Hiring.Camp

Senior Cyber Incident Responder

Highmarkhealth

·

Apr 3, 2026

Location
PA, Working at Home - Pennsylvania, United States of America · MD, Working at Home - Maryland · WA, Working at Home - Washington · NC, Working at Home - N Carolina · LA, Working at Home - Louisiana · KY, Working at Home - Kentucky · KS, Working at Home - Kansas · IN, Working at Home - Indiana · IL, Working at Home - Illinois · GA, Working at Home - Georgia · IA, Working at Home - Iowa · FL, Working at Home - Florida · CO, Working at Home - Colorado · CA, Working at Home - California · DE, Working at Home - Delaware · CT, Working at Home - Conneticut · AR, Working at Home - Arkansas · AZ, Working at Home - Arizona · AL, Working at Home - Alabama · AK, Working at Home - Alaska · NV, Working at Home - Nevada · VT, Working at Home - Vermont · TN, Working at Home -Tennessee · ID, Working at Home - Idaho · OK, Working at Home - Oklahoma · HI, Working at Home - Hawaii · MS, Working at Home - Mississippi · UT, Working at Home - Utah · NH, Working at Home - New Hampshire · NM, Working at Home - New Mexico · WY, Working at Home - Wyoming · ND, Working at Home - North Dakota · SD, Working at Home-South Dakota · RI, Working at Home - Rhode Island · WV, Working at Home - W Virginia · MO, Working at Home - Montana · TX, Working at Home - Texas · DC, Working at Home - Dist of Col · OH, Working at Home - Ohio · NJ, Working at Home - New Jersey · OR, Working at Home - Oregon · SC, Working at Home-South Carolina · MO, Working at Home - Missouri · VA, Working at Home - Virginia · MA, Working at Home -Massachusetts · NE, Working at Home - Nebraska · MN, Working at Home - Minnesota · MI, Working at Home - Michigan · WI, Working at Home - Wisconsin · NY, Working at Home - New York · ME, Working at Home - Maine
Workplace
Remote
Type
Full-time
Seniority
Senior
Experience
6+ years
Education
Master
Source
Workday

Description

Company :

Highmark Health

Job Description : 

JOB SUMMARY 

This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly documented and completed ensuring the CIRP (Cyber Incident Response Plan) is adhered to.  They will be considered the subject experts and may be called to lead projects and aid in formulation and execution of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of work and resources for the team and delegates activities based upon complexity and capacity. 

 
ESSENTIAL RESPONSIBILITIES 

  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Handle escalated incidents serving as subject matter expert. (20%)
  • Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. (20%)
  • Analyze log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%)
  • Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. (10%)
  • Perform cyber defense trend analysis and reporting, making recommendations to leadership to mitigate future risks. (10%)
  • Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. (10%)
  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). (10%)
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. 95%)
  • Track and document cyber defense incidents from initial detection through final resolution. (5%)
  • Other duties as assigned or requested.

EXPERIENCE 

Required 

  • 5 years of Malware Analysis, Digital Forensics, Data/Network Analysis, Penetration testing, Trends Analysis, or Information Assurance
  • 5 years of Cyber Incident Handling

 
Preferred 

  •  None
     

SKILLS 

  • Identifying, capturing, containing, and reporting malware
  • Preserving evidence integrity according to standard operating procedures or national standards
  • Securing network communications
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Protecting a network against malware (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters)
  • Performing damage assessments
  • Using security event correlation tools
  • Design incident response for cloud service models

EDUCATION 

Required 

  • Bachelor's in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field  

Substitutions 

  • 6 years of experience with information security and systems analysis and experience working within an information security function using the HITRUST Common Security Framework (HITRUST CSF), or the NIST 800-83 cyber security framework 

 Preferred 

  • Masters in computer science, cybersecurity, information technology, software engineering, information systems, computer engineering, or other related field

 
LICENSES or CERTIFICATIONS 

Required 

  • None 

 
Preferred 

  • Cyber Incident/Security Certifications
  • Information Technology Infrastructure Library (ITIL), two of the following certifications: CISSP, GCFA, GCIH, GCFE, GNFA, GREM or GCCC.

 
Language (Other than English): 

None 

Travel Requirement: 

0% - 25% 

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS 

Position Type 

Office- or Remote-based 

Teaches / trains others 

Occasionally 

Travel from the office to various work sites or from site-to-site 

Rarely 

Works primarily out-of-the office selling products/services (sales employees) 

Never 

Physical work site required 

No 

Lifting: up to 10 pounds 

Constantly 

Lifting: 10 to 25 pounds 

Occasionally 

Lifting: 25 to 50 pounds 

Rarely 

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job. 
 
Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies. 
 
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.  In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.  
 
Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.  

Pay Range Minimum:

$86,400.00

Pay Range Maximum:

$138,600.00

Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations.  The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.

For accommodation requests, please contact HR Services Online at [email protected]

California Consumer Privacy Act Employees, Contractors, and Applicants Notice

Skills

CybersecurityPenetration TestingComplianceITILHIPAACISSP

Similar Jobs

28

Senior/Lead Cyber Security - Incident Response Engineer

Fico · Work from Home, United States, United States of America · Remote

1 week ago

Cyber Monitoring & Incident Response Senior Associate

Depository Trust Company · Jersey City, NJ, United States, US

2 weeks ago

Senior Security Engineer – Cyber Hunting & Incident Response – 3rd Shift

Truist · Zebulon NC - 49 Green Pace Road, United States of America · Onsite

2 weeks ago

Senior Cyber Incident Responder

Canopius · Chicago, United States, US

3 weeks ago

Senior Security Engineer – Cyber Hunting & Incident Response

Truist · Atlanta GA - 303 Peachtree Center Avenue - Garden Offices, United States of America +1 · Onsite

3 weeks ago

SITEC - Cyber Defense Incident Responder (SR)- Fort Bragg, NC

Peraton · Fort Bragg, NC, US

1 month ago

Senior Cyber Defense Incident Responder

Aig · 200 South College Street, Charlotte, NC, USA, United States of America

1 month ago

Senior Consultant Cyber Incident Response (m/f/d)

Freseniusglobal · Bad Homburg (EK1), Germany

1 month ago

Senior Consultant Cyber Incident Response (m/f/d)

Freseniusglobal · Bad Homburg (EK1), Germany

1 month ago

Senior Cyber Security Incident Response Analyst

Dentsuaegis · India - Karnataka - Bengaluru  - Richmond Road -  Alyssa Building- Level 0 +1

2 months ago

Senior Cyber Incident Response Analyst

Integrity360 · Dublin, Dublin, Ireland

2 months ago

Senior Manager, Cyber Incident Response Team

Adobe · Lehi, United States of America +2

2 months ago

Senior Cyber Incident Response Analyst

Integrity360

3 months ago

Senior Cyber Incident Response Analyst

Integrity360

3 months ago

Senior Cyber Incident Response Analyst

Integrity360

3 months ago

Senior Cyber Incident Response Analyst (Cape Town or Johannesburg)

Integrity360 · Cape Town, Western Cape, South Africa

3 months ago

Senior Cyber Defense Manager - Incident Response

Boyd Gaming · Las Vegas, United States

3 months ago

Senior Cyber Incident Handling Analyst / Active TS/SCI

Peraton · Wiesbaden Erbenheim Hesse, DE · Onsite

4 months ago

Senior Associate, Cyber Incident Response

Richemont · Office RIC - NEW YORK 645 Fifth Avenue 5-9F (USNE0009), United States of America

4 months ago

Senior Cyber Incident Responder

Deloitte Netherlands · Amsterdam, NH, Netherlands

8 months ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · New York, New York +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · Washington, DC +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · Los Angeles, California +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · Boston, Massachusetts +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · Miami, Florida +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · Atlanta, Georgia +1

1+ year ago

Senior Cyber Incident Response Attorney

Wilsonelserattorneys · New Orleans, Louisiana

1+ year ago

Sr. Cyber Analyst, Digital Forensics Incident Response

Atbayjobs · Remote (US) · Remote

1+ year ago