Cyber Incident Responder
$72.7kHighmark Health
Company: Highmark Health Job Summary: This role will manage and investigate live security incidents. Cyber Incident Responders work independently or collaboratively depending on each event and serve as a subject‑matter expert who works to improve security processes and procedures. Responders discover opportunities to improve the organization’s security posture and drive process improvements. Essential Responsibilities Coordinate and provide expert technical support to enterprise‑wide cyber defense technicians to resolve cyber defense incidents. (20%) Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%) Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and IDS logs) to identify possible threats to network security. (20%) Perform cyber defense incident triage, including determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%) Perform cyber defense trend analysis and reporting. (10%) Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (5%) Perform real‑time cyber defense incident handling (e.g., forensic collections, intrusion correlation & tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (5%) Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. (5%) Track and document cyber defense incidents from initial detection through final resolution. (5%) Other duties as assigned or requested. Experience Required 3 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration Testing, or Information Assurance 3 years of Cyber Incident Handling Skills Identifying, capturing, containing, and reporting malware Preserving evidence integrity according to standard operating procedures or national standards Securing network communications Recognizing and categorizing types of vulnerabilities and associated attacks Protecting a network against malware (e.g., NIPS, anti‑malware, restrict/prevent external devices, spam filters) Performing damage assessments Using security event correlation tools Designing incident response for cloud service models Education Required Bachelor's in Computer Science, Cybersecurity, Information Technology, Software Engineering, Information Systems, Computer Engineering, or other related field. Substitutions 6 years of experience with information security and systems analysis and experience working within an information security function using HITRUST CSF, or the NIST 800‑83 cyber security framework Licenses or Certifications Preferred Cyber Incident/Security Certifications Information Technology Infrastructure Library (ITIL) Two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC Language Other than English: None Travel Requirement 0% – 25% Physical, Mental Demands and Working Conditions Position Type: Office‑ or Remote‑based. Occasionally travel from the office to various work sites or from site‑to‑site. Physical work site required. Lifting: up to 10 pounds (Constantly). 10–25 pounds (Occasionally). 25–50 pounds (Rarely). Compliance Requirements Employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. All employees must comply with HIPAA, the company’s privacy policies, and all data security guidelines. All employees are required to adhere to the company’s Code of Business Conduct and applicable laws. Pay Range Minimum: $72,700.00 Maximum: $116,600.00 Equal Employment Opportunity Statement Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law. Accessibility and Accommodation We endeavor to make this site accessible to any and all users. For accommodation requests, please contact HR Services Online at View email address on click.appcast.io. Privacy Notice California Consumer Privacy Act Employees, Contractors, and Applicants Notice. Req ID: J278845. #J-18808-Ljbffr Highmark Health
- A leading healthcare organization in Michigan is seeking a Cyber Incident Responder to manage and investigate live security incidents. The role involves coordinating with cyber defense technicians, analyzing logs to identify threats, and improving security processes. Ideal...CyberRemote job
- A cybersecurity firm is looking for a skilled Cyber Security Analyst to manage and operate cybersecurity platforms. This role involves monitoring security threats, incident response, and risk assessments, ensuring compliance with regulatory standards. Candidates should...Cyber
$100.2k - $164.1k
...Senior Incident Response Consultant 133254 This role joins SpearTip, the cybersecurity consulting segment within Zurich Resilience... ...Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our...CyberFull timeTemporary workApprenticeshipLocal areaRemote workVisa sponsorshipFlexible hours- Ernst & Young Oman in Lansing, Michigan is seeking a Cyber Triage and Forensics Incident Analyst to join their team. This role is crucial for managing security incidents, requiring expertise in digital forensics and incident response. You will investigate incidents, analyze...Cyber
- ...search refers to candidates of both genders Cyber Security Analyst Main Responsibilities... ...responsible for security threat monitoring, incident response, risk assessment, and client... ...monitoring platforms and conduct threat analysis Respond to security incidents with defined...Cyber
- ...Responsibilities War‑Room Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign actions/owners;... ...with Problem, Change, Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects; support PIRs and trend...CyberContract workWork experience placementWork at officeShift work
- ...security technologies to detect, prevent, and respond to security threats in real time. •... ...and public AI and ML/DL systems against cyber threats, adversarial attacks, and data breaches... ...activity for anomalies and security incidents. • Develop and enforce policies to...CyberImmediate startRemote workFlexible hours
$60 per hour
...cybersecurity role — such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat... ...intelligence, or adjacent fields, including government or military cyber operations. Some coding experience required; comfort navigating...CyberHourly payFull timeRemote workFlexible hours- ...and procedures are properly functioning. Participate in the incident reporting program and conduct reporting. Provide customer support... ...of experience may be utilized Credentials that meet DoD Cyber Workforce requirements for specialty codes 441 (Network...CyberContract workWork at officeRemote work
- ..., MI Duties: Apply cybersecurity policies during exercises. Develop and maintain knowledge management tools. Support cyber defense readiness and secure data handling. Create briefings and exercise documentation. Qualifications: Familiarity with...Cyber
$23.75 - $48.09 per hour
...retirement systems. About the position: The Security Analyst position works as a member of the Incident Response Team. The Security Analyst position remediates cyber incidents and vulnerabilities while maintaining the confidentiality, integrity, and availability of...CyberHourly payPermanent employmentFull timeWork at officeImmediate startRemote workWork visaRelocation packageFlexible hours2 days per week3 days per week$87.7k - $164k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...value. The opportunity Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible...CyberSummer holidayLocal areaFlexible hours$106.61k - $284.28k
Hispanic Alliance for Career Enhancement is seeking a Cyber Resiliency Manager to define operational activities for their Cybersecurity GRC team. The ideal candidate will have over 7 years of relevant experience in cyber resiliency and a strong understanding of compliance...Cyber$141.7k - $268.3k
...policies, processes, and audit readiness. Advise leadership on cybersecurity risk posture, residual risks, and mitigation strategies. Incident Response & Vulnerability Management Serve as a senior technical advisor during cybersecurity incidents affecting vehicles or...CyberImmediate startFlexible hours$106.61k - $284.28k
Koitecc Solutions seeks a Cyber Resiliency Manager to oversee operational activities for their Cybersecurity GRC team. The role requires over 7 years of experience in cyber resiliency or related activities, including familiarity with compliance frameworks and risk management...CyberFull time- Trellix is seeking a Competitive Intelligence Manager in Lansing, Michigan to drive strategic decisions through market analysis and insights. The role involves conducting SWOT analyses, developing sales enablement tools, and collaborating with product teams. Ideal candidates...CyberFlexible hours
- ...hope you're doing well. Job: Dimondale, MI - IT - DTMB - Cyber Security - CIP - IT Security Analyst 3 - Vulnerability... ...Senior Security Analyst position reviews and remediates cyber incidents and vulnerabilities found by IT level analysts to IT security specialists...CyberWork at officeLocal area
$66.9k - $115k
ASM Research, An Accenture Federal Services Company, is looking for a Cyber Support Specialist in Lansing, MI. This role involves supporting cybersecurity activities to ensure compliance with the Risk Management Framework. Responsibilities include assisting with assessments...Cyber- ...Cyber Security Manager We are from US IT Solutions, an ISO Certified, E-Verify, WMBE Certified organization established in 2005 in CA. Our company is serving various State, Local and County Departments for over 10 years. USITSOL has been helping clients innovate across...CyberWork experience placementLocal area
- ...for AV/VTC and network systems. The ideal candidate will hold an active DoD TS/SCI clearance and have substantial experience in IT or Cyber Security. The role involves maintaining network infrastructure and ensuring compliance with Service Level Agreements. This position...Cyber
- ...Job title: Cyber Security Analyst - Vulnerability Management Team Location: Dimondale, MI Duration: 12+ Months Remote... ...Senior Security Analyst position reviews and remediates cyber incidents and vulnerabilities found by IT level analysts to IT security specialists...CyberWork at officeLocal areaRemote work2 days per week
- Redtracetech is seeking an Information System Security Officer (ISSO) I to ensure the operational security posture for an information system at Selfridge Air National Guard Base, MI. The ISSO will work closely with the ISSM and ISO to manage security operations, conduct...Cyber
- ...Regional Vice President. The ideal candidate should have a university degree and 2-5 years of relevant sales experience, particularly in cyber security. This remote role involves engaging with sales resources and managing complex sales processes to exceed quota. #J-18808-...CyberRemote job
- ...areas covering Artificial Intelligence, Cloud Migration, Custom Software Development, Data Analytics Infrastructure & Cloud Solutions, Cyber Security Services, etc. We make reasonable accommodations for clients and employees and we do not discriminate based on any...Cyber
- ...analytical and problem-solving skills • Self-motivated with strong attention to detail • Excellent verbal and written communication skills. • Experience with Criminal Justice Information systems is desired • Experience leading cyber security initiatives and projects...Cyber
- ...Position Overview Cyber Support Specialist a key role in supporting cybersecurity activities required to validate and sustain compliance with the Risk Management Framework (RMF) for project infrastructure and services. This position assists with Assessment and Authorization...CyberContract workWork at officeRotating shift
- ...etc. Drive data into reports and dashboards) Malware analysis/forensic system analysis o Incident response and remediation Penetration testing of Apps, endpoints, or devices Cyber Threat Intelligence (CTI) including automation of feeds and processing of incoming alerts...CyberH1bLocal areaWork visa
$94.1k - $150k
Position Overview The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network... ..., techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive...CyberContract workWork at office$83.43k - $222.48k
...operational activities and executes on strategic direction related to Cyber Resiliency for CVS Health's Digital, Data, Analytics &... ...architectural solutions for Cyber Resiliency functions such as Incident Response, Disaster Recovery, and Business Continuity Required...CyberHourly payFull timeTemporary workLocal area$110k - $129k
.... Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience. Hundreds of thousands of IT professionals and managed service providers worldwide trust us to protect and support them with...CyberLocal areaWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Responder. Be the first to apply!

