Pingwind

CSOC CIR Tier II Analyst

Hines, Texas, United StatesFull timeMidPosted 19 days ago
Apply on Pingwind →

Sign into see who you know at Pingwind.

Location: On-site in Hines, IL Martinsburg, WV, or Austin, TX
Required Clearance: Ability to obtain Tier 4 / High Risk BackgroundInvestigation
Required Education: Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent work experience)
Required Experience: 3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC)
Description
PingWind is seeking a Cyber Incident Response Tier II Analyst to support our VA customer at Hines, IL Martinsburg, WV, or Austin, TX.
Certifications: Must currently have or be willing to obtain one of the following certifications (or equivalent):
GIAC Certified Incident Handler
EC-Council’s Certified Incident Handler (ECIH)
GIAC Certified Incident Handler (GCIH)
Incident Handling & Response Professional (IHRP)
Certified Computer Security Incident Handler (CSIH)
Certified Incident Handling Engineer (CIHE)
EC-Council’s Certified Ethical Hacker
Responsibilities
Perform real-time monitoring and triage of security alerts in Cybersecurity toolsets including SIEM, and EDR
Make accurate determination of what alerts are false positives or require further investigation and prioritization
Lead and actively participate in the investigation, analysis, and resolution of cybersecurity incidents. Analyze attack patterns, determine the root cause, and recommend appropriate remediation measures to prevent future occurrences
Ensure accurate and detailed documentation of incident response activities, including analysis, actions taken, and lessons learned. Collaborate with knowledge management teams to maintain up-to-date incident response playbooks
Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and incident-related updates to management and stakeholders
Identify and action opportunities for tuning alerts to make the incident response team...