Engineer II – Cyber Incident Response

Jobtailor

Pennsylvania

On-site

USD 70,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a skilled cybersecurity professional in Pennsylvania to respond to incidents, analyze logs and forensic data, and guide junior staff. You will escalate complex cases and support containment, eradication, and recovery efforts within a SOC framework.

Ideal candidates bring 3–5 years in cybersecurity with SOC/IR exposure, hands-on SIEM/EDR experience, and strong communication for documenting findings and briefing stakeholders.

Qualifications

  • Bachelor’s degree or equivalent work experience in cybersecurity or related field.
  • Strong knowledge of incident response methodology and adversary tactics.
  • Familiarity with NIST, MITRE ATT&CK, ISO 27035.
  • 3–5 years in cybersecurity with 2+ years in SOC operations or IR.
  • Hands-on with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark).
  • Ability to analyze logs, alerts, and artifacts to support investigations.
  • Strong written and verbal communication for documenting findings.

Responsibilities

  • Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts
  • Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents
  • Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff, providing clear documentation and evidence
  • Assist in containment, eradication, and recovery activities during incident response
  • Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures
  • Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies
  • Participate in lessons-learned sessions and recommend improvements to SOC processes and tooling
  • Support junior analysts (Engineer I) by sharing knowledge and providing guidance on investigative techniques

Skills

Incident Investigation
Log Analysis
Malware Analysis
Phishing Response
Ransomware Response
Unauthorized Access Response
Adversary Tactics Knowledge
Documentation Skills
Incident Escalation
Containment and Recovery

Education

Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience

Tools

SIEM
EDR
Splunk
CrowdStrike
Wireshark

Job description

  • Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts
  • Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents
  • Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff, providing clear documentation and evidence
  • Assist in containment, eradication, and recovery activities during incident response
  • Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures
  • Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies
  • Participate in lessons-learned sessions and recommend improvements to SOC processes and tooling
  • Support junior analysts (Engineer I) by sharing knowledge and providing guidance on investigative techniques
Requirements
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience
  • Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics
  • Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035
  • 3–5 years of progressive experience in cybersecurity, with at least 2 years in SOC operations or incident response
  • Hands-on experience with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark)
  • Demonstrated ability to analyze logs, alerts, and artifacts to support incident investigations
  • Strong written and verbal communication skills for documenting findings and briefing stakeholders.
Core Competencies

Demonstrates expertise in cybersecurity incident response, including analysis of logs and alerts, and familiarity with industry frameworks such as NIST and MITRE ATT&CK. Capable of collaborating with cross-functional teams to enhance detection and response strategies while providing mentorship to junior analysts.

Highest-signal resume keywords
  • Cybersecurity Fundamentals
  • Incident Response Methodology
  • SIEM Experience
  • Forensic Tool Proficiency
  • NIST Framework Familiarity
ATS Optimization Keywords
Hard Skills
  • Incident Investigation
  • Log Analysis
  • Malware Analysis
  • Phishing Response
  • Ransomware Response
  • Unauthorized Access Response
  • Adversary Tactics Knowledge
  • Documentation Skills
  • Incident Escalation
  • Containment and Recovery
Soft Skills
  • Written Communication
  • Verbal Communication
  • Mentorship
  • Collaboration
  • Problem-Solving
Industry Keywords
  • SOC Operations
  • Incident Response
  • Threat Intelligence
  • Vulnerability Management
  • Forensics
Tools & Technologies
  • SIEM
  • EDR
  • Splunk
  • CrowdStrike
  • Wireshark
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Ops Analyst
Senior Cybersecurity Ops Analyst

Jobtailor • Santa Ana (CA)

On-site
USD 75,000 - 120,000
Senior Security Analyst, Cyber Defense
Senior Security Analyst, Cyber Defense

Jobtailor • Minneapolis (MN)

On-site
USD 110,000 - 140,000
Associate Director, Threat Management Center
Associate Director, Threat Management Center

Jobtailor • Town of Florida (NY)

On-site
USD 150,000 - 190,000
SOC Engineer
SOC Engineer

No Limit Staffing, Inc. • United States

On-site
USD 90,000 - 120,000
Cybersecurity Operations Specialist
Cybersecurity Operations Specialist

Jobtailor • Los Angeles (CA)

On-site
USD 90,000 - 140,000
Cyber Security Engineer
Cyber Security Engineer

TEEMA Solutions Group • Mississippi

On-site
USD 90,000 - 120,000
Cybersecurity Analyst
Cybersecurity Analyst

EXOS • Indianapolis (IN)

On-site
USD 90,000 - 120,000
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Network Security Engineer
Network Security Engineer

Jobtailor • New Jersey

On-site
USD 110,000 - 140,000
Security Operations Center Analyst
Security Operations Center Analyst

Madison-Davis, LLC • United States

On-site
USD 90,000 - 120,000