Providence
Principal Cyber Threat Intelligence Engineer IS
Providence, Portland, Oregon, United States, 97204
Providence is looking for a seasoned Principal Security Engineer with deep expertise in Cyber Threat Intelligence. In this pivotal role, you’ll be the strategic force behind identifying and neutralizing emerging threats, safeguarding critical systems, and empowering Providence’s Global Security Operations Center. Your insights will directly inform risk strategies and guide executive decision‑making—making you a key player in protecting millions of lives through secure healthcare technology.
Hybrid Work Options
Washington: Seattle, Redmond, Renton, Vancouver
California: Los Angeles, Irvine
Oregon: Portland
Essential Functions
Conduct in‑depth analysis and research on cyber threats, including identifying threat actors, motivations, tactics, techniques, and procedures (TTPs) and providing insights on their potential impact on the organization.
Prepare and deliver well‑researched, impactful analytic findings that combine self‑driven research and team threat hunting efforts to convey cyber threat risk and impact, tailored appropriately to technical and non‑technical stakeholders, including executives.
Serve as a mentor to teammates for leveraging advanced analytic toolsets such as Structured Analytic Techniques.
Classify, categorize, and analyze malware and threats, translating this into actionable detections using frameworks such as MITRE ATT&CK.
Maintain strong breadth and depth of knowledge about the healthcare industry threat landscape, including threat actors, malware, hacking techniques, emerging threats, and trends that may impact the organization.
Collaborate with internal teams to provide timely and actionable intelligence, aligned with operational needs, that supports CTI, CIRT, Attack Surface Management, and other cybersecurity initiatives.
Develop and maintain threat profiles with tactical intelligence to enhance detection engineering and threat hunting operations.
Perform root cause analysis and provide recommendations for proactive measures to prevent cyber intrusions.
Continuously update and refine existing threat intelligence processes and methodologies to keep the organization at the forefront of cyber defense.
Stay informed about the latest trends, tools, and techniques in the field of threat intelligence and incorporate best practices into daily operations.
Monitor and assess emerging technologies, such as AI and machine learning, to augment and enhance threat detection, triage, and analysis.
Required Qualifications
Bachelor’s Degree in Computer Engineering, Computer Science, Mathematics, Engineering or equivalent education/experience.
Upon hire: CISSP, CEH, or an equivalent certification.
Eight or more years of related experience.
Experience designing security controls and countermeasures for operating systems, databases, applications, web services, user devices, and wireless networks.
Preferred Qualifications
Master’s Degree in Computer Engineering, Computer Science, Mathematics, Engineering.
Experience in a Healthcare environment.
Eight or more years of cyber threat intelligence analysis experience.
Experience conducting in‑depth analysis and research on cyber threats, including identifying threat actors’ motivations, intent, and TTPs.
Skilled in correlating intelligence from multiple sources to assess potential organizational impact.
Familiarity with reverse engineering and categorizing malware.
Strong knowledge of healthcare cybersecurity risks, including ransomware, phishing, and supply chain vulnerabilities.
Demonstrated experience applying frameworks such as MITRE ATT&CK, Cyber Kill Chain, Diamond Model of Intrusion Analysis, and others.
Experience working cross‑functionally with CIRT/IR teams, vulnerability management, and SOC operations teams.
Experience working with insider threat teams a plus.
Capability to develop threat profiles and integrate tactical intelligence into detection rules.
Ability to influence risk‑based decision‑making with clear, concise reporting.
Salary Range by Location
California (Los Angeles and Irvine): Min: $71.23, Max: $121.29
Oregon (Portland Service Area): Min: $68.33, Max: $116.36
Washington (Seattle, Renton, Redmond): Min: $71.23, Max: $121.29
Washington (Vancouver): Min: $68.33, Max: $116.36
Why Join Providence? Our best‑in‑class benefits are uniquely designed to support you and your family in staying well, growing professionally, and achieving financial security. We take care of you so you can focus on delivering our Mission of caring for everyone, especially the most vulnerable in our communities.
Providence offers a comprehensive benefits package including a retirement 401(k) savings plan with employer matching, health care benefits (medical, dental, vision), life insurance, disability insurance, paid parental leave, vacations, holidays, and well‑being resources.
Equal Opportunity Providence is an Equal Opportunity Employer. We are committed to creating a workplace free from discrimination and harassment on the basis of race, color, gender, disability, veteran status, religion, age, sexual orientation, marital status, genetic information, or any other basis prohibited by applicable law.
Applicant Information Applicants in the Unincorporated County of Los Angeles: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Unincorporated Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
#J-18808-Ljbffr
Hybrid Work Options
Washington: Seattle, Redmond, Renton, Vancouver
California: Los Angeles, Irvine
Oregon: Portland
Essential Functions
Conduct in‑depth analysis and research on cyber threats, including identifying threat actors, motivations, tactics, techniques, and procedures (TTPs) and providing insights on their potential impact on the organization.
Prepare and deliver well‑researched, impactful analytic findings that combine self‑driven research and team threat hunting efforts to convey cyber threat risk and impact, tailored appropriately to technical and non‑technical stakeholders, including executives.
Serve as a mentor to teammates for leveraging advanced analytic toolsets such as Structured Analytic Techniques.
Classify, categorize, and analyze malware and threats, translating this into actionable detections using frameworks such as MITRE ATT&CK.
Maintain strong breadth and depth of knowledge about the healthcare industry threat landscape, including threat actors, malware, hacking techniques, emerging threats, and trends that may impact the organization.
Collaborate with internal teams to provide timely and actionable intelligence, aligned with operational needs, that supports CTI, CIRT, Attack Surface Management, and other cybersecurity initiatives.
Develop and maintain threat profiles with tactical intelligence to enhance detection engineering and threat hunting operations.
Perform root cause analysis and provide recommendations for proactive measures to prevent cyber intrusions.
Continuously update and refine existing threat intelligence processes and methodologies to keep the organization at the forefront of cyber defense.
Stay informed about the latest trends, tools, and techniques in the field of threat intelligence and incorporate best practices into daily operations.
Monitor and assess emerging technologies, such as AI and machine learning, to augment and enhance threat detection, triage, and analysis.
Required Qualifications
Bachelor’s Degree in Computer Engineering, Computer Science, Mathematics, Engineering or equivalent education/experience.
Upon hire: CISSP, CEH, or an equivalent certification.
Eight or more years of related experience.
Experience designing security controls and countermeasures for operating systems, databases, applications, web services, user devices, and wireless networks.
Preferred Qualifications
Master’s Degree in Computer Engineering, Computer Science, Mathematics, Engineering.
Experience in a Healthcare environment.
Eight or more years of cyber threat intelligence analysis experience.
Experience conducting in‑depth analysis and research on cyber threats, including identifying threat actors’ motivations, intent, and TTPs.
Skilled in correlating intelligence from multiple sources to assess potential organizational impact.
Familiarity with reverse engineering and categorizing malware.
Strong knowledge of healthcare cybersecurity risks, including ransomware, phishing, and supply chain vulnerabilities.
Demonstrated experience applying frameworks such as MITRE ATT&CK, Cyber Kill Chain, Diamond Model of Intrusion Analysis, and others.
Experience working cross‑functionally with CIRT/IR teams, vulnerability management, and SOC operations teams.
Experience working with insider threat teams a plus.
Capability to develop threat profiles and integrate tactical intelligence into detection rules.
Ability to influence risk‑based decision‑making with clear, concise reporting.
Salary Range by Location
California (Los Angeles and Irvine): Min: $71.23, Max: $121.29
Oregon (Portland Service Area): Min: $68.33, Max: $116.36
Washington (Seattle, Renton, Redmond): Min: $71.23, Max: $121.29
Washington (Vancouver): Min: $68.33, Max: $116.36
Why Join Providence? Our best‑in‑class benefits are uniquely designed to support you and your family in staying well, growing professionally, and achieving financial security. We take care of you so you can focus on delivering our Mission of caring for everyone, especially the most vulnerable in our communities.
Providence offers a comprehensive benefits package including a retirement 401(k) savings plan with employer matching, health care benefits (medical, dental, vision), life insurance, disability insurance, paid parental leave, vacations, holidays, and well‑being resources.
Equal Opportunity Providence is an Equal Opportunity Employer. We are committed to creating a workplace free from discrimination and harassment on the basis of race, color, gender, disability, veteran status, religion, age, sexual orientation, marital status, genetic information, or any other basis prohibited by applicable law.
Applicant Information Applicants in the Unincorporated County of Los Angeles: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Unincorporated Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
#J-18808-Ljbffr