Senior Info Security Engineering Analyst - SIEM Engineer

Posted Yesterday
Be an Early Applicant
Hiring Remotely in City of Muntinlupa, Rizal, Calabarzon, PHL
Remote
Senior level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
The Role
Design, deploy, and maintain SIEM solutions (Microsoft Sentinel, Splunk, CrowdStrike); develop detection rules and dashboards; integrate log sources; perform incident triage, investigation, threat hunting, and response; tune SIEM/EDR and implement automation via SOAR or scripting.
Summary Generated by Built In
Requisition Number: 2356996
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
We are seeking an experienced SIEM Engineer with strong hands-on expertise in Microsoft Sentinel, Splunk, and CrowdStrike to design, implement, and manage enterprise security monitoring solutions. The ideal candidate will have deep knowledge of incident detection & response, along with exposure to network security technologies such as firewalls, IDS/IPS, and email security solutions.
Primary Responsibilities:
  • Design, deploy, and maintain SIEM platforms including Microsoft Sentinel, CrowdStrike and Splunk
  • Develop and optimize use cases, detection rules, dashboards, and alerts
  • Integrate multiple log sources (cloud, on-prem, applications, endpoints) into SIEM
  • Perform security incident triage, investigation, and response
  • Leverage CrowdStrike for endpoint detection and response (EDR) and threat hunting
  • Tune SIEM and EDR solutions to reduce false positives and improve detection accuracy
  • Conduct threat hunting activities using telemetry from SIEM and EDR tools
  • Work closely with SOC teams to support incident handling and escalation
  • Perform log analysis and correlation to identify potential security threats
  • Implement automation using playbooks, SOAR, or scripting (PowerShell/Python)
  • Ensure compliance with security policies, standards, and frameworks
  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so

Required Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Relevant certifications (preferred but not mandatory):
    Microsoft SC-200 / AZ-500
  • Splunk Certified Power User / Admin
  • CrowdStrike certifications
  • CEH, CISSP, or equivalent
  • Solid hands-on experience with:
    • Microsoft Sentinel (Azure SIEM/SOAR)
    • Splunk (Enterprise Security preferred)
    • CrowdStrike Falcon (EDR)
  • Hands-on experience with:
    • Firewalls (Palo Alto, Fortinet, Check Point, etc.)
    • IDS/IPS solutions
    • Email Security Gateways (Proofpoint, Mimecast, O365 Defender, etc.)
  • Experience in incident response and security event analysis
  • Solid knowledge of SIEM architecture, log management, and correlation
  • Understanding of network protocols (TCP/IP, DNS, HTTP, etc.)
  • Familiarity with:
    • Azure Security / Cloud Security concepts
    • Threat intelligence platforms
    • MITRE ATT&CK framework
    • Scripting knowledge (Python / PowerShell)
    • Experience with SOAR tools

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
Optum is a drug-free workplace. © 2026 Optum Global Solutions (Philippines) Inc. All rights reserved.

Skills Required

  • Bachelor's degree in Computer Science, Information Security, or related field
  • Hands-on experience with Microsoft Sentinel (Azure SIEM/SOAR)
  • Hands-on experience with Splunk (Enterprise Security preferred)
  • Hands-on experience with CrowdStrike Falcon (EDR)
  • Experience with firewalls (Palo Alto, Fortinet, Check Point, etc.)
  • Experience with IDS/IPS solutions
  • Experience with Email Security Gateways (Proofpoint, Mimecast, O365 Defender, etc.)
  • Experience in incident response and security event analysis
  • Solid knowledge of SIEM architecture, log management, and correlation
  • Understanding of network protocols (TCP/IP, DNS, HTTP, etc.)
  • Scripting knowledge (Python / PowerShell)
  • Familiarity with Azure Security / Cloud Security concepts
  • Familiarity with threat intelligence platforms
  • Familiarity with MITRE ATT&CK framework
  • Experience with SOAR tools and automation (playbooks)
  • Relevant certifications (Microsoft SC-200 / AZ-500)
  • Splunk Certified Power User / Admin
  • CrowdStrike certifications
  • CEH, CISSP, or equivalent

What the Team is Saying

Optum Compensation & Benefits Highlights

  • Healthcare Strength Health coverage offers copay and HSA medical options with dental, vision, company‑paid life and disability, and free or low‑cost virtual visits. Feedback suggests the offering is comprehensive and competitive on paper.
  • Parental & Family Support Time off and family supports include PTO, eight paid holidays plus a floating day, six weeks paid parental leave, up to two weeks paid caregiver leave, Bright Horizons back‑up care, and adoption assistance up to $10,000. Feedback suggests these resources are meaningful for caregivers and family needs.
  • Retirement Support Savings programs include a 401(k) with employer match (after one year, vesting after two) and a 10%‑discount Employee Stock Purchase Plan. These programs bolster long‑term financial security when combined with other savings resources.

Optum Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Eden Prairie, MN
160,000 Employees
Year Founded: 2011

What We Do

Optum, part of the UnitedHealth Group family of businesses, is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. At Optum, we support your well-being with an understanding team, extensive benefits and rewarding opportunities. By joining us, you’ll have the resources to drive system transformation while we help you take care of your future. We recognize the power of connection to drive change, improve efficiency and make a difference in health care. Join a team where your skills and ideas can make an impact and where collaboration is key to creating technology that produces healthier outcomes.

Gallery

Gallery
Gallery
Gallery

Optum Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Optum has three workplace models that balance the needs of the business and the responsibilities of each role. These models, core on‑site (5 days/week), hybrid (4 days/week) and telecommute or fully remote, vary by country, role and location.

Typical time on-site: Not Specified
HQEden Prairie, MN
Metro Manila, Philippines
Cebu, Philippines
Davao, Philippines
Ann Arbor, MI
Atlanta, GA
Baltimore, MD
Bengaluru, India
Chennai, India
Dallas, TX
Detroit, MI
Dublin, Ireland
Hartford, CT
Houston, TX
Hyderabad, India
Jacksonville, FL
Las Vegas, NV
Letterkenny, Ireland
Louisville, KY
Madison, WI
Minneapolis, MN
Nashville, TN
New Delhi, India
Philadelphia, PA
Phoenix, AZ
Pune, India
Raleigh, NC
San Diego, CA
Washington, DC
Learn more

Similar Jobs

Optum Logo Optum

HR Intern - Alabang

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Systems and Monitoring Engineer - Wintel

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Software Engineer_Fullstack

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Consultant

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account