Founded in 1977 as the Senior Care Action Network, SCAN began with a simple but radical idea: that older adults deserve to stay healthy and independent. That belief was championed by a group of community activists we still honor today as the “12 Angry Seniors.” Their mission continues to guide everything we do.
Today, SCAN is a nonprofit health organization serving more than 500,000 people across Arizona, California, Nevada, New Mexico, Texas, and Washington, with over $8 billion in annual revenue. With nearly five decades of experience, we have built a distinctive, values-driven platform dedicated to improving care for older adults.
Our work spans Medicare Advantage, fully integrated care models, primary care, care for the most medically and socially complex populations, and next-generation care delivery models. Across all of this, we are united by a shared commitment: combining compassion with discipline, innovation with stewardship, and growth with integrity.
At SCAN, we believe scale should strengthen—not dilute—our mission. We are building the future of care for older adults, grounded in purpose, accountability, and respect for the people and communities we serve.
The Job:
The Information Security Engineer is responsible for safeguarding the organization's digital assets and information systems by implementing, monitoring, and optimizing security solutions across Azure, Windows, and M365 hybrid environments. This position plays a critical role in identifying and mitigating organizational risks, enforcing best practices in identity and access management, and supporting a wide range of Microsoft technologies, including Intune, Defender, and SharePoint Online. The role requires proactive collaboration with cross-functional teams to deliver effective security deployments, ensure regulatory and policy compliance, and maintain a robust posture against evolving cyber threats. The engineer will prioritize, plan, and manage projects and incidents, uphold the confidentiality and integrity of sensitive information, and continually enhance technical expertise through education and engagement with the cybersecurity community.​
You Will:
- Monitor and support security operations across multiple Microsoft 365 and cloud tenants, ensuring consistent security controls, visibility, and compliance.
- Perform continuous monitoring, investigation, and triage of security events, alerts, and incidents generated by the Security Operations Center (SOC).
- Utilize and administer Microsoft security technologies including Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Defender for Identity, Microsoft Sentinel, Microsoft Entra ID, and other Microsoft security solutions.
- Assist with the implementation, configuration, and maintenance of security controls protecting Microsoft 365, Azure, endpoints, identities, collaboration platforms, and cloud services.
- Collaborate with infrastructure, cloud, networking, and application teams to strengthen security posture and reduce organizational risk.
- Participate in on-call rotations and incident response activities as required.
- Analyze and respond to threats, suspicious activity, indicators of compromise (IOCs), and security incidents following established incident response procedures
- Monitor and investigate security events through Expel MDR, Microsoft Sentinel, and related security monitoring platforms.
- Strong understanding of IAM, Conditional Access, and experience with least privileged roles in alignment with Zero Trust. Â Azure Identity and Role Configuration experience a must.
- Familiarity with networking components, such as next-gen firewalls and Prisma Access.
- We seek Rebels who are curious about AI and its power to transform how we operate and serve our members.
- Actively support the achievement of SCAN’s Vision and Goals.
- Other duties as assigned.
Your Qualifications:
- Bachelor’s degree information Security, Cyber Security, Information Technology or related field.
- Relevant certifications (preferred but not required), such as Microsoft Certified (various), CISSPÂ
- 3+ years of Information Security or Cyber Security experience
- 2+ years of hand-on experience with security monitoring, thread detection, incident response or SOC operations
- 2+ years in healthcare, HIPAA/ PHI security experience
Experience Required: Â
- Working knowledge of Microsoft security platforms, including Microsoft Defender XDR, Defender for Endpoint, Defender for Office 365, Defender for Identity, Microsoft Sentinel, Entra ID, Purview, and related Microsoft security technologies.
- Familiarity with Managed Detection and Response (MDR) services such as Expel.
- Experience securing Microsoft 365, Azure, SharePoint Online, OneDrive, Teams, Exchange Online, and other Microsoft cloud services.
- Experience with HIPAA compliance and HITRUST certification.Â
- Provides escalation support for various development and infrastructure teams as well as other groups within IT. Contributes team effort by accomplishing related results as needed. Ensure accurate and timely completion of all the work assigned.
What's in it for you?
Base salary range: $92,400 to $159,133 annually
An annual employee bonus program
Robust Wellness Program
Generous paid-time-off (PTO)
11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days
Excellent 401(k) Retirement Saving Plan with employer match
Robust employee recognition program
Tuition reimbursement
An opportunity to become part of a team that makes a difference to our members and our community every day!
We're always looking for talented people to join our team! Qualified applicants are encouraged to apply now!
At SCAN we believe that it is our business to improve the state of our world. Each of us has a responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects our community through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more.
SCAN is proud to be an Equal Employment Opportunity and Affirmative Action workplace. Individuals seeking employment will receive consideration for employment without regard to race, color, national origin, religion, age, sex (including pregnancy, childbirth or related medical conditions), sexual orientation, gender perception or identity, age, marital status, disability, protected veteran status or any other status protected by law. A background check is required.
#LI-JB1 #LI-Hybrid
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)
Learn more about this Employer on their Career Site
