Security Analyst II - IS INFO SECURITY

Kettering Health

Miamisburg (OH)

On-site

USD 70,000 - 100,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Kettering Health is seeking an Information Security Analyst II to protect sensitive healthcare data and systems. The role focuses on threat detection, incident response, vulnerability management, and regulatory compliance, collaborating with IT, clinical, and business teams to mitigate risk and safeguard ePHI.

The ideal candidate has 3–5 years in information security, hands-on experience with SIEM/EDR, and a solid understanding of HIPAA/HITECH.

Qualifications

  • Bachelor’s degree in a related field or equivalent experience.
  • 3–5 years of information security or security operations experience.
  • Hands-on experience with security monitoring, incident response, vulnerability management, and endpoint/network/identity security controls.
  • Working knowledge of HIPAA Security Rule, Windows and Linux, TCP/IP, DNS, firewalls, and common attack techniques.
  • Strong analytical, documentation, and communication skills; able to work in a regulated, patient-care environment.
  • Residency within 50–75 miles of Kettering Health ASB in Miamisburg.

Responsibilities

  • Monitor security events and alerts using SIEM, EDR, and other tools to detect threats affecting healthcare systems and data.
  • Investigate, respond to, and document security incidents involving ePHI, clinical apps, and enterprise infrastructure.
  • Support incident response activities including containment, recovery, root-cause analysis, and post-incident reporting.
  • Conduct vulnerability scanning and risk assessments of servers, endpoints, medical devices, and healthcare applications.
  • Assist with remediation efforts and validate security control effectiveness with IT, clinical engineering, and application teams.
  • Support compliance with HIPAA, HITECH, and organizational security policies and participate in audits and third‑party reviews.
  • Maintain and update security documentation, incident response playbooks, and SOPs.
  • Provide security awareness guidance to staff and stay informed on threats and best practices.

Skills

Security monitoring
Incident response
Vulnerability management
Endpoint security
Networking fundamentals
Documentation
Communication skills

Education

Bachelor’s degree in Cybersecurity/IT/CS

Tools

SIEM
EDR
Vulnerability management tools

Job description

Preferred Qualifications

The Information Security Analyst II supports the protection of sensitive healthcare information, clinical systems, and technology infrastructure. This role focuses on threat detection, incident response, vulnerability management, and compliance with healthcare regulations such as HIPAA and HITECH. The analyst collaborates with IT, clinical, and business stakeholders to reduce risk and ensure the confidentiality, integrity, and availability of electronic protected health information (ePHI).

Position Summary

The Information Security Analyst II supports the protection of sensitive healthcare information, clinical systems, and technology infrastructure. This role focuses on threat detection, incident response, vulnerability management, and compliance with healthcare regulations such as HIPAA and HITECH. The analyst collaborates with IT, clinical, and business stakeholders to reduce risk and ensure the confidentiality, integrity, and availability of electronic protected health information (ePHI).

Key Responsibilities
  • Monitor security events and alerts using SIEM, EDR, and other security tools to detect potential threats impacting healthcare systems and data
  • Investigate, respond to, and document security incidents involving ePHI, clinical applications, and enterprise infrastructure
  • Support incident response activities including containment, recovery, root‑cause analysis, and post‑incident reporting
  • Conduct vulnerability scanning and risk assessments of servers, endpoints, medical devices, and healthcare applications
  • Assist with remediation efforts and validate security control effectiveness in collaboration with IT, clinical engineering, and application teams
  • Support compliance with healthcare regulatory requirements including HIPAA, HITECH, and organizational security policies
  • Participate in audits, risk assessments, and third‑party security reviews
  • Maintain and update security documentation, incident response playbooks, and standard operating procedures
  • Contribute to security awareness initiatives and provide guidance to staff on protecting patient information
  • Stay informed of emerging healthcare cybersecurity threats, ransomware trends, and industry best practices
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience)
  • 3–5 years of experience in information security, security operations, or related IT roles
  • Hands‑on experience with:
    • Security monitoring and incident response
    • Vulnerability management tools and processes
    • Endpoint, network, and identity security controls
  • Working knowledge of:
    • HIPAA Security Rule requirements
    • Windows and Linux operating systems
    • Networking fundamentals (TCP/IP, DNS, firewalls)
    • Common attack techniques targeting healthcare environments
  • Strong analytical, documentation, and communication skills
  • Ability to work effectively in a regulated, patient‑care‑focused environment
  • no more than 50-75 miles from Kettering Health ASB in Miamisburg
Preferred Qualifications
  • Experience in healthcare, hospital, payer, or clinical environments
  • Familiarity with electronic health record (EHR) platforms and clinical systems
  • Experience securing cloud‑based healthcare workloads (Azure, AWS, or GCP)
  • Scripting or automation experience (PowerShell, Python, or similar)
  • Certifications such as:
    • CompTIA Security+ or CySA+
    • HCISPP, SSCP, GCIH, or similar
Overview

Kettering Health is a not-for-profit system of 14 medical centers and more than 120 outpatient facilities serving southwest Ohio. Our mission is to live God’s love by promoting and restoring health. Our commitment to our patients is to help individuals be their best. With that context, safety is our top priority. We provide an integrated system of healthcare experts committed to providing exceptional care.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Healthcare Cybersecurity Analyst II
Healthcare Cybersecurity Analyst II

Kettering Health • Miamisburg (OH)

On-site
USD 70,000 - 100,000
Security Analyst 2-Hybrid (Boston MA)
Security Analyst 2-Hybrid (Boston MA)

Beth Israel Lahey Health • Boston (MA)

On-site
USD 80,000 - 110,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Homeland Talent Solutions • Knoxville (TN)

Hybrid
USD 112,000 - 146,000
Competitive salary
Comprehensive benefits package
Opportunities for professional growth
HCS Info Security Analyst Sr
HCS Info Security Analyst Sr

UNC Health Care • Morrisville (NC)

Hybrid
USD 61,000 - 88,000
HCS Info Security Analyst Sr
HCS Info Security Analyst Sr

UNC REX Healthcare • Morrisville (NC)

Hybrid
USD 61,000 - 88,000
Security Analyst
Security Analyst

Spectrum Health & Human Services • Town of Orchard Park (NY)

On-site
USD 70,000 - 100,000
Sr Information Security Analyst
Sr Information Security Analyst

NKC Health • North Kansas City (MO)

On-site
USD 80,000 - 110,000
Security Engineer
Security Engineer

Birdirx • Plymouth (MI)

Remote
USD 90,000 - 130,000
Technical Security Analyst
Technical Security Analyst

blueStone • Chicago (IL)

On-site
USD 80,000 - 110,000
Sr Information Security Analyst
Sr Information Security Analyst

NKC Health • Kansas City (MO)

On-site
USD 95,000 - 120,000