Remotery

Cybersecurity Incident Response Triage Analyst

Posted 2 days ago

This is a fully remote position, open to applicants in Virginia.

📋 Description

• Join the CIRT team within the CISO organization, reporting to the analysis and triage team lead.

• Monitor, assess, investigate, qualify, scope, and triage alerts and notifications from SIEM, security sensors, ticketing systems, walk-ins, and phone calls.

• Proactively monitor and respond to cybersecurity incidents related to policy violation alerts.

• Assess the nature and scope of incidents while distinguishing between true and false positives.

• Collaborate with the team lead and other Cybersecurity Incident Response Teams to resolve incidents.

• Thoroughly document incidents and response actions.

• Stay informed about cybersecurity threats and trends.

• Assist in the development and enhancement of incident response strategies and procedures.

• Work together with operations, legal, human resources, and management to investigate security concerns and interview subjects involved in investigations.


⛳️ Requirements

• US Citizenship is mandatory.

• 1–2 years of experience in information security, or a relevant combination of education and work experience.

• At least 1 year of experience in event and log analysis.

• Proficient with security tools, including Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, and data loss prevention tools.

• Familiarity with Security Information and Event Management (SIEM) solutions.

• Knowledge of network and host-based security applications and tools.

• Understanding of network and host assessment/scanning tools and intrusion detection systems.

• Familiarity with TCP/IP, common application layer protocols, and packet analysis.

• Knowledge of static and dynamic malware analysis concepts.

• Experience with indicators of attack and compromise.

• Familiarity with Windows/Linux architecture and endpoint analysis.

• Proficient with Excel, grep, sed, awk, and regex.

• Candidates applying for employment in the US must possess work authorization that does not require current or future visa sponsorship.

• Strong written and verbal communication skills, attention to detail, and interpersonal abilities.


🏝️ Benefits

• Collaborative and supportive community.

• Hands-on experience.

• Opportunities for certifications.

• Industry training provided.

• Equal employment opportunity.

• Reasonable accommodations for disabilities or religious observances.

People also viewed

OCHIN, Inc.8 hours ago

Security Application Analyst

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$85.7k – $137.1k/year
ApplyView job
Dynanet Corporation8 hours ago

AI Security Engineer

US flagMaryland OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Solutions for Information Design, Inc.8 hours ago

Infrastructure & Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$110k – $130k/year
ApplyView job
Fuze Health9 hours ago

Senior Security Engineer

US flagArizona, +4 more statesFull-timeCybersecurity / Security Engineer$156.8k – $196k/year
ApplyView job
LG Energy Solution Vertech, Inc.9 hours ago

Cybersecurity Specialist III

US flagMassachusetts OnlyFull-timeCybersecurity / Security Engineer$98k – $110k/year
ApplyView job
Coupa Software15 hours ago

Senior Security Engineer – Red Team

IN flagIndia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers