Incident Responder, Journeyman
Tasks
- Analyze EDR telemetry
- Analyze SIEM events
- Analyze application logs
- Analyze network traffic telemetry
- Apply temporary security mitigations
- Block malicious network traffic
- Collect forensic artifacts
- Confirm threat eradication
- Coordinate incident response with SOC analysts
- Coordinate incident response with cybersecurity engineers
- Disable compromised accounts
- Document incident evidence
- Execute incident containment actions
- Identify indicators of compromise
- Isolate compromised hosts
- Maintain incident case records
- Maintain incident timelines
- Perform incident root cause analysis
- Preserve digital evidence
- Produce incident summaries
- Recommend monitoring and detection improvements
- Refine incident response playbooks
- Retest systems after remediation
- Support after-action reviews
- Track incident remediation progress
- Triage security alerts
- Validate security detections
Perks/Benefits
- N/A
Skills/Tech-stack
ATO | Case management | Cause analysis | Chain of Custody | Detection engineering | Disk forensics | EDR | Evidence collection | Forensic evidence collection | Incident Response | Log Analysis | MITRE ATT&CK | Memory Forensics | Network Forensics | Packet Analysis | Powershell | Python | RMF | Root Cause Analysis | Root cause | SIEM | SOAR | Security operations | Threat hunting
Education
Bachelor of Arts | Bachelor of Engineering | Bachelor of Science
Related jobs
-
Security Operations Center Supervisor USD 84K-84KAll-source intelligence | Database Query | Incident Response | Intelligence Analysis | Operational Situational AwarenessFlexible benefits package | Supportive work environment | Total rewards package | Workplace diversityEntry-level Full TimeNew York, NY, United States9h ago
-
Cyber Defense Incident Responder - Junior USD 75K-89KAccess Control | Access Control Lists | Detection Systems | Event Correlation | Incident ResponseEntry-level Full TimeWASHINGTON, DC, United States10h ago
-
Vulnerability Researcher I/II (Cyber264) USD 134K-204KARM | ASLR | Access Control | Anti-debugging | Application internals401k match | Flexible work schedules | Health insurance | Paid parental leave | Paid time offSenior-level Full TimeMelbourne, FL13h ago
-
GRC Analyst, Federal Programs USD 115K-141K800-171 | Audit Support | CMMC | CUI | Continuous Monitoring401k | Comprehensive health, dental, & vision insurance | Discretionary PTO plan | Financial advisory services | Flexible working hoursMid-level Full TimeUnited States17h ago
-
Incident Response Manager, Contract USD 151K-170KAlert Tuning | Correlation rules | Detection and Response | EDR | Endpoint Detection and ResponseMid-level Full TimeHybrid, United States R19h ago
-
AWS | Azure | Cloud Security | Communication Protocols | Cybersecurity401k program | Car discounts | Cruise discounts | Dental benefits | Employee assistance programSenior-level Full TimeFort Worth, TX, US19h ago
-
Security Manager, Global Operations USD 80K-90KBusiness Continuity | Case management | Cybersecurity | Escalation management | Incident ManagementSenior-level Full TimeBoca Raton, FL, US1d ago
-
Agile Framework | Cyber Threat | Cyber Threat Intelligence | Cybersecurity frameworks | DatabricksOn site days per week | Telework optionSenior-level Full TimeVirginia Client Office (VA88), United States1d ago
-
20204 - Security Engineer Il USD 70K-99KAccess Control | Active Directory | Activity monitoring | Antivirus | Application FirewallAnnual merit increase | Dental coverage | Education assistance | Medical coverage | Paid time offSenior-level Full TimeWest Point, GA1d ago
-
Security Engineering Manager USD 134K-201KCloud Security | Continuous Improvement | Cybersecurity roadmap | Enterprise Architecture | Network SecurityDental insurance | Guidance | Health insurance | Health savings account | MentorshipMid-level Full TimeUSA-MN Mounds View South, United States1d ago
-
Security Operations Center (SOC) Team Member USD 40K-46KAccess Control | Access Control Event Review | Alarm Monitoring | Alarm Panel Management | Alarm panelNone Full TimeNonstore MCM Columbus IN, United States1d ago
-
Host Forensics Analyst USD 134K-179KAll-source research | Attack analysis | Autopsy | Chain of Custody | CybersecurityClearance support | Onsite incident response travel | Remote work optionsSenior-level Full TimeArlington, VA1d ago
-
Sr. Network Based Systems Analyst USD 105K-155KDMZ | DNS | Evidence handling | HTTP | HTTPSRemote work opportunitiesSenior-level Full TimeArlington, VA1d ago
-
Network Forensics Cybersecurity Analyst USD 110K-130KATTACK TTP | Capture analysis | Cyber Threat | Cyber threat analysis | DMZGovernment contractor support | Onsite supportMid-level Full TimeArlington, VA1d ago
-
Computer Network Defense Analyst (CNDA) III USD 100K-158KAll Source Data Correlation | All-source data | Cyber Defense | Cyber Defense Tools | Cyber defense trend analysisSenior-level Full TimeArlington, VA1d ago
-
Senior Security Engineer USD 167K-219KAPI Security | AWS Security | AWS Security Hub | Active Directory | BashHybrid work | Sponsorship available | Work from home flexibilitySenior-level Full TimeNew Haven, CT1d ago
-
Software Engineer, Security & Privacy USD 170K-230KAPI Security | AWS CDK | Amazon Web Services | Authentication | AuthorizationCompany holidays | Flexible PTO | Hybrid work | Medical/Dental/Vision insuranceSenior-level Full TimeNew York, NY1d ago
-
Software Engineer, Security & Privacy USD 170K-230KAWS | AWS CDK | Authentication | Authorization | COPPACompany holidays | Dental insurance | Equity | Flexible PTO | Medical insuranceSenior-level Full TimeSan Francisco Bay Area, CA1d ago
-
Bash | Besu | Blockchain Security | CometBFT | Contract Security401k matching | Accidental death and dismemberment insurance | Dental insurance | FSA | Flexible work environmentSenior-level Full TimeUS / Remote R1d ago
-
AI Agents | Application Security | Authentication | Cryptography | FIDO2Senior-level Full TimeNew York City1d ago
-
Security Engineer USD 100K-130KActive Directory | Automation | Certificate management | Cyber Threat | Cyber Threat DetectionMid-level Full TimeSpringfield, VA1d ago
-
Security Control Assessor USD 131K-175K800-53 | Authorization and Approval | Certification and accreditation | Configuration Control | Configuration ManagementMid-level Full TimeArlington, VA, US1d ago
-
Mid-level Full TimeMcLean, Virginia, United States1d ago
-
AWS | Access Control | Encryption | GraphQL | Incident ResponseHybrid work | Visa sponsorshipSenior-level Full TimeSouth Bay Area, California, United States1d ago
-
Staff Product Security Engineer USD 250K-285KAdversary simulation | Agent Frameworks | CI/CD | Container Images | Container Scanning401k retirement plan | Cell phone stipend | Commuter benefits | Dental insurance | Health insuranceSenior-level Full TimeSan Francisco, CA - US1d ago