CIRT Senior Analyst
Accenture Federal ServicesAbout the role
We are:
Accenture Federal Services, providing a tailored strategy to address the many cybersecurity challenges faced by customers in today’s ever-changing business and industry landscape. Our team delivers a wholistic approach to cybersecurity assessment, monitoring, investigation, and response. Whether we’re defending against identified threat actors, detecting and responding to the unknown, or running an entire security operations center, we build cyber resilience so our clients can grow with confidence in their security.
You are:
A Cyber Security professional and enthusiast, who is seeking opportunities to evolve his/her craft by understanding latest cyber threats and help clients identify intrusion in their respective environments. To effectively do this, you leverage cutting edge Security Information and Event Management (SIEM) data analytics, as well as network/endpoint detection and response technologies for investigating any malicious activity in customer’s on-prem and cloud environments.
The work:
Works under an incident response manager to analyze and respond to incidents from security relevant events triaged by the T1 team. Requires technical understanding to collaborate with operations teams management, investigate security issues, tune false positive alert triggers within the SIEM and other devices, and provide recommendations to increase the organizations security posture. Excellent writing/verbal skills are a must and candidate must have knowledge in incident response lifecycles, common cyber-attacks, and federal incident reporting requirements.
Here is what you need:
- 4+ years directly supporting Security Operations and/or Incident Response
- Strong hardware/software/OS experience Excellent writing and communication skills
- Working knowledge on IR Lifecycle, MITRE ATT&CK, Lockheed Martin Cyber Kill Chain or other security models
- Knowledge on common threat vectors and how to contain and mitigate those threats
- Ability to critically think an incident through beyond guidelines/playbooks
- Availability to work on-call
Bonus points if you have:
- Deep analytical thinking and information processing skills
- Direct detection engineering experience
- Experience working with small expert teams in 8x5 or 24x7x365 environments
- Direct security experience working with Amazon Web Services, Microsoft Azure, or Google Cloud Knowledge in Digital Forensics, Cyber Threat Intelligence, Threat Hunting or Detection Engineering
- One or more industry certifications including, but not limited to: Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA)
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s