Cybersecurity Analyst II

🏢 CareDx, Inc. · all CareDx, Inc. jobs
📍 United States
💰 USD 83,000 - 100,000 / annual
📅 Posted 2026-08-23 · via Himalayas
🏷 Cybersecurity-Analyst,Security-Operations,Incident-Response,Cybersecurity-Operations,IT-Security,Cybersecurity-Analyst-Jobs
Apply on original site ↗

CareDx is a leading precision medicine diagnostics company advancing care in transplant, specialty oncology, and cell therapy. Through our innovative portfolio of molecular diagnostics, digital health solutions, AI-powered data and analytics, and patient support services, we partner with healthcare providers, patients, and biopharma organizations to help inform clinical decision-making and improve patient outcomes.
At CareDx, every employee has the opportunity to contribute to innovations that help transform patient care and improve lives.

The Cybersecurity Analyst II is responsible for protecting CareDx’s information systems, networks, applications, endpoints, and data from cybersecurity threats through operational monitoring, incident response, policy enforcement, security tooling administration, and risk reduction activities.

This role serves as an experienced cybersecurity operations resource responsible for independently monitoring, investigating, analyzing, and responding to cybersecurity events across multiple security platforms including SIEM, EDR, ThreatLocker, DLP, and AI Detect and Response (AIDR) technologies.

The position will play a key role in supporting CareDx’s expanding AI security program through monitoring, configuration support, incident analysis, operational governance, and collaboration with AI security vendors to ensure AI technologies are adopted securely without unnecessarily restricting business growth and innovation.

This role requires prior hands-on cybersecurity operations experience and the ability to work across technical, operational, compliance, and business functions.
Key Responsibilities:

- Monitor, configure, and maintain AI Detect and Response (AIDR) tooling to identify and reduce risks associated with organizational AI usage

- Monitor security alerts, logs, dashboards, and telemetry from SIEM, EDR, ThreatLocker, DLP, cloud, and other cybersecurity platforms

- Investigate, triage, and respond to cybersecurity incidents including malware, phishing, unauthorized access, suspicious behavior, policy violations, and potential data exposure events

- Support ThreatLocker operational response activities including application control reviews, policy management, and endpoint troubleshooting

- Analyze DLP alerts and assist with investigations involving sensitive data handling, potential exfiltration events, and policy violations

- Conduct vulnerability analysis and coordinate remediation activities with infrastructure, engineering, and application teams

- Assist with threat hunting, threat modeling, security assessments, and control gap analysis activities

- Participate in incident response activities including containment, investigation, root cause analysis, remediation coordination, and post-incident reporting

- Support security monitoring and operational governance for technologies and emerging threats

- Assist with development and maintenance of cybersecurity operational procedures, standards, and documentation

- Support compliance, audit, and regulatory activities related to frameworks such as NIST, ISO 27001, HIPAA, SOC 2, and SOX

- Stay current on emerging cybersecurity threats, AI security risks, vulnerabilities, attack techniques, and industry best practices

- Collaborate with IT, Engineering, Compliance, Legal, Risk Management, and business stakeholders to strengthen CareDx’s security posture

Qualifications :

- Education: High School Diploma or GED required. Associate’s or Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field preferred.

- Industry-recognized cybersecurity certifications such as CompTIA Security+, CySA+, Microsoft SC-200, or comparable certifications preferred.

- Experience: 2-3 or more years of cybersecurity, security operations, incident-response, or related IT experience.

- Experience investigating EDR, MDR, endpoint, identity, or email-security alerts.

- Knowledge of Windows, Micros

← All remote jobs