Senior Incident Response Engineer

1 week ago


Springfield, United States Baylor Scott & White Health Full time

JOB SUMMARY

The Sr. Incident Response Engineer will take on the lead cyber security incident responder role on the Baylor Scott & White Health cyber defense team. This role will be responsible for leading the incident response capabilities of the organization by developing and improving runbook procedures to mitigate risk and enhance incident response processes.

The Pay range for this position is $56.02/hour ($116,521 annualized) for those with entry-level qualifications up to $100.75/hour ($209,560 annualized) for those highly experienced. The specific rate will depend upon the successful candidate's specific qualifications and prior experience

KEY RESPONSIBLITIES

  • Conduct security investigations and lead security incident response in cross-functional environment and drive incident resolution

  • Actively call and lead security incident bridges and coordinate internal incident response efforts between operations team, and managed security services.

  • Develop Incident Response initiatives that improve our capabilities to effectively respond and remediate security incidents

  • Expand SIEM program, ensuring log coverage, alert development, and process improvement.

  • Partner with cyber threat intelligence, the vulnerability management team, and technology remediation groups to deliver shared outcomes that measurably improve our efficacy to detect, respond to, and remediate vulnerabilities

  • Support broader security operation initiatives both within the cyber defense team, and within engineering and operation departments across the organization

  • Be a security liaison and enabler to Managed Service counter parts.

  • Create and improve security playbook for a variety of incident and compromise types for all levels of engineers and stakeholders.

KEY SUCCESS FACTORS

  • More advanced leadership, problem solving, team building, and judgment-making skills.

  • Skilled project manager with ability to articulate business needs.

  • Excellent written, verbal, and social communication skills.

  • Proficient computer software and database skills.

  • Ability to focus and prioritize strategic targets and work in a growing and challenging environment.

  • Drives long term planning and strategic portfolio vision creation for improvements and strategies, with oversight from Director and VP as needed

  • Knowledge of interdependencies of healthcare landscape and its influence on portfolio

  • Establishes external relationships with other thought leaders in healthcare IT

  • Maintains a broad knowledge of state-of-the-art technology, equipment, and systems.

BENEFITS

Our competitive benefits package includes the following

  • Immediate eligibility for health and welfare benefits

  • 401(k) savings plan with dollar-for-dollar match up to 5%

  • Tuition Reimbursement

  • PTO accrual beginning Day 1

Note: Benefits may vary based upon position type and/or level

BASIC QUALIFICATIONS:

  • BS degree in computer science, computer engineering, software engineering, cybersecurity or related technical degree; or 5 years equivalent technology experience

  • 5+ years' experience in information security in an enterprise environment

  • 3+ years' experience and understanding of incident response processes in both datacenter and cloud based environments, forensic techniques, executing and administration of crisis bridges, and preparation and delivery of incident reports for executives

  • Knowledge of malware trends and behaviors and the ability to work with other teams to detect and respond to these threats

  • Experience with Intrusion Detection and Prevention Systems (IDS/IPS), Firewall and Network Log analysis, Security Information and Event Management (SEIM) tools, threat intelligence services, and malware analysis

  • Experience analyzing network and host-based security events

  • Experience with attacker tactics, techniques, and procedures

  • Experience with Windows and Linux Operating Systems

  • Knowledge of common software, operating systems vulnerabilities, and Unix/Linux

  • Understanding of cybersecurity organizational practices, operations risk management processes, architectural requirements, and vulnerability risk

  • Experience with controls or frameworks such as NIST 800-53, NIST CSF, CIS, MITRE ATT&CK

  • Knowledge of existing, emerging, and long-range issues related to cyber operations strategy, policy, and organization

  • Experience creating workflows and remediation plans for vulnerabilities identified

  • Incident Response experience in a healthcare environment

  • Experience using ServiceNow for SIR, CMDB, and/or ITSM functions

  • Contribution or development of policies and standards

  • Experience participating in or leading security table top exercises

PREFERRED CERTIFICATIONS

  • Certified Information Systems Security Professional (CISSP) certification

  • Certified Information Security Manager (CISM) certification

  • GIAC Certified Incident Handler (GCIH) certification

  • FOR508: Advanced Incident Response, Threat Hunting, and Digital Forensics

  • FOR500: Windows Forensic Analysis

MINIMUM QUALIFICATIONS

  • EDUCATION - Bachelor's or 4 years of work experience above the minimum qualification

  • EXPERIENCE - 7 Years of Experience

As a health care system committed to improving the health of those we serve, we are asking our employees to model the same behaviours that we promote to our patients. As of January 1, 2012, Baylor Scott & White Health no longer hires individuals who use nicotine products. We are an equal opportunity employer committed to ensuring a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.



  • Springfield, Illinois, United States Highmark Health Full time

    Job SummaryThis role involves managing and investigating live security incidents. Cyber Security Incident Responders work independently or collaboratively, acting as subject matter experts who aim to enhance security processes and procedures, identifying opportunities to boost the organization's security posture and driving process improvements.Key...


  • Springfield, Illinois, United States NavitsPartners Full time

    Job OverviewPosition: Cybersecurity Incident Response SpecialistKey Responsibilities: Oversee and react to security notifications, evaluate and respond to threat intelligence, and handle incidents within client environments. Utilize platforms such as Azure ATP and Office 365 ATP for effective incident management. Deliver operational support and compile...


  • Springfield, Virginia, United States ManTech Full time

    Secure Our Nation, Ignite Your FutureManTech is seeking a highly skilled and experienced Cyber Security Analyst, Sr. Principal to join our team. As a Cyber Security Analyst, you will be responsible for directly managing security incidents from inception to final after-action reporting, ensuring our organization's business objectives are met.Key...


  • Springfield, United States Marriott Full time

    Additional Information Second or Third Shift Job Number 24159438 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY As part of the Priority Incident Response...


  • Springfield, Illinois, United States Highmark Health Full time

    Job SummaryThis role involves managing and investigating live security incidents. Cyber Security Incident Responders work independently or collaboratively, acting as subject matter experts who aim to enhance security processes and procedures, identifying opportunities to boost the organization's security posture and driving process improvements.Key...


  • Springfield, Illinois, United States General Dynamics Full time

    Job DescriptionAt General Dynamics, we are seeking a highly skilled Senior Systems Engineer to join our team. As a key member of our operations team, you will be responsible for ensuring the safety and security of our nation's most sensitive systems.Key Responsibilities:Support existing regional staff to ensure applications and services are functioning as...


  • Springfield, Illinois, United States Highmark Health Full time

    Job SummaryThis role will oversee and investigate live security incidents. Cyber Security Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures. Responders discover opportunities to improve the security posture of the organization and...


  • Springfield, Illinois, United States SAIC Full time

    About the RoleWe are seeking a highly skilled Senior Windows Engineer to join our team at SAIC. As a key member of our IT support team, you will be responsible for designing, configuring, and implementing Windows SOEs, as well as integrating and operating Microsoft Intune for managing and maintaining DoS endpoints.Key ResponsibilitiesWindows 10 and 11...


  • Springfield, Illinois, United States SAIC Full time

    Job DescriptionSAIC is seeking a highly skilled Senior Windows Systems Engineer to join our team. As a Senior Windows Systems Engineer, you will be responsible for designing, configuring, and implementing Windows SOEs, as well as integrating and operating Microsoft Intune for managing and maintaining DoS endpoints.Key ResponsibilitiesMaintain and support the...


  • Springfield, Illinois, United States MITRE Full time

    About MITREMITRE is a not-for-profit organization that works for the public interest, with a mission to tackle the nation's toughest challenges. We're a unique organization that combines research and development with a commitment to the long-term well-being of our employees.Job SummaryWe're seeking a Senior Cybersecurity Engineer with Security Clearance to...


  • Springfield, Illinois, United States SAIC Full time

    Job SummaryWe are seeking a highly skilled Senior Windows Engineer to join our team at SAIC. As a key member of our IT department, you will be responsible for configuring and maintaining Windows baselines, integrating and operating Microsoft Intune for endpoint management, and providing tier-2 level support for endpoints and virtual desktop services.Key...


  • Springfield, Illinois, United States Cribl Full time

    About the Role:Cribl Inc is on the lookout for a Senior Cloud Reliability Engineer to enhance our mission of unlocking the potential of all observability data. This position offers the opportunity to work remotely, allowing you to perform at your best from anywhere.Why Join Us?At Cribl, we pride ourselves on being a serious company that values a...


  • Springfield, Virginia, United States ALTA IT Services Full time

    Job Title: MS In-Tune EngineerJob Summary: ALTA IT Services is seeking a highly skilled Senior Microsoft Intune Engineer to join our team. The ideal candidate will have extensive hands-on experience with Microsoft Intune, Active Directory, and maintaining Windows 10 and 11 baselines for workstations and servers.Responsibilities:Maintain and support the...


  • Springfield, Illinois, United States Krasan Consulting Services Full time

    Job Title: Senior Site Reliability EngineerKrasan Consulting Services is a boutique management consulting and technology solutions integrator based in Chicago. As a certified BEP WBE with the State of Illinois and a certified WBE, MBE, and DBE recognized by the City of Chicago, Krasan provides complex technology solutions and services for clients in the...


  • Springfield, Illinois, United States ECS Full time

    Job Title: Senior Systems EngineerECS is seeking a highly skilled Senior Systems Engineer to join our team in Fairfax, VA. As a key member of our Enterprise Systems Engineering Team, you will be responsible for designing, developing, installing, documenting, managing, and maintaining DoD Mission Partner Enclaves' physical and virtual network...


  • Springfield, United States Krasan Consulting Services Full time

    Company DescriptionKrasan Consulting Services is a Chicago boutique management consulting and technology solutions integrator. As a certified BEP WBE with the State of Illinois and a certified WBE, MBE, and DBE recognized by the City of Chicago, Krasan provides complex technology solutions and services for clients in the Public and Commercial sectors. With...


  • Springfield, United States Krasan Consulting Services Full time

    Company DescriptionKrasan Consulting Services is a Chicago boutique management consulting and technology solutions integrator. As a certified BEP WBE with the State of Illinois and a certified WBE, MBE, and DBE recognized by the City of Chicago, Krasan provides complex technology solutions and services for clients in the Public and Commercial sectors. With...


  • Springfield, Illinois, United States CEdge Inc Full time

    Job Title: Senior Systems EngineerCEdge Inc is seeking a highly skilled Senior Systems Engineer to join our team. As a Senior Systems Engineer, you will be responsible for designing, developing, and implementing complex systems and solutions for our clients.Job Summary:The Senior Systems Engineer will work closely with our team to identify and analyze...


  • Springfield, Illinois, United States CEdge Inc Full time

    Job Title: Senior Systems EngineerCEdge Inc is seeking a highly skilled Senior Systems Engineer to join our team. As a Senior Systems Engineer, you will be responsible for designing, developing, and implementing complex systems and solutions for our clients.Job Summary:The Senior Systems Engineer will work closely with our team to identify and analyze...


  • Springfield, Illinois, United States VTG Defense Full time

    Job Title: Senior Systems EngineerWe are seeking a highly skilled Senior Systems Engineer to join our team at VTG Defense.Job Summary:The Senior Systems Engineer will be responsible for executing engineering tasks, taking a multi-discipline approach to full lifecycle engineering. This includes engineering and assessing current and future technology, ensuring...