Information Security Analyst
The University of Chicago Medicine
The role
Job description
Join a world-class academic healthcare system, UChicago Medicine, as an Information Security Analyst in our Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.
Under general direction of the Information Security Operations Manager, Monitor and respond to security events and investigations performed by Security Operations Team. Participate in Incident response on call rotation and respond to critical security events. Collaborate with team to define improvements in SOC workflows, automation and detection. Create Incident reports and update SOC documentation in collaboration with the Security Operations Team.
Essential Job Functions
- Participate in incident response, triage, and investigations for security events including malware, phishing, threats, etc.
- Use threat intelligence and institutional knowledge to proactively hunt for active threats and malicious activity
- Create incident reports, threat reports, and security operation documentation for stakeholders
- Continuous improvement of security operations playbooks, documentation, trends, and lessons learned from incidents in collaboration with the Security Operations team.
- eDiscovery requests and Insider Threat investigations working with Privacy, Legal and HR
- Support Threat Hunting and Intelligence, Detection development, automation and SOC AI workflows
- Investigate and respond to email-based threat types including phishing, business email compromise (BEC), malware delivery, and account takeover
- Monitor Security Operation service and Incident queue.
- Participate in on-call rotation and respond to critical security events
Required Qualifications
- BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience required
- 4 years of Security experience, or equivalent training and education
- Knowledge of computing systems, data network communications, and network architecture is required
- Good knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
- Good knowledge of network security fundamentals, Network Detection and Response (NDR), intrusion detection, incident detection/response, malware analysis, cyber forensics, SIEM concepts, and security best practices; additional duties as assigned
- Scripting or programming skills (Python, PowerShell, Go, etc.) preferred
- Strong service commitment, and verbal, writing, and reporting skills
- High level of integrity, and sound judgment concerning security and privacy
Position Details
- Job Type/FTE: Full Time (1.0 FTE)
- Shift: Day
- Location: Remote
- Unit/Department: Information Security
- CBA Code: Non-Union
Originally posted on Himalayas
Keep exploring
Related remote jobs
Senior InfoSec GRC Analyst
Camunda
SecuritySecurity Engineer II – IAM & SaaS Governance
Solvd
SecurityApplication Security Engineer (Remote in the U.S.)
GuidePoint Security LLC
SecuritySr. Cybersecurity OT SME
Amyx, Inc.
SecurityBlockchain Security Engineer - (Solidity / Rust / Golang - Senior Level)
CertiK
Security
Listing details
- Listed location
- United States
- Employment
- Full Time
- Published
- Jul 18, 2026
Listing trust
- Observed through
- Himalayas
- Listing last observed
- Jul 26, 2026
Work-from eligibility is based on normalized evidence in the listing: United States.
How verification and eligibility workReport this listing· Checking sign-in before opening the report form…