Information Security Engineer - Security Automation and Response
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+8 more
Job description
Join one of the nation’s most comprehensive academic medical centers, UChicago Medicine as an Information Security Engineer - Security Automation and Response for the Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.
Under general direction of the Information Security Operations Manager, implementing, deploying, and optimizing Automation using SOAR playbook development, Logging, AI driven workflows, streamline incident response, and improve SOC operational efficiency. Participate in threat investigation and Incident response.
Essential Job Functions
- Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, such as alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
- Knowledge of threat detection development, automation of SOAR development, and Incident Response.
- Support initiatives working with Information Security Operations Manager to advance Security Operations capabilities using AI.
- Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
- Analyze logs, memory, disk images, and network captures to determine attack scope and impact
- Dedicate efforts to staying informed on cyber threats and standard processes to consistently enhance Security Operations Center capabilities
- Excellent knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
- Participate in Purple Team activity.
- Participate in on-call rotation and respond to critical security events
Requirements
- BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience
- 5 years of Security experience, or equivalent training and education
- Knowledge of computing systems, data network communications, and network architecture
- Effective written and verbal communication skills
- Experience in SOAR playbook development
- Scripting or programming skills (Python, PowerShell, Go, etc.) required.
- Experience in Incident Response and Threat investigation.
- Experience in Threat detection
- Understanding of logging systems
- Security related certifications are preferred. (GIAC, CISSP), The pay range is based on a full-time equivalent (1.0 FTE) and is reflective of current market data, reviewed on an annual basis. Compensation offered at the time of hire will vary based on candidate qualifications and experience and organizational considerations, such as internal equity. Pay ranges for employees subject to Collective Bargaining Agreements are negotiated by the medical center and their respective union.
About the company
We’ve been at the forefront of medicine since 1899. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual. To accomplish this, we need employees with passion, talent and commitment… with patients and with each other. We’re in this together: working to advance medical innovation, serve the health needs of the community, and move our collective knowledge forward. If you’d like to add enriching human life to your profile, UChicago Medicine is for you. Here at the forefront, we’re doing work that really matters. Join us. Bring your passion.
UChicago Medicine is growing; discover how you can be a part of this pursuit of excellence at: UChicago Medicine Career Opportunities
UChicago Medicine is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status, parental status, religion, national origin, age, disability, veteran status and other legally protected characteristics.
As a condition of employment, all employees are required to complete a pre-employment physical, background check, drug screening, and comply with the flu vaccination requirements prior to hire. Medical and religious exemptions will be considered for flu vaccination consistent with applicable law.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Paying Jobs in Technology
The Most Popular IT Jobs on the Market
Data Engineer Salary UK
IT Salaries in Germany