SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Aidoc is the market leader in healthcare AI, deploying clinical AI solutions across 2,000+ medical centers worldwide and supporting nearly 50 million patients annually. The company has raised over $500 million since 2016 and holds a record number of FDA-cleared solutions.
As a Security Operations Analyst, Detection & Response, you will be responsible for protecting Aidoc's cloud environments, products, corporate systems, and sensitive healthcare data. This is a hands-on security operations role requiring deep technical expertise in SIEM-based investigations, cloud security, and incident response.
Key responsibilities include:
- Owning end-to-end investigation of SIEM alerts across cloud, product, identity, endpoint, and SaaS environments; analyzing evidence, separating false positives from real threats, and prioritizing cases by risk and impact
- Escalating high-risk findings with clear summaries of what happened, what is affected, why it matters, and required actions
- Supporting incident response through evidence collection, containment assistance, remediation tracking, and maintaining investigation records for compliance and post-incident learning
- Improving SIEM rules, dashboards, alert logic, playbooks, and telemetry coverage to reduce noise and strengthen detection quality
- Collaborating with Security, IT, DevOps, R&D, Product Security, and Compliance teams to resolve issues and enhance security operations
Required qualifications include 2+ years in Security Operations, SOC analysis, detection and response, or similar hands-on security roles. You must have hands-on SIEM investigation experience, familiarity with cloud-native environments (IAM, Kubernetes, containers, CI/CD), understanding of common attack techniques, and proficiency with query/scripting languages (KQL, SPL, SQL, Python, Bash). Strong analytical judgment, clear communication, and the ability to work independently in fast-moving production environments are essential.
Desirable strengths include healthcare/healthtech experience, familiarity with HIPAA/GDPR/SOC 2/ISO 27001, knowledge of MITRE ATT&CK, threat hunting or detection engineering experience, and expertise with SOAR platforms or SOC automation.