Cybersecurity Incident Response Triage Sr. Analyst
Accenture Federal ServicesAbout the role
You Are:
The Cybersecurity Incident Response Triage Sr. Analyst role will work in the CIRT team in the CISO organization. This role works under analysis and triage team lead to perform in-depth investigation and analysis on security-relevant events indicating policy violations or possible insider-threat presence.
Key Responsibilities:
- Actively monitor and respond to cybersecurity incidents related to alerted policy violations
- Analyze and investigate incidents to determine their nature and scope.
- Coordinate with the lead and other Cybersecurity Incident Response Teams for effective incident resolution.
- Document incidents and response activities in detail.
- Stay updated with the latest cybersecurity threats and trends.
- Assist in developing and refining incident response strategies and procedures.
- Collaborate with operations teams, legal, human resources and management to investigate security issues and interview investigation subjects to determine true and false positives.
Here's What You Need:
- US Citizenship required
- Excellent communication skills (written and verbal) and knowledge in incident response lifecycles, common cyber-attacks, insider-threat indicators and warnings, data loss prevention and detection mechanisms, and federal incident reporting requirements.
- 1-2 years’ experience in information security, or other equivalent combination of education or equivalent work experience.
- 1-year(s) of experience performing event and log analysis including one or more of the following: Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools and other security tools found in large enterprise network environments; along with experience working with Security Information and Event Management (SIEM) solutions.
- Familiarity with TCP/IP, common application layer protocols, and packet analysis of the same.
Bonus Points if you have:
- SANs GIAC Certifications including but not limited to GCED, GCLD, GCIH, GCFA, GREM; CISSP
- Experience presenting complex technical information to decision makers and leading them through the decision-making process
- Work independently to deliver timely solutions without direct supervision
- Familiarity with various network and host-based security applications and tools, such as network and host assessment/scanning tools, network and host-based intrusion detection systems, and other security software packages.
- Familiarity with static and dynamic malware analysis concepts.
- Experience with indicators of attack and compromise.
- Familiarity with Windows / Linux architecture and endpoint analysis of the same.
- Familiarity with basic data parsing and analysis tools, i.e., Excel, grep, sed, awk, regex, etc.
As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Hawaii, Maryland, New York, Washington, and the District of Columbia. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set and level of experience. Accenture Federal Services offers a wide variety of benefits. You can find more information on benefits here. We accept applications on an on-going basis and there is no fixed deadline to apply.
The pay range for the states of California, Colorado, Hawaii, Maryland, New York, Washington, and the District of Columbia is:$54,000—$116,000 USD What We Believe We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a busine
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s