[All remote jobs](https://jobicy.com/jobs.md)[![Abby Care logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/3d3ea8fe-221.jpeg)](https://jobicy.com/company/abby-care.md)[Abby Care](https://jobicy.com/company/abby-care.md)

# Senior Security Analyst

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/abby-care.md)ShareRemote from[USA](https://jobicy.com/job-region/usa.md)SalaryUndisclosedDepartment[Cybersecurity](https://jobicy.com/categories/cybersecurity.md)EmploymentFull TimeExperienceDirectorPublished6 Oct 2026Apply before5 Nov 2026Listing views33Application actions0Application toolkit

## Make your next move.

Prepare your resume, explore your fit, and draft a cover letter for this opportunity.

AI Summary

## The role, at a glance.

Abby Care is seeking a Senior Security Analyst to lead security operations, incident response, threat hunting, vulnerability management, and risk oversight for a healthcare technology platform. The role spans SIEM, SentinelOne EDR, cloud security, identity controls, endpoint security, compliance evidence, and third-party risk assessments. It also requires building automation through SOAR, scripting, and APIs while mentoring junior analysts and communicating risk to technical and business partners. A significant specialization is AI security governance, including GenAI acceptable-use guardrails, prompt-injection and data-exposure assessments, and evaluation of AI-enabled security tooling. This is a U.S.-remote, full-time role aligned to Pacific Time working hours.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

5/5RelaxedFast-paced

### Autonomy Level

5/5GuidedFull ownership

### Communication Load

5/5IndependentCollaborative

AI insightThis is a senior, broad-scope security operations role requiring 8+ years of experience and ownership from detection through remediation across cloud, endpoint, IAM, compliance, and vendor risk domains. The healthcare context, urgent startup environment, and AI/LLM security responsibilities increase both technical complexity and operational pressure.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate$155,000US market range$130k–$185k0$204k

AI insightNo actual salary range is disclosed, so these are estimated annual USD base-salary figures for a U.S.-based senior security analyst with 8+ years of experience, healthcare compliance exposure, incident-response leadership, and cloud/IAM security responsibilities. Actual pay may vary based on location, scope, certifications, equity, and total-rewards structure.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Incident Response](https://jobicy.com/jobs?search_keywords=Incident%20Response.md)[Threat Hunting](https://jobicy.com/jobs?search_keywords=Threat%20Hunting.md)[SIEM](https://jobicy.com/jobs?search_keywords=SIEM.md)[SentinelOne EDR](https://jobicy.com/jobs?search_keywords=SentinelOne%20EDR.md)[Vulnerability Management](https://jobicy.com/jobs?search_keywords=Vulnerability%20Management.md)[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[Identity and Access Management](https://jobicy.com/jobs?search_keywords=Identity%20and%20Access%20Management.md)[HIPAA Compliance](https://jobicy.com/jobs?search_keywords=HIPAA%20Compliance.md)[Security Automation](https://jobicy.com/jobs?search_keywords=Security%20Automation.md)[AI Security Governance](https://jobicy.com/jobs?search_keywords=AI%20Security%20Governance.md)

Sample interview questionsDescribe how you would lead a suspected account-compromise incident involving a privileged Okta user.I would first validate the alert and immediately contain risk by revoking active sessions, disabling or restricting the account as appropriate, and preserving relevant logs. I would scope the incident through Okta, Google Workspace, endpoint, and cloud telemetry; identify affected resources and persistence; then coordinate remediation, credential reset, root-cause analysis, and stakeholder communications. After recovery, I would document lessons learned and improve detections or access controls to prevent recurrence.

How would you prioritize vulnerability findings across a healthcare technology environment?

I would combine technical severity with exploitability, internet exposure, asset criticality, data sensitivity, available compensating controls, and evidence of active exploitation. Vulnerabilities affecting production systems, protected health information, privileged identity paths, or exposed services would receive accelerated treatment. I would define owners and remediation timelines, track exceptions in the risk register, and provide clear status reporting to leadership.

What controls would you establish for enterprise use of GenAI tools?

I would begin with an inventory of approved tools and data flows, then establish an acceptable-use policy that prohibits entering PHI, credentials, proprietary source code, and other sensitive data into unapproved services. Controls would include SSO and vendor review, data-loss prevention, logging, role-based access, retention requirements, user training, and a process for evaluating new AI vendors. I would also partner with Product and Engineering to test for prompt injection, data exposure, insecure tool use, and model-abuse scenarios.

Give an example of how you would improve an overloaded SIEM or EDR alert queue.

I would analyze alert volume, fidelity, investigation outcomes, and duplicate patterns to identify noisy rules and gaps in context. I would tune detections using asset criticality, identity context, threat intelligence, and behavioral thresholds, then automate enrichment and low-risk containment through SOAR where appropriate. Success would be measured by reduced false positives, faster mean time to triage, and improved detection coverage for high-risk activity.

How do you communicate a technical security risk to nontechnical business stakeholders?

I frame the issue in terms of business impact, likelihood, affected systems or data, current controls, and the decision required. Rather than leading with technical jargon, I explain realistic outcomes such as operational disruption, regulatory exposure, or unauthorized access to sensitive information. I provide a prioritized recommendation, cost or effort considerations, and a clear timeline so stakeholders can make an informed risk decision.

Opportunity details

## About this role.

### About Abby Care: Powering the future of care at home for all of America.

Abby Care is building the leading AI-native platform for family-led care. America is facing a growing care crisis. Millions more people need care at home than ever. Over 50 million family caregivers support loved ones without the tools, training, or recognition they deserve.

We believe families are the largest untapped caregiving workforce in America, and that technology can help them deliver better care while driving stronger outcomes and greater transparency across the healthcare system.

Abby Care combines clinical oversight with an AI-powered platform to train, enable, and support family caregivers in delivering high-quality care at home. Our platform helps health plans and government partners better understand, verify, and improve care in the home. We expand access to care, reduce reliance on higher-cost settings, and help ensure public dollars are spent effectively.

We are proud to partner with leading health plans, providers, and community organizations and are backed by top VCs. We envision a future where family-led care is a core part of the healthcare system. Abby Care is building that future.

Join us in solving one of the most important challenges of our time.

### The Opportunity:

We’re looking for a Senior Security Analyst to strengthen our security operations, threat detection, and risk management program. This role reports into the Director of IT, Information & Security. You’ll take the lead on incident response, vulnerability management, and security monitoring across our cloud, endpoint, and identity infrastructure, while mentoring junior analysts and driving continuous improvement of our security posture. This role is a strong fit for someone who thinks like an attacker, communicates like a partner, and enjoys turning alerts into action.

This is a Full-Time Remote opportunity based in the United States, with the expectation to work PST hours.

### What you’ll work on:

Security Operations & Incident Response

*

Lead end-to-end incident response, threat hunting, and root cause analysis across SIEM, EDR (SentinelOne), and cloud security tooling.

*

Develop and maintain incident response playbooks, runbooks, and tabletop exercises.

Vulnerability & Risk Management

*

Own the vulnerability management lifecycle, partnering with IT and Engineering to remediate scan, pen test, and audit findings.

*

Maintain the risk register, conduct third-party/vendor risk assessments, and communicate technical risks to business stakeholders.

Identity, Endpoint & Compliance Oversight

*

Partner with IT to audit and enforce security controls across Okta (RBAC/MFA), Google Workspace (DLP/logs), JAMF, and SentinelOne.

*

Drive evidence collection and remediation for compliance audits (SOC 2, ISO 27001, HIPAA, PCI DSS) while aligning policies with NIST CSF and CIS frameworks.

Security Engineering & Automation

*

Automate detection, response, and reporting workflows via SOAR, scripting, and APIs to improve alert quality and efficiency.

*

Mentor team members and contribute to cross-functional security knowledge sharing.

AI Security & Governance

*

Establish guardrails and acceptable-use policies for enterprise AI tools (e.g., GenAI, Claude), mitigating shadow AI, data leakage, and third-party vendor risks alongside IT, Legal, and Compliance.

*

Partner with Product and Engineering to assess and remediate AI/LLM-specific vulnerabilities, including prompt injection, model abuse, and data exposure.

*

Pilot and evaluate AI-powered security capabilities (e.g., AI-assisted SIEM/EDR triage and anomaly detection) to boost response speed and operational efficiency.

### What you’ll have:

*

8+ years of experience in security operations, leading incident response end-to-end from detection through remediation.

*

Associate’s or Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience.

*

Prior experience working in the healthcare or health tech industry, with an understanding of industry-specific security and data privacy requirements (e.g., HIPAA).

*

Hands-on experience with SIEMs, EDR/XDR (e.g., SentinelOne), vulnerability scanners, cloud security, and core IAM concepts (SSO, MFA, RBAC).

*

Working knowledge of security frameworks (SOC 2, ISO 27001, NIST, CIS) with strong analytical skills to translate technical risk to business stakeholders.

*

Familiarity with emerging AI/LLM risks and an interest in evaluating AI capabilities for security use cases.

*

Excellent communication skills with the ability to prioritize competing incidents and operate calmly under pressure.

Nice to have:

*

Hands-on experience with Okta, JAMF, or Google Workspace, alongside Infrastructure as Code (Terraform) for access/security policy management.

*

Scripting experience (Python, Bash), SOAR exposure, and familiarity with CSPM tools or native cloud security platforms (AWS/GCP/Azure).

*

Practical experience securing AI/ML pipelines and GenAI deployments, or operating AI-driven security tools.

*

Relevant credentials such as CISSP, GCIH, GCIA, OSCP, or Security+.

### Benefits:

*

Competitive compensation packages that reflect the value you bring. We reward our team for the impact of their work.

*

Comprehensive health coverage that works for you. Choose from high-quality medical dental and vision options, including a $0 deductible PPO and a company-funded HSA, alongside employer-paid life and disability insurance.

*

Generous paid time off. We provide policies that allow you to recharge along with 10 paid company holidays.

*

Financial savings benefits to support your future. We support your financial well-being with HSA contributions, optional FSA and commuter benefits, and full coverage of all 401(k) account fees (employer match not currently offered).

*

Paid parental leave to support your growing family. We provide up to 10 weeks of paid parental leave based on tenure, so you can focus on bonding and adjusting to life as your family grows.

### Our Values

*

Families First
Redefining healthcare starts with how we treat the parents and children we serve. We go above and beyond for every family, building strong, lasting relationships. We continually ask ourselves, “Would we want this for our own families?”

*

Urgency with Precision
Millions of families are waiting for care, and they cannot wait, therefore this is not your typical 9 to 5 job. We match their urgency with our own, delivering exceptional care without compromise. Here, speed and excellence go hand in hand.

*

Relentlessly Resourceful
As an ambitious startup, we adapt quickly and make the most of limited time and resources. We solve challenges with creativity to deliver results without unnecessary complexity.

*

Purpose with Positivity
We take our mission seriously while never losing sight of the people behind the work. Respect, kindness, memes, and coffee make us stronger as a team and better for the families we serve.

*

Driven to Redefine What’s Possible
We are here to make healthcare better, which means asking hard questions, challenging outdated systems, and finding smarter, more compassionate ways to deliver care.

Automated Decision Tools

Abby Care may use automated decision tools to help match and rank candidate work experience, education and skills found in online profiles, resumes and job applications against job requirements. We believe that these tools help ensure objective, data-based decisions during the hiring process, however, all Abby Care hiring decisions involve final human review and input. If you have questions or would like to request an alternative process, contact [talent@abbycare.org](mailto:talent@abbycare.org).

Show more

[Apply now >](https://jobicy.com/jobs/154692-senior-security-analyst.md)

>  Annual salary information is not provided for this position. Explore salary ranges for similar roles in our [Salary Directory ›](https://jobicy.com/salaries.md)

*

![Upload CV](data:image/svg+xml;base64,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)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

*
![Recorded Future, Inc. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/2467e1d2-221.png)
Recorded Future, Inc. Oct 6  New

### [EDR Engineer / Senior EDR Engineer](https://jobicy.com/jobs/154699-edr-engineer-senior-edr-engineer.md)

With 1,000+ intelligence professionals serving over 1,900 clients worldwide, Recorded Future is the world’s most advanced, and largest, intelligence company! The EDR Security Engineer is responsible for the technical administration,…

*
![Recorded Future, Inc. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/2467e1d2-221.png)
Recorded Future, Inc. Oct 6  New

### [Principal Dark Web Collection Analyst](https://jobicy.com/jobs/154704-principal-dark-web-collection-analyst.md)

With 1,000+ intelligence professionals serving over 1,900 clients worldwide, Recorded Future is the world’s most advanced, and largest, intelligence company! Recorded Future is expanding its dark web collection capability with…

*
![Five9 logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/7c3d754e-221.png)
Five9 Oct 6  New

### [Senior Information Security Engineer](https://jobicy.com/jobs/154681-senior-information-security-engineer.md)

Join us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide. Living our values…

*
![Beyond Finance logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2022/01/68cd015e123539d873279c7b82f1ca6a.jpg)
Beyond Finance Oct 6  New

### [Senior Application Security Engineer](https://jobicy.com/jobs/154682-senior-application-security-engineer-3.md)

At Beyond Finance, we’ve made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care,…

*
![Five9 logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/7c3d754e-221.png)
Five9 Oct 6  New

### [Cloud Governance Engineer](https://jobicy.com/jobs/154675-cloud-governance-engineer.md)

Join us in bringing joy to customer experience. Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide. Living our values…

*
![Collibra logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/25583c1c-221.jpg)
Collibra Oct 5  New

### [Engineer, Security Operations & Engineering](https://jobicy.com/jobs/154592-engineer-security-operations-engineering.md)

Joining Collibra’s Security Operations & Engineering team This is an opportunity to work in the Security Operations & Engineering team within the growing Collibra Security Organization.Security Engineers at Collibra design,…

*
![HackerOne logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8937d355-221.png)
HackerOne Oct 5  New

### [Senior Director, Community](https://jobicy.com/jobs/152527-senior-director-community.md)

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to…

*
![HackerOne logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8937d355-221.png)
HackerOne Oct 5  New

### [Product Security Analyst](https://jobicy.com/jobs/152523-product-security-analyst.md)

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to…

*
![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)
CertiK Oct 4

### [Blockchain Security Expert – AI Track](https://jobicy.com/jobs/152451-blockchain-security-expert-ai-track.md)

About the Company CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over…

*
![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)
CertiK Oct 4

### [Blockchain Security Engineer – Senior Level (Solidity / Rust / Golang )](https://jobicy.com/jobs/152447-blockchain-security-engineer-senior-level-solidity-rust-golang.md)

About the Role: We are seeking a Senior Blockchain Security Engineer with a strong security mindset and deep technical expertise across smart contracts, blockchain nodes, and decentralized infrastructure. You will…

[Browse all jobs](https://jobicy.com/jobs.md)