Cyber Incident Responder

PA, Working at Home - Pennsylvania

Highmark Health

View company page

Company :

enGen

Job Description : 

JOB SUMMARY 

This role will manage and investigate live security incidents. Cyber Incident Responders work independently or collaboratively depending on each event and will serve as a subject matter expert who works to improve security processes and procedures. Responders discover opportunities to improve the security posture of the organization and drive process improvements.  

 
ESSENTIAL RESPONSIBILITIES 

  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. (20%)
  • Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
  • Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (20%)
  • Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
  • Perform cyber defense trend analysis and reporting. (10%)
  • Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (5%)
  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (5%)
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. (5%)
  • Track and document cyber defense incidents from initial detection through final resolution. (5%)
  • Other duties as assigned or requested.

EXPERIENCE 

Required 

  • 3 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, or Information Assurance
  • 3 years of Cyber Incident Handling

 
Preferred 

  •  None

SKILLS 

  • Identifying, capturing, containing, and reporting malware
  • Preserving evidence integrity according to standard operating procedures or national standards
  • Securing network communications
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
  • Performing damage assessments
  • Using security event correlation tools
  • Design incident response for cloud service models

EDUCATION 

Required 

  • Bachelors in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field. 

Substitutions 

  • 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework 

 
Preferred 

  • None

 
LICENSES or CERTIFICATIONS 

Required 

  • None 

 
Preferred 

  • Cyber Incident/Security Certifications
  • Information Technology Infrastructure Library (ITIL)
  • Two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC

 
Language (Other than English): 

None 

Travel Requirement: 

0% - 25% 

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS 

Position Type 

Office- or Remote-based 

Teaches / trains others 

Occasionally 

Travel from the office to various work sites or from site-to-site 

Rarely 

Works primarily out-of-the office selling products/services (sales employees) 

Never 

Physical work site required 

No 

Lifting: up to 10 pounds 

Constantly 

Lifting: 10 to 25 pounds 

Occasionally 

Lifting: 25 to 50 pounds 

Rarely 

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job. 
 
Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies. 
 
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.  In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.  
 
Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.  

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, age, religion, sex, national origin, sexual orientation/gender identity or any other category protected by applicable federal, state or local law. Highmark Health and its affiliates take affirmative action to employ and advance in employment individuals without regard to race, color, age, religion, sex, national origin, sexual orientation/gender identity, protected veteran status or disability. 

EEO is The Law

Equal Opportunity Employer Minorities/Women/Protected Veterans/Disabled/Sexual Orientation/Gender Identity (https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf)

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact number below.

For accommodation requests, please contact HR Services Online at HRServices@highmarkhealth.org

California Consumer Privacy Act Employees, Contractors, and Applicants Notice

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: CCPA CISSP Cloud Compliance Computer Science Cyber defense Firewalls Forensics GCFA GCFE GCIH GNFA GREM HIPAA HITRUST IDS Incident response Intrusion detection ITIL Log files Malware Network security NIST Pentesting Privacy Vulnerabilities

Perks/benefits: Insurance

Region: North America
Country: United States
Job stats:  11  2  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.