About this role
Overview
Fred Hutchinson Cancer Center is an independent, nonprofit organization providing adult cancer treatment and groundbreaking research focused on cancer and infectious diseases. Based in Seattle, Fred Hutch is the only National Cancer Institute-designated cancer center in Washington.
With a track record of global leadership in bone marrow transplantation, HIV/AIDS prevention, immunotherapy and COVID-19 vaccines, Fred Hutch has earned a reputation as one of the world’s leading cancer, infectious disease and biomedical research centers. Fred Hutch operates eight clinical care sites that provide medical oncology, infusion, radiation, proton therapy and related services, and network affiliations with hospitals in five states. Together, our fully integrated research and clinical care teams seek to discover new cures to the world’s deadliest diseases and make life beyond cancer a reality.
At Fred Hutch we value collaboration, compassion, determination, excellence, innovation, integrity and respect. Our mission is directly tied to the humanity, dignity and inherent value of each employee, patient, community member and supporter. Our commitment to learning across our differences and similarities make us stronger. We seek employees who bring different and innovative ways of seeing the world and solving problems.
As a senior member of the Information Security Operations team, you will serve as a subject matter expert, driving complex security initiatives, mentoring junior team members, and shaping the security operations strategy for the organization.
We are looking for an Information Security Operations Engineer III to take a role in developing and maintaining secure systems. Reporting to the Information Security Operations Manager, you will help the team monitor and maintain systems and applications, detect and respond to threats, resolve incidents, identify and eliminate vulnerabilities, and provide support to users throughout the diverse Fred Hutch technical community. You will also collaborate with Fred Hutch architecture, development, systems engineering and network engineering teams on complex and exciting technical projects to build secure solutions in the cloud and on-premises and raise our level of compliance with information security standards. If this sounds like you, come help Fred Hutch in the fight against cancer and infectious disease by ensuring the security of our technical environments and information!
This role will have the opportunity to work partially at our campus and remotely. Evening and/or weekend work may occasionally be required.
Responsibilities
- Lead the investigation and response to complex and high-severity security incidents, coordinating cross-functional teams and communicating with leadership throughout the incident lifecycle, leveraging EDR and SIEM platforms for advanced forensic analysis.
- Design, implement, and optimize security monitoring and detection strategies across the enterprise, including advanced correlation rules, threat hunting queries, and behavioral analytics within the SIEM platform.
- Engineer security solutions across the full security platform ecosystem—including EDR, SIEM, identity protection, endpoint protection, email security, data security, and data governance tools—evaluating new modules and capabilities for operational integration.
- Design and optimize data pipelines at scale, developing advanced routing logic, data enrichment workflows, and cost-optimization strategies for security log management.
- Develop and maintain security automation and orchestration workflows to improve response times, reduce manual effort, and increase operational consistency across the security operations toolset.
- Lead vulnerability management program improvements, including risk-based prioritization methodologies, exception handling processes, and metrics-driven reporting.
- Serve as the subject matter expert for one or more security domains (e.g., EDR, SIEM, log management, email security, data security, endpoint protection, or data governance), providing technical guidance and mentorship to Level I and Level II engineers.
- Drive advanced email security initiatives, including custom detection rules, targeted attack protection tuning, and integration with the broader threat detection ecosystem.
- Support data security program operations, developing classification policies, DLP rules, and insider threat detection strategies across data security and governance platforms.
- Manage identity threat detection and response (ITDR) capabilities at an advanced level, developing detection policies for identity-based attacks, lateral movement, and privilege escalation.
- Partner with IT architecture, DevOps, and engineering teams to embed security controls into CI/CD pipelines, infrastructure-as-code, and cloud-native deployments.
- Drive the development of incident response plans, playbooks, and tabletop exercises to improve organizational readiness.
- Contribute to compliance audits and assessments (HIPAA, NIST, CIS), ensuring security controls meet regulatory and institutional requirements.
- Participate in on-call rotation and serve as an escalation point for complex or high-priority security events.
Qualifications
MINIMUM QUALIFICATIONS:
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent experience.
- 5–8 years of progressive experience in information security operations, security engineering, or a related cybersecurity discipline.
- Deep expertise with SIEM platforms including advanced detection engineering, custom query development, and platform optimization; experience with next-generation SIEM platforms preferred.
- Strong experience with incident response methodologies and leading complex investigations using EDR platforms.
- Extensive knowledge of cloud security architectures and operations (AWS, Azure, or GCP).
- Proven experience with security automation and orchestration workflows.
- Hands-on experience with log management and data pipeline platforms.
- Advanced understanding of network security, endpoint security, email security, and data protection principles.
- Experience with one or more compliance frameworks (HIPAA, NIST CSF, NIST 800-53, CIS Controls) in an operational context.
- Demonstrated ability to mentor and guide junior team members.
- Strong communication skills with the ability to present technical findings to both technical and non-technical audiences.
PREFERRED QUALIFICATIONS:
- Advanced security certifications such as GIAC GCIH, GIAC GCIA, GIAC GCFA, CISSP, or equivalent.
- Vendor-specific EDR or SIEM platform certifications, or equivalent.
- Expert-level experience with log management architecture, pipeline design, and performance tuning.
- Advanced experience administering targeted attack protection and email security policies.
- Experience designing data classification and monitoring policies at scale.
- Experience with enterprise data governance and compliance capabilities.
- Experience with threat intelligence platforms and threat hunting methodologies.
- Proficiency with infrastructure-as-code tools (Terraform, CloudFormation) and container orchestration (Kubernetes, Docker).
- Experience developing security tooling and integrations using Python, Go, or similar languages.
- Experience in a healthcare, biomedical research, or academic environment.
SKILLS:
- Advanced threat detection and incident response leadership.
- Detection engineering and SIEM optimization.
- Security architecture and engineering for hybrid cloud environments.
- Enterprise log management architecture and data pipeline engineering.
- Advanced email security engineering and threat protection.
- Data security and governance program operations.
- Identity threat detection and response (ITDR).
- Security automation, orchestration, and workflow design.
- Vulnerability management program development and risk-based prioritization.
- Mentorship and technical leadership of security operations staff.
- Compliance program support and audit readiness.
- Threat hunting and proactive security analysis.
The annual base salary range for this position is from $120,931 to $191,131, and pay offered will be based on experience and qualifications.Although Fred Hutch is not sponsoring most H-1B visas at this time, candidates who already hold an H-1B sponsored by another organization and are currently in the U.S. may be eligible for this position.Fred Hutchinson Cancer Center offers employees a comprehensive benefits package designed to enhance health, well-being, and financial security. Benefits include medical/vision, dental, flexible spending accounts, life, disability, retirement, family life support, employee assistance program, onsite health clinic, tuition reimbursement, paid vacation (12-22 days per year), paid sick leave (12-25 days per year), paid holidays (13 days per year), and paid parental leave (up to 4 weeks).
## Additional Information
We are proud to be an Equal Employment Opportunity (EEO) and Vietnam Era Veterans Readjustment Assistance Act (VEVRAA) Employer. We do not discriminate on the basis of race, color, religion, creed, ancestry, national origin, sex, age, disability (physical or mental), marital or veteran status, genetic information, sexual orientation, gender identity, political ideology, or membership in any other legally protected class. We desire priority referrals of protected veterans. If due to a disability you need assistance/and or a reasonable accommodation during the application or recruiting process, please send a request to Human Resources at [email protected] or by calling 206-667-4700.