Cyber Security Incident Responder

Swisslog

Newport News (VA)

On-site

USD 85,000 - 120,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Swisslog in Newport News, VA seeks a Cyber Security Incident Responder to monitor and respond to cybersecurity incidents across the enterprise. You will analyze alerts, coordinate containment, and work with global IT teams to strengthen security posture.

Responsibilities include incident triage, evidence collection, and documenting investigations while contributing to detection improvements and automation initiatives with SOAR playbooks.

Qualifications

  • IT experience or Bachelor's degree in Computer Science, Information Security, Information Technology, or related field.
  • Knowledge of Windows OS and general IT problem solving.
  • Experience with phishing, malware, ransomware, account compromise, or insider-threat investigations is a plus.
  • Basic understanding of SOAR technology is a plus.
  • Experience in a 24x7 SOC or shift-based environment is an advantage.
  • Understanding of common network services (Web, mail, DNS, authentication) is a plus.
  • Hands-on experience in IT security (Threat prevention, SIEM, Endpoint protection) is a plus.
  • Experience with scripting or automation using PowerShell or Python is an advantage.

Responsibilities

  • Monitor, investigate, triage, and respond to cybersecurity incidents across the enterprise.
  • Analyze security alerts and coordinate containment and remediation activities.
  • Support SOC with detection improvements and automation initiatives via SOAR playbooks.
  • Document investigations and remediation actions in case management systems.
  • Collaborate with global IT and security teams to reduce cyber risk.
  • Identify compromised computers using logs and related evidence sources.
  • Perform event analysis and tool utilization for identification, response, and escalation.
  • Maintain awareness of changing processes, procedures, and standards.
  • Demonstrate willingness to learn and take on additional responsibilities.

Skills

Windows OS
IT Experience
Phishing/Malware
SOAR
SOC 24x7
Scripting
Network services
SIEM
Endpoint protection

Education

Bachelor's degree in Computer Science/Info Security/IT

Tools

PowerShell
Python
SOAR platform
Microsoft Defender XDR

Job description

Where do people love what they do, and being great at what they do? At Swisslog, that's where! Our teams are the heart of a world-leading Robotics company that's harnessing the power of technology to shape the future of intralogistics. The result? We're transforming performance and efficiency for customers across the globe, giving them the vital edge in their markets.

Responsibilities

Make an impact The Cyber Security Incident Responder is responsible for monitoring, investigating, triaging, and responding to cybersecurity incidents across the enterprise within established operating procedures. The role supports the Security Operations Center (SOC) by analyzing security alerts, conducting investigations, coordinating containment and remediation activities, and continuously improving detection capabilities. The successful candidate will work closely with global IT and security teams to reduce cyber risk and strengthen the organization's security posture.

  • Perform daily security monitoring, incident triage, investigation, containment, and response activities in accordance with established SOC procedures and service level agreements (SLAs).
  • Monitor, investigate, and respond to security alerts using Microsoft Sentinel, Microsoft Defender XDR, and other security technologies.
  • Ability to identify issues, compromised computers using logs, and related computer-centric evidence sources
  • Document investigations, findings, and remediation actions accurately within case management systems.
  • Contribute to security use-case tuning and continuous detection improvement. Support automation initiatives through SOAR playbooks and workflow optimization.
  • Demonstrate ability to perform event analysis and tools utilization (identification, response, escalation)
  • Exercise attention to detail and due care in regards to work-related communication and documentation.
  • Exhibit willingness to learn, a desire to collaborate with others, and the drive to take on additional responsibilities when called upon.
  • Pursue job-related growth and knowledge via higher education, certification, and training.
  • Maintain awareness of changing processes, procedures, and standards critical to job performance.
Application Requirements

What you need to succeed

  • IT Experience Or Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent practical experience.
  • Knowledge of windows OS / General IT (Debugging and IT Problem solving)
  • Knowledge of phishing, malware, ransomware, account compromise, and insider-threat investigations is a plus
  • Basic understanding of SOAR technology is a plus
  • Experience working in a 24x7 SOC or shift-based operational environment is an advantage.
  • Understanding of common network services (Web, mail, DNS, authentication) is a plus
  • Previous hands-on experience in the field of IT security (Threat prevention, SIEM, Endpoint protection) is a plus
  • Experience with scripting or automation using PowerShell, Python, or similar technologies is an advantage.
Our promise to you

Swisslog is a world of opportunity for people who can deliver a game changing mission: driving the future of intralogistics, by shaping an era of robotic and data-driven automated solutions that create exceptional customer value. Join us on this journey and you'll be part of a global enterprise that’s proud of its Swiss roots - and hugely excited by the worldwide opportunities open to everyone in the Swisslog family. So come and realize your potential, in a team that’s united by passion and driven by the OneSwisslog team spirit.

Talent Acquisition Manager: Mai Gamble Swisslog is an Equal Opportunity Employer committed to building an inclusive and diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status, protected veteran status, or any other factor protected by applicable federal, state or local laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Incident Responder
Cyber Security Incident Responder

Swisslog Holding AG • Newport News (VA)

Hybrid
USD 90,000 - 130,000
Customer Service Account Manager
Customer Service Account Manager

Swisslog • Atlanta (GA)

On-site
USD 70,000 - 100,000
SOC Cyber Defense Incident Responder
SOC Cyber Defense Incident Responder

Swisslog Holding AG • Newport News (VA)

Hybrid
USD 90,000 - 130,000
Sales Director
Sales Director

Swisslog • Atlanta (GA)

On-site
USD 120,000 - 160,000
Incident Response Engineer 2
Incident Response Engineer 2

Sophos • United States

Remote
USD 85,000 - 120,000
Remote-first
Flexible schedule
SOC Cyber Incident Response Engineer
SOC Cyber Incident Response Engineer

Swisslog • Newport News (VA)

On-site
USD 85,000 - 120,000
Senior Threat Analyst 2 (Romania)
Senior Threat Analyst 2 (Romania)

Sophos • United States

Remote
USD 120,000 - 170,000
Threat Investigation Analyst
Threat Investigation Analyst

careers-sentinel • Downers Grove (IL)

Hybrid
USD 60,000 - 65,000
Cyber Security Analyst
Cyber Security Analyst

Synergy Business Consulting, Inc. • Tampa (FL)

On-site
USD 75,000 - 105,000
SOC Lead (Remote or Onsite)
SOC Lead (Remote or Onsite)

Crane Company • Stamford (CT)

On-site
USD 90,000 - 130,000