🌍 Global Remote Network: Over 120,085+ verified remote jobs with transparent salaries & visa sponsorship. Browse Remote Jobs →
S

Tier II Cyber Incident Response Analyst

📍 Austin, TX 🕒
Work Model
📍 Austin, TX
Employment
💼 Full-Time Direct
Recruitment Type
🛡️ Direct to HR Pipeline
🛡️
Human-Verified Opening: Inspected by Sarah Jenkins, CIPD • RemoteVault Editorial Team. Authenticated directly from SAIC's hiring pipeline • Zero recruiter markups or candidate fees. Verification Standards →

📋 Role Overview & Responsibilities

Job ID 2405649-3588

Location AUSTIN, TX, US

Date Posted 2024-04-18

Category Cyber

Subcategory Cybersecurity Ops

Schedule Full-time

Shift Night Job

Travel No

Minimum Clearance Required None

Clearance Level Must Be Able to Obtain Public Trust

Potential for Remote Work No

Description

Overview

We are seeking a motivated, career and customer oriented Cyber Incident Response (CIR) Tier II Analyst interested in joining our Cyber Security Operations Center (CSOC) team in support of the Department of Veterans Affairs (VA). This is a Third Shift Position (11pm – 7am). (This is a 24/7/365 environment. Some weekends and holidays are possibly required per your schedule).

This is an onsite position working in either Hines, IL, Martinsburg, WV or Austin, TX

Responsibilities

Perform real-time monitoring and triage of security alerts in Cybersecurity toolsets including SIEM, and EDR Make accurate determination of what alerts are false positives or require further investigation and prioritization Lead and actively participate in the investigation, analysis, and resolution of cybersecurity incidents. Analyze attack patterns, determine the root cause, and recommend appropriate remediation measures to prevent future occurrences Ensure accurate and detailed documentation of incident response activities, including analysis, actions taken, and lessons learned. Collaborate with knowledge management teams to maintain up-to-date incident response playbooks Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and incident-related updates to management and stakeholders Identify and action opportunities for tuning alerts to make the incident response team more efficient Monitor the performance of security analytics and automation processes regularly, identifying areas for improvement and taking proactive measures to enhance their efficacy Leverage Security Orchestration, Automation, and Response (SOAR) platforms to streamline and automate incident response processes, including enrichment, containment, and remediation actions Support the mentoring and training of more junior IR staff Stay informed about the latest cybersecurity threats, trends, and best practices. Actively participate in cybersecurity exercises, drills, and simulations to improve incident response capabilities

Qualifications

Required Education and Experience

Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Criminology, or similarly relevant field and five (5) years or more experience US Citizenship 3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC) A deep understanding of cybersecurity principles, incident response methodologies, and a proactive mindset to ensure our SOC operates effectively in a high-pressure environment. Strong experience with security technologies, including SIEM, IDS/IPS, EDR, and network monitoring tools Experience with enterprise ticketing systems like ServiceNow Excellent analytical and problem-solving skills. Ability to work independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with minimal oversight. Ability to learn and function in multiple capacities and learn quickly. Strong verbal and written communication skillsRequires one of the following certificationsEC-Council’s Certified Ethical HackerGIAC Certified Incident HandlerEC-Council’s Certified Incident Handler (E|CIH)GIAC Certified Incident Handler (GCIH)Incident Handling & Response Professional (IHRP)Certified Computer Security Incident Handler (CSIH)Certified Incident Handling Engineer (CIHE)Candidates must be eligible to obtain a Public Trust based on the Department of Veteran Affairs regulations.

Shift Schedule

3rd

Sun-Thurs

2300-0730

3rd

Tue-Sat

2300-0730

SAIC accepts applications on an ongoing basis and there is no deadline.

Covid Policy SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.

Frequently Asked Questions

How do I apply for the Tier II Cyber Incident Response Analyst position at SAIC?

Click the “Apply for this Position” button on this page to submit your application directly to SAIC without recruitment intermediary fees.

Is this position eligible for remote work or visa sponsorship?

This position is located in Austin, TX with potential relocation and sponsorship assistance depending on candidate qualifications.

Are there any candidate fees on Hirely?

No. Hirely is completely free for candidates. We never charge registration fees or placement fees.

🛡️ Job Seeker Safety Advisory

Legitimate employers will never ask you to transfer funds, purchase equipment from unauthorized vendors, or pay application/visa fees. Hirely rigorously monitors listings, but always verify communication is from official corporate email domains.

Learn how to protect yourself against employment fraud →
← Explore Other Roles