Senior Cyber Incident Responder
$86.4kHighmark Health
Company :
Highmark Health
Job Description :
JOB SUMMARY
This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.
ESSENTIAL RESPONSIBILITIES
Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
Track and document cyber defense incidents from initial detection through final resolution. (5%)
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
5 years of Cyber Incident Handling
Preferred
- None
SKILLS
Identifying, capturing, containing, and reporting malware
Preserving evidence integrity according to standard operating procedures or national standards
Securing network communications
Recognizing and categorizing types of vulnerabilities and associated attacks
Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
Performing damage assessments
Using security event correlation tools
Design incident response for cloud service models
EDUCATION
Required
- Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field?
Substitutions
- 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Cyber Incident/Security Certifications
Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.? In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.?
Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$86,400.00
Pay Range Maximum:
$138,600.00
Base pay is determined by a variety of factors including a candidate's qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J278529
$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident response efforts... ...to prevent, detect, and rapidly respond to sophisticated adversarial tactics... ...management platforms integrated with SOC and cyber defense functions. Certifications...CyberSeniorContract workWork experience placementWork at office- ...Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign... ..., Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects... ...skills, with proven ability to brief senior leadership and translate technical risk into...CyberSeniorContract workWork experience placementWork at officeShift work
$91.1k - $170.4k
...Information Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information... ...opportunity The Cyber & Investigative Services (CIS) Junior Incident Coordinator will exercise strong incident management...CyberSummer holidayLocal areaRemote workFlexible hours$106.8k - $194.8k
...Firewall (WAF) solutions to protect client applications from cyber threats. You will work within a team of cybersecurity... ...actively monitor application traffic, analyze security events, and respond to incidents to mitigate risks effectively. Additionally, you will...CyberSeniorSummer holidayFlexible hours$60k - $100k
...is looking for a skilled cybersecurity professional in Jefferson City to provide advanced support for cybersecurity operations and incident response. The ideal candidate should have at least 4 years of experience, a bachelor’s degree in a related field, and the ability...Cyber$130k - $135k
...Hands‑on experience performing responsibilities aligned to incident response, security operations, and security initiatives. Background... ...in SOC operations, detection engineering, threat hunting, or cyber threat intelligence. Must be comfortable supporting a...CyberSeniorFull timeRemote workFlexible hoursShift workWeekend workAfternoon shift$55.7k - $82.1k
...The Cybersecurity Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and... ...genuine incidents, and escalates significant events to senior analysts or incident responders as appropriate. The analyst supports basic containment...Contract workWork at officeShift work- The Incident Response Coordinator supports the end‑to‑end response to IT incidents and service... ...and hierarchical escalations to Senior Coordinators and the Senior Incident Manager... ...data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs...CyberContract workWork experience placementWork at officeShift work
$40k
...operations by monitoring security tools, performing initial incident triage, and assisting with containment, vulnerability... ..., and compliance activities. The role works under senior guidance to execute defined cyber actions, maintain incident documentation, support POA&M...CyberContract workRemote work$125k - $144.06k
...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...all of our successes. Learn more. Position Summary The Senior Project Manager will be responsible for leading and driving the...CyberSeniorWork experience placementWork at officeRemote workShift workNight shift- ...and procedures are properly functioning. Participate in the incident reporting program and conduct reporting. Provide customer support... ...of experience may be utilized Credentials that meet DoD Cyber Workforce requirements for specialty codes 441 (Network...CyberContract workWork at officeRemote work
$60k
...enterprise security and compliance requirements. Execute directed cyber actions including network access restrictions, firewall and... ...security posture and compliance. Maintain documentation, incident logs, and runbooks to support auditability, traceability, and knowledge...CyberContract workRemote work$124.2k - $186.2k
...Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education... ...in data and AI security. The SOC is the first to respond to cyber security incidents, report on cyber threats, and recommend changes needed to...CyberLocal areaRemote work$76.4k - $138.6k
...deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our... ...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we...CyberSummer holidayLocal areaFlexible hours$60k - $93.9k
...scripting tools under the guidance of more senior staff. Key Responsibilities... ...maintain compliance with federal and enterprise cyber standards. Configure and manage backup... ...infrastructure issues, escalating complex incidents while working collaboratively toward timely...CyberContract workWork at officeRemote work$94.1k - $144.8k
...The Database Administrator, Senior leads the design, implementation, and lifecycle management of enterprise database platforms that... ...change plans, and set standards for documentation, monitoring, and incident response. Required Qualifications Bachelor’s degree (BA/BS) in...SeniorContract workWork experience placementWork at office$60k
...Perform escalation‑level response actions, including coordinating and executing directed cyber activities. Lead and support containment and restoration efforts during security incidents, ensuring timely resolution and stabilization of affected systems. Ensure all response...CyberContract workShift work$94.1k - $150k
...Position Overview The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing... ...tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive...CyberContract workWork at office$126.2k - $264.1k
...infrastructure, and healthcare transformation. About the Role As an Senior Principal Product Manager, you will own product outcomes for... ..., and customer-facing messaging. Help triage escalations, incidents, and outages when product leadership is needed, ensuring follow...SeniorTemporary workFlexible hours- ...specialty and add-on services. Identifies high-risk cases and responds as indicated in accordance with established protocols. Deescalates... ...Authority (ECA) renewal as well as annual training such as Cyber Awareness and PII to ensure access to the CMS system is maintained...CyberContract workWork experience placement
$105k - $145k
...Overview GovCIO is currently hiring for Senior Splunk Engineer - Infrastructure... ...components to ensure optimal resource usage. Respond promptly to health alerts, DMC warnings,... ...functioning as expected. Document incidents, RCA findings, and preventive actions for...SeniorFull timeCurrently hiringWork at officeRemote workFlexible hours- ...Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous monitoring, investigation,... ..., endpoint telemetry, and threat intelligence to determine incident scope, impact, and root cause. p]:pt-0 [& p]:mb-2 [& p]:my-0...CyberContract workWork at office
$108.31k - $160k
...States Suitability/Public Trust Fully remote Information Technology Overview GovCIO is currently hiring for a remote Cyber Threat Analyst to support the US Courts. This position will be within United States and will be fully remote. Responsibilities...CyberFull timeCurrently hiringRemote workFlexible hours$5,215 - $5,631.66 per month
...designing secure user provisioning workflows and orchestrating incident response strategies. This isn't a role where you are left on an... ...’s degree in Computer Science, Management Information Systems, Cyber Security or related field is preferred and 10 years of progressive...CyberFor contractorsWork at officeShift work$144.9k - $265.8k
Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world...CyberSummer holidayFlexible hours$98.9k
...practices to engineering teams. What we're looking for Have obtained a Bachelor's degree in Computer Science, Information Science, Cyber Security, Computer or Electrical Engineering (or similar field), or equivalent experience, and 5+ years of experience in security....CyberWork at officeRemote work$100k
...the position, and receipt of authorization to proceed. The Senior Systems Administrator supports IT operations by designing, automating... ...with enterprise ITSM tools (e.g., ServiceNow) for change and incident tracking. Experience with image development, system...SeniorContract workRemote work- ...technology services to the Missouri courts. We are recruiting to fill a Senior Database Administrator position responsible for installation of... ...highest level support engineer with knowledge and ability to respond to on-call situations, develops and maintains a backup and...SeniorWork at office
- ...technology services to the Missouri courts. We are recruiting to fill a Senior System Administrator position to installs, maintains, and... ...in ensuring 24/7 availability of services and infrastructure Responds to after-hours emergencies; lead the mitigation and resolution...SeniorWork at office
$68.47k - $75.15k
...— Integrity, Advocacy, Commitment, Inclusion, and Excellence — drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Incident Responder. Be the first to apply!
- senior manager tax Jefferson City, MO
- senior devops Jefferson City, MO
- senior international accountant Jefferson City, MO
- senior vmware engineer Jefferson City, MO
- sr technical product manager Jefferson City, MO
- senior resident engineer Jefferson City, MO
- senior performance engineer Jefferson City, MO
- senior cloud solutions architect Jefferson City, MO
- senior director diversity & inclusion Jefferson City, MO
- senior cloud engineer Jefferson City, MO


