H

Security Investigator

heartflow United State
This Job is No Longer Active This position is no longer accepting applications
AI Summary

Join Heartflow's Information Security team as a Security Investigator to analyze complex security telemetry, uncover hidden threats, and ensure a resilient defense for our corporate and product environments.

Key Highlights
Triage advanced security events
Participate in security incident response process
Drive threat hunts to find persistent threats
Technical Skills Required
SIEM EDR CrowdStrike Email Security platforms Log correlation Operating system internals (Windows, Linux, macOS) Network flows and packet data analysis
Benefits & Perks
Base salary compensation range $75,000 to $100,000 per year
Bonus
Equal Opportunity Employer
Remote work not mentioned

Job Description


Heartflow is a medical technology company advancing the diagnosis and management of coronary artery disease, the #1 cause of death worldwide, using cutting-edge technology. The flagship product—an AI-driven, non-invasive cardiac test supported by the ACC/AHA Chest Pain Guidelines called the Heartflow FFRCT Analysis—provides a color-coded, 3D model of a patient’s coronary arteries indicating the impact blockages have on blood flow to the heart. Heartflow is the first AI-driven non-invasive integrated heart care solution across the CCTA pathway that helps clinicians identify stenoses in the coronary arteries (RoadMap™Analysis), assess coronary blood flow (FFRCT Analysis), and characterize and quantify coronary atherosclerosis (Plaque Analysis). Our pipeline of products is growing and so is our team; join us in helping to revolutionize precision heartcare.

Heartflow is a publicly traded company (HTFL) that has received international recognition for exceptional strides in healthcare innovation, is supported by medical societies around the world, cleared for use in the US, UK, Europe, Japan and Canada, and has been used for more than 500,000 patients worldwide.

Overview

The Heartflow Information Security team is responsible for security across our corporate and product environments, protecting our patient data and medical device ecosystem. We are looking for an investigator that loves the challenge of analyzing complex security telemetry to uncover hidden threats and ensure a resilient defense for our corporate and product environments.

The initial focus will be on triaging advanced security events and participating in our security incident response process. Analytical work will span our corporate, clinical and cloud infrastructure and will include threat hunting and the refinement of high-fidelity detection logic.

What You’ll Do:

  • Perform in-depth analysis of security events, logs, and network traffic using SIEM, EDR, and other security tools to rapidly identify, contain, and remediate complex threats.
  • Collaborate in developing and implementing custom correlation rules, dashboards, and alerts to enhance detection capabilities.
  • Drive threat hunts to find "quiet" persistent threats within our clinical and corporate environments.
  • Participate in continuous refinement of incident response playbooks, operational procedures, and security standards.
  • Perform security reviews of third-party vendors to identify risks and ensure they meet company standards.

What You Bring:

  • Education - BS in Computer Science or a related technical degree. No degree? No problem—if you have the equivalent experience and certifications, we want to hear from you.
  • Experience - At least 2 years in the trenches of a SOC or Incident Response team. However, if you haven't held a formal "Security" title but have at least 2 years on an IT Operations team, we value deep technical expertise in operating systems and networking if you can show us your passion for security.
  • You’re comfortable navigating security platforms like SIEMs, EDR tools (CrowdStrike or similar), and Email Security platforms.
  • Strong problem-solving skills with the ability to troubleshoot security issues across networks, operating systems, and applications.
  • Possess a solid understanding of log correlation and how to write logic for security alerts.
  • Deep understanding of at least one of the operating system internals (Windows, Linux, or macOS). Ability to analyze process trees.
  • Able to analyze network flows and packet data to find hidden threats. You know your way around network tools and can spot anomalies across different types of environments.

What Helps You Stand Out:

  • Certifications: SANS GIAC (GCIH, GCIA),CompTIA (Security+, CySA+), EC-Council (C|SA) or equivalent
  • Proven ability to take initiative— track record of identifying problems and developing solutions independently.
  • Excellent written and verbal communication skills, with the ability to clearly articulate complex technical issues and remediation plans to both technical and non-technical audiences.
  • You are a continuous learner who stays curious about the latest attack trends and loves figuring out how to stop them.

A reasonable estimate of the base salary compensation range is $75,000 to $100,000 per year, and bonus.

Heartflow is an Equal Opportunity Employer. We are committed to a work environment that supports, inspires, and respects all individuals and do not discriminate against any employee or applicant because of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law. This policy applies to every aspect of employment at Heartflow, including recruitment, hiring, training, relocation, promotion, and termination.

Positions posted for Heartflow are not intended for or open to third party recruiters / agencies. Submission of any unsolicited resumes for these positions will be considered to be free referrals.

Heartflow has become aware of a fraud where unknown entities are posing as Heartflow recruiters in an attempt to obtain personal information from individuals as part of our application or job offer process. Before providing any personal information to outside parties, please verify the following: A) all legitimate Heartflow recruiter email addresses end with “@heartflow.com” and B) the position described is found on our careers site at www.heartflow.com/about/careers/.


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

actblue

United State

Principal Systems Security Engineer (Anti-Tamper/Program Protection) - P4

Cyber Security
16h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Raytheon

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Jobgether

United State

Subscribe our newsletter

New Things Will Always Update Regularly