Detection Engineer
Remote, United States
Datavant is a data logistics company for healthcare whose products and solutions enable organizations to move and connect data securely. We are a data logistics company for healthcare whose products and solutions enable organizations to move and connect data securely. Datavant has a network of networks consisting of thousands of organizations, more than 70,000 hospitals and clinics, 70% of the 100 largest health systems, and an ecosystem of 500+ real-world data partners.
By joining Datavant today, you’re stepping onto a highly collaborative, remote-first team that is passionate about creating transformative change in healthcare. We hire for three traits: we want people who are smart, nice, and get things done. We invest in our people and believe in hiring for high-potential and humble individuals who can rapidly grow their responsibilities as the company scales. Datavant is a distributed, remote-first team, and we empower Datavanters to shape their working environment in a way that suits their needs.
We are seeking a talented individual to play a crucial role in safeguarding our assets by bringing a level of operational rigor, innovation, and influence, not just to Security, but the wider Datavant team. This role will proactively hunt for threats, design and automate detection processes, and continuously improve our security posture. If you have scripting skills, SIEM experience, and a desire to stay ahead of cyber threats, this is your opportunity to make an impact as you will be a founding member of a team where your influence will help pave the way for success.
You will:
- Design, implement, automate, and maintain security detection mechanisms to improve efficiency and reduce manual intervention, overhead, and repetitive processes.
- Develop and maintain custom detection rules and signatures to identify specific threats or patterns of behavior.
- Monitor and fine-tune detection systems to reduce false positives, alert fatigue, and improve accuracy.
- Collaborate with various stakeholders to ensure effective incident detection and response.
- Provide recommendations for improving the organization’s security posture based on the detection findings.
- Create and maintain custom scripts and automation tools to support threat hunting and detection efforts.
- Build new pipelines and workflows to accommodate new automation processes.
- Stay up-to-date with the latest threat vectors and attack surfaces to be innovative in preventing successful malicious campaigns and protect the organization.
- Work collaboratively with engineering, legal, people and other Datavant teams.
- Be part of …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Remote-first team
Benefits/PerksCollaborative team Equal Employment Opportunity employer High-autonomy culture Professional growth Remote-first company Remote-first team Remote work
Tasks- Collaborate on incident response
APIs Application Security Automation Automation tools AWS Azure Coding Communication Container Orchestration Docker Git Healthcare Healthcare industry Incident Response Infrastructure as Code Project Management Python SaaS Scripting Secure coding Security SIEM Splunk Threat Hunting
Education TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9