Logo for UChicago Medicine

Information Security Engineer – Security Automation and Response

Role overview

Qualifications

  • BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience
  • 5 years of Security experience, or equivalent training and education
  • Knowledge of computing systems, data network communications, and network architecture
  • Security related certifications are preferred (GIAC, CISSP)

Responsibilities

  • Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks
  • Participate in threat investigation and incident response
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Participate in on-call rotation and respond to critical security events

Key facts

Hard skills

Other skills

  • Communication
  • Problem Solving

About the company

UChicago Medicine logo

UChicago Medicine

The University of Chicago Medicine has been at the forefront of medicine since 1927, when we cared for our first patients. Our mission is to provide superior health care in a compassionate manner, ever mindful of each patient's dignity and individuality. To accomplish our mission, we call upon the skills and expertise of all who work together to advance medical innovation, serve the health needs of the community, and further the knowledge of those dedicated to caring. As one of the nation’s leading academic medical institutions, UChicago Medicine comprises the Medical Center, Pritzker School of Medicine and the Biological Sciences Division. Its main Hyde Park campus is home to the Center for Care and Discovery, Bernard Mitchell Hospital, Comer Children’s Hospital and the Duchossois Center for Advanced Medicine. It also has a 108,000-square-foot facility in Orland Park as well as an outpatient clinic in Chicago's South Loop, as well as affiliations and partnerships that create a regional network of doctors in dozens of Chicago-area communities. UChicago Medicine offers a full range of specialty-care services for adults and children through more than 40 institutes and centers including an NCI-designated Comprehensive Cancer Center. It has 805 licensed beds, nearly 850 attending physicians, about 2,500 nurses and over 1,100 residents and fellows. Harvey-based Ingalls Health joined UChicago Medicine’s network in 2016.

Company details

Company size5001 - 10000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Join one of the nation’s most comprehensive academic medical centers, UChicago Medicine as an Information Security Engineer – Security Automation and Response for the Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area. 

Under general direction of the Information Security Operations Manager, implementing, deploying, and optimizing Automation using SOAR playbook development, Logging, AI driven workflows, streamline incident response, and improve SOC operational efficiency. Participate in threat investigation and Incident response.

Essential Job Functions

  • Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, such as alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
  • Knowledge of threat detection development, automation of SOAR development, and Incident Response. 
  • Support initiatives working with Information Security Operations Manager to advance Security Operations capabilities using AI.
  • Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Dedicate efforts to staying informed on cyber threats and standard processes to consistently enhance Security Operations Center capabilities
  • Excellent knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
  • Participate in Purple Team activity. 
  • Participate in on-call rotation and respond to critical security events 

Required Qualifications 

  • BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience 
  • 5 years of Security experience, or equivalent training and education
  • Knowledge of computing systems, data network communications, and network architecture 
  • Effective written and verbal communication skills 
  • Experience in SOAR playbook development
  • Scripting or programming skills (Python, PowerShell, Go, etc.) required.
  • Experience in Incident Response and Threat investigation.
  • Experience in Threat detection 
  • Understanding of logging systems 
  • Security related certifications are preferred. (GIAC, CISSP)

 Position Details

  • Job Type/FTE: Full Time (1.0 FTE)
  • Shift: Day
  • Location: Remote
  • Unit/Department: Information Security 
  • CBA Code: Non-Union

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Information Security Analyst Related jobs

Other jobs at UChicago Medicine

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.