Information Security Engineer - Security Automation and Response

UChicago Medicine
Darien, United States
about 2 months ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Cyber Security Computer Programming Computer Networks Query Languages Intrusion Detection and Prevention Python (Programming Language) Log Analysis Network Architecture Windows PowerShell Security Information and Event Management Data Logging
+8 more
Scripting Computerised Systems Information Technology Cybercrime Purple Team (Cyber Security) Api Management Security Orchestration, Automation & Response Golang

Job description

Join one of the nation’s most comprehensive academic medical centers, UChicago Medicine as an Information Security Engineer - Security Automation and Response for the Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.

Under general direction of the Information Security Operations Manager, implementing, deploying, and optimizing Automation using SOAR playbook development, Logging, AI driven workflows, streamline incident response, and improve SOC operational efficiency. Participate in threat investigation and Incident response.

Essential Job Functions

  • Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, such as alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
  • Knowledge of threat detection development, automation of SOAR development, and Incident Response.
  • Support initiatives working with Information Security Operations Manager to advance Security Operations capabilities using AI.
  • Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Dedicate efforts to staying informed on cyber threats and standard processes to consistently enhance Security Operations Center capabilities
  • Excellent knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
  • Participate in Purple Team activity.
  • Participate in on-call rotation and respond to critical security events

Requirements

  • BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience
  • 5 years of Security experience, or equivalent training and education
  • Knowledge of computing systems, data network communications, and network architecture
  • Effective written and verbal communication skills
  • Experience in SOAR playbook development
  • Scripting or programming skills (Python, PowerShell, Go, etc.) required.
  • Experience in Incident Response and Threat investigation.
  • Experience in Threat detection
  • Understanding of logging systems
  • Security related certifications are preferred. (GIAC, CISSP), The pay range is based on a full-time equivalent (1.0 FTE) and is reflective of current market data, reviewed on an annual basis. Compensation offered at the time of hire will vary based on candidate qualifications and experience and organizational considerations, such as internal equity. Pay ranges for employees subject to Collective Bargaining Agreements are negotiated by the medical center and their respective union.

About the company

We’ve been at the forefront of medicine since 1899. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual. To accomplish this, we need employees with passion, talent and commitment… with patients and with each other. We’re in this together: working to advance medical innovation, serve the health needs of the community, and move our collective knowledge forward. If you’d like to add enriching human life to your profile, UChicago Medicine is for you. Here at the forefront, we’re doing work that really matters. Join us. Bring your passion.

UChicago Medicine is growing; discover how you can be a part of this pursuit of excellence at: UChicago Medicine Career Opportunities

UChicago Medicine is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status, parental status, religion, national origin, age, disability, veteran status and other legally protected characteristics.

As a condition of employment, all employees are required to complete a pre-employment physical, background check, drug screening, and comply with the flu vaccination requirements prior to hire. Medical and religious exemptions will be considered for flu vaccination consistent with applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

1:45 min

Addressing active AI incident remediation and broad ecosystem support

Matthew Brady Matthew Brady · World Congress 2026 Europe

Videos

See all

Related articles

See all