The job below is no longer available.

You might also like

in Plymouth, MN

Use left and right arrow keys to navigate
Hours Full-time, Part-time
Location Plymouth, MN
Plymouth, Minnesota

About this job

Use your skills, experience and talents to be a part of groundbreaking thinking and visionary goals.  As a Senior Cyber Security Data Analyst, you'll take the lead as you:




  • Analyze security logs, monitoring logs, firewall logs, intrusion prevention system logs, and network and correlate logs using numerous database query techniques and tools


  • Demonstrated experience working with network, host, and user activity data, assessing norms and identifying anomalies


  • Will be part of a team that will create content, modify existing content, continuous quality monitoring of content within the logging and monitoring Security Incident and Event Management platform


  • Work directly with security operations center and security sensor owner teams to implement procedures and systems for the protection, conservation and accountability of proprietary, personal or privileged electronic data


  • Be proactive investigating incidents and areas of vulnerability


  • Thoroughly investigate incidents and analyze the impact, exposure, and scope of the problem


  • Make remediation orders, tactics, and suggestions to resolve and prevent further incidents


  • Analyze and develop baselines for all related risk from ArcSight and/or other log management tools


  • Perform analysis on logs, traffic flows, and other activities to identify malicious activity


  • Develop rules that trigger response to malicious activity


  • Prepare reports and analyze the findings on malicious activity


  • Develop response procedures for addressing potential security threats


  • Drive onboarding of new logs into ArcSight


  • Work with the security team to create reports and analyze data to effectively present the current security environment


  • Stay abreast of the latest monitoring technology and trends 

Requirements

Required Qualifications:


  • BA/BS or 5 years of experience in information security

  • 5+ years IT security work experience

  • Maintain technical knowledge within areas of expertise

  • Stays current with new and evolving technologies via formal training and self-directed education

  • Strong problem solving and troubleshooting skills including the ability to perform analysis investigation

  • Strong written and verbal communication, as well as organizational and documentation skills

  • Self-motivated and possessing a high sense of urgency and integrity  

  • United States Citizenship

  • Ability to obtain favorable adjudication following submission of Department of Defense

 

Preferred Qualifications:



  • 3+ years of experience with ArcSight content development

  • Additional experience with SIEM products such as Alien Vault, Splunk

  • Strong knowledge of host and network forensic tools and techniques

  • Strong knowledge of information security and networking

  • Experience with malware analysis and understanding of attack techniques

  • Experience interpreting, searching, and manipulating data within enterprise logging/SIEM solutions

  • At least one of the following certifications: GCFA, GCIH, GCIA, GPEN, CEH, CISSP, CISM, CISA or CCNA

  • Familiarity with security analysis of security system logs and network protocols

 

   

As a requirement of UnitedHealth Group's contract with the Department of Defense, this position requires U.S. citizenship and proof of favorable adjudication following submission of Department of Defense , (the National Agency Check Legal and Credit or NACLC).  Successful completion of the NACLC process is a requirement for continued employment in this role.  NACLC processing will be initiated by our TRICARE Security Officer post-offer, and can take 3-6 months for a final decision communication from the Department of Defense.  Candidates will be allowed to begin employment with UnitedHealth Group in this role based on an interim clearance, and final results will be communicated as they are received.  Failure to obtain final NACLC approval will result in termination from this role.


  


Technology Careers with Optum. Information and technology have amazing power to transform the health care industry and improve people's lives. This is where it's happening. This is where you'll help solve the problems that have never been solved. We're freeing information so it can be used safely and securely wherever it's needed. We're creating the very best ideas that can most easily be put into action to help our clients improve the quality of care and lower costs for millions. This is where the best and the brightest work together to make positive change a reality. This is the place to do your life's best work.SM
 


Diversity creates a healthier atmosphere: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, protected veteran status, disability status, sexual orientation, gender identity or expression, marital status, genetic information, or any other characteristic protected by law.
 
UnitedHealth Group is a drug-free workplace. Candidates are required to pass a drug test before beginning employment.



Job keywords: IT, information technology, information security, Security Consultant, Plymouth, MN, Minnesota, work from home, Telecommute, telecommuter, remote