SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Zelis is modernizing healthcare financial systems across payers, providers, and consumers in the U.S., serving 750+ payers including top five national health plans and millions of providers. The company is seeking a Security Engineer focused on Email Security to protect and enhance the enterprise email environment.
This role centers on identifying and preventing email-based threats, administering email security controls, and troubleshooting mail-flow and security issues within Microsoft 365/Exchange Online environments. You will perform detailed analysis of suspicious messages, including email headers, message routing, URLs, attachments, sender reputation, and authentication results. Key responsibilities include administering email security controls in Exchange Online, Defender for O365, EasyDMARC, and Abnormal environments; troubleshooting email delivery, quarantine, filtering, and security-policy issues; and reviewing Exchange message traces and mail-flow logs.
You will configure and maintain mail-flow rules, anti-spam policies, anti-phishing protections, allow/block lists, and quarantine policies. The role involves supporting incident containment and remediation, including message removal, sender/domain blocking, URL blocking, mailbox remediation, and escalation of compromised accounts. You'll assist with administration and tuning of Microsoft Defender for Office 365 or comparable secure email gateway technologies, analyze email authentication technologies (SPF, DKIM, DMARC), and identify false positives/negatives to improve policies.
Additional responsibilities include documenting investigations and findings, creating operational procedures and knowledge-base documentation, collaborating with SOC and Incident Response teams during security investigations, assisting with email security metrics and reporting, and staying current on emerging phishing techniques and email security best practices.
Required: 5+ years designing and implementing enterprise-grade email security in regulated fintech or healthcare environments using Microsoft Purview, Proofpoint, Microsoft Exchange Online, EasyDMARC, Abnormal Security, and adaptive AI-based threat protection. Strong expertise in phishing and BEC prevention, email authentication, data loss prevention, policy enforcement, monitoring, and incident response.