Senior Cyber Incident Responder
$86.4kHighmark Health
Company :
Highmark Health
Job Description :
JOB SUMMARY
This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.
ESSENTIAL RESPONSIBILITIES
Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
Track and document cyber defense incidents from initial detection through final resolution. (5%)
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
5 years of Cyber Incident Handling
Preferred
- None
SKILLS
Identifying, capturing, containing, and reporting malware
Preserving evidence integrity according to standard operating procedures or national standards
Securing network communications
Recognizing and categorizing types of vulnerabilities and associated attacks
Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
Performing damage assessments
Using security event correlation tools
Design incident response for cloud service models
EDUCATION
Required
- Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
Substitutions
- 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Cyber Incident/Security Certifications
Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
_As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. _
Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$86,400.00
Pay Range Maximum:
$138,600.00
Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J278529
- ...Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign... ..., Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects... ...skills, with proven ability to brief senior leadership and translate technical risk into...CyberSeniorContract workWork experience placementWork at officeShift work
$106.8k - $194.8k
...Firewall (WAF) solutions to protect client applications from cyber threats. You will work within a team of cybersecurity... ...actively monitor application traffic, analyze security events, and respond to incidents to mitigate risks effectively. Additionally, you will...CyberSeniorSummer holidayFlexible hours$106.8k - $194.8k
...Firewall (WAF) solutions to protect client applications from cyber threats. You will work within a team of cybersecurity... ...actively monitor application traffic, analyze security events, and respond to incidents to mitigate risks effectively. Additionally, you will...CyberSeniorSummer holidayFlexible hours- ...technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Sr... ...little to no supervision in executing key contracting activities Responds to inquiries regarding contract obligations and revisions...CyberSeniorFull timeContract workWork at officeLocal areaShift workWeekend work
- ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service... ...and hierarchical escalations to Senior Coordinators and the Senior Incident Manager... ...data to route incidents; engage infra/app/cyber/vendor dependencies. Communications &...CyberContract workWork experience placementWork at officeShift work
$104.8k - $192.2k
Overview In today’s rapidly evolving IT landscape, organizations face increasingly complex cybersecurity risks and regulatory pressures. Identity—both human and non-human—is at the core of every enterprise. As a Digital Identity SME, you will help clients enhance user ...CyberSeniorWork experience placementSummer holidayFlexible hours- ...mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Senior Specialist, Systems Engineer Job Code: 38802 Job Location: Salt Lake City- UT Job Schedule...CyberSeniorLocal area
$160k - $185k
...self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient... .... About the Role: We are looking for an experienced Senior Engineer to join our Platform team — a strategic, hands-on technical...CyberSenior$82.8k - $175k
...opportunities for people where they live, learn and work. The Senior Software Engineering Manager accomplishes departmental and... ...staffing plans and budget processes. # Coordinate with Nelnet Cyber Security Group (CSG) to ensure that NBS is compliant with all Nelnet...CyberSeniorTemporary workLocal area$82.5k - $153k
...mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Senior Specialist, Program Scheduler Job Code: 39982 Job Location: Salt Lake City, UT; Melbourne, FL...CyberSeniorContract workFor contractorsFor subcontractorLocal areaFlexible hours$224k - $337k
...The Principal Cyber Security Architect/Engineer will be responsible for leading the design and implementation of cutting‑edge cybersecurity... ...technical excellence and solution innovation to leading incident response efforts and conducting digital analysis. Your work will...CyberTemporary workRemote workWorldwideFlexible hours- ...mind, our employees deliver end‑to‑end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Senior Specialist, Electronic Warfare Systems Engineer Job Code: 35694 Job Location: Salt Lake City, UT Job...CyberSeniorFor subcontractorLocal area
- ...Senior Enterprise Software Sales Anonyome Labs is creating a world in which people have exclusive control over their personal data. We're changing the identity, privacy and cyber safety paradigm—and resolving the greatest challenges consumers and enterprises face....CyberSeniorTemporary workWork at office
- ...MACU IT personnel to gather required understanding of process and risks for advisory engagements ~ Provide insights into IT and cyber risk exposures, control design, and governance effectiveness. ~ Recommend practical, risk-based solutions to improve IT controls...CyberSeniorWork at officeRemote workMonday to Friday3 days per week
$184.2k - $198k
...key driver of Rubrik's most critical industry partnerships. As a Senior Manager, Global Alliances, you will work cross-functionally—... ...Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud...CyberSeniorLocal areaRemote work- ...mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Sr. Specialist, Software Engineering Job Code: 35698 Job Location:...CyberSeniorLocal area
$91k - $321.5k
...As a Risk Management - Contract Specialist - Managed Services - Senior Manager, you will lead initiatives in enterprise risk management... ...application delivery maintenance application managed services, (3) cyber managed services, or (4) risk & regulatory managed services -...CyberSeniorFull timeContract workH1b$71.2k - $158.2k
...Oracle Health Government Services is seeking a skilled Federal Senior Engineer/Architect (Principal Consultant) to join our mission-driven... ...and/or DoD) engineering and deployment experience • Federal Cyber understanding/experience • Engineering experience with Oracle...CyberSeniorTemporary workFlexible hours- ...Government security clearance Nice to have: Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint... ...Develop and implement automations in response to security incidents Proactively collaborating, developing, and designing security orchestrations...CyberRemote workWork from home
- ...the organization to anticipate evolving cyber risks. This hybrid role is based in Salt... ...configuration and detection of security incidents. Support incident response activities: triage... ..., vendor reviews, and due diligence. Respond to security‑related tickets, alerts, and...CyberWork at office
- ...the organization to stay ahead of evolving cyber risks. This role is eligible for for our... ...network security operations and incident response activities. The analyst will also... ...vendor reviews, and due diligence requests* Respond to security-related tickets, alerts, and...CyberWork at office
- ...and maintenance windows to ensure service continuity. Provide incident detection, correlation, escalation, and resolution support in accordance... ...Qualifications: Experience in a Tech Control Facility (TCF) or Cyber Transport environment. Background in circuit actions and...CyberWork at officeNight shiftRotating shift
$300k
...Senior Technical Sales Engineer AI & Digital Transformation Services • Enterprise Sales • US-Based Company Innovecture - Global IT Consulting... ...Agile Transformation • IT Strategy & Enterprise Architecture • Cyber Security advisory • Customer Experience & Product Management ⚙...CyberSeniorFull timeContract workRemote workWorldwideFlexible hoursShift work$40k
...operations by monitoring security tools, performing initial incident triage, and assisting with containment, vulnerability... ..., and compliance activities. The role works under senior guidance to execute defined cyber actions, maintain incident documentation, support POA&M...CyberContract workRemote work- ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...all of our successes. Learn more. Position Summary As Senior Sales Enablement Specialist, your primary responsibility is to...CyberSeniorWork experience placementWork at officeRemote work
- ...., intrusion detection systems, firewalls, network traffic logs, and host system logs) to identify potential vulnerabilities, respond to cyber events that occur, and defend against events that might occur. Help develop mitigations to strengthen network defenses and...CyberFor contractors
$124.2k - $186.2k
...Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education... ...in data and AI security. The SOC is the first to respond to cyber security incidents, report on cyber threats, and recommend changes needed to...CyberLocal areaRemote work- ...South Carolina. Supported and led by BV Senior Cybersecurity Consultants, this individual... ...March 2027, includes travel to vendor FAT/Cyber FAT (CFAT) locations, and remains on-site... ...handover documentation where applicable. Incident Reporting & Response Support Maintain...CyberFull timePart timeWork experience placementCasual workWork at officeRemote workRelocationHome officeVisa sponsorshipFlexible hours
$76.4k - $138.6k
...deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our... ...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we...CyberSummer holidayLocal areaFlexible hours- ...technical and sales presentations to customer's technical staff and senior management. Serves as a trusted technology advisor to customers... ...Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud...CyberSeniorLocal areaImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Incident Responder. Be the first to apply!
- senior cloud service delivery manager Salt Lake City, UT
- senior business analyst contract Salt Lake City, UT
- senior marketing account manager Salt Lake City, UT
- senior customer service manager Salt Lake City, UT
- senior strategic account manager Salt Lake City, UT
- senior software engineer Salt Lake City, UT
- senior application security Salt Lake City, UT
- senior data manager Salt Lake City, UT
- senior database analyst Salt Lake City, UT
- senior cloud data engineer Salt Lake City, UT


