Back to search
The University of Chicago Medicine Himalayas · Posted 2d ago

Information Security Analyst

Full time Remote

Infosec Security Operations SOC Analyst Incident Response
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Join a world-class academic healthcare system, UChicago Medicine, as an Information Security Analyst in our Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.

Under general direction of the Information Security Operations Manager, Monitor and respond to security events and investigations performed by Security Operations Team. Participate in Incident response on call rotation and respond to critical security events. Collaborate with team to define improvements in SOC workflows, automation and detection. Create Incident reports and update SOC documentation in collaboration with the Security Operations Team.

Essential Job Functions

  • Participate in incident response, triage, and investigations for security events including malware, phishing, threats, etc.
  • Use threat intelligence and institutional knowledge to proactively hunt for active threats and malicious activity
  • Create incident reports, threat reports, and security operation documentation for stakeholders
  • Continuous improvement of security operations playbooks, documentation, trends, and lessons learned from incidents in collaboration with the Security Operations team.
  • eDiscovery requests and Insider Threat investigations working with Privacy, Legal and HR
  • Support Threat Hunting and Intelligence, Detection development, automation and SOC AI workflows
  • Investigate and respond to email-based threat types including phishing, business email compromise (BEC), malware delivery, and account takeover
  • Monitor Security Operation service and Incident queue.
  • Participate in on-call rotation and respond to critical security events

Required Qualifications

  • BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience required
  • 4 years of Security experience, or equivalent training and education
  • Knowledge of computing systems, data network communications, and network architecture is required
  • Good knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
  • Good knowledge of network security fundamentals, Network Detection and Response (NDR), intrusion detection, incident detection/response, malware analysis, cyber forensics, SIEM concepts, and security best practices; additional duties as assigned
  • Scripting or programming skills (Python, PowerShell, Go, etc.) preferred
  • Strong service commitment, and verbal, writing, and reporting skills
  • High level of integrity, and sound judgment concerning security and privacy

Position Details

  • Job Type/FTE: Full Time (1.0 FTE)
  • Shift: Day
  • Location: Remote
  • Unit/Department: Information Security
  • CBA Code: Non-Union

Originally posted on Himalayas

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search