Senior Cyber Incident Response Engineer - Remote Opportunity with Baylor Scott & White Health

Join the Baylor Scott & White Health Team as a Senior Cyber Incident Response Engineer At Baylor Scott & White Health, we're committed to making a difference in the lives of our patients, our communities, and our team members. As a leading healthcare organization, we're dedicated to providing exceptional care and advancing the health and well-being of those we serve. To support our mission, we're seeking an experienced Senior Cyber Incident Response Engineer to join our cyber defense team in a remote capacity. About the Role As our Senior Cyber Incident Response Engineer, you will be the lead cybersecurity incident responder, responsible for driving our incident response capabilities and enhancing our processes to mitigate risk. You'll work closely with cross-functional teams to investigate security incidents, develop incident response initiatives, and improve our overall cybersecurity posture. Key Responsibilities Lead Security Incident Response: Conduct security investigations, lead security incident response efforts, and drive incident resolution in a fast-paced, dynamic environment. Develop Incident Response Initiatives: Create and improve incident response procedures, playbooks, and runbooks to enhance our capabilities and respond to security incidents effectively. SIEM Program Expansion: Expand our SIEM program to ensure comprehensive log coverage, alert development, and process improvement. Collaboration and Liaison: Partner with cyber threat intelligence, vulnerability management, and technology remediation teams to deliver shared outcomes and improve our overall cybersecurity efficacy. Security Operation Initiatives: Support broader security operation initiatives across the cyber defense team and engineering and operation departments. Security Playbooks and Procedures: Create and improve security playbooks for various incident and compromise types, ensuring that all levels of engineers and stakeholders are equipped to respond effectively. Essential Qualifications To be successful in this role, you'll need: Experience Analyzing Security Events: A minimum of 5 years of experience analyzing network and host-based security events, with a strong understanding of attacker tactics, techniques, and procedures. Operating System Knowledge: Experience with Windows and Linux Operating Systems, as well as knowledge of common software and operating system vulnerabilities. Cybersecurity Frameworks: Familiarity with controls and frameworks such as NIST 800-53, NIST CSF, and MITRE ATT&CK. Cyber Operations Strategy: Understanding of cybersecurity organizational practices, operations risk management processes, and vulnerability risk. Preferred Qualifications While not required, the following qualifications are highly desirable: Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or GIAC Certified Incident Handler (GCIH) certification. Vulnerability Remediation: Experience creating workflows and remediation plans for identified vulnerabilities. Healthcare Experience: Incident response experience in a healthcare environment. ServiceNow Experience: Familiarity with ServiceNow for SIR, CMDB, and/or ITSM functions. Policy Development: Contribution or development of policies and procedures. Tabletop Exercises: Experience participating in or leading security tabletop exercises. What We Offer At Baylor Scott & White Health, we offer a comprehensive benefits package that includes: Immediate Eligibility: Health and welfare benefits available immediately. 401(k) Savings Plan: Dollar-for-dollar match up to 5%. Tuition Reimbursement: Opportunities for professional growth and development. PTO Accrual: Beginning on Day 1. Our competitive salary range for this position is $98,363 (entry-level qualifications) to $172,140 (highly experienced), depending on your specific qualifications and prior experience. Why Join Us? As a Senior Cyber Incident Response Engineer at Baylor Scott & White Health, you'll have the opportunity to: Make a Difference: Contribute to the security and well-being of our patients and communities. Grow Professionally: Develop your skills and expertise in a dynamic, supportive environment. Work Remotely: Enjoy the flexibility of a remote work arrangement. Collaborate with Experts: Work alongside experienced professionals in the cybersecurity field. Don't Hesitate - Apply Today! We value a great attitude and a willingness to learn above all. If you're passionate about cybersecurity and incident response, we encourage you to apply, even if you don't meet every single requirement. Submit your application today and join our team at Baylor Scott & White Health! Apply for this job Apply tot his job

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...