Cyber Incident Responder

Highmark Health
CA, Working at Home, California
$124.8K a year
Full-time

Description

JOB SUMMARY

This role will manage and investigate live security incidents. Cyber Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures.

Responders discover opportunities to improve the security posture of the organization and drive process improvements.

ESSENTIAL RESPONSIBILITIES

  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. (20%)
  • Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
  • Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system IDS logs) to identify possible threats to network security. (20%)
  • Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
  • Perform cyber defense trend analysis and reporting. (10%)
  • Perform initial, forensically sound collection of images and inspect to discern possible mitigation / remediation on enterprise systems. (5%)
  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (5%)
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. (5%)
  • Track and document cyber defense incidents from initial detection through final resolution. (5%)
  • Other duties as assigned or requested.

EXPERIENCE

Required

  • 3 years of Malware Analysis, Digital Forensics, Data / Network Analysis, Penetration testing, or Information Assurance
  • 3 years of Cyber Incident Handling

Preferred

None

SKILLS

  • Identifying, capturing, containing, and reporting malware
  • Preserving evidence integrity according to standard operating procedures or national standards
  • Securing network communications
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Protecting a network against malware (e.g., NIPS, anti-malware, restrict / prevent external devices, spam filters)
  • Performing damage assessments
  • Using security event correlation tools
  • Design incident response for cloud service models

EDUCATION

Required

Bachelors in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field.

Substitutions

6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework

Preferred

None

LICENSES or CERTIFICATIONS

Required

None

Preferred

  • Cyber Incident / Security Certifications
  • Information Technology Infrastructure Library (ITIL)
  • Two of the following certifications : CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Office- or Remote-based

Teaches / trains others

Occasionally

Pay Range Minimum : $67,500.00

$67,500.00

Pay Range Maximum : $124,800.00

$124,800.00

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, age, religion, sex, national origin, sexual orientation / gender identity or any other category protected by applicable federal, state or local law.

Highmark Health and its affiliates take affirmative action to employ and advance in employment individuals without regard to race, color, age, religion, sex, national origin, sexual orientation / gender identity, protected veteran status or disability.

EEO is The Law

Equal Opportunity Employer Minorities / Women / Protected Veterans / Disabled / Sexual Orientation / Gender Identity ()

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact number below.

For accommodation requests, please contact HR Services Online at

1 day ago
Related jobs
Promoted
Los Angeles Unified School District
CA, United States

Join LAUSD as a Cyber Security Engineer III and be part of our mission to provide innovative education solutions. Certifications such as Cisco Certified Network Professional (CCNP) Security or equivalent, Cisco Certified CyberOps Professional, Global Information Assurance Certification (GIAC), Certi...

Highmark Health
CA, Working at Home, California

Cyber Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures. Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defe...

Promoted
V2X
San Diego, California

Works with shipboard technicians, ship and staff officers, In-Service Engineering Activity (ISEA), Regional Maintenance Centers (RMC), installation engineers, Fleet Readiness Directorate staff, and others as required to ensure required end-to-end connectivity to satisfy fleet C4ISR requirements. Wor...

Promoted
Northrop Grumman
San Diego, California

Northrop Grumman Aeronautics Systems is seeking a highly qualified, mission-oriented *Staff Electronics Engineer (Network Engineer)* to support our Avionics Integration organization. Maintain smooth operation of network and network management equipment during network expansion. Basic Qualifications:...

Promoted
Lawrence Livermore National Laboratory
Livermore, California

Are you interested in joining some of the brightest talent in the world to strengthen the United States’ security? Come join Lawrence Livermore National Laboratory (LLNL) where our employees apply their expertise to create solutions for BIG ideas that make our world a better place. Project Controls ...

Promoted
Ivy Exec
San Francisco, California

Chief Technology Officer, VP of IT, Director of IT, VP of IT Operations, Director of IT Operations, Chief Information Officer, IT Manager, IT Consultant, Chief Data Officer, Chief Security Officer, Technology Manager, IT Operations Manager, Information Systems Manager. Legal, Information Technologie...

Promoted
InsideHigherEd
Walnut Park, California

Collaborating closely with various stakeholders, the Senior Information Security Compliance Analyst will assess security risks, devise robust security strategies, monitor incidents and vulnerabilities, and oversee all governance-related activities. The Senior Information Security Compliance Analyst ...

Promoted
DCS Corporation
Ridgecrest, California

Bachelor's degree in Computer Science, Systems Engineering, Electrical Engineering, Computer Engineering, Cybersecurity Engineering, or another related field. DCS is looking for individuals with air platform or weapons experience who are interested in learning and applying cyber engineering skills t...

Promoted
University of California - Los Angeles (UCLA)
Los Angeles, California

The Information Security Analyst will support the security of UCLA's systems and data by supporting and maintaining enterprise cyber security tools and services that help to safeguard the organization's networks, systems, and data. ...

Promoted
Unified Protective Services
Santa Barbara, California

UNARMED SECURITY OFFICERS NEEDED!!!!!. Security Special - Have a valid Guard Card- Minimum of 1 years of Security Guard experience-Must have RBS Certification. ...