Sutter Health-posted 9 months ago
$58 - $88/Yr
Full-time • Mid Level
Sacramento, CA
Hospitals

As an advanced member of the cybersecurity team, the Detection Analyst at Level 3 is responsible for designing, refining, and maintaining detection mechanisms to identify and respond to security threats across the organization. This role involves deep technical expertise, proactive threat hunting, and collaboration with security and IT teams to enhance detection and response capabilities.

  • Develop and fine-tune detection rules and alerts for SIEM, EDR, and network security tools.
  • Analyze complex security events to identify potential threats and escalate as needed.
  • Proactively hunt for advanced threats using behavioral analysis and threat intelligence.
  • Monitor security tools and dashboards to identify and investigate anomalies.
  • Act as a point of escalation for junior analysts during active investigations.
  • Provide input on incident response strategies and coordinate with the response team.
  • Work with threat intelligence teams to incorporate emerging threats into detection workflows.
  • Partner with infrastructure and application teams to optimize visibility and logging capabilities.
  • Mentor junior analysts, enhancing team expertise and efficiency.
  • Test and validate detection logic to reduce false positives and expand threat coverage.
  • Recommend and implement improvements to detection technologies and workflows.
  • Stay informed about emerging cybersecurity threats and detection techniques.
  • Maintain up-to-date documentation of detection strategies and incident workflows.
  • Generate detailed reports and dashboards for leadership on detection efficacy and insights.
  • Bachelor's in Business, Cybersecurity, Computer Science, Information Technology/Security, Risk Management, or related field.
  • 5 years recent relevant experience.
  • Experience providing cyber security support by planning, coordinating, integrating, and synchronizing cyber defense and prevention activities preferred.
  • Experience ensuring compliance with all applicable state and federal cyber laws and regulations preferred.
  • Experience creating comprehensive and accurate reports that communicate risk profile impacts to peers and management preferred.
  • In-depth understanding of the anatomy of an attack and the lifecycle of a network threat and network vulnerability exploitation in a healthcare environment.
  • Technical skills in planning, administration, and management of information systems; operational and technical security controls; and security risk analysis and management.
  • Comprehensive knowledge of end point security technologies (Antivirus, Forensics, Anti-malware, HIPS), data loss prevention (DLP) methodologies, DLP technologies, current information security trends and practices.
  • Thorough knowledge of software, hardware, databases, networks, firewalls, encryption, and other systems security devices.
  • Expert knowledge of state and federal information services (IS) security and privacy-related regulatory requirements and laws.
  • Detailed knowledge regarding National Institute of Standards and Technology (NIST), HIPAA/HITECH, FIPS, and other related industry security standards, regulations, and best practices.
  • Superior business acumen and analytic skills.
  • Organizational and project management skills required.
  • Exceptional attention to detail with time management and organization skills.
  • Communication (written/verbal), interpersonal, and presentation skills.
  • Robust computer skills, including advanced knowledge of Microsoft Office Suite and various database architectures.
  • Comprehensive benefits package including health insurance, retirement plans, and paid time off.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service