Jobs and Careers
CA

Senior Analyst, Information Security & Risk

Cardinal Health
OH-Ohio-FIELD, United Statesfull_timeVerifiedPosted 4 Jun 2024
💰 $111,500/yr($78,100/yr$111,500/yr)

About the role

Headquartered in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a global, integrated healthcare services and products company connecting patients, providers, payers, pharmacists and manufacturers for integrated care coordination and better patient management. Backed by nearly 100 years of experience, with more than 50,000 employees in nearly 60 countries, Cardinal Health ranks among the top 20 on the Fortune 500.

Cardinal Health’s Information Security team is on a tremendous growth journey adding a number of new team members in our Cyber Threat Operations Center (CTOC) , IT Risk and Compliance, and Security Architecture teams .  We aim to be a world-class cybersecurity and risk management organization that enables Cardinal Health to be healthcare’s most trusted partner. 

We boast tremendous opportunities to grow and apply technical skills to meet organizational needs, empowering talented team members who mentor and uplift others, led by leaders with a maniacal focus on employee development and well-being, dedicated training programs, and a fun and collaborative atmosphere.  

We currently have a career opening for a Cyber Security Analyst.

Cyber Threat Operations Center (CTOC) Overview

The is a pivotal role in the Cyber Threat Operation Center (CTOC) at Cardinal Health.  This person is responsible for the CTOC’s visibility into Cardinal’s network, infrastructure, and applications and ensuring our operations team can quickly identify and respond to threats.  The ideal candidate’s unique blend of platform engineering and data science skills will help influence cybersecurity strategy and future roadmap initiatives.

  • We exist to ensure availability, integrity and confidentiality of healthcare infrastructure that safeguards the patient

  • We promote a culture that protects information assets, manages risk and embeds security in people, process and technology

  • Defines solutions that balance information security requirements against business needs.

  • Investigates and resolves security incidents and recommends enhancements to improve security.

Responsibilities include but are not limited to:

  • Experience with Security tools and techniques used by Cybersecurity teams
  • Experience with Incident Management and response activities across the incident response life cycle
  • Experience identifying, capturing, containing, and reporting malware.
  • SIEM technologies and utilization within a cyber security environment
  • Cyber Kill Chain/Mitre ATT&CK frameworks and application within a cyber security command center
  • Knowledge of how data is collected and analyzed from a variety of tools and sources
  • Knowledge of cyber threats and vulnerabilities. 
  • Knowledge of incident categories, incident responses, and timelines for responses.
  • Ability to identify, detect, respond and mitigate sophisticated threats in the environment
  • Endpoints (laptop/desktop/server) related to cyber security
  • Incident response case management and automation (SOAR)
  • Incident Response toolsets and specifically phishing group mailbox support
  • Logging/monitoring solutions and implementations
  • Apply comprehensive knowledge and a thorough understanding of concepts, principles, and technical capabilities to perform varied tasks and projects related to incident response
  • Works on complex projects of large scope domestically and internationally
  • Provide an organized and risk-based approach to remediation of sensitive assets in the enterprise
  • Present data findings and influence organizational partners at multiple levels in the organization.
  • Establish strong reporting metrics to support the program and influence behaviors.
  • Act as liaison with solution owners and IT groups to ensure alignment of our strategy.

Basic Qualifications

  • General exposure to cyber security and Incident Response toolsets. 
  • Strong analytical, collaborative, problem solving, organizational and planning skills.
  • 2+ years experience in related field.
  • Strong written and oral interpersonal skills.
  • Bachelor's in related field or equivalent work experience

Preferred Qualifications:

  • Experience performing Digital forensics.
  • Linux/Unix OS, Windows and Mac administration skills
  • Knowledge of Cloud platforms including GCP, AWS or Azure.
  • Proven experience with the Cyber Kill Chain, EDR, SIEM and MITRE ATT&CK framework.

Anticipated salary range: $78,100 - $111,500

Bonus eligible: No

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage
  • Paid time off plan
  • Health savings accoun

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Cardinal Health

View company profile →