HOME Cybersecurity & Info Security Information Security Engineer – Security Automation and Response
UChicago Medicine VERIFIED EMPLOYER

Information Security Engineer – Security Automation and Response.

Remote Cybersecurity & Info Security Full-Time

Information Security Engineer – Security Automation and Response: our view in 3 lines...

  • The Role:An information security engineer role focused on building and maintaining security automation and response capabilities for an academic medical center.
  • The Person:Design, implement, and maintain SOAR playbooks and automated workflows, investigate security incidents including malware and intrusions, analyze logs and forensic artifacts, and support SOC operations and on-call response.
  • Requirements:Experience with SOAR playbook development, Python, PowerShell, Go, SIEM platforms and query languages, incident response, threat investigation, and security certifications like GIAC or CISSP.

About the role

Join one of the nation’s most comprehensive academic medical centers, UChicago Medicine as an Information Security Engineer – Security Automation and Response for the Information Security department. This is a remote, work from home opportunity, and you may be based outside of the greater Chicagoland area.  

 

Under general direction of the Information Security Operations Manager, implementing, deploying, and optimizing Automation using SOAR playbook development, Logging, AI driven workflows, streamline incident response, and improve SOC operational efficiency. Participate in threat investigation and Incident response.

 

 

Essential Job Functions

  • Develop, implement, and maintain SOAR playbooks to automate repetitive security tasks, such as alert triage, threat investigation, and incident response, using tools like SOAR, Python, and API integrations.
  • Knowledge of threat detection development, automation of SOAR development, and Incident Response. 
  • Support initiatives working with Information Security Operations Manager to advance Security Operations capabilities using AI.
  • Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Dedicate efforts to staying informed on cyber threats and standard processes to consistently enhance Security Operations Center capabilities
  • Excellent knowledge of security information and event management (SIEM) platforms including query language (Yara-L, CQL, SPL, etc.)
  • Participate in Purple Team activity. 
  • Participate in on-call rotation and respond to critical security events 

 

Required Qualifications 

  • BS or BA degree, Computer Science, Engineering, or equivalent education, training or work experience 
  • 5 years of Security experience, or equivalent training and education
  • Knowledge of computing systems, data network communications, and network architecture 
  • Effective written and verbal communication skills 
  • Experience in SOAR playbook development
  • Scripting or programming skills (Python, PowerShell, Go, etc.) required.
  • Experience in Incident Response and Threat investigation.
  • Experience in Threat detection 
  • Understanding of logging systems 
  • Security related certifications are preferred. (GIAC, CISSP)

 

 Position Details

  • Job Type/FTE: Full Time (1.0 FTE)
  • Shift: Day
  • Location: Remote
  • Unit/Department: Information Security 
  • CBA Code: Non-Union

We’ve been at the forefront of medicine since 1899. We provide superior healthcare with compassion, always mindful that each patient is a person, an individual. To accomplish this, we need employees with passion, talent and commitment… with patients and with each other. We’re in this together: working to advance medical innovation, serve the health needs of the community, and move our collective knowledge forward. If you’d like to add enriching human life to your profile, UChicago Medicine is for you. Here at the forefront, we’re doing work that really matters. Join us. Bring your passion.

 

UChicago Medicine is growing; discover how you can be a part of this pursuit of excellence at: UChicago Medicine Career Opportunities

 

UChicago Medicine is an equal opportunity employer.  We evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status, parental status, religion, national origin, age, disability, veteran status and other legally protected characteristics.

 

As a condition of employment, all employees are required to complete a pre-employment physical, background check, drug screening, and comply with the flu vaccination requirements prior to hire. Medical and religious exemptions will be considered for flu vaccination consistent with applicable law.

 

Compensation & Benefits Overview

 

UChicago Medicine is committed to transparency in compensation and benefits.  The pay range provided reflects the anticipated wage or salary reasonably expected to be offered for the position.

 

The pay range is based on a full-time equivalent (1.0 FTE) and is reflective of current market data, reviewed on an annual basis. Compensation offered at the time of hire will vary based on candidate qualifications and experience and organizational considerations, such as internal equity. Pay ranges for employees subject to Collective Bargaining Agreements are negotiated by the medical center and their respective union.

 

Review the full complement of benefit options for eligible roles at Benefits - UChicago Medicine.

Published July 8, 2026
Location Darien, United States of America
Job Type Full-Time