EEOC Statement
“Lifepoint Health is an Equal Opportunity Employer. Lifepoint Health is committed to Equal Employment Opportunity for all applicants and employees and complies with all applicable laws prohibiting discrimination and harassment in employment.”
You must be authorized to work in the United States without employer sponsorship.
This position is: Onsite/Hybrid - 3 days onsite / 2 remote
Travel requirements: Up to 25%
POSITION SUMMARY:
The Cybersecurity Threat Analyst is an entry-level role responsible for monitoring, analyzing, and triaging security events across the healthcare enterprise. This role supports day-to-day cyber defense operations, assists with incident detection and response, and contributes to exposure identification and reduction efforts. The Analyst will develop foundational cybersecurity skills and serve as the first line of defense.
ESSENTIAL FUNCTIONS:
- Perform Tier 1-level (initial) ticket queue intake, triage, investigation, remediation and document corrective actions in corporate ticketing systems.
- Monitor security alerts, events, and dashboards to identify potential threats, policy violations, or anomalous behavior.
- Triage detections from endpoint or identity-related alerts, email security, phishing reports, vulnerability, and logging platforms.
- Conduct basic threat hunting and gather artifacts (hashes, URLs, process trees, etc.) for senior reviewers.
- Assist with investigation and documentation of security events following established playbooks and procedures.
- Develop and execute playbooks for investigative, response, and containment actions with appropriate escalation based on severity.
- Leverage AI-assisted investigation, summarization, correlation, and data enrichment, verifying content for accuracy.
- Stay informed on emerging threats, healthcare-specific attack trends, and adversary use of automation and AI.
- Assist in maintaining security tool health.
KNOWLEDGE, SKILLS & ABILITIES:
Education: Associates or Bachelors in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
Experience: 0–2 years in security operations, incident response, cybersecurity/IT roles (help desk, SOC Tier 1) or related technical roles (internships included).
Certifications (preferred): ISC2 CC, GIAC GFACT, GIAC GSEC, CompTIA Security+, CompTIA CySA+, or similar.
Skills and Abilities:
- Curiosity and willingness to learn new technologies, including AI-enabled security capabilities.
- Foundational understanding of core security concepts (malware, phishing, lateral movement, vulnerabilities, lateral movement and identity misuse).
- Basic understanding of networking, compliance frameworks, and common attack vectors.
- Familiarity with SIEM/centralized logging, EDR, email security, phishing defense, and vulnerability management.
- Comfortable using automation/AI tools within policy constraints; strong attention to detail and documentation.
- Analytical and critical thinking skills.
- Moderate computer skills to include use of email, word processing, data entry, and spreadsheets.
- Strong written and verbal communication skills.
- Ability to solve cybersecurity problems following documented procedures.
- Ability to organize and manage multiple tasks simultaneously.
- Ability to follow defined processes and escalation paths.
PHYSICAL AND MENTAL DEMANDS:
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential job responsibilities.
While performing the duties of this job, the employee is occasionally required to stand; walk; sit for extended periods of time; use hands to finger, handle, feel objects, tools or controls; reach with hands and arms; climb stairs; balance; stoop, kneel, bend, crouch or crawl; talk or hear; taste or smell. The employee must occasionally lift and/or move up to 20 pounds. Repetitive motion of upper body is required for extended use of computers. Required specific vision abilities include close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust focus.
WORK ENVIRONMENT AND TRAVEL REQUIREMENTS:
The work environmental characteristics described here are representative of those that an employee may encounter while performing the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential job responsibilities.
For those working on-site, they will have a well-lit, ventilated and climate-controlled office environment with routine office equipment; some equipment has moving mechanical parts. Noise level in the work environment is typical for an office and/or hospital environment
In hospital environment, the individual may be exposed to hazards and unusual elements, which may include but are not limited to bloodborne pathogens and / or contagious illnesses, toxic chemicals, and biohazardous materials which may require extensive safety precautions and the use of protective equipment.