your Rights

Top Skills

Amazon Aws
Azure
Bash
Burp Suite
Docker
Kali Linux
Kubernetes
Metasploit
Nessus
Nmap
Powershell
Python
Qualys
Wiz

Similar Jobs

An Hour Ago
Easy Apply
Remote or Hybrid
New York, NY, USA
Easy Apply
180K-265K Annually
Senior level
180K-265K Annually
Senior level
Healthtech • Information Technology • Software • Telehealth
Lead technical direction and build scalable APIs, microservices, and full-stack solutions to improve user acquisition and engagement. Drive SEO, page speed, AI/LLM initiatives, mentor engineers, and collaborate with Design, Product, and Marketing to deliver measurable growth for Zocdoc's marketplace.
Top Skills: React,Aws,Contentful,Llm (Large Language Models),Apis,Microservices,Seo,Ci/Cd,Observability,Testing
3 Hours Ago
In-Office or Remote
Eden Prairie, MN, USA
Mid level
Mid level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Serve as a Technical Project Manager/consultant for Epic Healthy Planet implementations, leading integration, configuration, testing, and production support. Collaborate with stakeholders to translate requirements, maintain system documentation, support upgrades, develop training materials, troubleshoot issues, and ensure compliance with change control and organizational standards.
Top Skills: Epic Healthy Planet,Epic Ambulatory,Epiccare Ambulatory,Careeverywhere,Epiccare Link,Mychart,Refuel,Excel,Visio,Powerpoint,Sharepoint
3 Hours Ago
In-Office or Remote
Eden Prairie, MN, USA
92K-164K Annually
Mid level
92K-164K Annually
Mid level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Build and maintain actuarial models to forecast and track value-based care performance. Extract and analyze claims/revenue data, identify profitability drivers, perform peer review and data mining, prepare revenue/claim forecasts, and communicate findings to internal stakeholders to support underwriting and negotiation.
Top Skills: ExcelSASSQLVBA

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account