Senior Cyber Incident Responder
$86.4kHighmark Health
Company :
Highmark Health
Job Description :
JOB SUMMARY
This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.
ESSENTIAL RESPONSIBILITIES
Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
Track and document cyber defense incidents from initial detection through final resolution. (5%)
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
5 years of Cyber Incident Handling
Preferred
- None
SKILLS
Identifying, capturing, containing, and reporting malware
Preserving evidence integrity according to standard operating procedures or national standards
Securing network communications
Recognizing and categorizing types of vulnerabilities and associated attacks
Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
Performing damage assessments
Using security event correlation tools
Design incident response for cloud service models
EDUCATION
Required
- Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field?
Substitutions
- 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Cyber Incident/Security Certifications
Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.? In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.?
Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$86,400.00
Pay Range Maximum:
$138,600.00
Base pay is determined by a variety of factors including a candidate's qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J278529
- S2i2 is seeking a Lead Cyber Defense Incident Responder in Arlington, VA. The role requires hands-on threat hunting, incident response leadership, and direct engagement with government clients operating TS/SCI and SAP networks. The ideal candidate has extensive experience...CyberSenior
- S2i2 in Arlington, VA is seeking a Lead Cyber Defense Incident Responder (Advanced) to lead a small team of senior and mid‑level analysts. This on‑site role involves hands‑on threat detection, threat intelligence research, and directing incident defense for highly secure...CyberSenior
- GDIT is seeking an Incident Responder to provide hands-on cyber incident response across critical infrastructure and government agencies. The role supports on-site and remote deployments, surging during high-tempo events, with responsibilities spanning containment, eradication...CyberSeniorRemote work
$107.9k - $195.05k
Incident ResponderLocation: Suitland, MDClearance: Active TS/SCILeidos is seeking an Incident Responder to join a mission focused cybersecurity team supporting the Office of Naval Intelligence... ...maritime intelligence networks against cyber threats. You will respond to and...CyberFull timeWork at office$170k - $180k
Job DescriptionEverforth ECS is seeking a Senior Cyber Incident Analyst to work in our Arlington, VA office. Job Description: ECS is seeking talented... ...support to JCDC as they continue to plan, share, and respond to cyber threats in real time to support the greater cyber community...CyberSeniorWork at office3 days per week- Tetrad Digital Integrity LLC is seeking a Senior Incident Response Analyst to join our Security Operations Center. This hybrid position will involve monitoring, detecting, and responding to cybersecurity threats affecting a large-scale environment, especially within mission...CyberSenior
- NTT DATA seeks a Cyber Defense & Incident Responder to monitor, analyze, and respond to cybersecurity incidents in Arlington, VA. The role emphasizes incident triage, investigation, containment, and recovery to minimize impact and restore operations. Responsibilities include...Cyber
$131.3k - $237.35k
...scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department... ...responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The...CyberSeniorFull timeFlexible hours- ...intersect. Our single focus has been delivering cyber solutions to effectively manage risk &... ...cyber for 25 years! TDI is seeking a Senior Incident Response Analyst to join our team in... ...help monitor, detect, investigate, and respond to cybersecurity threats affecting a large...CyberSeniorPermanent employment
$155k - $200k
...be valued and empowered, then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position is based in... ...cybersecurity and data privacy incidentsTaking lead responsibility in responding to clients and carriers, and overseeing breach response...CyberSeniorFull timeWork at officeRemote workFlexible hours- ...team! Zantech is looking for a talented Senior Incident Response Coordinator to contribute to the... ...of our upcoming Program Management and Cyber Support Services project for an Onsite role... ...private sector partners to prepare for, respond to, and recover from significant cyber...CyberSeniorContract workLocal area
$102.5k - $188.9k
...Summary Our Deloitte Cyber team understands the unique challenges... ...can identify, analyze, and respond to exploitation activity... ...activity, investigating incidents, assessing vulnerabilities, and... ...From entry-level employees to senior leaders, we believe there’s always...CyberWork at office$104k - $166k
Peraton is seeking a Cyber Incident Response Analyst in Arlington, VA. This role involves responding to cybersecurity incidents across industrial control systems and critical infrastructure. The ideal candidate will leverage their expertise to provide actionable recommendations...Cyber$100k - $120k
Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity...CyberSenior$131.3k - $237.35k
...scale and repeatability. Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program. The Department... ...responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The...CyberSeniorFlexible hours- General Dynamics Information Technology in Arlington, VA seeks an experienced Incident Responder to perform hands-on cyber incident response across critical infrastructure and government partners. You will handle high‑value intrusions, drive containment and eradication...CyberRemote work
- bcmcllc is looking for a Solutions Architect to support U.S. Government mission by providing incident response related to cyber-attacks. This position demands extensive experience in systems engineering, along with capabilities in cybersecurity and technical analytics....CyberSenior
$100k - $125k
A cybersecurity solutions provider is seeking an Incident Response Expert III in Arlington, VA. This role involves serving as a subject... ...0 - $125,000 is offered, alongside an opportunity to work on critical national security missions. #J-18808-Ljbffr Argo Cyber SystemsCyberSenior- Wilson Elser is seeking a Senior Cyber Incident Response Attorney to join our national law firm remotely. This role focuses on defending complex cybersecurity and data privacy matters with significant responsibilities. The ideal candidate has 8+ years of legal experience...CyberSeniorRemote job
- Wilson Elser is seeking a Senior Cyber Incident Response Attorney for a fully remote role. This position allows nationwide applicants and reports to a regional office if located elsewhere. The attorney will defend complex cybersecurity matters, oversee breach response,...CyberSeniorRemote jobWork at office
- Gunnison Consulting Group in the United States is seeking a senior cybersecurity incident response leader to coordinate and drive enterprise IR activities. Responsibilities span incident triage, containment, eradication, and post-incident remediation across on-premises,...CyberSenior
- A cybersecurity firm in Virginia is seeking an Incident Response Expert to support critical missions for government agencies. The role requires physical presence in the National Capital Region for initial training, followed by mostly remote work. Candidates must possess...CyberSeniorRemote work
- BCMC is seeking a Cyber Incident Response Expert to support the DHS Hunt and Incident Response Team (HIRT). The role involves advanced host... ...briefs and technical reports, guide response activities with senior teams, and help maintain process documentation across branches...CyberSenior
- A leading cybersecurity firm is seeking a Network Forensics Analyst to support critical incident response missions. Candidates must have 8+ years of experience in network investigations, preferably with an active TS/SCI clearance. The role involves coordinating teams,...CyberSenior
- kozmetickesluzby.vecnakraska.sk - Jobboard is seeking a Cybersecurity Vulnerability Analyst (Incident Manager III) in Arlington, Virginia. This role focuses on providing cybersecurity vulnerability analysis support to U.S. Government customers to mitigate vulnerabilities...CyberSenior
- Charles River Associates in Washington, DC seeks a Senior Associate for the Forensic Services practice to lead incident response, recovery engagements, and client communications from intake to final report. You will direct cross-functional teams, manage budgets, and ensure...CyberSenior
- A leading cybersecurity firm is seeking a Cloud Forensics Analyst to support onsite incident response to cyber-attacks. The role involves acquiring and analyzing computer artifacts, conducting forensic investigations, and developing mitigation strategies. Candidates should...CyberSenior
- A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding...CyberSenior
- A leading cyber security firm in Arlington, VA, is seeking a Cyber Eviction Analyst to support incident response for government agencies experiencing cyber attacks. The ideal candidate will have a degree in a related field or extensive experience. Responsibilities include...CyberSenior
- Everforth ECS seeks a Senior Cyber Incident Analyst to join our Arlington team, coordinating incident response and threat intelligence for government partners. You will design playbooks, guide mitigation strategies, and deliver clear reports to executives and stakeholders...CyberSeniorLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Incident Responder. Be the first to apply!
- srs distribution Washington DC
- senior operations coordinator Washington DC
- senior associate architect Washington DC
- senior dynamics crm developer Washington DC
- senior application security Washington DC
- senior account director Washington DC
- sr hr business partner Washington DC
- senior supervisor Washington DC
- senior plumbing designer Washington DC
- senior sales representative Washington DC

