Senior Cyber Incident Responder
$86.4kHighmark Health
Company :
Highmark Health
Job Description :
JOB SUMMARY
This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.
ESSENTIAL RESPONSIBILITIES
Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
Track and document cyber defense incidents from initial detection through final resolution. (5%)
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
5 years of Cyber Incident Handling
Preferred
- None
SKILLS
Identifying, capturing, containing, and reporting malware
Preserving evidence integrity according to standard operating procedures or national standards
Securing network communications
Recognizing and categorizing types of vulnerabilities and associated attacks
Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
Performing damage assessments
Using security event correlation tools
Design incident response for cloud service models
EDUCATION
Required
- Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field?
Substitutions
- 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Cyber Incident/Security Certifications
Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.? In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.?
Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$86,400.00
Pay Range Maximum:
$138,600.00
Base pay is determined by a variety of factors including a candidate's qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J278529
- ...firm in Scottsdale, Arizona, is seeking a Senior Security Analyst (L2) for the night shift... ...involves triaging alerts, assisting in incident responses, and mentoring junior analysts.... ...-life balance initiatives like self-managed time off. #J-18808-Ljbffr Lumifi Cyber, Inc.CyberSeniorNight shift
- A healthcare organization seeks a skilled Cyber Incident Responder to manage and investigate security incidents. The role involves analyzing threats, coordinating with technical teams, and improving security processes. Candidates should have at least 3 years of relevant...CyberRemote jobWork at office
$87.7k - $164k
Ernst & Young Oman is hiring a Cyber Triage and Forensics Incident Analyst in Phoenix, Arizona. In this senior role, you will lead technical security incident responses and perform digital forensic analysis, coordinating efforts to remediate security incidents. The ideal...CyberSenior- Lumifi Cyber, based in Scottsdale, Arizona, is seeking a Senior Security Analyst (L2) to join their SOC team. The role involves triaging alerts, assisting customers with incident responses, and mentoring junior analysts. Candidates should have 3+ years in incident response...CyberSenior
$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident response... ...ability to prevent, detect, and rapidly respond to sophisticated adversarial tactics... ...platforms integrated with SOC and cyber defense functions. Certifications...CyberSeniorContract workWork experience placementWork at office- Peraton is seeking an Associate Incident Handler in Arizona. The role involves evaluating security alerts, conducting triage, and collaborating to mitigate threats to the Department of War's information network. Candidates must have an active DoD Secret Clearance and meet...Cyber
- ...Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign... ..., Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects... ...skills, with proven ability to brief senior leadership and translate technical risk into...CyberSeniorContract workWork experience placementWork at officeShift work
$108k - $135k
Early Warning Services LLC in Scottsdale seeks a Cyber Security Incident Response Analyst II. This role involves detecting, identifying, and responding to urgent cybersecurity threats as part of a high-performance team. Candidates must have a Bachelor's degree and at least...Cyber- ...Title: Senior SOC Analyst Duration: Contract Location: Phoenix,... ...network resources. - Generates incident reports, investigates suspicious... ...system activity - Perform cyber defense trend analysis and reporting... ...managers, cyber incident responders, and cybersecurity service...CyberSeniorContract workWork at officeFlexible hoursShift workAfternoon shift
- ...security technologies to detect, prevent, and respond to security threats in real time.... ...and public AI and ML/DL systems against cyber threats, adversarial attacks, and data breaches... ...activity for anomalies and security incidents.Develop and enforce policies to align AI...CyberSeniorImmediate startRemote work
$108k - $135k
...for a more collaborative working environment. Candidates responding to this posting must independently possess the eligibility... ...ineligible for employment Visa sponsorship. Overall Purpose The Cyber Security Incident Response Analyst II is part of a high‑performance team,...CyberHourly payWork experience placementWork at officeImmediate startVisa sponsorshipWork visaFlexible hours- Job Title: Senior Card Fraud Investigator Location: CityScape What... ...ability to investigate fraud incidents thoroughly and report them... ...Financial Exploitation, FinTech, and Cyber Crime events. Advanced BSA/... ...issue. We will only respond to inquiries concerning requests...CyberSeniorWork at office
- ...Senior Director/Director Cybersecurity Cybersecurity at APS is more than protecting systems... ...program, security governance, incident response, and the work that keeps our compliance... ...environment. Deep fluency in cyber risk across IT and OT, with real command...CyberSeniorLocal area
- ...Senior Security Operations Center (SOC) Analyst Contract, Onsite in Phoenix... ...complex network activity, investigating incidents, and contributing to enterprise-wide security... ...and opportunities to deepen expertise in cyber defense strategies. Here’s what...CyberSeniorContract workFlexible hoursShift work
- A technology-focused company is seeking a Cyber Security Engineer to design and implement security software and policies at the Enterprise... ...'s degree in Computer Science, 3-5 years of experience in incident response, and familiarity with Azure Cloud and SIEM...CyberFull timeRemote work
- ...Senior Cloud Security Engineer At Semperis, our mission is to be a Force for Good. Starting... ...key role in protecting enterprises from cyber threats, while working with some of the... ...automation. This role is not a SOC or incident-responsefirst position. It is focused on...CyberSeniorWork at officeLocal areaRemote work
$66.9k - $82.1k
...Position Overview The Cybersecurity Incident Response Engineer, Mid supports the detection, containment, and recovery of cybersecurity... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation...CyberContract workWork experience placementWork at office$50 per hour
...Senior Advanced Program Performance Management Specialist Ready to be a leader with the... ...members, intelligence analysts and first responders keep our nation safe. The work we do is... ...Physics to solve our customers missions in cyber, RF, undersea, interstellar and...CyberSeniorContract workFor subcontractorFlexible hours$78.03k - $84.43k
...Senior Manufacturing Planning Specialist Imagine a world-class engineering environment... ...members, intelligence analysts and first responders keep our nation safe. If you want the chance... ...to solve our customers' missions in cyber, RF, undersea, interstellar and everything...CyberSeniorFlexible hours- ...Analyst- Full-Time, on-site We are looking for a Senior Security Analyst (L2) to join the Lumifi Cyber SOC team. Senior Security Analysts are expected to... ...customers with the investigation and response of incidents throughout the incident response process Perform...CyberSeniorFull time
- ...Job Title: Senior Solution Consultant About Trellix ? Trellix is a global company redefining the future... ...large-scale operational environments focusing on cyber defense along with experience performing incident analysis, developing defensive capabilities, and...CyberSeniorFlexible hours
- ...Senior Test Automation Engineer (Onsite) Establishes and maintains processes for automating... ..., including the ability to manage and respond to different customer situations while... ...Development, Data Analytics Infrastructure & Cloud Solutions, Cyber Security Services etc....CyberSeniorWork experience placementWork at office
$118.7k - $218.6k
...internal control improvement to address the growing challenges of cyber threats and other information technology risks. Design and... ...infrastructure. Troubleshoot and resolve access‑related issues and incidents efficiently. Integrate Identity solutions such as Transmit...CyberSeniorVisa sponsorship- Security Operations Engineer - Cloud Security Cloud Security Engineer will join the Cloud Security Operations Team as a central point of contact for Client Cybersecurity Services and act as a resource for technology related to cloud security controls. They will maintain...CyberSenior
- ...A Managed Services Provider is seeking a Senior Solutions Architect / L3 Managed Services Engineer to design and optimize IT solutions for SMB clients. This role requires extensive experience in cloud services, cybersecurity, and networking technologies. The ideal candidate...CyberSeniorRemote work
- Position Summary Senior Systems Security Administrator to join the Iridium Government and... ...to monitor networks and equipment daily, responding to alerts and providing on‑call support... ...years of relevant experience in the IT and Cyber Security industry Competent with MS Office...CyberSenior3 days per week
$162k - $203k
...As a Principle Incident Response Analyst at Honeywell Aerospace, you will be instrumental... ...incident investigations, working closely with senior leadership, supporting the development of... ...report directly to our Sr. Director of Cyber Security, and work out of our Phoenix, AZ...CyberPermanent employmentTemporary workWork experience placementRemote workFlexible hours$86.5k - $166k
...Information Technology (IT) Management Level Senior Associate Job Description & Summary... ...prevent, detect, contain, and remediate cyber threats. Those in the Red Team at PwC... ...prior system administration, incident response, Security Operations Center (SOC...CyberSeniorH1bVisa sponsorshipWork visaFlexible hours- Empower AI is seeking a Senior Program/Project Lead to operate at Fort Huachuca, Arizona. This role combines hands-on technical execution with senior-level leadership across cybersecurity and engineering, ensuring systems are secure and mission-ready. Ideal candidates...CyberSenior
- ...including the ability to assist with the automation of manual and semimanual processes. Work with business stakeholders and other Cyber security teams like Governance Risk and Compliance Application Security Security Engineering and Architecture etc. Required...CyberSenior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Incident Responder. Be the first to apply!
- senior development executive Phoenix, AZ
- senior technical manager Phoenix, AZ
- senior procurement specialist Phoenix, AZ
- senior software development engineer in test Phoenix, AZ
- senior manager data science Phoenix, AZ
- senior platform engineer Phoenix, AZ
- senior procurement Phoenix, AZ
- senior director product management Phoenix, AZ
- senior cost manager Phoenix, AZ
- senior compliance officer Phoenix, AZ

