Cyber Incident Responder

Highmark Health
AR, Working at Home, Arkansas
$124.8K a year
Full-time

Description

JOB SUMMARY

This role will manage and investigate live security incidents. Cyber Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures.

Responders discover opportunities to improve the security posture of the organization and drive process improvements.

ESSENTIAL RESPONSIBILITIES

  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. (20%)
  • Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
  • Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system IDS logs) to identify possible threats to network security. (20%)
  • Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
  • Perform cyber defense trend analysis and reporting. (10%)
  • Perform initial, forensically sound collection of images and inspect to discern possible mitigation / remediation on enterprise systems. (5%)
  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (5%)
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. (5%)
  • Track and document cyber defense incidents from initial detection through final resolution. (5%)
  • Other duties as assigned or requested.

EXPERIENCE

Required

  • 3 years of Malware Analysis, Digital Forensics, Data / Network Analysis, Penetration testing, or Information Assurance
  • 3 years of Cyber Incident Handling

Preferred

None

SKILLS

  • Identifying, capturing, containing, and reporting malware
  • Preserving evidence integrity according to standard operating procedures or national standards
  • Securing network communications
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Protecting a network against malware (e.g., NIPS, anti-malware, restrict / prevent external devices, spam filters)
  • Performing damage assessments
  • Using security event correlation tools
  • Design incident response for cloud service models

EDUCATION

Required

Bachelors in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field.

Substitutions

6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework

Preferred

None

LICENSES or CERTIFICATIONS

Required

None

Preferred

  • Cyber Incident / Security Certifications
  • Information Technology Infrastructure Library (ITIL)
  • Two of the following certifications : CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Office- or Remote-based

Teaches / trains others

Occasionally

Pay Range Minimum : $67,500.00

$67,500.00

Pay Range Maximum : $124,800.00

$124,800.00

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, age, religion, sex, national origin, sexual orientation / gender identity or any other category protected by applicable federal, state or local law.

Highmark Health and its affiliates take affirmative action to employ and advance in employment individuals without regard to race, color, age, religion, sex, national origin, sexual orientation / gender identity, protected veteran status or disability.

EEO is The Law

Equal Opportunity Employer Minorities / Women / Protected Veterans / Disabled / Sexual Orientation / Gender Identity ()

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact number below.

For accommodation requests, please contact HR Services Online at

30+ days ago
Related jobs
Highmark Health
AR, Working at Home, Arkansas

Cyber Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures. Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defe...

Promoted
AKIMA
Camp, Arkansas

Associate degree in Engineering or related field (Electrical and/or Electronics Engineering, Electrical and/or Electronics Communications Engineering or Telecommunications Engineering). Three (3) or more years of proven work experience in the Telecommunication Engineering field, designing and implem...

Promoted
Lockheed Martin
Little Rock, Arkansas

Must be able to obtain a Final Secret Security Clearance. Security Clearance Statement:. This position requires a government security clearance, you must be a US Citizen for consideration. ...

Promoted
Valiant Integrated Services
Stuttgart, Arkansas

The Operations Support Analyst supports the AC/S for Operations (G3) and is the primary action officer facilitating the organization's key battle rhythm events and performing critical information management functions, and also performs a variety of other administrative and financial tasks. ...

Promoted
SafeHaven Security Group LLC
Columbus, Arkansas

SafeHaven Security Group, LLC is a leading security company who specializes in Executive Protection, Threat Assessment, Threat Management, and providing our clients with professional security officers who are trained to keep our clients' people and property safe and their brand out of the headlines....

Promoted
NorthWest Arkansas Community College
Bentonville, Arkansas

The Public Safety Security Officer works under the general supervision of the sergeant on duty and is responsible for providing and maintaining campus security of campus buildings, equipment, and grounds. Conducts regular inspections of campus buildings, and grounds for security and safety violation...

Promoted
NTT DATA Services
Little Rock, Arkansas

NTT DATA Services is a recognized leader in IT and business services, including cloud, data and applications, headquartered in Texas. As part of NTT DATA, a $30 billion trusted global innovator with a combined global reach of over 80 countries, we help clients transform through business and technolo...

Chubb
Benton, Arkansas

Acquiring data from primary or secondary insurance/reinsurance-related data sources, maintain databases and data pipelines. Proven working experience as a Data Analyst, Business Data Analyst, or similar role involvingparable programming/quantitative skillset. Developing and implementing data analyse...

DSI Security Services
West Memphis, Arkansas

From our biggest clients to our newest security officer, the values of DSI and our motto,. DSI is growing, again! We are hiring Security Officers in West Memphis, AR. Job Responsibilities include maintaining a safe and secure environment for customers and employees while providing general security d...

Federal Reserve System
Little Rock, Arkansas
Remote

The Federal Reserve System (FRS) National Incident Response Team (NIRT) has an immediate opening for an Intermediate SOC Analyst (Incident Response) position, reporting to a Senior Manager Information Security. This role will be a combination of SOC analyst (providing triage of potential security ev...