Cybersecurity Incident Response Triage IR Analyst

Accenture Federal Services Careers Marketplace

Arlington (VA)

On-site

USD 53,900 - 120,100

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

GIAC Certifications
CISSP

Job summary

Accenture Federal Services in Arlington, VA, seeks a Cybersecurity Incident Response Triage IR Analyst to join the CIRT team in the CISO organization. You will analyze security events, triage incidents, and coordinate with other teams to drive effective resolution.

Ideal candidates have experience in incident response lifecycles, SIEM tools, insider-threat indicators, and data loss prevention, with the ability to present findings to executives and work independently in a fast-paced environment.

Qualifications

  • 1–2 years of information security experience or equivalent
  • Experience presenting complex technical info to decision makers
  • Ability to work independently and deliver timely solutions
  • Familiar with incident response lifecycles and federal reporting requirements

Responsibilities

  • Actively monitor and respond to cybersecurity incidents related to alerted policy violations
  • Analyze and investigate incidents to determine their nature and scope
  • Coordinate with team leads for effective incident resolution
  • Document incidents and response activities in detail
  • Stay updated with cybersecurity threats and trends
  • Assist in developing incident response strategies and procedures
  • Collaborate with operations, legal, HR and management to investigate issues

Skills

Incident Response
Insider Threat
SIEM
Data Loss Prevention
Firewall/IDS
Windows/Linux
Network Protocols
Malware Analysis
Documentation

Job description

Cybersecurity Incident Response Triage IR Analyst

Arlington, VA

The Cybersecurity Incident Response Triage IR Analyst role will work in the CIRT team in the CISO organization. This role works under analysis and triage team lead to perform in-depth investigation and analysis on security-relevant events indicating policy violations or possible insider-threat presence.

The Work
  • Actively monitor and respond to cybersecurity incidents related to alerted policy violations
  • Analyze and investigate incidents to determine their nature and scope
  • Coordinate with the lead and other Cybersecurity Incident Response Teams for effective incident resolution
  • Document incidents and response activities in detail
  • Stay updated with the latest cybersecurity threats and trends
  • Assist in developing and refining incident response strategies and procedures
  • Collaborate with operations teams, legal, human resources and management to investigate security issues and interview investigation subjects to determine true and false positives
What you need
  • Excellent communication skills and knowledge in incident response lifecycles, common cyber-attacks, insider-threat indicators and warnings, data loss prevention and detection mechanisms, and federal incident reporting requirements
  • Excellent communication (written and oral), attention to detail and interpersonal skills
  • Experience presenting complex technical information to decision makers and leading them through the decision making process
  • Work independently to deliver timely solutions without direct supervision
  • 1-2 years experience in information security, or other equivalent combination of education or equivalent work experience
  • 1 year(s) of experience performing event and log analysis including one or more of the following: Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, Web Proxies, Data loss prevention tools and other security tools found in large enterprise network environments; along with experience working with Security Information and Event Management (SIEM) solutions
  • Familiarity with various network and host-based security applications and tools, such as network and host assessment/scanning tools, network and host-based intrusion detection systems, and other security software packages
  • Familiarity with TCP/IP, common application layer protocols, and packet analysis of the same
  • Familiarity with static and dynamic malware analysis concepts
  • Experience with indicators of attack and compromise
  • Familiarity with Windows / Linux architecture and endpoint analysis of the same
  • Familiarity with basic data parsing and analysis tools, i.e., Excel, grep, sed, awk, regex, etc
Bonus if you have
  • SANs GIAC Certifications including but not limited to GCED, GCLD, GCIH, GCFA, GREM; CISSP

As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Hawaii, Illinois, Maine, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Virginia, Washington, and the District of Columbia, and the city of Cleveland. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set, and level of experience. Accenture Federal Services offers a wide variety of benefits. We accept applications on an on-going basis and there is no fixed deadline to apply.

The pay range for the states of California, Colorado, Hawaii, Illinois, Maine, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Virginia, Washington, and the District of Columbia, and the city of Cleveland is:

$53,900 - $120,100 USD

Equal Employment Opportunity Statement

We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities. For details, view a copy of the Accenture Federal Services Equal Opportunity Policy Statement.

Accenture Federal Services is an Equal Employment Opportunity employer. Additionally, as an affirmative action employer for veterans and individuals with disabilities, Accenture Federal Services is committed to providing veteran employment opportunities to our service men and women.

Requesting An Accommodation

Accenture Federal Services is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture Federal Services and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.

If youare being considered for employment opportunities with Accenture Federal Services and need an accommodation for a disability or religious observanc eduring the interview process or for the job you are interviewing for, please speak with your recruiter.

Other Employment Statements

Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.

Candidates who are currently employed by a client of Accenture Federal Services or an affiliated Accenture business may not be eligible for consideration.

Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.

Accenture Federal Services will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.

Accenture Federal Services is committed to protecting employee privacy. We will not disclose sensitive personal data without recipient consent in accordance with applicable laws and regulations. All data handling practices will follow strict confidentiality and security protocols.

California requires additional notifications for applicants and employees. If you are a California resident, live in or plan to work from Los Angeles County upon being hired for this position, please click here for additional important information.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response Triage Analyst
Cybersecurity Incident Response Triage Analyst

Accenture Federal Services • Arlington (VA)

On-site
USD 57,000 - 109,000
Cybersecurity Incident Response Triage Analyst
Cybersecurity Incident Response Triage Analyst

Accenture • Arlington (VA)

On-site
USD 57,000 - 109,000
Cybersecurity Incident Response Triage Analyst
Cybersecurity Incident Response Triage Analyst

Accenture-Federal-Services-2 • Arlington (VA)

On-site
USD 57,000 - 109,000
Cybersecurity Incident Response Triage Analyst
Cybersecurity Incident Response Triage Analyst

Socket.dev • Arlington (VA)

On-site
USD 57,000 - 109,000
Cybersecurity Incident Response Triage Analyst
Cybersecurity Incident Response Triage Analyst

Accenture Federal Services Careers Marketplace • Arlington (VA)

On-site
USD 60,000 - 90,000
Incident Response and Forensics Lead
Incident Response and Forensics Lead

Accenture Federal Services • Germantown (MD)

On-site
USD 100,000 - 204,000
Cybersecurity Cloud Automation Engineer
Cybersecurity Cloud Automation Engineer

Accenture Federal Services • Lorton (VA)

On-site
USD 100,000 - 204,000
Senior Security Engineer
Senior Security Engineer

Accenture Federal Services • Clearfield (UT)

On-site
USD 116,000 - 244,000
Cybersecurity Engineer
Cybersecurity Engineer

Accenture Federal Services • Virginia (MN)

On-site
USD 135,000 - 279,000
Security Architect Specialist
Security Architect Specialist

Accenture Federal Services • Arlington (TX)

On-site
USD 79,000 - 160,000