Cyber Incident Responder
$72.7kHighmark Health
Company: Highmark Health Job Summary: This role will manage and investigate live security incidents. Cyber Incident Responders work independently or collaboratively depending on each event and serve as a subject‑matter expert who works to improve security processes and procedures. Responders discover opportunities to improve the organization’s security posture and drive process improvements. Essential Responsibilities Coordinate and provide expert technical support to enterprise‑wide cyber defense technicians to resolve cyber defense incidents. (20%) Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%) Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and IDS logs) to identify possible threats to network security. (20%) Perform cyber defense incident triage, including determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%) Perform cyber defense trend analysis and reporting. (10%) Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (5%) Perform real‑time cyber defense incident handling (e.g., forensic collections, intrusion correlation & tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (5%) Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. (5%) Track and document cyber defense incidents from initial detection through final resolution. (5%) Other duties as assigned or requested. Experience Required 3 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration Testing, or Information Assurance 3 years of Cyber Incident Handling Skills Identifying, capturing, containing, and reporting malware Preserving evidence integrity according to standard operating procedures or national standards Securing network communications Recognizing and categorizing types of vulnerabilities and associated attacks Protecting a network against malware (e.g., NIPS, anti‑malware, restrict/prevent external devices, spam filters) Performing damage assessments Using security event correlation tools Designing incident response for cloud service models Education Required Bachelor's in Computer Science, Cybersecurity, Information Technology, Software Engineering, Information Systems, Computer Engineering, or other related field. Substitutions 6 years of experience with information security and systems analysis and experience working within an information security function using HITRUST CSF, or the NIST 800‑83 cyber security framework Licenses or Certifications Preferred Cyber Incident/Security Certifications Information Technology Infrastructure Library (ITIL) Two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC Language Other than English: None Travel Requirement 0% – 25% Physical, Mental Demands and Working Conditions Position Type: Office‑ or Remote‑based. Occasionally travel from the office to various work sites or from site‑to‑site. Physical work site required. Lifting: up to 10 pounds (Constantly). 10–25 pounds (Occasionally). 25–50 pounds (Rarely). Compliance Requirements Employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. All employees must comply with HIPAA, the company’s privacy policies, and all data security guidelines. All employees are required to adhere to the company’s Code of Business Conduct and applicable laws. Pay Range Minimum: $72,700.00 Maximum: $116,600.00 Equal Employment Opportunity Statement Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law. Accessibility and Accommodation We endeavor to make this site accessible to any and all users. For accommodation requests, please contact HR Services Online at View email address on click.appcast.io. Privacy Notice California Consumer Privacy Act Employees, Contractors, and Applicants Notice. Req ID: J278845. #J-18808-Ljbffr
- A healthcare organization is seeking a Cyber Incident Responder responsible for managing and investigating live security incidents. This role includes coordinating technical support, analyzing logs for threats, and improving the organization’s security posture. Candidates...CyberWork at officeRemote work
$85k - $95k
Black Kite is the global leader in third‑party cyber risk intelligence, trusted by more than 3,000 organizations worldwide. We give... ...’re in the right place. THE OPPORTUNITY The SOC Analyst / Incident Responder is a mid‑level security operations practitioner who owns...CyberWorldwideFlexible hours$85k - $95k
Black Kite, a leader in cyber risk intelligence based in Boston, is seeking a SOC Analyst / Incident Responder. This mid-level position entails monitoring security events, leading investigations, and improving detection capabilities. The ideal candidate will have 2-4 years...CyberFlexible hours$70 per hour
...the CSOC to investigate, triage, and remediate endpoint-related incidents, with a heavy emphasis on DLP (50% of workload) and the... ...management tools (Tenable or equivalent) • Proven experience: o Responding to day-to-day security incidents o Closing security tickets...Cyber$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident... ...ability to prevent, detect, and rapidly respond to sophisticated adversarial tactics.... ...management platforms integrated with SOC and cyber defense functions. Certifications such...CyberContract workWork experience placementWork at office$150k - $180k
...next, this is the right place to build a fulfilling career. Cyber Incident Response Manager This role reports to the Governance head within... ...trends and proactively train relevant groups accordingly. Respond to client DDQs and participate in client due diligence meetings...CyberLocal area$130k - $152.5k
...Senior Associate/Cybersecurity & Incident Response (Forensic Services Practice) Boston... ...them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct... ...guidance to clients on the adequacy of cyber security controls in accordance with...CyberWork at officeLocal areaWork from home3 days per week$127k - $140k
...protecting organizations from ever-increasing cyber threats 24/7/365. Powered by Deepwatch’s... ...the Manager of Adversary Response, the Incident Response Analyst operates on the front... ...advanced threat actors. As a primary responder during live incident engagements, you will...CyberPermanent employmentWork experience placementWork at officeRemote workWork from homeHome officeFlexible hours$100k - $126.5k
...them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct... ...breach detection, threat analysis, incident response and malware analysis;... ...guidance to clients on the adequacy of cyber security controls in accordance with cybersecurity...CyberWork at officeWork from home3 days per week$130k - $180k
Brown Brothers Harriman & Co. seeks a Cyber Incident Response Manager, responsible for managing cyber incidents and communicating with various stakeholders. The ideal candidate will have 8+ years of cyber security experience, a solid grasp of incident response frameworks...Cyber- KPMG Careers is seeking a Manager, Cyber Defense to join their Advisory Services practice in Boston. This role involves monitoring and... ...investigating cybersecurity threats, as well as assisting in incident response leveraging state-of-the-art security technologies. The...Cyber
$110k - $160k
Reporting to the Cyber Incident Response Manager within the Cybersecurity Team, we are seeking an experienced Cyber Incident Response - Senior Analyst to become part of a dynamic incident response team. Responsibilities Incident Management & Coordination: coordinate and...CyberLocal area$77k - $202k
...cybersecurity focus on protecting organisations from cyber threats through advanced technologies and... ...solutions to safeguard sensitive data. In cybersecurity incident management at PwC, you will focus on effectively responding to, and mitigating, cyber threats, maintaining...CyberFull timeH1b$100k - $120k
...Senior Associate, Information Security - Forensics to join our global team in Boston, Massachusetts. This role involves leading cyber security incident responses and working closely with legal and business teams while interacting with senior executives. The ideal candidate...Cyber- Ernst & Young Oman is seeking a Cyber Triage and Forensics Incident Analyst to be a key member of the security incident response team. The role involves handling security incidents, performing forensic analysis, and coordinating remediation efforts. Ideal candidates should...Cyber
- ...them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct... ...an experienced leader in the forensic & cyber investigations space, your... ...cyber breach detection, threat analysis, incident response and malware analysis; Performing...CyberWork at officeLocal areaRemote workWork from home3 days per week
$88k - $147k
...Monitor and assess alerts, cases, and reports for potential privacy incidents (e.g., unauthorized access, data exfiltration, misdirected... ...case documentation. Track incident metrics (e.g., time to detect/respond, incident trends). Provide reporting to leadership, regulators,...CyberWork experience placementWork at office$140k - $160k
...responsible for protecting Focus' computer systems, networks, and data from cyber threats. This role involves developing and implementing security measures, monitoring systems, and responding to security incidents. The ideal candidate should have a strong technical background,...CyberRemote work3 days per week- ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations... ...Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide...CyberContract workWork experience placementWork at officeShift work
- ...compliance with applicable regulations. Providing legal advice on cybersecurity and information incidents and working with internal stakeholders to prepare for and respond to cyber/information incidents, including managing the incident response process Providing legal...CyberWork at officeLocal area
- ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates... ...governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual...CyberContract workWork experience placementWork at officeShift work
$65 - $110 per hour
...Cyber Security Analyst We are The Hollister Group , the Boston area's leading women... ...environments, and systems for security incidents, vulnerabilities, and suspicious activity... ...Hub). Investigate, triage, and respond to security incidents in accordance with...CyberLocal area- ...detection engineering, deployment of ML models, and efficient querying during incidents Develop high‑fidelity rule‑based and/or ML‑based detections as code Respond to security alerts, cyber threats, and security incidents Drive end‑to‑end incident response investigations...Cyber
- ...Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program... ...assessors in technical tradecraft and soft skills. Respond to security incidents and provide technical assistance to leadership across the...CyberWork at officeShift workDay shift
- ...The Cyber Security Engineer is responsible for supporting and enhancing the organization... ...security needs Manages, analyzes and responds to the changing system and data access... ...detection, vulnerability assessment, and incident response processes Basic understanding...CyberFull timeH1bWork at officeLocal areaRemote workRelocation packageFlexible hours
- ...for configuration and controls to reduce cyber and information security risk for applications... .... # Take an active role on the Cyber Incident Response Team (CIRT) when there are... ...being performed by the Security Team. Respond to each inquiry, whether from a customer,...CyberLocal areaMonday to FridayShift work3 days per week
$78.2k - $137.7k
...identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access...CyberWork at officeShift workDay shift$120k - $217.5k
...accountable for providing enterprise-level cyber risk leadership across infrastructure... ...leadership during infrastructure-related cyber incidents , including decision support, impact... ...rely on us to help them manage risk, respond to challenges, and drive performance and...CyberTemporary workFlexible hours$141.6k - $212.4k
...detection engineering, deployment of ML models, and efficient querying during incidents. Develop high-fidelity rule-based and/or ML-based detections as code Respond to security alerts, cyber threats, and security incidents Drive end-to-end incident response...Cyber$135.4k - $208.1k
...Defense focuses heavily on threat detection, incident response, and implementing security... ...infrastructure at Cardinal Health. The Director, Cyber Detection & Response is responsible for... ...team operations to detect, analyze, and respond to threats across enterprise environments...CyberTemporary workLocal areaImmediate startRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Responder. Be the first to apply!

