Cybersecurity Threat Intelligence Engineer II

Premera Blue Cross Premera Blue Cross · Insurance · Mountlake Terrace, WA

This role focuses on cybersecurity threat intelligence and incident response within a healthcare organization. The engineer will analyze cyber threats, perform forensic analysis, and implement security measures to protect the network. Responsibilities include risk assessment, incident handling, defining defensive tactics, and mentoring junior engineers. Experience with security policies, regulatory standards (SOX, HIPAA, PCI, GLBA), and network technologies is required.

What you'd actually do

  1. Applies advanced understanding HITURST engineering and controls standards.
  2. Performs risk and severity assessment on cybersecurity events and incidents and then properly escalate or handle in accordance with experience and current processes.
  3. Act as a technical contributor with advanced knowledge and experience in one or more areas: PICERL (Planning, Investigation, Containment, Eradication, Lessons Learned) process, HR related Investigative and Legal Processes, Conflict resolution and Clear Partnership, Analyzing gaps found in hunting exercises and minimizing the overall threat landscape, Set the tempo, priorities, and proper workflow of the team in the day-to-day operations.
  4. Reviews and report out to the team IT security threat assessments for major changes to systems, applications, and networks. This requires applying knowledge of vulnerability assessment and penetration testing tools.
  5. Maintains current expertise in security hacks and network penetration methods. Defines and documents defensive tactics. Defines and oversees implementation plans for security configuration changes.

Skills

Required

  • Bachelor’s degree in Information Systems or Business Administration or four (4) years’ experience.
  • Two (2) years’ experience with secure network and systems architecture, design and implementation, intrusion detection, defense and incident response, security configuration management, access controls design and implementation and security policy and standards development.
  • Demonstrated understanding of health plan operations and applicable security & privacy legislation.
  • Knowledge of business continuity planning practices.
  • Knowledge of applicable practices and laws relating to data privacy and protection.
  • In-depth knowledge of the following technologies and protocols: ARP, TCP/UDP, IP, NetBIOS, Radius, 802.1x, Bind/DNS and Active Directory, LDAP, SMTP, DHCP, SSH, SFTP, FTP, TFTP, SNMP, SSL/HTTPS, NTP, Sun, Syslog, VoIP, QoS, VLANs; Wireless protocols: 802.11 specs, WPA/2, WEP, TTLS, PEAP; Routing protocols: RIP/2, OSPF, EIGRP, Frame-relay, and MPLS. Database systems: SQL Server, Oracle, and MySQL.
  • Demonstrated understanding of Operating System architecture as it relates to the functions of the following components: OS kernel, OS kernel modules and device drivers, memory

Nice to have

  • Three (3) years’ experience designing, implementing, and troubleshooting networked computer systems, including: systems integration, hardware requirements and network design planning; vendor negotiations for hardware and software

What the JD emphasized

  • Our unique combination of medical records and financial data make us an attractive target for Cyber Criminals.