Sr. Security Engineer
HistoSonicsAbout the role
HistoSonics is a commercial-stage medtech company advancing the Edison® System, a novel non-invasive sonic beam therapy based on histotripsy. Since receiving FDA De Novo grant for the non-invasive destruction of liver tumors in 2023, the company has progressed beyond initial market entry into commercial expansion, reimbursement momentum, and ongoing clinical and pipeline development. In addition to its current liver tumor indication, HistoSonics is pursuing future indications across multiple applications including kidney, pancreas, prostate, neuro, women’s health, and other significant underserved human health areas, to realize the broader potential histotripsy across multiple disease states and medical specialties.
We offer an exciting work culture where cutting-edge science meets real-world application, and each team member’s contribution is important to our success in ensuring our physicians and their patients get what they need most.
Location: Plymouth, MN
Position Summary (Why this role matters):
The Senior Security Engineer who has a focus on security operations is a senior individual contributor within the HistoSonics security operations function and is a member of a larger, multi-site Information Systems and Security team that supports HistoSonics as a whole. This is a hybrid position based out of the Plymouth, MN office. The role builds and owns the organization’s defensive security capability, including endpoint detection and response, security information and event management, insider risk management and data loss prevention, and centralized vulnerability management. The Senior Security Engineer provides the primary technical execution behind security operations engagement with the AI and R&D Infrastructure team, a partnership owned by the Senior Director, Information Systems and Security, serves a technical escalation for security incidents, and sets technical standards for the function.
Key Responsibilities (What you’ll do):
Security Monitoring and Detection Engineering
- Design, implement, and administer the security information and event management platform, including log source onboarding, retention and licensing, correlation rules, dashboards, and reporting.
- Develop, tune, andmaintaindetection content mapped to a recognized adversary behavior framework such as MITRE ATT&CK, and document detection rationale and response guidance.
- Design and implement security automation and orchestration workflows, and develop supporting scripts and tooling in PowerShell, Python, or comparable languages.
Endpoint, Email, and Threat Protection
- Own the design, deployment, and administration of the endpoint detection and response platform across Windows, macOS, and server infrastructure, including policy configuration, coverage validation, and response actions.
- Administer email and messaging security controls in coordination with the System Administration and Network Engineering functions, and conduct proactive threat hunting across endpoint, identity, network, and cloud telemetry.
Insider Risk and Data Protection
- Lead the implementation and administration of the insider risk management and data loss prevention program, including telemetry sources,monitoringpolicies, risk indicators, and alert triage.
- Investigate potential data exfiltration and intellectual property loss events under established procedures and in coordination with Human Resources, Legal, and the Senior Director, Information Systems and Security.
Vulnerability and Threat Management
- Own centralized vulnerability management across endpoints, servers, cloud workloads, and network infrastructure, including scanner administration, risk-based prioritization, remediation tracking, and exception handling.
- Facilitateinternal and external penetration testing and security assessments through closure of findings and operationalize threat intelligence into detection and blocking controls.
Incident Response and Operations
- Serve as the senior technical responder for security incidents, leading triage, investigation, containment, and recovery, and conducting root cause analysis with corrective and preventive actions.
- Author andmaintainsecurity incident response procedures, runbooks, and escalation paths,participatein tabletop exercises, andparticipatein an on-call rotation for critical after-hourssupport.
- Define alerting thresholds, response targets, and operational metrics for the function, and report ondetectioncoverage and response performance to leadership.
Leadership and Collaboration
- Serve as a senior internal escalation point for security operations matters and provide technical mentorship, work review, and knowle
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s