
Nonprofit medical center
Senior Information Security Engineer - IS Mod at Mayo Clinic
About the role
Why Mayo Clinic
Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we are also dedicated to our employees, investing in competitive compensation and comprehensive benefit plans – to take care of you and your family, now and in the future. And with continuing education and advancement opportunities at every turn, you can build a long, successful career with Mayo Clinic.
Benefits Highlights
- Medical: Multiple plan options.
- Dental: Delta Dental or reimbursement account for flexible coverage.
- Vision: Affordable plan with national network.
- Pre-Tax Savings: HSA and FSAs for eligible expenses.
- Retirement: Competitive retirement package to secure your future.
Responsibilities
The Senior Information Security Engineer (Threat Hunt) proactively hunts for and validates adversary activity across endpoint, identity, network, cloud, and application telemetry, and supports high-severity incident investigations to determine scope and impact. Translates successful hunts and threat intelligence into scalable detections and monitoring (e.g., SIEM/XDR correlation rules, alert logic, scheduled queries, and dashboards) and continuously tunes them to reduce noise while improving coverage. Leverages automation and Artificial Intelligence platforms to accelerate hunt development, enrich investigative context, prioritize high-value leads, and improve the efficiency and scale of threat hunting workflows. Applies deep knowledge of attacker tradecraft and TTPs across the cyber kill chain, including IOC management, tracking, and hypothesis-driven hunting. Success in the role requires strong data and automation skills (e.g., KQL/Splunk SPL/Yara-L plus PowerShell/Python) and hands-on experience with platforms such as Microsoft Sentinel and Microsoft Defender XDR or comparable SIEM/XDR tools. Partners closely with incident response, detection engineering, security testing (purple teaming/adversary emulation), vulnerability management, and threat intelligence to communicate clear findings, risk, confidence, and recommended next steps and drive work to closure. This role participates in security operations on-call rotations and periodic incident-handler rotations to support active investigations and maintain response readiness. Work may occasionally require after-hours engagement during high-severity incidents or vulnerability response activities.
The incumbent also assists system users relative to information systems security matters and undertakes complex projects requiring additional specialized technical knowledge. Specifically, the Information Security Senior Engineer is knowledgeable, proficient, and experienced in:
- Working with business partners within the department to achieve organizational and OIS goals
- Developing required competencies by mastering fundamental tasks
- Independently analyzing technology security posture and appropriate use of security defenses
- Matching technical solutions with business requirements and then designing and implementing them;
- Self-directed software development, testing, support/problem solving, and overall technology administration;
- Organizational procedures such as the system development life-cycle;
- Use of defensive measures and information to identify, analyze and report security events;
- Researching and understanding pertinent information technology laws, policies and procedures
- Establishing timelines and delivery of requirements
- Applying IT-related laws and policies, and providing IT-related guidance throughout the software acquisition lifecycle
- Collecting and analyzing information to identify vulnerabilities and potential for exploitation
- Managing and administering processes and tools that enable the organization to identify, document, and access intellectual capital and information content
- Executing duties governing hardware, software, and information system acquisition programs and other program management policies with minimal support
This is a hybrid position and incumbent must live within 100 miles of a Mayo Clinic campus.
Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.
Qualifications
- Master’s degree with one (1) year experience or Bachelor’s degree in Computer Science, Information Systems, Engineering or related major and a minimum two (2) years’ experience in the information security field required.The Information Security Senior Engineer also requires the following skills/abilities.
- Understands the use and efficacy of information security tools, server configurations and controls with the ability to install, configure, test and operate them.
- Able to test, implement, deploy, maintain, review and administer the infrastructure hardware and software required to effectively secure the enterprise, protect data, identify and mitigate risks
- Ability to collect, process, preserve, analyze and present computer related evidence in support of network vulnerability mitigation and/or criminal, fraud, counterintelligence or law enforcement investigations.
- Provides advanced technical opinions/conclusions re. security tools, trends, and controls which are supported by documented evidence, based on multiple perspectives and leverage of a variety of resources
- Demonstrates a deep and broad knowledge of standard operating procedures, workflows and supporting technology across numerous critical user areas and an in-depth knowledge of multiple computing technologies either being actively used or of significant interest to Mayo; understands how systems fit into larger picture of technology at Mayo.
- Capacity to work independently and willingness to seek advice/assistance.
- Must have one of the following certifications (or equivalent) at time of hire. In lieu of certification at time of hire, candidate must pass the exam within two years and complete the certification process once years of service requirements of the certifying body have been met.
- CISSP
- GSEC
- CISM
- OSCP
- HCISPP
Exemption Status
Exempt
Compensation Detail
$134,347.20 - $194,750.40/ year
Benefits Eligible
Yes
Schedule
Full Time
Hours/Pay Period
80
Schedule Details
- Monday
- Friday, 8am - 5pm
Weekend Schedule
As needed
International Assignment
No
Site Description
Just as our reputation has spread beyond our Minnesota roots, so have our locations. Today, our employees are located at our three major campuses in Phoenix/Scottsdale, Arizona, Jacksonville, Florida, Rochester, Minnesota, and at Mayo Clinic Health System campuses throughout Midwestern communities, and at our international locations. Each Mayo Clinic location is a special place where our employees thrive in both their work and personal lives. Learn more about what each unique Mayo Clinic campus has to offer, and where your best fit is.
Equal Opportunity
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability status. Learn more about the 'EOE is the Law'. Mayo Clinic participates in E-Verify and may provide the Social Security Administration and, if necessary, the Department of Homeland Security with information from each new employee's Form I-9 to confirm work authorization.
Recruiter
Ted Keefe
Required skills
Threat Hunting
Incident Response
Detection Engineering
SIEM
XDR
Threat Intelligence
Security Automation
Cloud Security
Total Views
0
Total Apply Clicks
0
Total Mock Apply
0
Total Bookmarks
0
More open roles at Mayo Clinic
Similar jobs

Staff Tech, Security, T4
Collins Aerospace (RTX) · US-AZ-TUCSON-M05 ~ 1151 E Hermans Rd ~ BLDG M05 (External Site)

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Senior Principal Systems Security Engineer (Cyber) - P5 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-AL-HUNTSVILLE-401 ~ 401 Jan Davis Dr NW ~ JAN DAVIS 401

Network/Security Analyst- Onsite
Collins Aerospace (RTX) · US-MT-GREAT FALLS-6932-CUST ~ 6932 Goddard Dr ~ GODDARD (External Site)
About Mayo Clinic

Mayo Clinic
PublicMayo Clinic Health System is a system of community-based medical facilities. It is owned by Mayo Clinic and was founded in 1992. The organization focuses on providing medical care in rural communities in Minnesota, Iowa, and Wisconsin.
10,001+
Employees
Rochester
Headquarters
Reviews
10 reviews
4.2
10 reviews
Work-life balance
3.2
Compensation
4.1
Culture
4.4
Career
3.1
Management
4.3
78%
Recommend to a friend
Pros
Supportive management and leadership
Strong team culture and teamwork
Excellent health benefits and retirement plans
Cons
High workload and stress during peak times
Long and unpredictable work hours
Limited advancement opportunities
Salary Ranges
38 data points
Junior/L3
Junior/L3 · Cybersecurity Analyst
0 reports
$161,805
total per year
Base
$161,805
Stock
-
Bonus
-
$137,534
$186,076
Interview experience
2 interviews
Difficulty
3.0
/ 5
Duration
14-28 weeks
Offer rate
100%
Interview process
1
Application Review
2
Recruiter Screen
3
Technical Phone Screen
4
Onsite/Virtual Interviews
5
Offer
Common questions
Technical Knowledge
Behavioral/STAR
Past Experience
System Design
Culture Fit
Latest updates
How to be a living organ donor with Mayo Clinic - kaaltv.com
kaaltv.com
News
·
2w ago
Being in charge vs. Being a leader - Mayo Clinic Press
Mayo Clinic Press
News
·
2w ago
Understanding obesity phenotypes - Mayo Clinic Press
Mayo Clinic Press
News
·
2w ago
New Mayo Clinic Study: Taking This Vitamin Was Associated with 'Improved' Gut Health and Inflammation Markers - The Healthy @Reader's Digest
The Healthy @Reader's Digest
News
·
2w ago