Haystack
← Back to Jobs
Full time
Technology
CE

Principal Incident Response Analyst

CenteneSorento, Illinois🇺🇸United StatesPosted Sep 22, 2026

Quick Overview

Seniority
Leader
Employment type
Full Time
Work mode
Hybrid
Location
Sorento, Illinois, United States
ShellComplianceContinuous ImprovementHIPAAPython

Job Description

Centene is seeking a Principal Incident Response Analyst to lead advanced cybersecurity investigations protecting sensitive healthcare data and critical systems. In this role, you will own complex incident response cases from detection through remediation, coordinate cross-functional war rooms, and refine playbooks for a highly regulated environment. You will mentor analysts, perform threat hunting, analyze logs and network traffic, and partner with technology, compliance, and business teams to reduce risk. This position is ideal for a mission-driven security leader who thrives in a fast-paced, collaborative environment and wants to safeguard access to care for vulnerable populations.

Responsibilities

  • Lead end-to-end incident response for complex cybersecurity events in a healthcare environment
  • Coordinate cross-functional response with security, IT, compliance, and business stakeholders
  • Conduct forensic analysis of endpoints, logs, and network traffic to determine root cause and impact
  • Develop, refine, and maintain incident response playbooks and standard operating procedures
  • Perform proactive threat hunting to identify and mitigate emerging threats
  • Mentor and guide junior analysts, providing technical direction and best practices
  • Ensure incidents are documented, reported, and remediated in line with regulatory requirements
  • Collaborate with security architecture and engineering teams to strengthen controls based on lessons learned
  • Support tabletop exercises and readiness assessments to improve incident preparedness
  • Contribute to continuous improvement of monitoring, detection, and automation capabilities

Required Skills

  • Incident response management
  • Digital forensics and malware analysis
  • Threat hunting
  • Security Information and Event Management (SIEM) tools
  • Endpoint Detection and Response (EDR) tools
  • Network security and traffic analysis
  • Scripting/automation (e.g., Python, Power
  • Shell)
  • Knowledge of NIST and HIPAA security frameworks
  • Log analysis and correlation
  • Report writing and executive communication

Similar jobs