Job Title & Specialty Area: Security Ops Center Analyst
Department: IT Security
Location: Carrollton, TX
Shift: Various shifts
Job Type: Remote in Texas
Why Children’s Health?
At Children's Health, our mission is to Make Life Better for Children, and we recognize that their health plays a crucial role in achieving this goal.
Through our cutting-edge treatments and affiliation with UT Southwestern, we strive to deliver an extraordinary patient and family experience, ensuring that every moment, big or small, contributes to their overall well-being.
Our dedication to promoting children's health extends beyond our organization and encompasses the broader community. Together, we can make a significant difference in the lives of children and contribute to a brighter and healthier future for all.
Summary
Monitors multiple security technologies using the Security Information and Event Management (SIEM) as well as other Security Applications to detect IT security incidents. Follows detailed operational processes and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents
Responsibilities
- Tunes SIEM and IDS/IPS alerts and rules.
- Provides knowledge sharing with Cyber Security team peers via formal and informal training events, brown bag sessions and web-based demos.
- Continually improves cyber security operations center abilities and value to internal customers
- Acts as a cyber-security evangelist to educate fellow IT team members on cyber security best practices
- Reduces the enterprise attack surface
- Enhances Incident Response detection capabilities as well as reliance against attacks
- Advises on defining and implementing overall security strategy, policies and procedures.
- Carries out and evaluates investigative work regarding potential threats.
- Assists in handling simulated and actual disaster scenarios.
Work Experience
How You’ll Be Successful:
- At least 2 years information security related experience, in areas such as: security operations, incident analysis, incident handling, and vulnerability management or testing, system patching, log analysis, intrusion detection, or firewall administration. Required
- At least 2 years' experience in network operations or engineering Preferred
- Moderate to Advanced event analysis leveraging SIEM tools (McAfee Nitro preferred)
- Moderate incident investigation and response skill set
- Moderate log parsing and analysis skill set
- Moderate knowledge of networking fundamentals (TCP/IP, network layers, Ethernet, ARP, etc.)
- Moderate knowledge of malware operation and indicators
- Moderate knowledge of current threat landscape (threat actors, APT, cyber-crime, etc.)
- Moderate knowledge or IDS/IPS systems
- Moderate knowledge of Windows and Unix or Linux
- Moderate knowledge of Firewall and Proxy technology
- Basic to Moderate knowledge of penetration techniques
- Basic to Moderate knowledge of DDoS mitigation techniques
- Basic knowledge of Data Loss Prevention monitoring
- Basic experience with scripting
- Basic knowledge of forensic techniques
- Basic to Moderate protocol analysis experience (Wire shark, Gig Astor, Net witness, etc.)
- Basic knowledge of audit requirements (PCI, HIPPA, HI Trust)
- Experienced in mentoring and training junior analysts Pref
- At least 2 years' experience in system administration on Unix, Linux, or Windows. Preferred
EDUCATION
Two-year Associate's Degree Or Equivalent Experience Required
LICENSES AND CERTIFICATIONS
- Certified Incident Handler (GCIH) Preferred
- Certified Intrusion Analyst (GIAC) Preferred
- Certified Ethical hacker (CEH) Preferred
- Networking Certifications (CCNA, etc.) Preferred
- Platform Certifications (Microsoft, Linux, Solaris, etc.) Preferred
- CISSP Preferred
- Certified Expert penetration tester (CEPT) Preferred
A Place Where You Belong
We put our people first. We welcome, value, and respect the beliefs, identities and experiences of our patients and colleagues. We are committed to delivering culturally effective care, creating meaningful partnerships in the communities we serve, and equipping and developing our team members to make Children’s Health a place where everyone can contribute.
Holistic Benefits – How We’ll Care For You
- Employee portion of medical plan premiums are covered after 3 years.
- 4%-10% employee savings plan match based on tenure
- Paid Parental Leave (up to 12 weeks)
- Caregiver Leave
- Adoption and surrogacy reimbursement
As an equal opportunity employer, Children's Health does not discriminate against employees or applicants because of race, color, religion, sex, gender identity and expression, sexual orientation, age, national origin, veteran or military status, disability, or genetic information or any other Federal or State legally-protected status or class. This applies to all aspects of the employer-employee relationship including but not limited to recruitment, hiring, promotion, transfer pay, training, discipline, workforce adjustments, termination, employee benefits, and any other employment-related activity.