Nashville, TN, 37230, USA
9 hours ago
Lead SOAR Security Analytics Engineer
**Description** **Introduction** Experience the HCA Healthcare difference where colleagues are trusted, valued members of our healthcare team. Grow your career with an organization committed to delivering respectful, compassionate care, and where the unique and intrinsic worth of each individual is recognized. Submit your application for the opportunity below:Consulting Security Analytics EngineerHCA Healthcare **Benefits** HCA Healthcare offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include: + Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation. + Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more. + Free counseling services and resources for emotional, physical and financial wellbeing + 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service) + Employee Stock Purchase Plan with 10% off HCA Healthcare stock + Family support through fertility and family building benefits with Progyny and adoption assistance. + Referral services for child, elder and pet care, home and auto repair, event planning and more + Consumer discounts through Abenity and Consumer Discounts + Retirement readiness, rollover assistance services and preferred banking partnerships + Education assistance (tuition, student loan, certification support, dependent scholarships) + Colleague recognition program + Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence) + Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income. Learn more about Employee Benefits (https://careers.hcahealthcare.com/pages/employee-benefits-and-rewards) **_Note: Eligibility for benefits may vary by location._** We are seeking a Consulting Security Analytics Engineer for our team to ensure that we continue to provide all patients with high quality, efficient care. Did you get into our industry for these reasons? We are an amazing team that works hard to support each other and are seeking a phenomenal addition like you who feels patient care is as meaningful as we do. We want you to apply! **Job Summary and Qualifications** As a Consulting Security Analytics Engineer, you will serve as an experienced practitioner in designing, implementing, and optimizing automated response workflows to accelerate threat mitigation and reduce operational overhead. You will play a pivotal role in maximizing the effectiveness of the SOAR platform, while also providing strategic guidance and mentorship to a team of engineers responsible for building scalable, resilient, and intelligence-driven playbooks. The ideal candidate will have deep experience in security automation, incident response, and orchestration across diverse environments. Familiarity with advanced SOAR concepts such as playbook modularization, contextual enrichment, and dynamic decisioning is essential. The candidate should also demonstrate proficiency in integrating SOAR with SIEM, EDR, ticketing systems, threat intelligence platforms, and cloud-native services. Experience with Python, REST APIs, and JSON is expected. The ability to communicate automation strategies and outcomes effectively with both technical and non-technical stakeholders is critical. **Major Responsibilities:** + Designs and implements scalable, modular SOAR playbooks to automate incident response workflows across diverse security domains including cloud, endpoint, network, and identity. + Develops and maintains out-of-the-box (OOTB) integrations by configuring vendor-provided connectors and extending default actions to meet internal use cases. + Builds bespoke integrations for systems lacking native SOAR support by identifying relevant APIs through documentation review and vendor engagement. + Leverages threat intelligence and the MITRE ATT&CK framework to enrich playbooks with contextual decision logic and threat-informed response strategies. + Integrates SOAR with SIEM (e.g., Google SecOps Chronicle), EDR, ticketing systems, threat intelligence platforms, and cloud-native services to enable end-to-end automation. + Identifies opportunities for enrichment and correlation to improve alert triage, reduce mean time to respond (MTTR), and eliminate repetitive manual tasks. + Applies logic-based branching, conditional triggers, and feedback loops to optimize playbook efficiency and reduce false positives. + Collaborates with detection engineers to translate detection logic into actionable SOAR workflows, ensuring seamless handoff from alert to response. + Enhances and maintains CI/CD pipelines for playbook deployment, version control, and automated testing to ensure high-quality, reliable automation. + Participates in purple teaming and incident simulation exercises to validate SOAR effectiveness and identify gaps in response coverage. + Partners with Threat Intelligence, Incident Response, and Security Operations teams to continuously refine orchestration strategies and drive operational maturity. + Works cross-functionally with teams outside of Cybersecurity to acquire access credentials, tokens, and permissions necessary for integration with target systems. + Collaborates with vendors when OOTB capabilities are insufficient, ensuring integrations are aligned with operational requirements and security objectives. + Performs other duties as assigned + Practices and adheres to the “Code of Conduct” philosophy and “Mission and Value Statement.” **Education & Experience:** + Bachelor's degree preferred + 5+ years of experience in a cybersecurity engineering role required or equivalent combination of education and/or experience **Required Knowledge, Skills, Abilities, Behaviors:** + Service and Quality Excellence: Ability to demonstrate an uncompromising commitment to delivering exceptional care to create an unmatched value proposition for our patients. + Honor our Mission and Values: Ability to build trust and act with authenticity to cultivate a culture of integrity, inclusion, and mutual respect. + Effective Decision Making: Ability to make timely, informed decisions that are in the best interest of our patients, employees, providers, community and HCA. + Attain and Leverage Strategic Relationships: Ability to develop and strengthen collaborative relationships with both internal and external stakeholders to advance the care of our patients and the growth of HCA. + Lead and Develop Others: Ability to lead others to accomplish organizational goals and objectives; provide meaningful coaching and mentoring to increase the capabilities of individuals and teams and drive employee engagement. + Communicate with Impact: Ability to deliver information in a clear, concise, and compelling manner to effectively engage others and achieve desired results. + Achieve Success through Change: Ability to identify opportunities for improvement and innovation, remove barriers and resistance, and enable desired behaviors. + Drive Execution and Financial Results: Ability to commit to the success and financial wellbeing of HCA by challenging others to excel and hold themselves and others accountable for achieving results. **Travel Required** + Occasional Travel: The job may require travel from time- to-time, but not on a regular basis. HCA Healthcare has been recognized as one of the World's Most Ethical Companies® by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated $3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses. "There is so much good to do in the world and so many different ways to do it."- Dr. Thomas Frist, Sr. HCA Healthcare Co-Founder If you find this opportunity compelling, we encourage you to apply for our Consulting Security Analytics Engineer opening. We promptly review all applications. Highly qualified candidates will be directly contacted by a member of our team. **We are interviewing apply today!** We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Confirmar seu email: Enviar Email