Senior Security Analyst

Posted 17 Days Ago
Easy Apply
San Francisco, CA
In-Office
75K-100K Annually
Junior
Healthtech
Transforming Cardiovascular Care Through Innovation
The Role
The Senior Security Analyst will analyze security events, implement detection capabilities, and conduct threat hunts while enhancing incident response processes and third-party vendor security reviews.
Summary Generated by Built In

Heartflow is a medical technology company advancing the diagnosis and management of coronary artery disease, the #1 cause of death worldwide, using cutting-edge technology. The flagship product—an AI-driven, non-invasive cardiac test supported by the ACC/AHA Chest Pain Guidelines called the Heartflow FFRCT Analysis—provides a color-coded, 3D model of a patient’s coronary arteries indicating the impact blockages have on blood flow to the heart. Heartflow is the first AI-driven non-invasive integrated heart care solution across the CCTA pathway that helps clinicians identify stenoses in the coronary arteries (RoadMap™Analysis), assess coronary blood flow (FFRCT Analysis), and characterize and quantify coronary atherosclerosis (Plaque Analysis). Our pipeline of products is growing and so is our team; join us in helping to revolutionize precision heartcare.

Heartflow is a publicly traded company (HTFL) that has received international recognition for exceptional strides in healthcare innovation, is supported by medical societies around the world, cleared for use in the US, UK, Europe, Japan and Canada, and has been used for more than 500,000 patients worldwide.  

Overview

The Heartflow Information Security team is responsible for security across our corporate and product environments, protecting our patient data and medical device ecosystem. We are looking for an investigator that loves the challenge of analyzing complex security telemetry to uncover hidden threats and ensure a resilient defense for our corporate and product environments.

The initial focus will be on triaging advanced security events and participating in our security incident response process. Analytical work will span our corporate, clinical and cloud infrastructure and will include threat hunting and the refinement of high-fidelity detection logic.

What You’ll Do:
  • Perform in-depth analysis of security events, logs, and network traffic using SIEM, EDR, and other security tools to rapidly identify, contain, and remediate complex threats.
  • Collaborate in developing and implementing custom correlation rules, dashboards, and alerts to enhance detection capabilities.
  • Drive threat hunts to find "quiet" persistent threats within our clinical and corporate environments.
  • Participate in continuous refinement of incident response playbooks, operational procedures, and security standards.
  • Perform security reviews of third-party vendors to identify risks and ensure they meet company standards.
What You Bring:
  • Education - BS in Computer Science or a related technical degree. No degree? No problem—if you have the equivalent experience and certifications, we want to hear from you.
  • Experience -  At least 2 years in the trenches of a SOC or Incident Response team. However, if you haven't held a formal "Security" title but have at least 2 years on an IT Operations team, we value deep technical expertise in operating systems and networking if you can show us your passion for security.
  • You’re comfortable navigating security platforms like SIEMs, EDR tools (CrowdStrike or similar), and Email Security platforms.
  • Strong problem-solving skills with the ability to troubleshoot security issues across networks, operating systems, and applications.
  • Possess a solid understanding of log correlation and how to write logic for security alerts.
  • Deep understanding of at least one of the operating system internals (Windows, Linux, or macOS). Ability to analyze process trees.
  • Able to analyze network flows and packet data to find hidden threats. You know your way around network tools and can spot anomalies across different types of environments.
What Helps You Stand Out:
  • Certifications: SANS GIAC (GCIH, GCIA),CompTIA (Security+, CySA+), EC-Council (C|SA) or equivalent
  • Proven ability to take initiative— track record of identifying problems and developing solutions independently.
  • Excellent written and verbal communication skills, with the ability to clearly articulate complex technical issues and remediation plans to both technical and non-technical audiences.
  • You are a continuous learner who stays curious about the latest attack trends and loves figuring out how to stop them.

A reasonable estimate of the base salary compensation range is $75,000 to $100,000 per year, and bonus. #LI-IB1

Heartflow is an Equal Opportunity Employer. We are committed to a work environment that supports, inspires, and respects all individuals and do not discriminate against any employee or applicant because of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law. This policy applies to every aspect of employment at Heartflow, including recruitment, hiring, training, relocation, promotion, and termination.
 
Positions posted for Heartflow are not intended for or open to third party recruiters / agencies. Submission of any unsolicited resumes for these positions will be considered to be free referrals.
 
Heartflow has become aware of a fraud where unknown entities are posing as Heartflow recruiters in an attempt to obtain personal information from individuals as part of our application or job offer process. Before providing any personal information to outside parties, please verify the following: A) all legitimate Heartflow recruiter email addresses end with “@heartflow.com” and B) the position described is found on our careers site at www.heartflow.com/about/careers/. 

Top Skills

Crowdstrike
Edr
Email Security Platforms
Linux
macOS
Network Tools
SIEM
Windows
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Austin, TX
650 Employees
Year Founded: 2010

What We Do

Heartflow is the global leader in AI-driven coronary artery disease (CAD) management, transforming how CAD — the world’s leading cause of death — is diagnosed and treated. Our advanced technology generates personalized, precision 3D heart models from a single CT scan, providing clinicians with the clarity and confidence to deliver earlier, more effective treatments — transforming CAD into a disease that can be managed for life.

Heartflow One is the only complete, non-invasive, precision coronary care platform providing patient insights throughout the guideline-directed CCTA pathway. The AI-driven platform — including Roadmap™ Analysis, FFRCT Analysis and Plaque Analysis — is supported by the ACC/AHA Chest Pain Guideline and backed by more than 600 peer-reviewed publications.

With over 400,000 patients treated, more than 1,400 leading institutions adopting our solution, and 99.5% of U.S. lives covered — Heartflow is redefining the standard of coronary care. We're a global company, with employees across the United States, Europe and Japan. Our headquarters are in Mountain View, California, with additional offices in California, Texas, the UK, and Japan.

We believe CAD shouldn’t be a silent threat. By making it screenable, diagnosable, and manageable, we’re changing the story of CAD, empowering clinicians to save lives and giving patients more time for what matters most.

Why Work With Us

Join Us to Rewrite the Story of CAD.

Similar Jobs

CrowdStrike Logo CrowdStrike

Sr. Competitive Intelligence Analyst, Cloud Security (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
10000 Employees
125K-180K Annually

Ingram Micro Logo Ingram Micro

Sr Information Security Compliance and Audit Analyst

Cloud • Information Technology • Consulting
In-Office
3 Locations
27182 Employees
93K-158K Annually

Anduril Logo Anduril

Senior GNC Engineer, Space

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
In-Office
Costa Mesa, CA, USA
6000 Employees
191K-253K Annually

Anduril Logo Anduril

Designer

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
In-Office
Costa Mesa, CA, USA
6000 Employees
166K-220K Annually

Similar Companies Hiring

Camber Thumbnail
Social Impact • Healthtech • Fintech
New York, NY
53 Employees
Sailor Health Thumbnail
Telehealth • Social Impact • Healthtech
New York City, NY
20 Employees
Granted Thumbnail
Mobile • Insurance • Healthtech • Financial Services • Artificial Intelligence
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account