<p>We are seeking an experienced <strong>SQL Server 2022 Security & Encryption Engineer</strong> to design and implement a comprehensive security and encryption framework for SQL Server 2022 databases containing Protected Health Information (PHI). This short-term contract role is critical for achieving strong technical safeguards and delivering auditable evidence for HIPAA compliance.</p><p>The successful candidate will deploy and harden SQL Server 2022 using industry-leading encryption, access control, auditing, and masking technologies, ensuring sensitive data is protected at rest, in transit, and in use.</p><p> </p><p><strong>Key Responsibilities</strong></p><ul><li>Deploy and configure SQL Server 2022 with a full security and encryption stack, including:</li><li>Transparent Data Encryption (TDE)</li><li>Always Encrypted with Azure Key Vault integration</li><li>Column-Level Encryption on all PHI-containing columns</li><li>Row-Level Security (RLS)</li><li>Dynamic Data Masking (DDM)</li><li>Implement SQL Server Audit and route audit logs to Microsoft Sentinel for centralized monitoring and alerting</li><li>Enforce TLS 1.2 / 1.3 for all database connections and disable legacy protocols</li><li>Perform surface area reduction and hardening (disable unnecessary features, xp_cmdshell, etc.)</li><li>Design and implement secure key management practices using Azure Key Vault</li><li>Develop and document encryption strategies, policies, and procedures for PHI protection</li><li>Create a complete <strong>HIPAA Technical Safeguard evidence package</strong> including configuration documentation, encryption inventories, key management processes, and audit procedures</li><li>Collaborate with the Microsoft Security Framework Engineer and Microsoft Sentinel Engineer to ensure seamless integration with the broader security stack (Defender, Sentinel, Purview DLP, etc.)</li><li>Provide knowledge transfer and training to internal database and security teams</li></ul><p><br></p>
<p>We are looking for an experienced Cybersecurity Officer to lead our organization’s cybersecurity operations and strategy in Wallingford, Connecticut. This Contract to permanent position offers an opportunity to shape and enhance the security posture of the company while ensuring compliance with industry standards and regulations. The ideal candidate will have a strong background in information security operations and executive leadership, with a proven ability to manage complex projects and drive continuous improvement.</p><p><br></p><p>Responsibilities:</p><p>• Lead the organization’s cybersecurity operations, including threat detection, vulnerability management, and incident response.</p><p>• Develop and implement robust security policies, controls, and risk management frameworks tailored to organizational needs.</p><p>• Conduct risk assessments, penetration testing, and vulnerability scans to identify and mitigate potential threats.</p><p>• Oversee compliance with regulatory requirements and security standards, ensuring successful audits.</p><p>• Manage cybersecurity projects, budgets, and vendor relationships to align with business goals.</p><p>• Collaborate with internal teams and external partners to strengthen the overall security posture.</p><p>• Direct the investigation and forensic analysis of security incidents to ensure timely resolution and reporting.</p><p>• Monitor security systems and tools to ensure prompt identification and remediation of potential risks.</p><p>• Evaluate and mitigate third-party and vendor security risks to protect organizational assets.</p><p>• Develop and deliver comprehensive security awareness programs to educate staff on best practices.</p>