Information Security Analyst (Remote)
FreenomeAbout the role
Why join Freenome?
Freenome is a high-growth biotech company developing tests to detect cancer using a standard blood draw. To do this, Freenome uses a multiomics platform that combines tumor and non-tumor signals with machine learning to find cancer in its earliest, most-treatable stages.
Cancer is relentless. This is why Freenome is building the clinical, economic, and operational evidence to drive cancer screening and save lives. Our first screening test is for colorectal cancer (CRC) and advanced adenomas, and it’s just the beginning.
Founded in 2014, Freenome has ~500 employees and more than $1.1B in funding from key investors, such as the American Cancer Society, Andreessen Horowitz, Anthem Blue Cross, Bain Capital, Colorectal Cancer Alliance, DCVC, Fidelity, Google Ventures, Kaiser Permanente, Novartis, Perceptive Advisors, RA Capital, Roche, Sands Capital, T. Rowe Price, and Verily.
At Freenome, we aim to impact patients by empowering everyone to prevent, detect, and treat their disease. This, together with our high-performing culture of respect and cross-collaboration, is what motivates us to make every day count.
Become a Freenomer
Do you have what it takes to be a Freenomer? A “Freenomer” is a determined, mission-driven, results-oriented employee fueled by the opportunity to change the landscape of cancer and make a positive impact on patients’ lives. Freenomers bring their diverse experience, expertise, and personal perspective to solve problems and push to achieve what’s possible, one breakthrough at a time.
About this opportunity:
As an Information Security Analyst, you will help identify and reduce security risks in our office network and GCP cloud environment by implementing, maintaining, and monitoring security related events and incidents. This role investigates, analyzes, and responds to cyber incidents within the Freenome's local and cloud network, or enclave. You will provide your expertise regarding collecting evidence and do forensic analysis. You will act as an Information Security representative with your peers across all lines of business and central teams.
The role reports to the Director, Information Security.
What you’ll do:
- Engineer, implement, and administer the SIEM platform, open-source or commercial
- Analyze, design, build, tune, and support SIEM use cases across various business functions and security operational needs
- Create, modify, and tune the SIEM rules to adjust the specifications of alerts and incidents
- Develop log ingestion, aggregation, and retention strategies to meet policy, related standards, and operational requirements
- Assist with onboarding new data sources into our SIEM, analyze the data for anomalies and trends, and build dashboards highlighting the key trends of the data
- Analyze and investigate security events from various sources
- Triage and validate security alerts and escalate incidents, as required. Ensure that incidents are correctly reported, documented, investigated and concluded in accordance with operational policies and procedures
- Manage security events as part of security operations, responding to urgent alerts, which may include off-hours investigation activities
- Troubleshoot system misconfigurations and recommend best practices for remediation
- Provide high quality written and verbal status reports, briefings, recommendations, and findings as required
- Maintain and support the operational integrity of SIEM/SOC toolsets
- Helping to develop the SOC (Security Operation Center) roadmap by delivering SOC capabilities to the business and championing new ideas and initiatives to help improve new and existing capabilities
- Ensure all relevant technical standards and policy documentation is reviewed and maintained throughout SOC technical capabilities
- Maintain situational awareness of emerging cyber trends by reviewing open-source reports for recent vulnerabilities and other threats that have the potential to impact the services and incorporate this understanding into day-to-day security monitoring
- Excellent knowledge of Endpoint protection
- Good understanding of vulnerability assessment and management
- Update SIEM/SOC documentation, processes and procedures and ensure currency, as required
- Provide ideas and feedback to improve the overall SOC capabilities and maturity
- Perform all other Information Security related duties as assigned and contribute to the success of the Information Security Team
Must haves:
- Bachelor's degree in Information Security, computer science, business, or a related field, or equivalent in experience and expertise
- Excellent Google Cloud Platform
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Information Systems Security Officer (ISSO) (Engineer Info Assurance 3) 27563
HII
$120,000/yr
Senior Manager - Information Security
CVS Health
$260,590/yr
Project Information Specialist III – Documentation Engineer
AECOM