Information Security Analyst
UChicago MedicineAbout the role
Join a world-class academic healthcare system, UChicago Medicine, as an Information Security Analyst in our Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.
Under general direction of the Information Security Operations Manager, Monitor and respond to security events and investigations performed by Security Operations Team. Participate in Incident response on call rotation and respond to critical security events. Collaborate with team to define improvements in SOC workflows, automation and detection. Create Incident reports and update SOC documentation in collaboration with the Security Operations Team.
Essential Job Functions
- Participate in incident response, triage, and investigations for security events including malware, phishing, threats, etc.
- Use threat intelligence and institutional knowledge to proactively hunt for active threats and malicious activity
- Create incident reports, threat reports, and security operation documentation for stakeholders
- Continuous improvement of security operations playbooks, documentation, trends, and lessons learned from incidents in collaboration with the Security Operations team.
- eDiscovery requests and Insider Threat investigations working with Privacy, Legal and HR
- Support Threat Hunting and Intelligence, Detection development, automation and SOC AI workflows
- Investigate and respond to email-based threat types including phishing, business email compromise (BEC), malware delivery, and account takeover
- Monitor Security Operation service and Incident queue.
- Participate in on-call rotation and respond to critical security events
Required Qualifications
- BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience required
- 4 years of Security experience, or equivalent training and education
- Knowledge of computing systems, data network communications, and network architecture is required
- Good knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
- Good knowledge of network security fundamentals, Network Detection and Response (NDR), intrusion detection, incident detection/response, malware analysis, cyber forensics, SIEM concepts, and security best practices; additional duties as assigned
- Scripting or programming skills (Python, PowerShell, Go, etc.) preferred
- Strong service commitment, and verbal, writing, and reporting skills
- High level of integrity, and sound judgment concerning security and privacy
Position Details
- Job Type/FTE: Full Time (1.0 FTE)
- Shift: Day
- Location: Remote
- Unit/Department: Information Security
- CBA Code: Non-Union
We’ve been at the forefront of medicine since 1899. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual. To accomplish this, we need employees with passion, talent and commitment… with patients and with each other. We’re in this together: working to advance medical innovation, serve the health needs of the community, and move our collective knowledge forward. If you’d like to add enriching human life to your profile, UChicago Medicine is for you. Here at the forefront, we’re doing work that really matters. Join us. Bring your passion.
UChicago Medicine is growing; discover how you can be a part of this pursuit of excellence at: UChicago Medicine Career Opportunities
UChicago Medicine is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status,
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s