Full-Time

Cybersecurity Event/Incident Consultant

Confirmed live in the last 24 hours

HCSC

HCSC

Health insurance provider in multiple states

Financial Services
Healthcare

Compensation Overview

$97.6k - $176.3kAnnually

Mid, Senior

No H1B Sponsorship

Waukegan, IL, USA + 2 more

More locations: Chicago, IL, USA | Richardson, TX, USA

Hybrid role; relocation will not be offered.

Category
Cybersecurity
IT & Security
Requirements
  • Bachelor’s degree and 6 years of experience OR 7 years of experience plus associate degree or technical certification(s) OR 8 years military experience in Cybersecurity OR 9 years technical experience.
  • Experience with digital forensics techniques and tools.
  • Proficient in researching and tracking Advanced Persistent Threat (APT) campaigns.
  • Expertise in malware analysis or malware reverse engineering.
  • Understanding of business operations including portfolios, product, technologies, and services.
  • Extensive expertise and experience with (SIEM) and SOAR technologies.
  • Ability to verbally communicate complex technical concepts to both technical and non-technical audiences and collaborate effectively with IT teams and stakeholders.
  • Understanding of the current and emerging threat vectors and adversary Tactics, Techniques, and Procedures (TTPs).
  • Drive maturity in process improvement and process documentation leveraging best practices.
  • Strong knowledge of attack classes (i.e., passive, active, insider, close-in, distribution attacks).
  • Strong knowledge of attack concepts (i.e., PTH, phishing, drive by, watering hole, malvertising, vishing, smishing, kerberoasting).
  • In-depth understanding of cloud service models.
  • Expert in common security tooling.
  • Understanding of cyber attackers (i.e., script kiddies, insider threat, non-nation state-sponsored, and nation sponsored).
  • Understanding of Cyber Kill Chain, attack lifecycle, attack vectors, and methods of exploitation.
  • Proficient in cybersecurity nomenclature.
  • Advanced in Intrusion Detection System (IDS) tools.
  • Expert in malware identification, analysis concepts and methodologies, capturing, containing, and reporting.
  • Well-versed in network security architecture concepts including topology protocols, components, principles, and technologies.
  • Deep understanding of OSI model and underlying network protocols.
  • Skilled in system administration, network, and operating system hardening techniques.
  • Skilled in system and application security threats and vulnerabilities (i.e., buffer overflow, mobile code, cross site scripting, procedural language/structured query language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Strong knowledge of what constitutes a network attack and a network attack’s relationship to both threats and vulnerabilities.
  • Understanding of Active Directory components.
  • Recognizing and categorizing types of vulnerabilities and associated attacks.
  • Experience reading PCAPs, programming, scripting, and log analysis.
  • Capable of mentoring junior levels on offensive and defensive techniques.
  • Manage security projects and resources.
  • Identify security gaps and recommend solutions to correct.
  • Able to teach cyber defense orchestration and response leadership techniques.
  • Able to lead, direct, and teach Incident Response.
  • Understand requirements for forensic activity across multiplatform variations, such as VDI, AVD, physical, persistent, and non-persistent connections.
  • Identifies and helps solution visibility gaps.
  • Identifies and helps solution training gaps.
  • Provides oversight and direction on critical cases worked by junior members.
  • Ability to handle high pressure situations.
  • Ability to work under stress in emergencies.
  • Problem solving / analytical skills.
  • Attention to detail.
  • Continuous learning mindset.
  • Curious in nature.
  • Customer focus and the ability to manage customer expectations.
  • Demonstration of sound judgement.
  • Oral and written communications.
  • Organized and detail oriented.
  • Experience with enterprise incident handling.
Responsibilities
  • Handling 24x7 Cyber Defense & Investigation (CD&I) Incident Response (IR) services of HCSC’s threat landscape.
  • Coordinating and driving the response of cyber security incidents within the HCSC environments through leadership, investigation, analysis, containment, eradication, recovery, and mitigation.
  • Leveraging security data from internal sensors, systems, and external sources to track down potential threats and attack activity.
  • Conducting forensic network analysis, environment monitoring, and development of thorough incident reports to deliver threat awareness and executive briefings.
  • Developing, maintaining, and training staff and leaders on comprehensive incident response activities and plans.
  • Making recommendations to enhance the cyber defense technology stack; and developing threat rules and signatures for cyber defense technologies.
  • Maintaining the incident type and categorization framework.

HCSC provides health insurance services across five states: Illinois, Montana, New Mexico, Oklahoma, and Texas. The company offers a variety of health insurance plans designed for individuals, families, and businesses, ensuring that different healthcare needs are met. HCSC's plans work by collecting premiums from members, which fund the healthcare services they provide. In addition to insurance, HCSC invests in health and wellness programs aimed at lowering healthcare costs and enhancing the health outcomes of its members. What sets HCSC apart from other health insurance providers is its long-standing experience in the industry and its commitment to compassion and innovation in healthcare. The company's goal is to empower people to lead healthier lives while maintaining a focus on quality care.

Company Stage

N/A

Total Funding

$472.7M

Headquarters

Chicago, Illinois

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • The new Houston office will create numerous job opportunities, fostering local economic growth and community development.
  • The acquisition of Cigna's Medicare businesses will expand HCSC's product offerings and geographic reach, benefiting current and future members.
  • Recognition as one of the 'Best Places to Work in IT' and having a CEO listed among the 'Most Influential People in Healthcare' highlight HCSC's strong leadership and positive work environment.

What critics are saying

  • The $231,900 fine from the Illinois Department of Insurance for an inaccurate provider directory could damage HCSC's reputation and trust with members.
  • The integration of Cigna's Medicare businesses may pose operational challenges and potential disruptions.

What makes HCSC unique

  • HCSC's strategic expansion into local communities, such as the new Houston office, emphasizes its commitment to economic growth and local workforce development, setting it apart from competitors.
  • The acquisition of Cigna's Medicare businesses significantly enhances HCSC's capabilities and reach in the growing Medicare market, providing a competitive edge.
  • HCSC's collaboration with Feeding America to address root causes of hunger showcases its holistic approach to community health, beyond traditional healthcare services.

Help us improve and share your feedback! Did you find this helpful?