UnitedHealth Group is a healthcare and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of
Senior Cybersecurity Analyst
Location
District Of Columbia
Posted
6 days ago
Salary
$91.7K - $163.7K / year
Seniority
Senior
Job Description
Senior Cybersecurity Analyst
UnitedHealth Group
Title: Senior Cybersecurity Analyst Location: Eden Prairie United States Requisition number: 2352925 Job category: Technology Primary location: Eden Prairie, MN Overtime status: Exempt Travel: No Job Description: Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. Purpose of Job: This role is an individual contributor for the Security Incident Response Team. As the team has developed into a 24/7 365 operation, we require strong individual contributors that will investigate, analyze and contain security incidents. Schedule: This role is Wednesday to Saturday 8am CST to 6pm CST If you are located in MN or DC, you will have the flexibility to work remotely* as you take on some tough challenges. Primary Responsibilities: - Critical severity security incident management - Monitor security intake technologies for reports of security incidents - Perform analysis on cybersecurity alerts in both On-Premises or Cloud environments - Provide engineering consulting and implementation expertise in support of new initiatives - Solid ability to collaborate, delegate tasks and drive deadline compliance in a highly regulated, time sensitive environment - Identify deficiencies in processes and tools, recommend security controls and/or corrective actions for mitigating technical and business risk. Contribute to Lessons Learned Meetings - Review security tools for opportunities to improve alerting for the SOC team - Produce detailed incident reports and security recommendations - Mentor analysts, providing training and guidance through complex incidents - Lead security, policy and privacy related events and incidents - Manage containment and remediation efforts of affected assets, IOCs, and TTPs - Produce detailed incident reports and security recommendations - Hold stakeholders accountable for remediation actions - Providing training and guidance through complex incidents - Integrate and collaborate with other subject matter experts throughout the organization - Liaison with Cyber Defense, Privacy, Compliance, Legal, and Architecture teams - Influence the creation and/or adoption of new standards and procedures - On-Call duties may be required You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in. Required Qualifications: - High School Diploma/GED (or higher) - Information Technology Industry Certification: Willingness to obtain information/cybersecurity certification within nine (9) months of hire - Advanced level of experience analyzing attack vectors, current threats, and security remediation strategies - Advanced level of experience with SIEM technologies, EDR technologies, and/or Asset isolation tools - Intermediate level of experience in public cloud platforms, including Azure, AWS, and Google Cloud Platform - Intermediate level of experience with high level familiarity of global privacy regulations (NY Cyber, GDPR, LGPD, CERT-In) - Willing or ability to work off shift hours if needed (e.g. Nights and Weekends) Preferred Qualifications: - Undergraduate degree or equivalent experience - CISSP, CISA, GCIH, CEH, CHFI, CCSP, SEC+, Net+, A+ - PowerShell, KQL, or Python scripting experience - Understanding of NIST 800-61, Cyber Kill Chain, and MITRE ATT&CK framework - Networking experience (including the OSI Model, TCP/IP, DNS, HTTP, SMTP), System Administration, and Security Architecture - Proven Spanish Language skills - 6+ years of Cyber Security Analyst experience in any of the following areas: - Security Incident Response - Email Security - Cybersecurity threat detection, monitoring and reporting - Cyber Intelligence and Threat Hunting - Vulnerability Management - All Telecommuters will be required to adhere to UnitedHealth Group's Telecommuter Policy. Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $91,700 to $163,700 annually based on full-time employment. We comply with all minimum wage laws as applicable. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants. At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location, and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups, and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission. UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
• The Senior IT Security Compliance Analyst provides support for technology compliance programs, including leading and executing functions and duties that may include: consulting and collaborating with business and technology stakeholders at all levels on control design and remediation to mitigate technology risks; participating on large-scale projects; maintaining IT control library/testing general computer and application controls; coordinating and supporting technology components of onsite and virtual audits/assessments, NCUA examinations, and client due diligence reviews; • Performing segregation of duties reviews and user attestations; documenting process flows and compliance-related deliverables; assisting with the creation and maintenance of IT and information security policies and standards required to maintain company certifications (e.g., PCI DSS, NIST CSF); • Coaching and cross-training technology compliance staff. The individual will execute assigned duties to meet stated priorities and SLAs. The individual plays a critical role in driving technology control and compliance practices and adoption across the company. • This role directs and advises technical SMEs in the design, implementation, monitoring and reporting of technology control and compliance processes and documentation on-premise and in the Cloud.
Junior Cyber Security Analyst
American Oncology NetworkRemote Position Pay Range: $25.19 - $44.31 Travel: 0-25% #LI-Remote
Role Description The Junior IT Cyber Security Analyst assists in safeguarding the organization’s systems, data, and networks across both corporate and clinical environments. This role supports core cybersecurity operations, including: - Threat monitoring - Incident response - Vulnerability management - Compliance activities Under the direction of senior cybersecurity professionals, the position contributes foundational cybersecurity expertise while contributing to day-to-day security operations. The Junior Analyst helps maintain and strengthen the organization’s overall security posture through active participation in monitoring, analysis, and risk mitigation efforts. Key Performance Areas - KPA 1 – Threat Monitoring & Initial Response (Support Role) - Monitor security alerts from SIEM, EDR, email security, and network tools. - Perform initial triage and escalate suspicious activity to senior analysts. - Follow established incident response playbooks for basic investigations. - Document incidents, actions taken, and outcomes. - KPA 2 – Vulnerability & Patch Support - Assist with vulnerability scans and review scan results. - Track remediation progress and follow up with system owners. - Support patching efforts by validating updates and documenting status. - Help maintain asset and vulnerability inventories. - KPA 3 – Compliance & Documentation - Support collection of evidence for audits (HIPAA, SOC 2, etc.). - Maintain documentation for policies, procedures, and controls. - Assist with periodic access reviews and data protection checks. - Help track remediation of audit findings. - KPA 4 – Cyber Awareness, Training, and Culture - Assist in coordinating phishing simulations and training campaigns. - Help distribute cybersecurity communications (e.g., tips, alerts). - Promote secure behaviors across staff through basic guidance. - Support onboarding security training for new employees. - KPA 5 – Clinic Onboarding and Operational Support - Assist senior analysts with clinic onboarding security tasks. - Support inventory collection (devices, users, systems). - Help validate baseline security controls during integrations. - Participate in remote or occasional on-site support activities. - KPA 6 – Learning & Continuous Improvement - Participate in cybersecurity projects and tool implementations. - Develop knowledge of security technologies and best practices. - Track and report basic metrics (e.g., ticket resolution, alert volumes). - Continuously improve technical and analytical skills. Qualifications - Associate or Bachelor’s degree in Information Technology, Cybersecurity, or related field (or equivalent experience). - High school education required. - 0–2 years of IT or cybersecurity-related experience. - Internship, lab, or hands-on training experience preferred. - CompTIA Security+ (or actively pursuing). - Other entry-level certifications (e.g., Network+, ISC2 CC). Requirements - Analytical & Problem-Solving: Applies foundational analysis to investigate alerts, review data, and identify issues; follows established processes with attention to detail and appropriate escalation. - Interpersonal Effectiveness: Communicates professionally, builds collaborative relationships, maintains confidentiality, and responds constructively to feedback. - Communication: Demonstrates clear written and verbal communication; documents incidents and findings effectively; conveys basic technical information to non-technical audiences. - Customer Focus & Organizational Awareness: Supports internal users and clinical staff with a service-oriented approach; aligns work with organizational priorities and healthcare standards. - Self-Management & Accountability: Manages time and priorities effectively; demonstrates reliability, initiative, and adaptability in a structured environment. - Adaptability: Thrives in a fast-paced, multi-site healthcare setting; manages competing priorities and collaborates across distributed teams. - Technical Proficiency: Proficient in Microsoft Office (Word, Excel, PowerPoint, Outlook); able to learn and utilize cybersecurity tools (e.g., SIEM, EDR, vulnerability scanners) with training. Benefits - Flexible hours - Ergonomic home office guidance - Communication software accessibility
Information Security Analyst
StratolaunchStratolaunch is a technology accelerator that engineers operationally realistic testing at Mach 5+. Our air-launched, Talon testbeds are reusable, cost-effective platforms that enable routine access to the hypersonic environment. We deliver flight data critical to validating system performance and achieving rapid technology deployment. Together with our customers, we drive innovations that are imperative to advancing national security.
Role Description The Security Analyst (Junior to Mid-Level) will support the development, implementation, and coordination of information security program efforts and related risk management activities across the company. This role involves working with cross-functional teams to ensure compliance with security standards, monitor threats, and support the organization’s overall security posture. The Security Analyst will assist in administering security tools, managing incidents, and ensuring compliance with frameworks such as NIST 800-171, CMMC, and other customer-specific requirements. - Administer and maintain security tools, including SIEM, endpoint protection, and vulnerability management platforms. - Monitor systems and networks for suspicious activity, unauthorized access, and potential threats. - Investigate and respond to security incidents, ensuring timely containment and resolution. - Conduct regular vulnerability scans and assessments, collaborating with teams to remediate findings. - Support the development and delivery of security awareness and training programs for employees. - Assist in evaluating software and tools for security risks and compliance with company policies. - Participate in cyber supply chain risk management efforts, including vendor assessments. - Maintain baseline configurations and inventory of system components. - Perform periodic access reviews to ensure compliance with least privilege principles. - Support remediation efforts for security controls identified as non-compliant. - Assist in preparing for third-party audits and assessments, ensuring compliance with NIST 800-171, CMMC, and other frameworks. - Collaborate with engineering and IT teams to implement secure system architectures and processes. Qualifications - 1-3 years of experience in a security analyst or related role. - Familiarity with security frameworks such as NIST 800-171, CMMC, NIST RMF, and NIST CSF. - Experience with security tools such as SIEM, vulnerability scanners, and endpoint protection platforms. - Strong understanding of security principles, including access control, incident response, and vulnerability management. - Excellent analytical and problem-solving skills. - Strong communication skills, both written and verbal. - Ability to obtain and maintain government security clearance. Requirements - BS or applicable experience in lieu of degree. - $81,000-$107,000. - Eligible for up to 10% annual bonus. Preferred Skills & Certifications - Certifications such as CompTIA Security+, or equivalent. - Experience with cloud security (AWS, Azure, or GCP). - Knowledge of scripting languages (e.g., Python, PowerShell) for automation. - Familiarity with regulatory requirements such as NISPOM, ITAR, and DFARS. Benefits - 9/80 schedule. - Healthcare (medical, dental, vision, prescription drugs). - Paid Maternity and Parental Leave. - 50% company match per contributed dollar into 401(k) savings plan, up to $11,500. - Tuition reimbursement. Company Description Stratolaunch is a technology accelerator that engineers operationally realistic testing at Mach 5+. Our air-launched, Talon testbeds are reusable, cost-effective platforms that enable routine access to the hypersonic environment. We deliver flight data critical to validating system performance and achieving rapid technology deployment. Together with our customers, we drive innovations that are imperative to advancing national security.
Cyber Security Analyst (Intern)
ECS Tech IncAll candidates must meet the following criteria: Must be a US Citizen, no dual Citizenships. Must be able to secure a Public trust clearance. Must be able to work across multiple programs across the Federal and DOD space. The core values that ECS looks for in an engagement manager include: Teamwork, Respect, Accountability, Integrity, and Leadership.
Role Description Everforth ECS is seeking a Cyber Security Analyst (Intern) to support the Secure Unclassified Network (SUNet) Enterprise Infrastructure Program. SUNet is a DoW-owned, contractor-managed platform that houses multiple U.S. Government Mission Partner Enclaves, each with a unique set of data, applications, and information systems /sub-systems that support the development of Artificial Intelligence / Machine Learning (AI/ML) algorithms. The Cyber Security Analyst (Intern) will work in a demanding, high-energy environment that requires innovative solutions to cyber, operational, programmatic, and business challenges. The Cyber Security Analyst (Intern) reports directly to the SUNet Cyber Security Manager. General responsibilities include: - Assisting in the implementation, management, and continuous improvement of the RMF process, ensuring compliance with applicable DoW standards, policies, and guidelines. - Collaborate with Cyber Security Team members and system owners to implement security controls, policies, and procedures. - Monitor and track the implementation of Security Technical Implementation Guides (STIGs). - Aid in reviewing and maintaining RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms). - Assisting with Atlassian Jira tickets. - Stay up-to-date with the latest cyber security threats, trends, and best practices to proactively improve the organization's security posture. - Provide short-term, high-priority project management support and coordination. - Other duties, as assigned. Qualifications - U.S. Citizen. - High school Diploma / GED. - Ability to obtain a DoW Secret security clearance. - DoW 8140 IAT Level II or higher certification (e.g., Security+); must be current/active or obtained within the internship period. - Coursework and/or professional/scholastic projects involving the use of cyber security tools and technologies. - Basic understanding of cybersecurity best practices, standards, and frameworks, including NIST and RMF. - Proficient in Microsoft Office tools and O365, including Word, PowerPoint, Excel, and Teams. - Strong planning, data collection, and analytical skills. - Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution. - Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management). - Ability to work in a fast-paced and challenging environment.


