Senior IT Security Incident Responder – Tier 2, Remote

Gravity IT Resources

Salem (OR)

Remote

USD 109,000 - 116,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Gravity IT Resources is seeking an experienced IT Security Engineer IV – Incident Response to join its SOC. This role focuses on Tier 2 incident response, leveraging CrowdStrike, Splunk, and other SIEM tools to investigate complex security incidents from containment through remediation and closure.

The ideal candidate will have 5+ years of hands-on incident response experience, strong communication skills, and the ability to drive incidents in a fast-paced environment.

Qualifications

  • 5+ years of experience in cybersecurity, security operations, or incident response.
  • Hands-on incident responder experience in Tier 2 or escalated SOC.
  • Ability to independently manage complex incidents from escalation to resolution.
  • Experience with CrowdStrike and Splunk in security environments.
  • Strong SIEM experience and cross-source data correlation.
  • AWS security and cloud environment experience.
  • Excellent written and verbal communication.
  • Ability to work under pressure with multiple investigations.

Responsibilities

  • Act as Tier 2 incident responder from triage through closure.
  • Own escalated incidents from triage, containment, eradication, recovery, to closure.
  • Investigate security events to determine true incidents based on risk and impact.
  • Analyze endpoint, network, cloud telemetry to identify root cause and impact.
  • Use CrowdStrike, Splunk, and SIEM tools to correlate signals.
  • Correlate logs across multiple sources to detect attacker activity.
  • Conduct host, network, and cloud forensic analysis as needed.
  • Lead communications with security teams and stakeholders during incidents.
  • Provide clear updates and communicate findings to technical and non-technical audiences.
  • Collaborate with Tier 1, DFIR, Detection Engineering, and other SOC capabilities.
  • Verify containment/remediation effectiveness before closing incidents.
  • Contribute to incident response playbooks and runbooks.
  • Participate in post-incident reviews and implement improvements.
  • Stay current on attacker techniques and emerging threats.

Skills

Incident Response
SOC Operations
CrowdStrike
Splunk
AWS Security
SIEM

Tools

CrowdStrike
Splunk
ServiceNow SIR
SIEM Platforms

Job description

Gravity IT Resources is seeking an experienced IT Security Engineer IV – Incident Response to join its SOC. This role focuses on Tier 2 incident response, leveraging CrowdStrike, Splunk, and other SIEM tools to investigate complex security incidents from containment through remediation and closure.

The ideal candidate will have 5+ years of hands-on incident response experience, strong communication skills, and the ability to drive incidents in a fast-paced environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Tier 2 Cybersecurity Engineer - Incident Response
Senior Tier 2 Cybersecurity Engineer - Incident Response

On Call Computer Solutions, LLC • Tallahassee (FL)

On-site
USD 110,000 - 150,000
Health insurance
Life insurance
128 Hours PTO
+1
Security Engineer (Incident Response)- Major Entertainment Company- NO H1B OR C2C
Security Engineer (Incident Response)- Major Entertainment Company- NO H1B OR C2C

TechLink Resources, Inc • Los Angeles (CA)

On-site
USD 95,000 - 140,000
Incident Responder - Tier 2
Incident Responder - Tier 2

Evans & Chambers • Fort Meade (MD)

On-site
USD 115,000 - 147,000
Incident Responder Shift Lead - Tier 2
Incident Responder Shift Lead - Tier 2

Evans & Chambers Technology • Fort Meade (MD)

On-site
USD 130,000 - 158,000
Security Engineer, Incident Response
Security Engineer, Incident Response

Eliassen Group • Burbank (CA)

Hybrid
Confidential
Medical insurance
Dental insurance
Vision insurance
+2
Incident Responder Shift Lead - Tier 2
Incident Responder Shift Lead - Tier 2

Evans & Chambers • Fort Meade (MD)

On-site
USD 130,000 - 158,000
Remote SOC Engineer II - Threat Detection & Incident Lead
Remote SOC Engineer II - Threat Detection & Incident Lead

CTS • United States

On-site
USD 80,000 - 85,000
Health Insurance
401(k) with company match
Paid Time Off
+6
Senior Incident Response Analyst - Tier II/III, Remote
Senior Incident Response Analyst - Tier II/III, Remote

Boston Government Services, LLC (BGS) • Knoxville (TN)

On-site
USD 131,000 - 155,000
Health insurance
Dental insurance
Vision insurance
+5
Incident Response Senior Analyst (Tier 3)
Incident Response Senior Analyst (Tier 3)

Forensic Focus Limited • Virginia (IL), Northern (KY)

Hybrid
USD 120,000 - 180,000
Cybersecurity Incident Responder – Tier 2 (Flexible Hours)
Cybersecurity Incident Responder – Tier 2 (Flexible Hours)

Revolutional • Martinsburg (WV)

On-site
USD 85,000 - 130,000
Traditional and HSA- eligible medical
100% employer-paid dental and vision
5% 401(k) company matching
+5