Incident Response Engineer: Automation & Defense

ASM Research, An Accenture Federal Services Company

Salt Lake City (UT)

On-site

USD 67,000 - 82,000

Full time

25 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

ASM Research, An Accenture Federal Services Company, is seeking a Mid-level Cybersecurity Incident Response Engineer to bolster detection, containment, and recovery of incidents across enterprise networks and mission-critical systems in a regulated government environment.

You will develop response strategies, automate workflows, and coordinate with infrastructure and application teams to minimize disruption while preserving evidence. Strong experience with SIEM, EDR, and ATT&CK is valued.

Qualifications

  • Typically 4–7 years of hands-on experience in cybersecurity operations and incident response.
  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or a related field, or equivalent work experience.
  • Demonstrated experience with incident response tools and platforms such as SIEM, IDS/IPS, and EDR in enterprise environments.
  • Strong understanding of incident response principles, containment and eradication techniques, and data security best practices.
  • Proven analytical and problem-solving ability with strong written and verbal communication skills.

Responsibilities

  • Conduct technical analysis of security events and incidents using SIEM, IDS/IPS, EDR to identify attack vectors, affected assets, and potential data exposure.
  • Develop and refine incident response runbooks and automation workflows that standardize triage, containment, and eradication steps for common attack scenarios.
  • Coordinate system and network isolation strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.
  • Support proactive defensive engineering initiatives, including tuning detections, building automated countermeasures, and contributing to programs designed to defend against sophisticated adversaries.
  • Perform host and network forensics, including log review, basic memory and disk analysis, and artifact collection to support root cause analysis and potential legal or compliance needs.
  • Map observed adversary behavior to structured frameworks such as MITRE ATT&CK to understand attacker tactics, techniques, and procedures and to recommend targeted detection improvements.
  • Ensure incident handling practices are aligned with data security best practices and applicable government security policies, supporting auditability and regulatory compliance.
  • Produce clear incident documentation, timelines, and lessons learned that feed into security awareness, control hardening, and process improvements.

Skills

SIEM
EDR
Incident response
Analytical skills
Communication skills

Education

Bachelor's degree

Tools

ITIL

Job description

ASM Research, An Accenture Federal Services Company, is seeking a Mid-level Cybersecurity Incident Response Engineer to bolster detection, containment, and recovery of incidents across enterprise networks and mission-critical systems in a regulated government environment.

You will develop response strategies, automate workflows, and coordinate with infrastructure and application teams to minimize disruption while preserving evidence. Strong experience with SIEM, EDR, and ATT&CK is valued.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Incident Response Engineer: Automation & Defense
Incident Response Engineer: Automation & Defense

ASM Research, An Accenture Federal Services Company • Montgomery (AL)

On-site
USD 67,000 - 82,000
Incident Response Engineer: Cyber Defense & Automation
Incident Response Engineer: Cyber Defense & Automation

ASM Research, An Accenture Federal Services Company • Hartford (CT)

On-site
USD 67,000 - 82,000
Cybersecurity Incident Response Engineer - Automation & Defense
Cybersecurity Incident Response Engineer - Automation & Defense

ASM Research, An Accenture Federal Services Company • Carson City (NV)

On-site
USD 67,000 - 82,000
Incident Response Engineer — Cyber Defense & Automation
Incident Response Engineer — Cyber Defense & Automation

ASM Research, An Accenture Federal Services Company • Juneau (AK)

On-site
USD 67,000 - 82,000
Incident Response Engineer — Cybersecurity Automation
Incident Response Engineer — Cybersecurity Automation

ASM Research, An Accenture Federal Services Company • Lansing (MI)

On-site
USD 67,000 - 82,000
Incident Response Engineer — Automation & Forensics
Incident Response Engineer — Automation & Forensics

ASM Research, An Accenture Federal Services Company • Columbus (OH)

On-site
USD 67,000 - 82,000
Incident Response Engineer - Automation & Forensics
Incident Response Engineer - Automation & Forensics

ASM Research, An Accenture Federal Services Company • Honolulu (HI)

On-site
USD 67,000 - 82,000
Cyber Incident Response Engineer – Automation & Defense
Cyber Incident Response Engineer – Automation & Defense

ASM Research, An Accenture Federal Services Company • Nashville (TN)

On-site
USD 67,000 - 82,000
Incident Response Engineer: Automations, Forensics & Defense
Incident Response Engineer: Automations, Forensics & Defense

ASM Research, An Accenture Federal Services Company • Lincoln (NE)

Hybrid
USD 67,000 - 82,000
Mid-Level Cyber Incident Response Engineer - Automation
Mid-Level Cyber Incident Response Engineer - Automation

ASM Research, An Accenture Federal Services Company • Indianapolis (IN)

On-site
USD 67,000 - 82,000