Tier II Cyber Incident Response Analyst

3 weeks ago


Austin, United States SAIC Full time

Description Overview:

We are seeking a motivated, career and customer oriented Cyber Incident Response (CIR) Tier II Analyst interested in joining our Cyber Security Operations Center (CSOC) team in support of the Department of Veterans Affairs (VA). This is a Third Shift Position (11pm – 7am). (This is a 24/7/365 environment. Some weekends and holidays are possibly required per your schedule).

This is an onsite position working in either

Martinsburg, WV or Austin, TX

Responsibilities:

·

Perform real-time monitoring and triage of security alerts in Cybersecurity toolsets including SIEM, and EDR

·

Make accurate determination of what alerts are false positives or require further investigation and prioritization

·

Lead and actively participate in the investigation, analysis, and resolution of cybersecurity incidents. Analyze attack patterns, determine the root cause, and recommend appropriate remediation measures to prevent future occurrences

·

Ensure accurate and detailed documentation of incident response activities, including analysis, actions taken, and lessons learned. Collaborate with knowledge management teams to maintain up-to-date incident response playbooks

·

Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and incident-related updates to management and stakeholders

·

Identify and action opportunities for tuning alerts to make the incident response team more efficient

·

Monitor the performance of security analytics and automation processes regularly, identifying areas for improvement and taking proactive measures to enhance their efficacy

·

Leverage Security Orchestration, Automation, and Response (SOAR) platforms to streamline and automate incident response processes, including enrichment, containment, and remediation actions

·

Support the mentoring and training of more junior IR staff

·

Stay informed about the latest cybersecurity threats, trends, and best practices. Actively participate in cybersecurity exercises, drills, and simulations to improve incident response capabilities

Qualifications Required Education and Experience:

Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Criminology, or similarly relevant field

·

3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC)

·

A deep understanding of cybersecurity principles, incident response methodologies, and a proactive mindset to ensure our SOC operates effectively in a high-pressure environment.

·

Strong experience with security technologies, including SIEM, IDS/IPS, EDR, and network monitoring tools

·

Experience with enterprise ticketing systems like ServiceNow

·

Excellent analytical and problem-solving skills.

·

Ability to work independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with minimal oversight.

·

Ability to learn and function in multiple capacities and learn quickly.

·

Strong verbal and written communication skills

Requires one of the following certifications:

EC-Council’s Certified Ethical Hacker

GIAC Certified Incident Handler

EC-Council’s Certified

Incident Handler (E|CIH)

GIAC Certified Incident Handler (GCIH)

Incident Handling & Response Professional (IHRP)

Certified Computer Security Incident Handler (CSIH)

Certified Incident Handling Engineer (CIHE)

Candidates must be eligible to obtain a Public Trust based on the Department of Veteran Affairs regulations.

Shift Schedule

3 rd

Sun-Thurs

2300-0730

3 rd

Tue-Sat

2300-0730

Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site. #J-18808-Ljbffr


  • SOC Analyst II

    1 week ago


    Austin, United States Apex Systems Full time

    SOC Analyst II - Remote EST - $45-55/hr - W2 Only*Candidate must be able to work on client's W2 without sponsorship, vendor or employer*As technology continues to advance so does the threat landscape. Attackers are now using more sophisticated tactics to evade security controls. As a result, our team must also continue to advance its capabilities in threat...


  • Austin, Texas, United States QData Full time

    HiHope you are doing good...We have an urgent requirement below please go through Job description and send your updated profile and expected rate ASAP.Please reach me at .comJob Title Cyber Security Forensic Analyst (EnCE CFCE CCE DFCP GCIA GCIH)Location Austin TxJob Description IBM is seeking a Cyber Security Forensic Analyst professional to work on the...


  • Austin, United States QData Full time

    Seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, Texas, United States QData Full time

    IBM is seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response Team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, Texas, United States QData Full time

    Seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role will be...


  • Austin, United States QData Full time

    HiHope you are doing good…We have an urgent requirement below please go through Job description and send your updated profile and expected rate ASAP.Please reach me at victorsmith@qdatainc.comJob Title Cyber Security Forensic Analyst (EnCE CFCE CCE DFCP GCIA GCIH)Location Austin TxJob Description IBM is seeking a Cyber Security Forensic Analyst...


  • Austin, United States Meta Full time

    **Incident Response Team Analyst, NORAM Responsibilities**: - Bring operational excellence to team that evaluates threat, risk and user privacy in world centered around time critical emergency escalations - Review and assess high volumes of inbound emergency escalations and make dynamic, fast paced decisions based on analysis of a variety of complex factors...


  • Austin, Texas, United States Facebook Full time

    Meta is seeking a motivated, highly-organized, detail-oriented candidate to join our Law Enforcement Incident Response Team. The right candidate must have a strong work ethic, excellent judgment, and exceptional partnering skills.Incident Response Team Analyst, NORAM Responsibilities: Bring operational excellence to team that evaluates threat, risk and user...


  • Austin, United States Facebook Full time

    Meta is seeking a motivated, highly-organized, detail-oriented candidate to join our Law Enforcement Incident Response Team. The right candidate must have a strong work ethic, excellent judgment, and exceptional partnering skills.Incident Response Team Analyst, NORAM Responsibilities: Bring operational excellence to team that evaluates threat, risk and user...


  • Austin, United States HP Full time

    Threat Detection and Response Analyst Description - As the world around us becomes more connected and more digital, there are increased opportunities for fraud and disruption due to cybersecurity attacks. The need for companies, products, and services to be secure is more important than ever in this constantly changing landscape. Are you passionate about...


  • Austin, United States QData Full time

    IBM is seeking a Cyber Security Forensic Analyst professional to work on the Cyber Security Incident Response Team (CSIRT) This position requires a strong technical security professional who will be responsible for conducting highly technical and confidential investigations. (e.g. data loss advanced persistent threats malware analysis etc) The role...


  • Austin, United States Palo Alto Networks Inc. Full time

    Company Description Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done,...


  • Austin, United States Maveris Full time

    Job DescriptionJob DescriptionMaveris is an IT and cybersecurity services company committed to helping organizations create secure digital solutions to accelerate their mission. We are Veteran-owned and proud to serve customers across the Federal Government and private sector. We have an opening for a full-time, permanent Cybersecurity Operations Center...


  • Austin, United States Stealth Monitoring, Inc. Full time

    Stealth Monitoring is a rapidly growing security firm headquartered in Dallas, TX. As part of our national expansion, Stealth is hiring a Field Service Professional for the Austin market. The core responsibilities of the Tier II Field Operations Technician include:· Maintaining and Troubleshootingo Analog and IP based CCTV Systemso Access Control Systemso...


  • Austin, United States Stealth Monitoring, Inc. Full time

    Stealth Monitoring is a rapidly growing security firm headquartered in Dallas, TX. As part of our national expansion, Stealth is hiring a Field Service Professional for the Austin market. The core responsibilities of the Tier II Field Operations Technician include:· Maintaining and Troubleshootingo Analog and IP based CCTV Systemso Access Control Systemso...

  • Incident Management

    2 weeks ago


    Austin, United States Cleantech Ventures Inc Full time

    Title : Systems Analyst 3 (Incident Consultant (HHSC) Location : Austin, TX, 78741 Duration : 12+ Months contract job Level Description We are seeking actively seeking a skilled System Analyst to join our team. In this role, you will p...


  • Austin, Texas, United States HCA Healthcare Full time

    Description IntroductionDo you have the career opportunities as an EHR Support Analyst II you want with your current employer? We have an exciting opportunity for you to join HCA Healthcare which is part of the nations leading provider of healthcare services, HCA Healthcare.BenefitsHCA Healthcare, offers a total rewards package that supports the health,...


  • Austin, United States Rapid7 Full time

    Associate Customer Advisor IIAs an Associate Customer Advisor II, you will work hand-in-hand with the Customer Advisor team to help deliver service to our customers, all while gaining valuable experience in the field of Information Security in general and Managed Detection and Response (MDR), in particular. You will have the front row seat to observe, and...


  • Austin, United States TikTok Full time

    Responsibilities TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. TikTok has global offices including Los Angeles, New York, London, Paris, Berlin, Dubai, Singapore, Jakarta, Seoul and Tokyo. **Why Join Us**: Creation is the core of TikTok's purpose. Our platform is built to help imaginations...

  • System Analyst

    2 weeks ago


    Austin, United States Vector Consulting, Inc Full time

    Our government client is seeking an experienced Systems Analyst on a remote 12+ months renewable contract opportunity in Austin, TX.Role: Systems AnalystJob Description / Minimum Requirements:We are actively seeking a skilled System Analyst to join our team. In this role, you will play a crucial part in maintaining operational efficiency within our growing...