Cyber Incident Response Analyst
RIT Solutions, Inc.
Title: Cyber Incident Response Analyst.
Location: Austin OR San, Antonio, TX - Hybrid
• Perform advanced incident response across Windows and Linux environments, including triage, containment, eradication, and recovery.
• Conduct host-based forensics, including log analysis, memory capture, file system review, and malware behavior analysis.
• Serve as Incident Commander during cybersecurity events, coordinating actions, documenting decisions, and communicating with leadership and affected agencies.
• nalyze adversary Tactics, Techniques, and Procedures (TTPs) and map findings to MITRE Telecommunication&CK.
• Review and validate alerts from SIEM, IDS/IPS, EDR, and network monitoring tools.
• Produce incident reports, timelines, and executive summaries for statewide stakeholders.
• Support multi-agency response operations, including SLTT partners and critical infrastructure entities.
• Provide recommendations for detection improvements, hardening, and long-term mitigation.
• Participate in post-incident reviews, lessons learned, and playbook updates.
• Maintain readiness for 24x7 response through on-call rotation or surge support.
Qualifications: Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity. Years Required/Preferred Experience 5 Required Advanced host-based forensics across Windows and Linux, including memory, disk, and malware analysis, using telemetry from NetWitness, Gravwell, Google SecOps, and Corelight to validate findings and reconstruct attacker activity. 5 Required Ability to correlate host, network, and intelligence data from CrowdStrike, SentinelOne, Microsoft Sentinel, Corelight, and NetWitness to build complete incident timelines. 5 Required Experience producing high-quality incident reports and executive summaries using evidence collected from Gravwell, NetWitness, Corelight, and case management workflows. 4 Required Strong understanding of adversary TTPs, intrusion kill chains, and threat hunting methodologies using packet-level and log-level data from but not limited to Corelight, NetWitness, and CRIBL pipelines. 3 Required Incident Commander experience 1 Required Experience supporting SLTT or critical infrastructure environments, including multi-tenant IR operations and cross-agency coordination. 5 Preferred Proficiency with threat intelligence platforms, including Recorded Future, ThreatMon, GreyNoise, Google Threat Intelligence, VirusTotal, and Mandiant, to enrich investigations, validate indicators, and map activity to MITRE Telecommunication&CK. 5 Preferred Hands-on experience using Cyware CSAP for incident orchestration, automated enrichment, case creation, and workflow execution across SIEM, IPS, EDR, and ticketing systems. 4 Preferred Security Certifications Preferred (CISSP, CIH, Sec+)
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Response Analyst in Austin, TX vacancy
- ...Cyber Incident Response Analyst Location: Austin, TX / San Antonio, TX (Onsite) Duration: 12 Months Contract Interview: Onsite Cyber Incident Response, Digital Forensics, Windows & Linux Security, SIEM, EDR, IDS/IPS, Threat Hunting, Malware...CyberContract work
- ...Accenture is seeking a hands-on technical leader in Austin, Texas, specializing in Cyber Investigation and Forensic Response. This role requires a deep expertise in Digital Forensics and Incident Response, where you'll conduct complex analyses and lead investigation...Cyber
$99k - $232k
...Applicable Time Type: Full time Travel Requirements: Up to 60% The Opportunity As a Cybersecurity, Privacy and Forensics – Cyber Incident Response – Manager, you will play a pivotal role in safeguarding organizations from cyber threats by implementing advanced technologies...CyberFull timeH1b- ...Key Responsibilities War‑Room Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign actions/owners; track progress to closure; enforce... ..., Change, Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects;...CyberContract workWork experience placementWork at officeShift work
$70.35k - $205.8k
...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients... ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response...CyberWork experience placementLive inWork at officeLocal area$70.35k - $205.8k
...fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the heart of how we help clients... ...respond to, and recover from the most consequential cyber incidents. We deliver around-the-clock incident response...CyberWork experience placementLive inWork at officeLocal area- ...Vazex in Austin, TX is seeking a Cybersecurity Analyst to safeguard our digital infrastructure. You will... ...vulnerabilities, detect anomalies, and respond swiftly to incidents that could compromise security. Daily responsibilities include analyzing logs, coordinating with IT to...
- Caartzee is seeking a skilled Cybersecurity Analyst in Austin, Texas to enhance our digital security. Your key responsibilities include monitoring systems for vulnerabilities... ...anomalies, and responding to security incidents. A Bachelor’s in Cybersecurity or Computer Science...
$86.4k
...Summary This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents... ...documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the...CyberWork at officeLocal areaRemote work$68.47k - $75.15k
...support of our vision of a safe and secure cyber world. Our globally recognized, award-... ...Summary The Sales Operations Analyst will act as a liaison working with the... ...available to residents of California . Responsibilities Incumbent will be one of a team of subject...CyberWork experience placementWork at officeRemote work$4,500 - $6,000 per month
OpenSkye is seeking a Cybersecurity Analyst to protect digital infrastructure against threats. This role involves monitoring systems, responding to incidents, and collaborating with IT teams to address vulnerabilities. Ideal candidates have a Bachelor’s in Cybersecurity...- Softricity is seeking a Cybersecurity Analyst to safeguard our digital infrastructure. In this role, you'll monitor for vulnerabilities, detect anomalies, and respond to incidents to protect sensitive data. Your daily duties will involve analyzing logs, conducting penetration...
$91k - $321.5k
...impact an organisation's operations and objectives. You will be responsible for developing business strategies to effectively manage and... ...application delivery maintenance application managed services, (3) cyber managed services, or (4) risk & regulatory managed services -...CyberFull timeContract workH1b- ...a skilled and motivated Cybersecurity Analyst to join our security team and help protect... ..., networks, and data from evolving cyber threats. This is a hands-on technical role... ...security monitoring, threat detection, incident response, and endpoint security. Reporting to...CyberFull timeRelocation
- ...Sr. Cyber Security Engineer Hiring Manager: Marlene Veum Head of Cybersecurity... ...Charlotte, Dallas, Anywhere in Tex. Responsibilities Authoring and maintaining policies... ...standards, procedures, runbooks Writing up incident reports Build out training materials...Cyber
- ...operations. The successful candidate will be responsible for providing expert legal counsel to... ...security and compliance assessments, advise on incident response and investigations, and lead the legal response to security and cyber events. Applicants must have a Juris...Cyber
- ...Pubox in Austin, Texas is looking for a Cybersecurity Analyst to safeguard our digital infrastructure against evolving threats. In this role, you will monitor systems for vulnerabilities, analyze security logs, and coordinate with IT teams to patch vulnerabilities. Qualified...
- ...an enterprise-level leadership role in global cyber security, information risk, and resilience. The CISO will be responsible for defining and executing the global... ...candidate will have a proven track record in incident response, crisis management, and leading large...Cyber
$76k - $110k
...As a Cybersecurity Engineer, you will be responsible for implementing, and maintaining the... ...the highest levels of protection against cyber threats. Additionally, you will oversee... ...monitor, detect, and respond to security incidents. Role and Responsibilities Here's...CyberHourly payFull timeImmediate start- ...Cybersecurity Analyst - Tier 2 (3rd shift) Maveris is an IT and cybersecurity services company committed... ...) digital assets and responding to potential cyber threats. Your primary focus will be supporting the Incident Response team in investigating and mitigating advanced...CyberPermanent employmentFull timeWork experience placementNight shift
- ...About the job Network Security Analyst Application Last date Deadline... ...Professional (CCSP), EC-Council Certified Incident Handler (ECIH), Certified... ...cybersecurity incident detection, incident response, threat assessment, cyber intelligence, software security, and...CyberLocal areaRemote work
- ...not eligible for visa sponsorship. Key Responsibilities Lab & Facility Security Define and enforce... ...plans for critical locations Compute & Cyber‑Physical Security Establish security... ...partner risk assessments and access reviews Incident Response & Risk Lead response for lab‑...CyberFor contractors
$120k - $224k
...The Office of the CISO has the responsibility to safeguard not only IBM... ...as well as Computer Security Incident Response. CSIRT is responsible... ...Role and Responsibilities IBM’s Cyber Security Incident Response... ...performing Incident Response Forensic Analyst to support the investigation...CyberFull timeTemporary workWork at office$100k - $167.5k
...Cloud Security Engineer The State Street Cyber Architecture & Engineering team is looking for a Cloud Security Engineer. We... ...reviews, cloud security enablement activities, cloud security incident response # Develop and maintain CI/CD pipeline of Cloud-based applications...CyberTemporary workWork experience placement$120k - $140k
...Cyber Security Specialist Amp Up Your Career We are seeking a Cyber Security... ...(parking downtown, bus or train). Responsibilities: Cybersecurity Operations & Threat Management... ...threat detection, prevention, incident response, vulnerability management, penetration...CyberWork at officeWorldwide3 days per week- ...global footprint within IBM and is responsible for monitoring 24x7 monitoring and incident response. As a part of this team,... ...on an ongoing basis with the Cyber Security Rapid Response Incident... ...seeking a Mid Level Cyber Security Analyst to work on the CISO Security Operations...CyberNight shiftWeekend workAfternoon shift
$102.17k
...Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of... ...custom monitoring rules to detect emerging threats. Lead response efforts for complex incidents (e.g., APTs, data breaches), including forensic...CyberH1b$70k - $95k
...throughout the United States, we are a premier cyber and physical security specialty... ...clients. The Security Technician is responsible for managing all aspects of access control... ...Maintain a safe driving record and report any incidents or near misses to management immediately...CyberFor contractorsFor subcontractorLocal areaImmediate start- ...Solis delivers best-in-class managed cyber security services and cyber incident response. Combining state-of-the-art technology with unparalleled cyber threat intelligence, our award-winning team of cybersecurity experts has more than 21 years of experience protecting...CyberFull timeLocal area
- ...Site Reliability Engineer will be responsible for ensuring the reliability, availability... ...error budgets 8 Required Familiarity with incident management, root cause analysis (RCA), and... ...Analytics Infrastructure & Cloud Solutions, Cyber Security Services, etc. We make...CyberLocal area2 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst. Be the first to apply!
Related searches



