Cybersecurity Incident Response Engineer - Rapid Defender

ASM Research, An Accenture Federal Services Company

Salem (OR)

On-site

USD 67,000 - 82,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

ASM Research, An Accenture Federal Services Company is seeking a Cybersecurity Incident Response Engineer, Mid to join our government-focused security operations team. You will detect, contain, and recover from cyber incidents across enterprise networks, contributing to runbooks, automation, and playbooks to speed responses.

You will perform forensic analysis, coordinate with cross-functional teams, map tactics to MITRE ATT&CK, and help strengthen SOC capabilities while ensuring compliance with

Qualifications

  • Typically 4–7 years of hands-on cybersecurity ops and incident response across enterprise environments.
  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or related field, or equivalent work experience.
  • Demonstrated experience with incident response tools and platforms such as SIEM, IDS/IPS, and EDR in enterprise environments.
  • Strong understanding of incident response principles, containment and eradication techniques, and data security best practices.

Responsibilities

  • Conduct technical analysis of security events and incidents using SIEM, IDS/IPS, EDR to identify attack vectors, affected assets, and potential data exposure.
  • Develop and refine incident response runbooks and automation workflows that standardize triage, containment, and eradication steps for common attack scenarios.
  • Coordinate system and network isolation strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.
  • Support proactive defensive engineering initiatives, including tuning detections, building automated countermeasures, and contributing to programs designed to defend against sophisticated adversaries.
  • Perform host and network forensics, including log review, basic memory and disk analysis, and artifact collection to support root cause analysis and potential legal or compliance needs.
  • Map observed adversary behavior to structured frameworks such as MITRE ATT&CK to understand attacker tactics, techniques, and procedures and to recommend targeted detection improvements.
  • Ensure incident handling practices are aligned with data security best practices and applicable government security policies, supporting auditability and regulatory compliance.
  • Produce clear incident documentation, timelines, and lessons learned that feed into security awareness, control hardening, and process improvements.

Skills

Incident response tools
Analytical thinking
Written & verbal communication
Cross-team coordination

Education

Bachelor's degree in IT/Cybersecurity/CS

Tools

SIEM
IDS/IPS
EDR

Job description

ASM Research, An Accenture Federal Services Company is seeking a Cybersecurity Incident Response Engineer, Mid to join our government-focused security operations team. You will detect, contain, and recover from cyber incidents across enterprise networks, contributing to runbooks, automation, and playbooks to speed responses.

You will perform forensic analysis, coordinate with cross-functional teams, map tactics to MITRE ATT&CK, and help strengthen SOC capabilities while ensuring compliance with

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response Engineer: Rapid Defense
Cybersecurity Incident Response Engineer: Rapid Defense

ASM Research, An Accenture Federal Services Company • Tallahassee (FL)

On-site
USD 67,000 - 82,000
Rapid-Cycle Cyber Incident Response Engineer
Rapid-Cycle Cyber Incident Response Engineer

ASM Research, An Accenture Federal Services Company • Bismarck (ND)

On-site
USD 67,000 - 82,000
Cyber Incident Response Engineer - Rapid Detection & Containment
Cyber Incident Response Engineer - Rapid Detection & Containment

ASM Research, An Accenture Federal Services Company • Augusta (ME)

On-site
USD 67,000 - 82,000
Incident Response Engineer (Mid) — Rapid Defense & Forensics
Incident Response Engineer (Mid) — Rapid Defense & Forensics

ASM Research, An Accenture Federal Services Company • Pierre (SD)

On-site
USD 67,000 - 82,000
Cyber Incident Response Engineer - Rapid Defense Playbooks
Cyber Incident Response Engineer - Rapid Defense Playbooks

ASM Research, An Accenture Federal Services Company • Frankfort (KY)

On-site
USD 67,000 - 82,000
Cybersecurity Incident Response Engineer: Automation & Defense
Cybersecurity Incident Response Engineer: Automation & Defense

ASM Research, An Accenture Federal Services Company • Richmond (VA)

On-site
USD 67,000 - 82,000
Cybersecurity Incident Response Engineer — Rapid IR & Forensics
Cybersecurity Incident Response Engineer — Rapid IR & Forensics

ASM Research, An Accenture Federal Services Company • Des Moines (IA)

On-site
USD 67,000 - 82,000
Cybersecurity IR Engineer: Automate & Defend Enterprise
Cybersecurity IR Engineer: Automate & Defend Enterprise

ASM Research, An Accenture Federal Services Company • Baton Rouge (LA)

On-site
USD 67,000 - 82,000
Cyber Incident Response Engineer - Automate & Defend
Cyber Incident Response Engineer - Automate & Defend

ASM Research, An Accenture Federal Services Company • Phoenix (AZ)

On-site
USD 67,000 - 82,000
Cybersecurity Incident Response Engineer: Defend & Recover
Cybersecurity Incident Response Engineer: Defend & Recover

ASM Research, An Accenture Federal Services Company • Montpelier (VT)

On-site
USD 67,000 - 82,000