Cybersecurity Incident Response Engineer, Mid
$66.9k - $82.1kASM Research, An Accenture Federal Services Company
Position Overview
The Cybersecurity Incident Response Engineer, Mid supports the detection, containment, and recovery of cybersecurity incidents across enterprise networks and mission-critical systems in a highly regulated government environment. This role contributes to developing and executing response strategies, including automation, scripting, and playbooks, to enhance the speed and consistency of security operations.
The engineer performs detailed technical analysis, coordinates with cross-functional teams to isolate affected systems, and helps implement proactive cybersecurity countermeasures. This includes contributing to advanced defensive initiatives, improving detection logic, and strengthening SOC capabilities to protect the organization against evolving and increasingly complex adversary tactics. The position also supports forensic investigations, documentation, regulatory alignment, and continuous improvement of incident response processes.
Key Responsibilities
Conduct technical analysis of security events and incidents using SIEM, IDS/IPS, EDR, and related tools to identify attack vectors, affected assets, and potential data exposure.
Develop and refine incident response runbooks and automation workflows that standardize triage, containment, and eradication steps for common attack scenarios.
Coordinate system and network isolation strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.
Support proactive defensive engineering initiatives, including tuning detections, building automated countermeasures, and contributing to programs designed to defend against sophisticated adversaries.
Perform host and network forensics, including log review, basic memory and disk analysis, and artifact collection to support root cause analysis and potential legal or compliance needs.
Map observed adversary behavior to structured frameworks such as MITRE ATT&CK to understand attacker tactics, techniques, and procedures and to recommend targeted detection improvements.
Ensure incident handling practices are aligned with data security best practices and applicable government security policies, supporting auditability and regulatory compliance.
Produce clear incident documentation, timelines, and lessons learned that feed into security awareness, control hardening, and process improvements.
Required Qualifications
Assumption: Typically 4-7 years of hands-on experience in cybersecurity operations and incident response across enterprise environments.
Bachelor's degree in IT, Cybersecurity, Computer Science, or a related field, or equivalent work experience.
Demonstrated experience with incident response tools and platforms such as SIEM, IDS/IPS, and EDR in enterprise environments.
Strong understanding of incident response principles, containment and eradication techniques, and data security best practices.
Proven analytical and problem-solving ability with strong written and verbal communication skills.
Preferred Qualifications
Demonstrated leadership of ITIL-based major incident processes in large enterprises, including executive and customer-facing communications.
Strong experience with enterprise incident management tools and service management platforms integrated with SOC and cyber defense functions.
Certifications such as ITIL Foundation plus advanced cybersecurity or incident response credentials evidencing both service management and deep technical capability.
At least one cybersecurity-related professional certification - or the ability to obtain one within one year of hire - such as Security+, CySA+, CEH, GSEC, GCIA, GCIH, or an equivalent industry-recognized credential.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$66,900 - $82,100
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
$55.7k - $82.1k
...The Cybersecurity Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and triage potential cybersecurity threats targeting mission-critical systems and data. The role performs initial investigations, distinguishes false positives...SuggestedContract workWork at officeShift work$80.2k - $111.3k
...the investigation of complex computer and information security incidents to determine extent of compromise to national security... ...security incident, damage and threat assessment programs. Responsible for the formal Security Test and Evaluation (ST&E) required by...SuggestedContract workWork at office- Principal Senior Systems Engineer - HPE Networking (Mid-Telco Accounts)This role has been designated as... ...customer-facing technical leadership role responsible for driving technical strategy,... ...or make any payments and report the incident to your local authorities...SuggestedFull timeWork experience placementWork at officeLocal areaImmediate startRemote workWork from home
$100k - $125k
...fast-growing firm looking for a Senior Cybersecurity Engineer to join their dynamic team.Aprio’s... ...standard for how it’s done, and pulls the Mid and Associate engineers up with them.... ...Engineer and the Manager.Key Responsibilities:Domain ownership: Own the operational...SuggestedPermanent employmentFull timeWork at officeLocal areaRemote workFlexible hours$198k - $273k
...right place.Who We AreIn order to be the cybersecurity partner of choice, we must trailblaze... ...CareerAs a Cortex Transformation Engineer, you are a critical part of the Global... ...native platform workflows, alert triage, incident response, Agentic-AI and automated playbooks using...SuggestedFull timeRemote workVisa sponsorshipWork visa- Systems Engineering Manager - HPE Networking (Mid-Telco Accounts)This role has been designated as ‘Remote/Teleworker... ...is a strategic leadership role responsible for building, developing, and... ...make any payments and report the incident to your local authorities immediately...Full timeWork experience placementLocal areaImmediate startRemote workWork from home
- ...Senior Sales Engineer - Network Security Our client is a financially... ...strong, publicly traded cybersecurity leader that helps enterprise... ...of: ~ Network Security (incident response, NDR, EDR, XDR, SOAR, Cyber... ...travel up to 30%+ in the upper mid-west region, at times...
$78.4k - $129.4k
...Research, An Accenture Federal Services Company, is hiring a Mid-level Root Cause Engineer (RCA) in Atlanta, Georgia. This role focuses on performing structured root cause analysis for high-impact incidents and collaborating with various teams to ensure service reliability...$82.8k - $96k
...at the center of Georgia's cybersecurity hub and experiential learning... ...each USG community member is responsible for demonstrating and... ...Summary The Cybersecurity Engineer position is responsible for... ...security event triage, and incident response roles, coordinate with...Full timeWork experience placementWork at officeShift work$111k - $138.7k
...Role Summary We are seeking an Incident Commander to lead our response capabilities through a code-first... ...Incident Commander during critical Cybersecurity incidents, simultaneously building... ...minimize business downtime. Engineering Resilience: Pivot from reactive "...Full timeContract workTemporary workPart timeLocal areaShift work$120k - $130k
...Added - 4 hours ago 39068 | Sr Systems Engineer- (AWS-Cloud Watch- Mid-level) Technology Atlanta, GA | Direct Hire Job Description... ...practice focused on intelligent observability, incident correlation, automated response, operational resilience, AI-assisted operations,...Full time- ...other inquiries won't receive a response).Regular or Temporary:... ...analysis of certificate-related incidents, with a focus on eliminating... ...automation.Collaborate with engineering and business teams to align... ...engineering or related cybersecurity roles.Deep specialized knowledge...Full timePart timeShift workDay shift
- ...Job-Specific Essential Duties and Responsibilities: - Experience supporting documentation... ...Requirements: - Bachelor's degree in Cybersecurity, Information Technology, Computer... ...compliance. - Maintain documentation, incident logs, and runbooks to support auditability...Minimum wageContract workTemporary workWork experience placementRemote work
$105.4k - $207.8k
...Zscaler Network Security Engineer / Senior Consultant, Strategy... ...opportunities businesses face in cybersecurity. Join our team to deliver... ...Security team, you will be responsible for…Designing, deploying, and... ...syslog for threat detection and incident response workflowsExperience...Work experience placementLocal area- ...only; other inquiries won't receive a response).Regular or Temporary:RegularLanguage... ...automation solutions that improve cybersecurity Incident Management process efficiency. Work with... ...of 3 years of experience in security engineering or related cybersecurity roles.3....Full timePart timeShift workDay shift
$82.6k - $162.8k
...opportunities businesses face in cybersecurity. Join our team to deliver... ...6.Work you'll doAs a Security Engineer on the Deloitte Cyber team, you will be responsible for:Supporting the design and... ...resolve access-related issues and incidents efficiently.Integrate Identity...Local areaVisa sponsorship- OverviewJob PurposeThe Cybersecurity Architecture team is responsible for establishing security design standards, conducting architecture reviews, and... ...are appropriately designed before implementation by engineering teams. The Cybersecurity Architecture Engineer supports...
- ...its people and their ability to drive real progress.Position SummaryWe are seeking a highly skilled Vulnerability Management & Response Engineer to help operate and continuously improve our enterprise Vulnerability Management (VM) program. This role is responsible for...Full timeWorldwide
- Overview Mid-Level Civil/Structural Engineer (E2/E3). Location Options: Naperville, IL / Atlanta, GA / Ridgeland, MS. Kinectrics is known for the... ...support, and as-built documentation. Major Duties / Responsibilities Basic design and analysis of concrete, steel structures...Work at officeWork from homeWorldwideFlexible hours
- WSP is currently initiating a search for a Mid-Senior Level Civil Engineer for our Power Delivery Substation Civil/Structural Group to perform... ...engineering proposals, and project schedules. Ensures that responsibilities are delivered and adhered to with a level of quality...For subcontractorWork at officeLocal areaRemote workRelocation packageFlexible hours
- ...ServiceNow CMDB & IT Asset Management Engineer is responsible for the design, implementation, governance... ...— providing the foundation for Incident, Problem, Change, and Service Management... ...IntegrationsConfigure and maintain ServiceNow Discovery, MID Servers, and Service Graph Connectors...Full timeWork at officeLocal areaRemote workFlexible hours
$134.5k - $265.1k
...12/31/2026.Work you'll doAs a Senior Engineering Management Specialist on the Cyber Defense... ...Management (CTEM) team, you will be responsible for…Leading day-to-day forward... ...Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information...Local area$119.8k - $234.7k
...we need you as a Security Operations Engineering Manager.As a Security Operations Engineering... ...modern cloud and on premises cybersecurity controls to defend Microsoft datacenter... ...engineering, threat hunting, incident response, automation, and regional coordination...Ongoing contractWork at officeLocal areaWork from homeWorldwideFlexible hours- ...Senior Systems Reliability Engineer (SRE)At T-Mobile, we invest in YOU! Our Total Rewards... ...to improve resilience, monitoring, incident response, and operational maturity. Working... ...of cloud engineering, automation, AI, cybersecurity, and operational excellence, this is your...Full timeTemporary workPart timeWork experience placementFlexible hours
- ...software platforms using Site Reliability Engineering and AI-native engineering practices.... ...production reliability, monitoring, incident response, CI/CD, deployment stability,... ...communicate clearly, and collaborate across cybersecurity and engineering teams. Analytical...Full timeTemporary workPart timeWork experience placementLocal areaFlexible hours
$120k - $202.5k
...seeking a Sr.Platform Operations Engineer to help shape the next generation of cybersecurity data, analytics, and AI-powered... ...focus on production support, incident handling, user support, operational... ...environment. What You Will Be Responsible For Lead the support,...Full timeTemporary workFlexible hours$90.4k - $168.2k
...Content Development, Detection Engineering & Automation to join our... ...Services organization.Responsibilities:Execute the end-to-end engineering... ...Intelligence, SOC, and Incident Response teams to map detections... ...enrichment, and other cybersecurity functions to drive down Mean...H1bLocal area$69.3k - $158k
...tools and infrastructure management team, responsible for architecting, administering, and optimizing enterprise cybersecurity platforms. Focus on strengthening security... ...infrastructure. Work closely with cross‑functional engineering, operations, and security teams to drive...Full timeContract workPart timeWork at officeLocal areaRemote work$134.5k - $265.1k
...challenges and opportunities businesses face in cybersecurity. Deloitte’s Cyber team helps our... ...will do:As a Cyber Forward Deployed Engineer (FDE) Manager, you will lead delivery of... ...Workspace integration, GPT-4o, Assistants API, Responses API, OpenAI Agents Experience guiding...Local areaVisa sponsorship- ...job title and job location in your email message. Cybersecurity Engineer : - This role is responsible for securing enterprise infrastructure, responding... ...- Monitor and respond to security alerts, incidents, phishing attempts, malware, and suspicious activity...Permanent employmentFull timeTemporary workLocal areaImmediate startRemote workVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Incident Response Engineer, Mid. Be the first to apply!
- cyber security architect Atlanta, GA
- cybersecurity software engineer Atlanta, GA
- cyber security technician Atlanta, GA
- work from home cyber security Atlanta, GA
- cybersecurity administrator Atlanta, GA
- remote cyber security Atlanta, GA
- cybersecurity grc Atlanta, GA
- cyber security lead Atlanta, GA
- cyber security Atlanta, GA
- no experience cyber security Atlanta, GA


