Cybersecurity Incident Response Triage Analyst

Posted Aug 12

This is a fully remote position, open to applicants in Virginia.

📋 Description

• Join the CIRT team within the CISO organization, reporting to the analysis and triage team lead.

• Monitor, assess, investigate, qualify, scope, and triage alerts and notifications from SIEM, security sensors, ticketing systems, walk-ins, and phone calls.

• Proactively monitor and respond to cybersecurity incidents related to policy violation alerts.

• Assess the nature and scope of incidents while distinguishing between true and false positives.

• Collaborate with the team lead and other Cybersecurity Incident Response Teams to resolve incidents.

• Thoroughly document incidents and response actions.

• Stay informed about cybersecurity threats and trends.

• Assist in the development and enhancement of incident response strategies and procedures.

• Work together with operations, legal, human resources, and management to investigate security concerns and interview subjects involved in investigations.


⛳️ Requirements

• US Citizenship is mandatory.

• 1–2 years of experience in information security, or a relevant combination of education and work experience.

• At least 1 year of experience in event and log analysis.

• Proficient with security tools, including Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, and data loss prevention tools.

• Familiarity with Security Information and Event Management (SIEM) solutions.

• Knowledge of network and host-based security applications and tools.

• Understanding of network and host assessment/scanning tools and intrusion detection systems.

• Familiarity with TCP/IP, common application layer protocols, and packet analysis.

• Knowledge of static and dynamic malware analysis concepts.

• Experience with indicators of attack and compromise.

• Familiarity with Windows/Linux architecture and endpoint analysis.

• Proficient with Excel, grep, sed, awk, and regex.

• Candidates applying for employment in the US must possess work authorization that does not require current or future visa sponsorship.

• Strong written and verbal communication skills, attention to detail, and interpersonal abilities.


🏝️ Benefits

• Collaborative and supportive community.

• Hands-on experience.

• Opportunities for certifications.

• Industry training provided.

• Equal employment opportunity.

• Reasonable accommodations for disabilities or religious observances.

People also viewed

Campbell's22 hours ago

Workday Platform Owner – Integration, Reporting, Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$127.9k – $175.9k/year
ApplyView job
VALCE Talent Solutions22 hours ago

SAP Basis, Security Experience

MX flagMexico OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
The Hello Team22 hours ago

Senior Cybersecurity & Compliance Consultant, HIPAA, NIST, SOC 2

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Anduril Industries1 day ago

Senior Security Engineer

US flagCalifornia, +1 more stateFull-timeCybersecurity / Security Engineer$1/year
ApplyView job
Anduril Industries1 day ago

Senior Security Engineer – OT

US flagCalifornia, +1 more stateFull-timeCybersecurity / Security Engineer$1/year
ApplyView job
Optiv1 day ago

Senior Cybersecurity Advisor – AI

US flagKansas OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers