What are the responsibilities and job description for the Staff Security Engineer, Detection & Response position at nexhealth?
About NexHealth
NexHealth is on a mission to accelerate healthcare innovation by modernizing the industry with real-time EHR integration APIs and a scalable platform. Founded in 2017, NexHealth serves 10,000 practices, 50M patients, and developers across 15 EHR systems. Backed by $177M in Series C funding, the company is headquartered in San Francisco, CA, and Draper, UT.
Staff Security Engineer, Detection & Response
NexHealth is seeking a Staff or Senior Security Engineer to help design and build a Detection & Response platform aimed at identifying and mitigating abuse, malicious activity, and threats across our products, infrastructure, and corporate environments. This role will focus on safeguarding sensitive data, including PHI and IP, and automating response mechanisms to reduce manual intervention and improve response times.
What You'll Do
- Identify threats relevant to the company using threat modeling and prioritize the action plan accordingly
- Define, develop, test, and refine alerting rules to minimize false positives and improve our signal-to-noise ratio, ensuring our detection systems are both efficient and effective.
- Streamline response processes by creating detailed Incident Response (IR) runbooks and developing Security Orchestration, Automation, and Response (SOAR) capabilities to reduce manual intervention and enhance response times.
- Improve detection coverage and accuracy across all monitored systems and applications.
- Facilitate security incident response in a collaborative, cross-functional setting, and lead to the resolution from threats originating both internally and externally
What You'll Bring
- 6 years of experience on Security teams, building detection platforms, writing detections, and automating responses.
- Strong knowledge of modern adversary TTPs.
- Experienced with AWS, databases, data warehouses, web apps, and SIEM tools.
- Proficient in Python, scripting, and SQL.
- Proven ability to collaborate, execute tasks, and prioritize risk mitigation
Here’s a glimpse into our interview process:
- You’ll talk with a NexHeath Recruiter
- You’ll talk with the Hiring Manager on a video call
- You’ll talk with Team Members on a video call
- You’ll do a Panel Presentation or Working Session with a small panel