Tier Ii Cyber Incident Response Analyst

3 weeks ago


Austin, United States SAIC Full time

Job ID: 2405649-3588

**Location**:AUSTIN, TX, US

**Date Posted**:2024-04-18

**Category**:Cyber

**Subcategory**:Cybersecurity Ops

**Schedule**:Full-time

**Shift**:Night Job

**Travel**:No

**Minimum Clearance Required**:None

**Clearance Level Must Be Able to Obtain**:Public Trust

**Potential for Remote Work**:No

**Description**

**Overview**:
We are seeking a motivated, career and customer oriented Cyber Incident Response (CIR) Tier II Analyst interested in joining our Cyber Security Operations Center (CSOC) team in support of the Department of Veterans Affairs (VA). This is a Third Shift Position (11pm - 7am). (This is a 24/7/365 environment. Some weekends and holidays are possibly required per your schedule).

**This is an onsite position working in either Hines, IL, **Martinsburg, WV or Austin, TX**

**Responsibilities**:

- Perform real-time monitoring and triage of security alerts in Cybersecurity toolsets including SIEM, and EDR
- Make accurate determination of what alerts are false positives or require further investigation and prioritization
- Lead and actively participate in the investigation, analysis, and resolution of cybersecurity incidents. Analyze attack patterns, determine the root cause, and recommend appropriate remediation measures to prevent future occurrences
- Ensure accurate and detailed documentation of incident response activities, including analysis, actions taken, and lessons learned. Collaborate with knowledge management teams to maintain up-to-date incident response playbooks
- Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and incident-related updates to management and stakeholders
- Identify and action opportunities for tuning alerts to make the incident response team more efficient
- Monitor the performance of security analytics and automation processes regularly, identifying areas for improvement and taking proactive measures to enhance their efficacy
- Leverage Security Orchestration, Automation, and Response (SOAR) platforms to streamline and automate incident response processes, including enrichment, containment, and remediation actions
- Support the mentoring and training of more junior IR staff
- Stay informed about the latest cybersecurity threats, trends, and best practices. Actively participate in cybersecurity exercises, drills, and simulations to improve incident response capabilities

**Qualifications**

**Required Education and Experience**:

- Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Criminology, or similarly relevant field and five (5) years or more experience
- US Citizenship
- 3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC)
- A deep understanding of cybersecurity principles, incident response methodologies, and a proactive mindset to ensure our SOC operates effectively in a high-pressure environment.
- Strong experience with security technologies, including SIEM, IDS/IPS, EDR, and network monitoring tools
- Experience with enterprise ticketing systems like ServiceNow
- Excellent analytical and problem-solving skills.
- Ability to work independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with mínimal oversight.
- Ability to learn and function in multiple capacities and learn quickly.
- Strong verbal and written communication skills
- Requires one of the following certifications:

- EC-Council’s Certified Ethical Hacker
- GIAC Certified Incident Handler
- EC-Council’s Certified Incident Handler (E|CIH)
- GIAC Certified Incident Handler (GCIH)
- Incident Handling & Response Professional (IHRP)
- Certified Computer Security Incident Handler (CSIH)
- Certified Incident Handling Engineer (CIHE)

**Shift Schedule**

3rd

Sun-Thurs

2300-0730

3rd

Tue-Sat

2300-0730

Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.



  • Austin, United States SAIC Full time

    Description Overview: We are seeking a motivated, career and customer oriented Cyber Incident Response (CIR) Tier II Analyst interested in joining our Cyber Security Operations Center (CSOC) team in support of the Department of Veterans Affairs (VA). This is a Third Shift Position (11pm - 7am). (This is a 24/7/365 environment. Some weekends and holidays are...


  • Austin, United States CareerBuilder Full time

    Cybersecurity Incident Response Analyst - Tier 3 Maveris Maveris is an IT and cybersecurity company committed to helping organizations create secure digital solutions to accelerate their mission. We are Veteran-owned and proud to serve customers across the Federal Government and private sector. View company page Maveris is an IT and cybersecurity services...


  • Austin, United States ClearDATA Full time

    We are seeking a highly skilled and experienced Senior Cyber Threat Analyst (Tier 2) to join our dynamic MDR team. You will be the driving force behind deep incident investigations and effective threat response for healthcare applications within AWS, Azure, and GCP environments. You will leverage your advanced technical expertise and analytical skills to...


  • Austin, United States QData Full time

    Seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, Texas, United States QData Full time

    Seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, Texas, United States QData Full time

    IBM is seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response Team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, United States QData Full time

    IBM is seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response Team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role...


  • Austin, United States Stealth Monitoring Full time

    Stealth Monitoring is a rapidly growing security firm headquartered in Dallas, TX. As part of our national expansion, Stealth is hiring a Field Service Professional for the Austin market. The core responsibilities of the Tier II Field Operations Technician include: - Maintaining and Troubleshooting - Analog and IP based CCTV Systems - Access Control...


  • Austin, Texas, United States Maveris Full time

    Maveris is an IT and cybersecurity services company committed to helping organizations create secure digital solutions to accelerate their mission. We are Veteran-owned and proud to serve customers across the Federal Government and private sector. We have an opening for a full-time, permanent Cybersecurity Operations Shift Lead to join our talented, dynamic...


  • Austin, Texas, United States Maveris Full time

    Maveris is an IT and cybersecurity services company committed to helping organizations create secure digital solutions to accelerate their mission. We are Veteran-owned and proud to serve customers across the Federal Government and private sector. We have an opening for a full-time, permanent Cybersecurity Operations Center (CSOC) Shift Lead to join our...


  • Austin, United States Five Cubes, Inc. Full time

    Job Title: Network Security Analyst 1 Location: Austin, TX Duration: Long TermJob Description: Require the services of one Network Security Analyst meeting the general qualifications of a Network Security Analyst 1 Category Type, Security and the specifications outlined in this solicitation. This position requires the ability to perform moderately complex...


  • Austin, United States State of Texas Full time

    GENERAL DESCRIPTION: We are seeking a highly motivated high school student to join our Cyber Security team as an intern. The intern will work with our experienced Cyber Security professionals and gain hands-on experience in protecting the organization’s information systems and data from cyber-attacks. This is an unpaid internship designed to provide...


  • Austin, United States State of Texas Full time

    GENERAL DESCRIPTION: We are seeking a highly motivated postgraduate college student to join our Cyber Security team as an intern. The intern will work with our experienced Cyber Security professionals and gain hands-on experience in protecting the organization’s information systems and data from cyber-attacks. This is a unpaid internship designed to...

  • Senior SOC Analyst

    2 weeks ago


    Austin, United States N-able Technologies, Inc. Full time

    Job Description Why N-ableN-able is looking for a Senior SOC Analyst to join us on the journey of growth! Our vision is to enable the digital evolution of small and medium size businesses. We believe that by putting our people, partners, and products first that we will be able to continue the growth of our business. The N-able team is looking someone who...

  • Senior SOC Analyst

    1 week ago


    Austin, United States CareerBuilder Full time

    Job Description Why N-able N-able is looking for a Senior SOC Analyst to join us on the journey of growth! Our vision is to enable the digital evolution of small and medium size businesses. We believe that by putting our people, partners, and products first that we will be able to continue the growth of our business. The N-able team is looking someone who is...


  • Austin, Texas, United States Visa Full time

    Job Description Position Summary Make a Difference. Join Visa’s cutting-edge Risk Operations Center (ROC). The ROC is a critical priority of executive leadership and focuses on the fast identification and mitigation of high impact fraud attempts in the global payment ecosystem. This team operates 24/7 working 12-hour shifts. The schedule will be...

  • Data Analyst II

    2 weeks ago


    Austin, United States Texas Department of Aging & Disability Services Full time

    Job Description: Data Analyst II: Would you thrive in an environment where you learn and grow personally and professionally all while helping make a positive impact on people’s lives? Do you appreciate being around others like yourself who are dependable, trustworthy, hard workers who believe in the value of each other, teamwork, and inclusivity? HSCS...


  • Austin, United States TEXAS EDUCATION AGENCY Full time

    **Financial Analyst II** **(**00041631**)** **Organization**: TEXAS EDUCATION AGENCY **Primary Location**: Texas-Austin **Work Locations**: Texas Education Agency 1701 NORTH CONGRESS AVENUE Austin 78701 **Job**: Business and Financial Operations **Employee Status**: Regular **Schedule**: Full-time **Standard Hours Per Week**: 40.00 **Travel**: Yes, 5...


  • Austin, United States Diverse Lynx Full time

    Job Title: Cyber Security Analyst Location: US-TX-Austin Experience: 8+ Year Duration: 12+ Months Required Skill: Cisco certification or equivalent work experience. Minimum of 5 years working experience in network engineering Advanced understanding of Cisco routing and switching Expert level knowledge of routing protocols (BGP, OSPF,) ...


  • Austin, United States Texas Department of Aging & Disability Services Full time

    Job Description: Performs advanced (senior-level) cybersecurity analysis work. Provides guidance in strategic and tactical cybersecurity operations planning and implementation for the Health and Human Services Commission (HHSC) Information Security Office and the Enterprise Information Security Office. Oversees the IT cybersecurity operations, delivery,...