Cyber Incident Response Analyst
RIT Solutions, Inc.
Title: Cyber Incident Response Analyst.
Location: Austin OR San, Antonio, TX - Hybrid
• Perform advanced incident response across Windows and Linux environments, including triage, containment, eradication, and recovery.
• Conduct host-based forensics, including log analysis, memory capture, file system review, and malware behavior analysis.
• Serve as Incident Commander during cybersecurity events, coordinating actions, documenting decisions, and communicating with leadership and affected agencies.
• nalyze adversary Tactics, Techniques, and Procedures (TTPs) and map findings to MITRE Telecommunication&CK.
• Review and validate alerts from SIEM, IDS/IPS, EDR, and network monitoring tools.
• Produce incident reports, timelines, and executive summaries for statewide stakeholders.
• Support multi-agency response operations, including SLTT partners and critical infrastructure entities.
• Provide recommendations for detection improvements, hardening, and long-term mitigation.
• Participate in post-incident reviews, lessons learned, and playbook updates.
• Maintain readiness for 24x7 response through on-call rotation or surge support.
Qualifications: Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity. Years Required/Preferred Experience 5 Required Advanced host-based forensics across Windows and Linux, including memory, disk, and malware analysis, using telemetry from NetWitness, Gravwell, Google SecOps, and Corelight to validate findings and reconstruct attacker activity. 5 Required Ability to correlate host, network, and intelligence data from CrowdStrike, SentinelOne, Microsoft Sentinel, Corelight, and NetWitness to build complete incident timelines. 5 Required Experience producing high-quality incident reports and executive summaries using evidence collected from Gravwell, NetWitness, Corelight, and case management workflows. 4 Required Strong understanding of adversary TTPs, intrusion kill chains, and threat hunting methodologies using packet-level and log-level data from but not limited to Corelight, NetWitness, and CRIBL pipelines. 3 Required Incident Commander experience 1 Required Experience supporting SLTT or critical infrastructure environments, including multi-tenant IR operations and cross-agency coordination. 5 Preferred Proficiency with threat intelligence platforms, including Recorded Future, ThreatMon, GreyNoise, Google Threat Intelligence, VirusTotal, and Mandiant, to enrich investigations, validate indicators, and map activity to MITRE Telecommunication&CK. 5 Preferred Hands-on experience using Cyware CSAP for incident orchestration, automated enrichment, case creation, and workflow execution across SIEM, IPS, EDR, and ticketing systems. 4 Preferred Security Certifications Preferred (CISSP, CIH, Sec+)
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Cyber Incident Response Analyst in Austin, TX vacancy
- ...seeking an experienced Cybersecurity Operations Center Analyst to monitor security events, investigate incidents, and coordinate containment and remediation efforts... ...management, and IT operations to strengthen cyber resilience. On-site in Austin with competitive benefits...Cyber
- ...Hamilton in Austin, TX seeks a DFIR Engagement Manager to oversee emergency incident response engagements, coordinating multiple DFIR teams, on-site recovery, clients, and counsel to keep cyber crisis efforts on track. You will translate complex technical concepts for diverse...Cyber
- ...Cyber Incident Response Analyst Location: Austin, TX / San Antonio, TX (Onsite) Duration: 12 Months Contract Interview: Onsite Cyber Incident Response, Digital Forensics, Windows & Linux Security, SIEM, EDR, IDS/IPS, Threat Hunting, Malware...CyberContract work
$80.2k - $111.3k
...Creates cyber-intelligence tools / methods and performs research and analysis in order... ...complex computer and information security incidents to determine extent of compromise to... ...damage and threat assessment programs. Responsible for the formal Security Test and Evaluation...CyberContract workWork at office- ...Austin, Texas, is seeking a full-time Cybersecurity Analyst - Tier 2 to safeguard digital assets for the... ...Veterans Affairs. The role focuses on supporting the Incident Response team by investigating and mitigating cyber threats. Required qualifications include a bachelor...CyberFull timeNight shift
- KPMG LLP in Austin, TX seeks a Manager, Incident Response to join our Advisory practice. You will lead and manage cyber incident response activities for client incidents, coordinating triage, containment, eradication, and recovery efforts. This role requires experience...Cyber
- ...logistics company in Austin is seeking a Senior Security Operations Center Analyst to enhance their security posture. Responsibilities include conducting threat hunting, responding to security incidents, and collaborating with IT teams to improve security strategies....
- Sygnia, Inc. is seeking a Security Operations Center Analyst to join our U.S. MDR team in Austin, TX. You will monitor signals from... ..., client-focused environment. The role requires hands-on incident response, threat hunting, and collaboration with clients and senior analysts...
$70k - $72k
...Experience in managing Data center enterprise incidents. (facility, noc, soc etc.) Associate’s... .... 3-5 years of experience in incident response in data center environment. Required... ...communication, mentor to junior analysts. Visionary, able to design incident response...Temporary workNight shift- ...where we have a legal entity. Responsibilities In this role, you’ll lead high-impact incident response work in a complex... ...tools and automation that help analysts triage faster, surface relevant... ...incident manager for high-severity cyber incidents will help you stand...CyberWork at officeLocal area
- ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates... ...governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual...CyberContract workWork experience placementWork at officeShift work
- ...The Incident Response Coordinator supports the end‑to‑end response to IT incidents and service disruptions, helping restore normal operations... ...monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide structured...CyberContract workWork experience placementWork at officeShift work
$114.1k - $268.18k
...expand your capabilities, then consider a career in Advisory.We are currently seeking a Manager, Incident Response to join our Advisory practice.ResponsibilitiesLead and manage cyber incident response activities, including triage, containment, eradication, and recovery...CyberWork experience placementH1bLocal area- We are currently seeking a Manager, Incident Response to join our Advisory practice. Responsibilities Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents Oversee and coordinate incident...CyberWork experience placementH1b
- Astreya in Austin, TX is seeking an Incident Response Analyst III to join our security operations team. You will monitor, triage, and escalate security alerts, while conducting initial investigations and coordinating cross-functional responses in a fast-paced data-center...
$218k - $269k
...technology in human history, and being responsible for the physical and logical security of... ...everything else feel small. Role Scope Lead incidents as a senior incident commander in the on... ...Operations for incidents that cross cyber, physical, and OT surfaces. Run the...CyberLocal area- ...blend risk strategy, digital identity, cyber defense, application security and managed... ...of intrusions and potential incidents.Minimum 2 years of experience in deploying... ...imperative, every person at Accenture has the responsibility to create and sustain an inclusive...CyberFull timeWork experience placementLive inWork at officeLocal areaRemote work
- Cosmenta in Austin, Texas is seeking a Cybersecurity Analyst to safeguard its digital infrastructure against evolving threats... ...anomalies, and responding promptly to security incidents. You will be responsible for analyzing security logs, coordinating patching efforts...Cyber
$66.2k - $135.8k
...The ideal candidate will be responsible for documenting the security... ...the organization. The GPS BISO Analyst ensures compliance with relevant... ...and respond to security incidents in a timely manner.Ensure compliance... ...deliver services including: Cyber SecurityTechnology...Cyber- Role SummaryThe Cyber Threat Intelligence & Exposure Management Analyst is responsible for identifying, analyzing, and communicating cyber threats and organizational... ...Security Operations, Vulnerability Management, Incident Response, Engineering, and Risk teams to focus...CyberFull timeWork at officeLocal area
- ...and Human Services (HHSC) is seeking a Cybersecurity Analyst III to perform senior-level cybersecurity operations, focusing on threat detection, incident investigation, security monitoring, and operational response across on-prem and cloud environments. The role emphasizes...
- TTEC is seeking an Incident Response Manager to lead the cybersecurity incident response team from a fully remote position in the United States... ..., containment, and remediation of threats while guiding analysts, developing IR playbooks, and coordinating with Legal, HR,...Remote job
- ...Senior Information Security Analyst is one of several senior analyst... ...monitoring, detection and response activities, hunts for emerging... ...security monitoring, event and incident triage, incident response,... ...first line of defense against cyber threats, triaging alerts from...CyberFull timeFor contractorsWorldwideFlexible hoursShift work
- ASSYST is seeking a Network Security Analyst for a State client in Austin, TX to support... ...monitoring, threat detection, and incident response activities for a client. The role will... ...base documentation. Research emerging cyber threats, attack techniques, tactics, and...CyberLocal areaRemote work
- ...protect our data and technology ecosystem.Responsibilities· Partner across Security, IT, and... ...applications.· Participate in detection and incident response activities, including... ...including policy, risk, and enablement of cyber monitoring, detection, and response capabilities...CyberFull timeWork at officeRemote workWork visa2 days per week
- TeleTech Holdings, Inc. is seeking an Incident Response Manager to lead our security operations from a remote location in the United States... ...of cybersecurity threats while guiding a skilled team of analysts. You’ll develop incident playbooks, run tabletop exercises,...Remote work
$124.3k - $210.3k
...DescriptionThe Senior Risk Operations Analyst is a high visibility and demanding role, responsible for monitoring and review of... ...monitoring, alert development, incident review, escalation, and... ...intelligence reporting systemsAnalysis of cyber threat intelligence and fraud...CyberFull timeWork experience placementWork at officeLocal areaShift workWeekend work- Caartzee is seeking a skilled Cybersecurity Analyst in Austin, Texas to enhance our digital security. Your key responsibilities include monitoring systems for vulnerabilities... ...anomalies, and responding to security incidents. A Bachelor’s in Cybersecurity or Computer Science...
- Vazex in Austin, TX is seeking a Cybersecurity Analyst to safeguard our digital infrastructure. You will monitor... ..., detect anomalies, and respond swiftly to incidents that could compromise security. Daily responsibilities include analyzing logs, coordinating with IT to patch...
$105.4k - $207.8k
...such as data inventory, data subject rights, consent and preference management, privacy by design, privacy impact assessments, incident response, third-party risk, etc.Knowledge of Data Privacy Laws and Regulations: Familiarity with data privacy legislation such as GDPR,...CyberLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst. Be the first to apply!
Related searches
- cyber security analyst Austin, TX
- remote cyber security analyst Austin, TX
- information security consultant Austin, TX
- entry level cyber security analyst Austin, TX
- cyber sales Austin, TX
- cyber Austin, TX
- cyber security analyst internship
- cyber security operations analyst
- cyber soc analyst
- cyber security analyst

