
Baptist Hospitals of Southeast TX is hiring: IT - Cybersecurity Specialist in Be
Baptist Hospitals of Southeast TX, Beaumont, TX, United States
We are looking to add top talent to our Baptist Hospitals of Southeast Texas team.
Join us in performing Sacred Work!
Competitive benefits are offered including:
Matched Retirement Plan
Paid Time Off
Comprehensive Benefit Plan – Medical, Dental, Vision and Much More!
Bonus Potential
Summary/Objective
The Cybersecurity Specialist is responsible for actively reducing cybersecurity risk across Baptist Hospitals of Southeast Texas (BHSET) through hands-on vulnerability management and remediation execution. This role owns the end-to-end lifecycle of vulnerability identification, prioritization, patching, system hardening, testing, validation, and closure across servers, endpoints, and supporting infrastructure.
Working closely with the IT Infrastructure team and external partners such as the Security Operations Center (SOC), the Cybersecurity Specialist personally executes and drives remediation activities while maintaining independent accountability for cybersecurity risk outcomes. When vulnerabilities cannot be remediated due to vendor limitations, end-of-life systems, operational constraints, or in-flight replacement projects, this role owns vendor engagement, contributes technical input to capital replacement and remediation planning, and prepares formal risk exception and escalation documentation for executive review.
This position serves as a critical bridge between operational IT and executive leadership by translating technical security risk into clear, actionable recommendations that protect patient safety, clinical operations, regulatory compliance, and organizational trust, in alignment with BHSET’s mission and Sacred Work philosophy.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Lead hands-on vulnerability management by identifying, prioritizing, and personally executing remediation activities, including patching, system hardening, configuration changes, testing, and validation—across servers, endpoints, and infrastructure to measurably reduce cybersecurity risk.
Own the end-to-end lifecycle of vulnerability remediation by tracking findings through resolution, validating closure effectiveness, and ensuring remediation actions are properly documented and aligned with change control processes.
Respond to and investigate security alerts and incidents in coordination with the Security Operations Center (SOC), focusing on root cause analysis, remediation execution, and post-incident improvements to prevent recurrence.
Engage with vendors and internal stakeholders when vulnerabilities cannot be remediated due to technical, contractual, or lifecycle constraints, providing security input to remediation planning, capital replacement justification, and system modernization efforts.
Document, assess, and escalate unresolved cybersecurity risks, including preparation of formal risk exception and risk acceptance documentation that clearly communicates technical findings, business impact, and patient safety considerations to executive leadership.
Develop and maintain security standards, secure configuration baselines, and supporting policies and procedures, including contribution to disaster recovery and business continuity planning, to support continuous improvement of BHSET’s security posture.
Required Education and Experience
5+ years of experience in systems administration, infrastructure engineering, or IT operations with direct responsibility for server and endpoint patching, configuration, and troubleshooting
Demonstrated experience executing vulnerability remediation in enterprise environments
Experience with change management and ticketing systems (e.g., ServiceNow or equivalent)
Ability to produce concise written risk summaries and escalation documentation for leadership
Required License/Certifications
One or more industry-recognized cybersecurity or infrastructure security certifications such as CompTIA Security+ or GIAC Security Essentials (GSEC) is required.
#J-18808-Ljbffr