Qualified Health

Founded in 2023 and headquartered in Palo Alto, California, Qualified Health is a health technology startup focused on building a secure and ethical infrastruct

IT / Security Operations Analyst

Location

United States

Posted

68 days ago

Salary

$120K - $145K / year

Seniority

Mid Level

Bachelor DegreeOktaAzure

Job Description

IT / Security Operations Analyst

Qualified Health

Transform healthcare with us. At Qualified Health, we’re redefining what’s possible with Generative AI in healthcare. Our infrastructure provides the guardrails for safe AI governance, healthcare-specific agent creation, and real-time algorithm monitoring—working alongside leading health systems to drive real change. This is more than just a job. It’s an opportunity to build the future of AI in healthcare, solve complex challenges, and make a lasting impact on patient care. If you’re ambitious, innovative, and ready to move fast, we’d love to have you on board. Join us in shaping the future of healthcare. Job Summary: The IT / Security Operations Analyst owns the operational engine of security, compliance, and IT at Qualified Health. You're the person who keeps the day-to-day running: vendor intakes, IAM administration, device management, IT vendor coordination, compliance evidence collection, and the security questionnaires that our health system partners send us as part of their due diligence. This is a foundational role in a rapidly growing company. We handle protected health information for 15+ major health systems, and the security operational work is real, growing, and critically important. Today, some of it is being absorbed by our data integration team — people who should be deploying AI workflows, not resetting passwords and reviewing vendor SOC 2 reports. You'll take that operational burden off their plate and give it the dedicated attention it deserves. You'll work alongside the Director of Security & Compliance and a security engineer, forming a team that owns the company's entire security and IT operations posture. Key Responsibilities: - Manage vendor security intakes and assessments — evaluating new vendors against our security requirements and maintaining the vendor inventory - Administer IAM (identity and access management) across company systems — user provisioning, access reviews, role management - Manage device enrollment, MDM policies, and endpoint compliance - Coordinate with our outsourced IT support vendor for employee onboarding/offboarding and support escalations - Support ongoing HITRUST compliance maintenance and evidence collection - Complete client security questionnaire responses — lifting this from the integration team - Maintain security documentation, policies, and procedures - Support security scan report preparation and remediation tracking Required Qualifications: - 3-5 years in IT operations, security operations, or GRC roles - Experience with IAM platforms (Okta, Azure AD/Entra, or similar) - Familiarity with MDM solutions and endpoint management - Understanding of compliance frameworks (HITRUST, SOC 2, HIPAA) - Bachelor's degree in Information Technology, Cybersecurity, Computer Science or a related field Desirable Skills: - Vendor management experience — assessing third-party security posture and managing remediation - Healthcare industry experience — understanding of HIPAA requirements and health system security expectations - Experience with compliance automation tools (Vanta, Drata, or similar) - Background managing outsourced IT support relationships - Experience at a fast-growing startup where operational processes were being built alongside daily execution - Organizational Mastery: You manage dozens of concurrent operational tasks — vendor reviews, access requests, device enrollments, questionnaire responses — without dropping any of them - Documentation Rigor: You keep processes documented, evidence organized, and compliance records audit-ready at all times - Responsiveness: When someone needs access provisioned, a vendor reviewed, or a security questionnaire completed, you handle it promptly and accurately - Process Improvement: You don't just run the operational playbook — you improve it. You look for ways to automate, streamline, and reduce manual effort - Discretion: You handle sensitive information (access credentials, security findings, vendor assessments) with the appropriate level of confidentiality and professionalism Technical Environment: You'll work with healthcare data from diverse sources including: - Epic (Clarity, Chronicles, FHIR APIs) - Cerner, AllScripts, and other major EHR platforms - Claims data (CMS, commercial payers) - Clinical registries and specialty systems - FHIR R4 and legacy HL7 formats Why Join Qualified Health? This is an opportunity to join a fast-growing company and a world-class team, that is poised to change the healthcare industry. We are a passionate, mission-driven team that is building a category-defining product. We are backed by premier investors and are looking for founding team members who are excited to do the best work of their careers. Our employees are integral to achieving our goals so we are proud to offer competitive salaries with equity packages, robust medical/dental/vision insurance, flexible working hours, hybrid work options and an inclusive environment that fosters creativity and innovation. Our Commitment to Diversity Qualified Health is an equal opportunity employer. We believe that a diverse and inclusive workplace is essential to our success, and we are committed to building a team that reflects the world we live in. We encourage applications from all qualified individuals, regardless of race, color, religion, gender, sexual orientation, gender identity or expression, age, national origin, marital status, disability, or veteran status. Pay & Benefits: The pay range for this role is between $120,000 and $145,000, and will depend on your skills, qualifications, experience, and location. This role is also eligible for equity and benefits. Join our mission to revolutionize healthcare with AI. To apply, please send your resume through the application below.

Job Requirements

  • 3-5 years in IT operations, security operations, or GRC roles
  • Experience with IAM platforms (Okta, Azure AD/Entra, or similar)
  • Familiarity with MDM solutions and endpoint management
  • Understanding of compliance frameworks (HITRUST, SOC 2, HIPAA)
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science or a related field
  • Desirable Skills
  • Vendor management experience — assessing third-party security posture and managing remediation
  • Healthcare industry experience — understanding of HIPAA requirements and health system security expectations
  • Experience with compliance automation tools (Vanta, Drata, or similar)
  • Background managing outsourced IT support relationships
  • Experience at a fast-growing startup where operational processes were being built alongside daily execution
  • Organizational Mastery
  • You manage dozens of concurrent operational tasks — vendor reviews, access requests, device enrollments, questionnaire responses — without dropping any of them
  • Documentation Rigor
  • You keep processes documented, evidence organized, and compliance records audit-ready at all times
  • Responsiveness
  • When someone needs access provisioned, a vendor reviewed, or a security questionnaire completed, you handle it promptly and accurately
  • Process Improvement
  • You don't just run the operational playbook — you improve it. You look for ways to automate, streamline, and reduce manual effort
  • Discretion
  • You handle sensitive information (access credentials, security findings, vendor assessments) with the appropriate level of confidentiality and professionalism
  • Technical Environment
  • You'll work with healthcare data from diverse sources including:
  • Epic (Clarity, Chronicles, FHIR APIs)
  • Cerner, AllScripts, and other major EHR platforms
  • Claims data (CMS, commercial payers)
  • Clinical registries and specialty systems
  • FHIR R4 and legacy HL7 formats

Benefits

  • Competitive salaries with equity packages
  • Robust medical/dental/vision insurance
  • Flexible working hours
  • Hybrid work options
  • Inclusive environment that fosters creativity and innovation
  • Our Commitment to Diversity
  • Qualified Health is an equal opportunity employer. We believe that a diverse and inclusive workplace is essential to our success, and we are committed to building a team that reflects the world we live in.
  • Pay & Benefits
  • The pay range for this role is between $120,000 and $145,000, and will depend on your skills, qualifications, experience, and location. This role is also eligible for equity and benefits.
  • Join our mission to revolutionize healthcare with AI.
  • To apply, please send your resume through the application below.

Related Categories

Related Job Pages

More Security Operations Jobs

Qualified logo

IT – Security Operations Analyst

Qualified

The #1 pipeline generation platform for revenue teams that use Salesforce

Full TimeRemoteTeam 51-200H1B Sponsor

• Manage vendor security intakes and assessments — evaluating new vendors against our security requirements and maintaining the vendor inventory • Administer IAM (identity and access management) across company systems — user provisioning, access reviews, role management • Manage device enrollment, MDM policies, and endpoint compliance • Coordinate with our outsourced IT support vendor for employee onboarding/offboarding and support escalations • Support ongoing HITRUST compliance maintenance and evidence collection • Complete client security questionnaire responses — lifting this from the integration team • Maintain security documentation, policies, and procedures • Support security scan report preparation and remediation tracking

United States
$120K - $145K / year
Job Closed
RISK logo

Security Operations Center Specialist

RISK

Embrace risk secure success | Shaking up the global iGaming with unconventional solutions and the fastest market entry

Full TimeRemoteTeam 1,001-5,000H1B Sponsor

• Provide exceptional operational management and support for the analysis and investigation of security incidents • Respond promptly to alerts, perform triage operations, and determine the appropriate level of response • Decide on and implement the best course of action in response to cyber attacks, initiating suitable recovery procedures • Investigate, document, and report on information security issues and emerging trends • Maintain, monitor, and operate security infrastructure and related technologies • Conduct security assessments for newly acquired systems and technologies to ensure compliance with security standards

Worldwide
Job Closed
Palo Alto Networks logo

Cortex SecOps Domain Consultant 2

Palo Alto Networks

Established in 2005, Palo Alto Networks is a global leader in cybersecurity and threat intelligence, offering expertise that helps clients achieve safe digital

Our Mission At Palo Alto Networks®, we’re united by a shared mission—to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and every idea counts. If you’re ready to do the most meaningful work of your career alongside people who are just as passionate as you are, you’re in the right place. Who We Are In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future of our industry. This is something our employees work at each day and is defined by our values: Disruption, Collaboration, Execution, Integrity, and Inclusion. We weave AI into the fabric of everything we do and use it to augment the impact every individual can have. If you are passionate about solving real-world problems and ideating beside the best and the brightest, we invite you to join us! This role is remote, but distance is no barrier to impact. Our hybrid teams collaborate across geographies to solve big problems, stay close to our customers, and grow together. You will be part of a culture that values trust, accountability, and shared success where your work truly matters. Job Summary A Cortex Domain Consultant is a subject matter expert for the Cortex portfolio. Their primary function is to provide deep, product-specific technical expertise for qualified sales opportunities. They play a pivotal role in defining technical solutions that secure a customer's critical business imperatives and evangelize our industry-leading SecOps solutions. The DC role is aligned to a specific domain—in this case, Cortex—and operates in a flexible capacity, being brought into opportunities based on technical needs. Key Responsibilities Cortex Domain Consultants are responsible for a range of activities focused on securing the technical win for their specific product area. Core Responsibilities include: - Advanced Discovery and Qualification: Leading in-depth discovery sessions to identify client needs. - Solutioning and Architecture: Architecting solutions to help customers improve their security posture, detect threats, and remediate issues. - Product-specific Pitch & Demo: Delivering advanced, product-focused pitches and demonstrations that showcase the unique value proposition. - Running Proof of Value (POV): Scoping and leading POV projects for prospective customers to ensure a technical win. - Securing the Technical Win: Holding responsibility for achieving the technical win for their specific product. - Scoping & Bill of Materials (BOM) Validation: Reviewing and validating the BOM to ensure all components are accurate. - Handoff to Post-Sales (GCS): Ensuring a smooth transition from the pre-sales to post-sales teams. - RFI/RFP Support: Assisting with responses to RFIs and RFPs, serving as the main technical point of contact for the Cortex portfolio. Collaboration and Engagement Model The way a DC engages depends on the customer segment. - For large accounts (e.g., Strategic, Majors, Enterprise): The Solutions Consultant (SC) leads the account-based pursuits and partners with the DC for deep, product-specific expertise on qualified opportunities. The SC is accountable for the full customer lifecycle, while the DC is brought in for their specialized knowledge. - For smaller accounts (e.g., Commercial, Regional): The Account Executive (AE) owns the business and technical relationship. The DC partners directly with the AE to provide technical expertise and guidance on qualified opportunities. In this "opportunity-centric" model, the DC has technical accountability and responsibility on the opportunity. Required Expertise and Capabilities As subject matter experts, Cortex DCs are expected to have deep technical knowledge in the SecOps domain. Technical Knowledge Areas: - SecOps (Required) - SIEM (Security Information and Event Management) - Incident Response and EDR/XDR - Threat Management - SOAR (Security Orchestration, Automation, and Response) In addition to technical skills, all DCs are expected to be proficient in foundational areas such as building trust, demonstrating awareness of customer challenges, and showing resilience and flexibility when problem-solving. Qualifications Compensation Disclosure The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/com-missioned roles) is expected to be the annual range listed below. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here. - /yr Our Commitment We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together. We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com. Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics. All your information will be kept confidential according to EEO guidelines. Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position.

United States

Senior Cyber Security Operations Engineer

UNITIL Corporation

UNITIL Corporation is committed to delivering natural gas and electricity services to states across New England, including Massachusetts, New Hampshire, and Mai

Title: Senior Cyber Security Operations Engineer Location: Hampton-NH Job Description: Full-Time Regular Full-TimeProfessional Hampton-NH, Hampton, NH, US Requisition ID: 1818 Salary Range:$108,301.00 To $121,839.00 Annually Position is available to work in a hybrid work from home capacity. The manager will discuss this in more detail at time of interview. Candidates will need to be local to the Hampton area. If not, they will need to relocate to the area to be considered for this role. Our Company More than a utility company, Unitil provides energy for life. Our work helps keep homes comfortable, businesses thriving and communities connected. Unitil is an investor-owned public utility proudly serving Maine, Massachusetts and New Hampshire. We are dedicated to delivering energy to our customers safely and reliably. Unitil is committed to creating an inclusive environment that welcomes and values the differences among all of our employees, customers, suppliers and the communities in which we live and conduct business. The continued success of Unitil is enhanced through initiatives that promote diversity and value our employees.   Take advantage of a comprehensive benefits package. Unitil offers competitive salaries, a consumer-driven health plan, dental and vision coverage, flexible work, company-paid holidays, a, robust, highly competitive retirement plan and educational assistance. *Note: Benefit offerings may differ between union and non-union employee groups Position Purpose Utilizes security software and practices to secure systems. Develops, tests and validates solutions and/or processes to remediate exploitable conditions on servers and other infrastructure assets. Implements software patches and configuration changes to address system vulnerabilities. Assists in the monitoring of IT compliance with SOX, NERC/CIP, Mass. Privacy and other legal and regulatory authorities. Provides back up for cyber team members, as needed. Principal Accountabilities % of time End Results 60% Data Security - Perform activities that ensure the security of corporate data, privacy, and record confidentiality - Participate in periodic risk assessments, to ensure compliance with security standards - Manage processes to assess cyber risk, and facilitate the application of fixes, patches and updates. Coordinate with IT Infrastructure the installation of manual patching of servers - Implement compliance activities with IT Policies, procedures and tests including the Written Information Security, Asset Management, Disaster Recovery, Change Management, Problem Management, and Security Plans   20% Compliance - Assist in coordination of cyber drills, exercises and assessments with internal and external stakeholders - Identifies security risks and exposures, and participate in response activities - Provide reporting needed for IT Control monitoring and responses to external audits, external penetration tests and vulnerability assessments. Fulfill audit requests by providing supporting evidence. - Evaluates vendor security assessments and assists in managing the program - Report on compliance activities related to IT NERC, SOX, MA Privacy, PCI and other IT compliancy programs for the company.  - Follow IT policies and procedures to ensure the security of information assets against unauthorized or accidental modification, destruction, or disclosure. Work with Application Owners to obtain proper documentation for system/application changes  15% Identity, Credential & Access Management - Work with Application Owners to define critical security groups and process for maintaining ‘least privileged’ access to systems - System access security administration of critical financial and key critical business systems 5% Assist the Director of Information Security, and other Subject Matter Experts, in the evaluation and implementation of tools, policies and configurations to improve data security and business controls. Research new technologies and/or processes that will assist in achieving these goals. Qualifications - Bachelor’s Degree, Information Systems, Computer Science, Information Security or related field (Desired  - 7-10 years IT security or information security experience. - Proven ability to engage with Senior Management and regulators. - Knowledge of technical infrastructure, networks, databases and systems. - Knowledge and related experience in IT security issues and techniques. - Effective communication skills, focusing on presentation of technical information. - Strong analytical skills and attention to detail.  - Advanced technical degree and/or Security Certifications preferred.   Unitil is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.

New Hampshire