More jobs:
Incident Response CyberSecurity Engineer
Job in
Austin, Travis County, Texas, 78716, USA
Listed on 2025-12-03
Listing for:
PRI Technology
Full Time
position Listed on 2025-12-03
Job specializations:
-
IT/Tech
Cybersecurity, Security Manager
Job Description & How to Apply Below
Incident Response Cyber Security Engineer
This range is provided by PRI Technology. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range$/yr - $/yr
Responsibilities- Monitor and analyze security alerts from SIEM, EDR, and other security platforms to identify potential threats.
- Perform in-depth investigation of suspicious activity, correlating data across multiple sources to determine scope and impact.
- Lead the resolution of low to moderately complex security incidents, including containment, eradication, and recovery actions.
- Support containment and remediation efforts during active incidents.
- Conduct initial root cause analysis and contribute to post-incident reviews to identify gaps and improve future response efforts.
- Leverage threat intelligence, behavioral analytics, and contextual data to enhance detection, investigation, and resolution capabilities.
- Collaborate with detection engineering teams to develop, test, and tune detection rules and use cases.
- Perform basic malware analysis, log correlation, and network traffic inspection to support incident resolution.
- Maintain up-to-date knowledge of the threat landscape, including attacker tactics, techniques, and procedures (TTPs), and apply this knowledge to improve incident handling.
- Work closely with IT, OT, and business units to validate alerts, gather context, and coordinate incident resolution efforts.
- Document investigation steps, findings, and resolution actions in a clear, structured, and timely manner.
- Participate in SOC shift rotations to ensure 24/7 monitoring and rapid response to security events.
- Contribute to the continuous improvement of SOC processes, playbooks, and knowledge base, with a focus on enhancing incident resolution workflows.
- Bachelor’s degree in Cybersecurity, Information Technology, or Computer Science (completed and verified prior to start).
- Solid experience in a SOC or cybersecurity operations.
- Effective communicator with the ability to document investigations and collaborate with cross‑functional teams.
- Certifications such as CompTIA Security+, CySA+, or GCIH.
- Proficiency in analyzing alerts from SIEM, EDR, and network monitoring tools.
- Familiarity with threat intelligence, basic malware analysis, and log correlation techniques.
- Understanding of common attack vectors, threat actor behaviors, and frameworks like MITRE ATT&CK.
- Strong analytical and problem‑solving skills with attention to detail.
- Experienced in triaging and investigating security alerts across SIEM, EDR, and network platforms, skilled in correlating data from multiple sources to identify and escape confirmed threats.
- Proficient in supporting incident response efforts and conducting initial root cause analysis.
- Strong understanding of threat intelligence and its application in operational workflows.
- Effective communicator with the ability to document investigations clearly and collaborate across teams.
- Committed to continuous learning and development in threat detection and response.
- Analytical thinker with a proactive approach to identifying and mitigating risks.
- Reliable team player in a 24/7 SOC environment, contributing to operational excellence.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×