Senior Cyber Incident Responder
$86.4kHighmark Health
Company :
Highmark Health
Job Description :
JOB SUMMARY
This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.
ESSENTIAL RESPONSIBILITIES
Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
Track and document cyber defense incidents from initial detection through final resolution. (5%)
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
5 years of Cyber Incident Handling
Preferred
- None
SKILLS
Identifying, capturing, containing, and reporting malware
Preserving evidence integrity according to standard operating procedures or national standards
Securing network communications
Recognizing and categorizing types of vulnerabilities and associated attacks
Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
Performing damage assessments
Using security event correlation tools
Design incident response for cloud service models
EDUCATION
Required
- Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field?
Substitutions
- 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Cyber Incident/Security Certifications
Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.? In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.?
Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$86,400.00
Pay Range Maximum:
$138,600.00
Base pay is determined by a variety of factors including a candidate's qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J278529
- ...Fox Rothschild is seeking a Senior Analyst in Cybersecurity Operations & Response to enhance the Firm’s cybersecurity defenses. This role demands expertise in security operations and incident response, requiring at least five years of relevant experience. The successful...CyberSeniorWork at office
$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident response... ...ability to prevent, detect, and rapidly respond to sophisticated adversarial tactics... ...platforms integrated with SOC and cyber defense functions. Certifications...CyberSeniorContract workWork experience placementWork at office- ...Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign... ..., Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects... ...skills, with proven ability to brief senior leadership and translate technical risk into...CyberSeniorContract workWork experience placementWork at officeShift work
- ...VISA SPONSORSHIP Job Description Continue to develop companies incident response program Utilizes and adheres to defined workflow and processes... ...impact, scope, and recovery from active and potential cyber incidents Leverages Forensics tools, techniques, and capacities...CyberSeniorWork at officeLocal areaRemote workRelocationVisa sponsorship
$91.1k - $170.4k
...Information Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information... ...opportunity The Cyber & Investigative Services (CIS) Junior Incident Coordinator will exercise strong incident management...CyberSummer holidayLocal areaRemote workFlexible hours$106.8k - $194.8k
...Firewall (WAF) solutions to protect client applications from cyber threats. You will work within a team of cybersecurity... ...actively monitor application traffic, analyze security events, and respond to incidents to mitigate risks effectively. Additionally, you will...CyberSeniorSummer holidayFlexible hours- ...security technologies to detect, prevent, and respond to security threats in real time. •... ...and public AI and ML/DL systems against cyber threats, adversarial attacks, and data breaches... ...activity for anomalies and security incidents. • Develop and enforce policies to...CyberSeniorImmediate startRemote workFlexible hours
$102.17k
...country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection... ...to detect emerging threats. Lead response efforts for complex incidents (e.g., APTs, data breaches), including forensic analysis and...CyberSeniorH1b- ...Trinnex is seeking a Senior Cyber Security Analyst to protect critical software systems that support water utilities and infrastructure. This role focuses on securing the software development lifecycle while collaborating with engineering teams to enhance overall security...CyberSenior
$243.87k - $286.9k
...protect the next billion users of crypto. The Senior Manager, Adversary Management is... ...oversight, and governance of all aspects of cyber threat intelligence at Coinbase – to include... ...in one or more of the following areas: incident response, risk management, counterintelligence...CyberSeniorLocal area$130k - $135k
...Hands‑on experience performing responsibilities aligned to incident response, security operations, and security initiatives. Background... ...in SOC operations, detection engineering, threat hunting, or cyber threat intelligence. Must be comfortable supporting a...CyberSeniorFull timeRemote workFlexible hoursShift workWeekend workAfternoon shift- ...Modernization sector is seeking talented and cleared Cyber Security Analysts to join our dynamic... ...to identify and prioritize potential incidents. Conducting in‑depth network traffic... ...analysis, and machine learning to detect and respond to advanced threats. Comprehensive...CyberWork experience placementRelocationFlexible hoursShift work
$104.8k - $192.2k
Overview In today’s rapidly evolving IT landscape, organizations face increasingly complex cybersecurity risks and regulatory pressures. Identity—both human and non-human—is at the core of every enterprise. As a Digital Identity SME, you will help clients enhance user ...CyberSeniorWork experience placementSummer holidayFlexible hours$93.54k - $103.32k
...critical systems against today's most advanced cyber threats? We are seeking a Cybersecurity... ...- Tier 2 to monitor alerts, investigate incidents, and ensure swift, effective responses... ...Affairs (VA) digital assets and responds to, investigates, and mitigates potential...CyberPermanent employmentTemporary workLocal areaShift work$63 - $68 per hour
...Secret Clearance required DISS CE/CV Enrollment required Senior Software Developer We are seeking a Senior Software Developer... ...deploy, and sustain secure software systems across enterprise and cyber domains, with opportunities to support search/data discovery ,...CyberSeniorFull timeTemporary workRemote work$150k - $175k
Applied Cyber Security Researcher position with Aon. This role involves researching emerging... ...outcomes. You will collaborate with incident response and security operations teams to... ...engineer tactical security solutions and respond effectively in time‑sensitive or high‑pressure...CyberFull timePart timeLocal areaImmediate start- ...development, direction, and implementation of enterprise network cyber defense capabilities to prevent sophisticated cyber threats and... ...(IPS), Host-Based Security System (HBSS), Security Event and Incident Management (SIEM), DNS security practices, advanced log analysis...Cyber
$40 per hour
...will contribute to improving AI security models with your hands-on experience in cybersecurity roles such as penetration testing and incident response. A bachelor's degree is preferred, and certifications are a plus. This position offers flexibility in project selection...Hourly payRemote work$40 per hour
...assessing threats and providing technical feedback, ideal for those with 2+ years in cybersecurity roles like penetration testing or incident response. This remote position offers flexible project selection and hourly pay starting at $40. Qualifications include a bachelor...CyberHourly payRemote workFlexible hours- ...Operations, infantry, aviation, intelligence, hospitals, prisons, cyber, and community ministries. The Chaplain Corps also offers select... ...capabilities to the Army, giving them added scale and scope to respond to challenges at home and abroad. As a chaplain in the Army...CyberPermanent employmentFull timePart timeLocal areaOverseas
$40k
...operations by monitoring security tools, performing initial incident triage, and assisting with containment, vulnerability... ..., and compliance activities. The role works under senior guidance to execute defined cyber actions, maintain incident documentation, support POA&M...CyberContract workRemote work$112.07k - $168.11k
...mitigate technology-related risks across the organization Direct incident response, crisis management, and recovery activities in... ...02, CIS Controls) Proven ability to lead incident response and cyber crisis management efforts Technical and Systems Expertise Experience...Cyber$124.2k - $186.2k
...Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education... ...in data and AI security. The SOC is the first to respond to cyber security incidents, report on cyber threats, and recommend changes needed to...CyberLocal areaRemote work- ...compliance requirements. - Execute directed cyber actions including network access... ...compliance. - Maintain documentation, incident logs, and runbooks to support auditability... ...market and internal value analysis including seniority and merit systems, as well as internal...CyberMinimum wageContract workTemporary workWork experience placementRemote work
- ...include providing expertise for cybersecurity tools, managing teams, and ensuring the implementation of defensive technologies against cyber threats. Ideal candidates are skilled in layered defenses and possess deep knowledge of cybersecurity standards and practices. #J-18...Cyber
$94.1k - $144.8k
...The Database Administrator, Senior leads the design, implementation, and lifecycle management of enterprise database platforms that... ...change plans, and set standards for documentation, monitoring, and incident response. Required Qualifications Bachelor’s degree (BA/BS) in...SeniorContract workWork experience placementWork at office$40 per hour
A cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This remote role offers flexibility in project selection, requiring 2+ years of hands-on experience in cybersecurity, some coding...CyberHourly payRemote work$103.24k - $133.2k
The Federal Bureau of Investigation (FBI) is offering a unique position for a special agent. This role is designed for individuals with a STEM background who are eager to transition into a high-impact career protecting our nation from threats like cyberattacks and terrorism...CyberWork at office- ...protect the organization s systems and information and enable achievement of the organization’s objectives. Development of a risk-based cyber security program which meets regulatory requirements and aligns with industry leading information security practices Perform threat...CyberWork experience placement
- ...solutions, databases) across multiple sites. Identify, analyze, responds, triages, and troubleshoot/resolve system alerts indicating... ...availability monitoring and reporting/escalation services. ~ Perform incident capture, verification, diagnostics and escalation. ~ High...SeniorWork experience placementLocal areaRemote workShift workNight shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cyber Incident Responder. Be the first to apply!
- senior business analyst Springfield, IL
- senior manager tax Springfield, IL
- senior devops Springfield, IL
- senior international accountant Springfield, IL
- senior vmware engineer Springfield, IL
- sr technical product manager Springfield, IL
- senior resident engineer Springfield, IL
- senior performance engineer Springfield, IL
- senior fixed asset accountant Springfield, IL
- senior storage engineer Springfield, IL



