Associate Cyber Incident Responder
Highmark HealthAbout the role
Company :
enGenJob Description :
JOB SUMMARY
This position manages and responds to live incidents with team collaboration. This role is the starting point to manage and respond to live cyber security incidents, being encouraged to enhance their skills in digital forensics, incident response, IT security, and incident handling. The Associate Cyber Incident responder will assist in investigations, contribute to project goals, and collaborate with team members to raise the security posture of the enterprise.
ESSENTIAL RESPONSIBILITIES
- Coordinate and provide technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. (20%)
- Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
- Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (20%)
- Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
- Perform cyber defense trend analysis and reporting. (10%)
- Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
- Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
- Other duties as assigned or requested.
EXPERIENCE
Required
- None
Preferred
- 1 year of Malware Analysis, Digital Forensics, Data/Network Analysis, Information Assurance Technician, or Incident Handling
SKILLS
- Identifying, capturing, containing, and reporting malware
- Preserving evidence integrity according to standard operating procedures or national standards
- Securing network communications
- Recognizing and categorizing types of vulnerabilities and associated attacks
- Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
- Performing damage assessments
- Using security event correlation tools
- Design incident response for cloud service models
EDUCATION
Required
- Associates in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
Substitutions
- 2 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework
Preferred
- Bachelors in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
- None
Language (Other than English):
None
Travel Requirement:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office- or Remote-based
Teaches / trains others
Occasionally
Travel from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
No
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the No
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s