Sutter Health logo

Cybersecurity Analyst IV

Sutter Health
  • Sacramento, California
    7 days ago

    Job Description

    We are so glad you are interested in joining Sutter Health!

    Organization:

    SHSO-Sutter Health System Office-Valley

    Position Overview:

    Responsible for providing cybersecurity support, guidance, and technical leadership to Sutter Health operating units, entities, and the Cybersecurity Department to protect information systems, networks, data, and digital assets. This senior-level role performs advanced security administration, engineering, research, testing, monitoring, incident response, threat hunting, and risk management activities while supporting enterprise cybersecurity initiatives and programs. Serving as a trusted advisor to Information Security leadership, the Cybersecurity Analyst IV provides subject matter expertise across multiple cybersecurity domains, including endpoint security, data protection, vulnerability management, security information and event management (SIEM), network security, and threat intelligence. The position develops cybersecurity metrics, security insights, and risk-based recommendations, supports security awareness and human risk management initiatives, mentors team members, and collaborates with technical and business stakeholders to strengthen cybersecurity resilience, enhance operational effectiveness, support regulatory compliance, and reduce risk to patient care and business operations.

    Job Description:

    ***Please Note: While this position is listed as hybrid, regular in-office attendance is required. Candidates should be prepared to commute to the Sacramento office on a consistent basis to support team collaboration and business needs.***


    EDUCATION:
    Equivalent experience will be accepted in lieu of the required degree or diploma.

    • Bachelor's in Business, Cyber Security, Risk Management, Information Technology, Computer Science or related field

    TYPICAL EXPERIENCE:

    • 8 years recent relevant experience.

    PREFERREED EXPERIENCE:

    • Experience supporting enterprise cybersecurity programs, including vulnerability management, threat intelligence, data protection, data loss prevention (DLP), and risk reduction initiatives.
    • Experience with Microsoft Defender, SIEM, and other enterprise cybersecurity platforms to support security monitoring, threat analysis, and operational effectiveness.
    • Experience providing security consultation, risk assessments, policy reviews, vendor/third-party security reviews, and risk-based recommendations to technical and business stakeholders.
    • Experience supporting security awareness, phishing prevention, workforce education, and human risk management programs.
    • Experience developing cybersecurity metrics, executive dashboards, KPIs, and risk reporting, including the use of SQL, Python, and Power BI to support cybersecurity analytics, automation, and data-driven decision-making.
    • Experience utilizing ServiceNow or similar platforms to support investigations, workflow management, exception management, customer engagement, and cybersecurity operations processes.
    • Experience integrating and analyzing data from multiple cybersecurity technologies to identify risks, trends, and opportunities for operational improvement.
    • Experience leading cybersecurity initiatives, mentoring team members, and driving program maturity, operational effectiveness, and continuous improvement efforts.
    • Professional cybersecurity certifications such as CISSP, GIAC, Microsoft Security, or equivalent advanced certifications.


    SKILLS AND KNOWLEDGE:

    • Thorough knowledge of information systems security concepts and current information security trends and practices including security processes and methods.
    • General knowledge of Federal and State IS security and privacy-related regulatory requirements and laws.
    • General knowledge regarding National Institute of Standards and Technology (NIST), Health Insurance Portability and Accountability Act (HIPAA), Federal Information Processing Standards (FIPS), and other recognized industry security standards. and best practices.
    • Detailed understanding of end point security technologies (Antivirus, Forensics, Anti-malware, HIPS)
    • Detailed understanding of end point operating systems (Windows and Linux)
    • In depth knowledge of cyber security solutions, policies and technologies
    • Understanding of the lifecycle of a network threat and network vulnerability exploitation in a healthcare environment
    • Working understanding of the anatomy of a cyber attack: advanced level of skill using Microsoft windows workstation and server, Unix/Linux and network Os’s, proven ability to use internet technologies including dns, routing, smtp, http, dhcp, and ftp etc.
    • Technical skills in planning, administration, and management of information systems, operational and technical security controls, and security risk analysis and management
    • Written/verbal interpersonal communication skills with the ability to interact effectively with a broad and diverse group of peers, users, and executives.
    • Proven ability to prioritize work while multi-tasking on assigned work.
    • Demonstrated ability to acquire images, either remote or local, to a workstation or server.
    • Proven ability to conduct forensics activities in the context of an active attack.
    • Technical skills in end point security controls, such as acls, hips, registry, logging, and forensics.
    • Ability to perform and conduct incident response and participate in security incident and post incident response process
    • Proven ability to break down highly complex technical topics into language and diagrams understandable to a wide audience

    These Principal Accountabilities, Requirements and Qualifications are not exhaustive, but are merely the most descriptive of the current job. Management reserves the right to revise the job description or require that other tasks be performed when the circumstances of the job change (for example, emergencies, staff changes, workload, or technical development).


    #LI-JI1

    Job Shift:

    Days

    Schedule:

    Full Time

    Days of the Week:

    Monday - Friday

    Weekend Requirements:

    As Needed, Occasionally

    Benefits:

    Yes

    Unions:

    No

    Position Status:

    Exempt

    Weekly Hours:

    40

    Employee Status:

    Regular

    Sutter Health is an equal opportunity employer EOE/M/F/Disability/Veterans.

    Pay Range is $150,300.80 to $240,489.60 / annual salary

    The compensation range may vary based on the geographic location where the position is filled. Total compensation considers multiple factors, including, but not limited to a candidate’s experience, education, skills, licensure, certifications, departmental equity, training, and organizational needs. Base pay is only one component of Sutter Health’s comprehensive total rewards program. Eligible positions also include a comprehensive benefits package.

    Numbers & Facts

    LocationSacramento, California
    IndustryHealthcare Services
    Company Size10,000 employees or more
    Year Founded1921
    Websitehttps://jobs.sutterhealth.org/

    Benefits

    Professional Development, 401K, Flexible Spending Accounts, Retirement / Pension Plans, Tuition Reimbursement, Life Insurance

    About Company

    Sutter Health has a long history in California. Some of our facilities have been providing care in the communities we serve for more than 100 years. Today, we’re proud to partner with more than 12,000 doctors to care for more than 3 million people.

    We’re inspired by our Northern California community and work tirelessly to deliver top-rated, affordable healthcare. Doctors, hospitals, care teams and employees in the Sutter Health network are always looking for new, meaningful ways to care for you and your loved ones. We believe that every moment matters when it comes to helping you live a longer, healthier and happier life.

    Our not-for-profit network delivers top-rated, personalized care in more than 100 Northern California communities. Recently ranked among the Top 15 Health Systems in the nation by Truven Health Analytics™, our team of more than 50,000 doctors, employees and volunteers partner to spread innovation, improve access to healthcare services and put our patients’ needs first—all to achieve the highest levels of quality, access and affordability.

    Skills

    • Advanced Cardiac Life Support (ACLS)unmatched
    • Analysis Skillsunmatched
    • Anatomyunmatched
    • Antivirusunmatched
    • Automationunmatched
    • Best Practicesunmatched
    • Business Operationsunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Computer Workstationsunmatched
    • Continuous Improvementunmatched
    • DHCP (Dynamic Host Configuration Protocol)unmatched
    • DNS (Domain Name System)unmatched
    • Data Analysisunmatched
    • Endpoint Securityunmatched
    • Establish Prioritiesunmatched
    • FTP (File Transfer Protocol)unmatched
    • Federal Information Processing Standards (FIPS)unmatched
    • Forensic Scienceunmatched
    • GIAC - Global Information Assurance Certificationunmatched
    • HIPAA (Health Insurance Portability and Accountability Act)unmatched
    • HTTP (HyperText Transport Protocol)unmatched
    • Healthcareunmatched
    • Huntingunmatched
    • Incident Responseunmatched
    • Industry Standardsunmatched
    • Information Systems/Technology IS/IT Administrationunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Internet Technologyunmatched
    • Interpersonal Skillsunmatched
    • Leadershipunmatched
    • Linux Operating Systemunmatched
    • Loss Preventionunmatched
    • Malwareunmatched
    • Management of Information Systems/Technology (MIS)unmatched
    • Mentoringunmatched
    • Metricsunmatched
    • Microsoft Product Familyunmatched
    • Microsoft Windows Operating Systemunmatched
    • Microsoft Windows Serverunmatched
    • Multitaskingunmatched
    • Network Operating Systemsunmatched
    • Network Securityunmatched
    • Operating Systemsunmatched
    • Operational Auditunmatched
    • Operational Improvementunmatched
    • Operational Strategyunmatched
    • Operational Supportunmatched
    • Operations Processesunmatched
    • Operations Security (OPSEC)unmatched
    • Patient Careunmatched
    • Performance Metricsunmatched
    • Phishingunmatched
    • Power BIunmatched
    • Presentation/Verbal Skillsunmatched
    • Privacy Controlsunmatched
    • Python Programming/Scripting Languageunmatched
    • Regulatory Complianceunmatched
    • Regulatory Requirementsunmatched
    • Reporting Dashboardsunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • SMTP (Simple Mail Transfer Protocol)unmatched
    • SQL (Structured Query Language)unmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Monitoringunmatched
    • ServiceNowunmatched
    • System Operationsunmatched
    • Technical Leadershipunmatched
    • Testingunmatched
    • Trend Analysisunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Unix Operating Systemsunmatched
    • User Groupsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder