Explore opportunities with the Enterprise Information Security (EIS) team at UnitedHealth Group. Join one of the world's largest health care companies and become part of the first line of defense against security threats. We are focused on strengthening our cyber defenses, ransomware resiliency, vulnerability mitigation, and securing all aspects of our systems and data globally. We are passionate about protecting the sensitive data of our members and providers. We are committed to leveraging every tool, partnership and process needed to enhance our security posture. It is our duty to protect the information of those we serve while Caring. Connecting. Growing together. The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions. The Principal Threat Intelligence Engineer is responsible for deployment and integration of threat intelligence technical capabilities across United Health Group's security ecosystem. The role focuses on ingesting, normalizing, and enriching threat intelligence information, integrating Threat Intelligence Platforms (TIPs) and intelligence sources with security tooling (e.g., SIEM, SOAR, EDR), and deploying automated intelligence-enabled detection and response workflows. The ideal candidate combines solid software engineering skills with deep cybersecurity domain knowledge to transform raw threat data into actionable intelligence that enhances detection, response, and risk mitigation. This technical role focuses on building automation, data pipelines, and detection mechanisms to proactively defend infrastructure against threats of varying technical sophistication. The Principal Threat Intelligence Engineer is expected to execute the delivery of technical intelligence solutions to CTI, SOC, Threat Detection, and Threat Hunting teams that accelerate the processing and dissemination of intelligence, increase speed of detection, and enable rapid response. The Principal Threat Intelligence Engineer will work closely with and in support of the Senior Principal Threat Intelligence Engineer and members of CTI and other security operations teams to execute a roadmap of technology improvements intended to optimize the efficiency and impact of CTI operations. You’ll enjoy the flexibility to work remotely from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal
Education Level
No Education Listed