Senior Cyber Incident Responder - Lead IR & Forensics Remote

Highmark Health

Juneau (AK)

On-site

USD 86,000 - 139,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Highmark Health is seeking a Senior Cyber Incident Responder to serve as the top investigator in the Cyber Fusion Center, capable of leading investigations and ensuring CIRP adherence. This role interfaces with internal teams to determine scope and resources, and delegates activities based on complexity and capacity.

The candidate will act as a subject matter expert, guiding incident handling, forensic collection, and remediation across enterprise systems.

Qualifications

  • 5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance.
  • 5 years of Cyber Incident Handling.

Responsibilities

  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert.
  • Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation.
  • Analyze log files from a variety of sources (e.g., host logs, network traffic logs, firewall logs, IDS logs) to identify possible threats to network security.
  • Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation.
  • Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks.
  • Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems.
  • Perform real-time cyber defense incident handling tasks to support deployable Incident Response Teams (IRTs).
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts.
  • Track and document cyber defense incidents from initial detection through final resolution.
  • Other duties as assigned or requested.

Skills

Malware Analysis
Digital Forensics
Data/Network Analysis
Penetration testing
Trends Analysis
Information Assurance
Cyber Incident Handling
Identifying malware
Preserving evidence integrity
Securing network communications
Vulnerability recognition
Security event correlation
Incident response design

Education

Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or related field
6 years of information security and systems analysis with HITRUST CSF or NIST 800-83 experience
Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or related field

Tools

Security Event Correlation Tools

Job description

Highmark Health is seeking a Senior Cyber Incident Responder to serve as the top investigator in the Cyber Fusion Center, capable of leading investigations and ensuring CIRP adherence. This role interfaces with internal teams to determine scope and resources, and delegates activities based on complexity and capacity.

The candidate will act as a subject matter expert, guiding incident handling, forensic collection, and remediation across enterprise systems.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Cyber Incident Response Lead
Remote Cyber Incident Response Lead

Highmark Health • Carson City (NV)

Hybrid
USD 86,000 - 139,000
Remote Senior Cyber Incident Response Lead
Remote Senior Cyber Incident Response Lead

Highmark Health • Louisiana (MO)

Hybrid
USD 86,000 - 139,000
Senior Cyber Incident Response Lead
Senior Cyber Incident Response Lead

Highmark Health • Honolulu (HI)

On-site
USD 86,000 - 139,000
Lead Cyber Incident Responder — 24/7 MSP Client IR
Lead Cyber Incident Responder — 24/7 MSP Client IR

Meriplex Communications, Ltd. • Town of Texas (WI), Northern (KY)

Hybrid
USD 110,000 - 150,000
Senior Cyber Incident Responder & Technical Lead
Senior Cyber Incident Responder & Technical Lead

Meriplex-Communication • Town of Texas (WI)

On-site
USD 110,000 - 160,000
Senior Incident Response Specialist — Forensics & Containment
Senior Incident Response Specialist — Forensics & Containment

OpenLoop Health, Inc. • Northern (KY)

Hybrid
USD 110,000 - 170,000
Medical, Dental, Vision plans
Flexible Spending Accounts
Flexible PTO
+2
Remote Senior Incident Response Leader
Remote Senior Incident Response Leader

Cognizant • Alpharetta (GA)

On-site
USD 135,000 - 145,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
+3
Senior Incident Response Engineer — Remote, High-Impact IR
Senior Incident Response Engineer — Remote, High-Impact IR

RXinsider LTD. • New Jersey

On-site
USD 79,000 - 142,000
Annual incentive bonus
Country-specific benefits
Remote Cyber Incident Commander — Senior Enterprise Security
Remote Cyber Incident Commander — Senior Enterprise Security

Experian • United States

On-site
USD 153,000 - 276,000
Bonus plan
Medical, dental, vision
Remote/hybrid options
+1
Cyber Defense Incident Responder — Hybrid On-Call Role
Cyber Defense Incident Responder — Hybrid On-Call Role

EY • Austin (TX)

Hybrid
USD 91,000 - 171,000