Logo
Highmark Health

Senior Cyber Incident Responder

Highmark Health, Salt Lake City, Utah, United States, 84193

Save Job

Company enGen

Job Description JOB SUMMARY: This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed, ensuring the CIRP (Cyber Incident Response Plan) is adhered to. They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity.

ESSENTIAL RESPONSIBILITIES

Coordinate and provide expert technical support to enterprise‑wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert.

Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation.

Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security.

Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation.

Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks.

Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems.

Perform real‑time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs).

Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts.

Track and document cyber defense incidents from initial detection through final resolution.

Other duties as assigned or requested.

EXPERIENCE Required

5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance.

5 years of Cyber Incident Handling.

Preferred

None

SKILLS

Identifying, capturing, containing, and reporting malware.

Preserving evidence integrity according to standard operating procedures or national standards.

Securing network communications.

Recognizing and categorizing types of vulnerabilities and associated attacks.

Protecting a network against malware (e.g., NIPS, anti‑malware, restrict/prevent external devices, spam filters).

Performing damage assessments.

Using security event correlation tools.

Design incident response for cloud service models.

EDUCATION Required

Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or related field.

Substitutions

6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework.

Preferred

Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or related field.

LICENSES or CERTIFICATIONS Required

None

Preferred

Cyber Incident/Security Certifications.

ITIL, CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.

Language None

Travel Requirement 0% – 25%

Physical, Mental Demands and Working Conditions Office‑ or Remote‑based. Occasional travel. Lifting up to 10 pounds.

Pay Range Minimum: $78,900.00 – Maximum: $147,500.00

EEO Statement Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

Accommodation Request For accommodation requests, please contact HR Services Online at

HRServices@highmarkhealth.org .

#J-18808-Ljbffr