Full-Time

Detection Engineer

Posted on 9/25/2024

Datavant

Datavant

5,001-10,000 employees

Health data technology for secure information exchange

Data & Analytics
Healthcare

Compensation Overview

$131.8k - $155kAnnually

Junior, Mid

No H1B Sponsorship

Remote in USA

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
Communications
Git
AWS
Splunk
Requirements
  • Proficient in scripting languages and ability to implement secure coding, design practices, Git Version Control, and using release pipelines (Production).
  • Proven experience in threat hunting, security detection, and incident response.
  • Have knowledge or experience in the application security landscape and best practices.
  • Experience in designing and implementing a Security Orchestration, Automation, and Response (SOAR) solution.
  • Experience in analyzing log data such as network traffic, endpoint events, SaaS activity (O365, Gdrive, Sharepoint, etc.), production host events, IOCs, and more to confidently identify, evaluate, and mitigate malicious activity, including automating the recommended countermeasures.
  • Deep knowledge of AWS/Azure services and management including containerization (Docker) and container orchestration (EKS, GKE, AKS) is highly desirable.
  • Familiarity with SIEM solutions (Splunk) and automation tools.
  • Thrive in a fast-paced autonomous environment.
  • Great communication, prioritization, and project management skills. With the ability to advocate for a position while maintaining a collaborative and open-minded approach.
  • Passionate about building a big business that transforms the healthcare industry.
Responsibilities
  • Design, implement, automate, and maintain security detection mechanisms to improve efficiency and reduce manual intervention, overhead, and repetitive processes.
  • Develop and maintain custom detection rules and signatures to identify specific threats or patterns of behavior.
  • Monitor and fine-tune detection systems to reduce false positives, alert fatigue, and improve accuracy.
  • Collaborate with various stakeholders to ensure effective incident detection and response.
  • Provide recommendations for improving the organization’s security posture based on the detection findings.
  • Create and maintain custom scripts and automation tools to support threat hunting and detection efforts.
  • Build new pipelines and workflows to accommodate new automation processes.
  • Stay up-to-date with the latest threat vectors and attack surfaces to be innovative in preventing successful malicious campaigns and protect the organization.
  • Work collaboratively with engineering, legal, people and other Datavant teams.
  • Be part of on-call rotation for Incident Response.

Datavant specializes in health data technology, focusing on the secure exchange of patient information while maintaining privacy. The company's main product is software that de-identifies patient health data, removing personal identifiers and linking records from various sources. This allows healthcare providers, researchers, and other stakeholders to share and access health data securely, which is crucial for research and public health initiatives. For instance, during the COVID-19 pandemic, Datavant's technology helped connect different datasets to analyze the virus's effects on populations. Unlike many competitors, Datavant operates on a software-as-a-service (SaaS) model, charging subscription fees based on client size and data complexity, which ensures a steady revenue stream. The company's goal is to enhance data interoperability in healthcare while preserving patient privacy.

Company Stage

Series B

Total Funding

$78.3M

Headquarters

San Francisco, California

Founded

2017

Growth & Insights
Headcount

6 month growth

2%

1 year growth

2%

2 year growth

0%
Simplify Jobs

Simplify's Take

What believers are saying

  • Growing demand for de-identified data solutions boosts Datavant's market potential.
  • Partnerships with pharmaceutical companies enhance Datavant's position in clinical research.
  • Expansion of telehealth services increases need for Datavant's secure data exchange solutions.

What critics are saying

  • Increased competition from Avandra threatens Datavant's market position.
  • A recent phishing attack exposed vulnerabilities in Datavant's cybersecurity measures.
  • Regulatory hurdles in Europe may impact Datavant's expansion with Promptly Health.

What makes Datavant unique

  • Datavant specializes in de-identifying and linking patient health data securely.
  • The company has a vast network of over 70,000 hospitals and clinics.
  • Datavant's SaaS model provides customizable solutions for diverse healthcare clients.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Competitive Salaries & Rewards

Generous Parental & Family Leave

Ability to work anywhere in the US and Canada

Meaningful equity

Competitive Benefits – Full Family Coverage

WFH Stipend & Monthly Credit

Commitment to Learning & Development

Unlimited PTO

INACTIVE