Hiring.Camp

Incident Handler

RTX

·

Today

Location
US-CT-FARMINGTON-0004 ~ 4 Farm Springs Rd ~ 4 FARM SPRINGS, United States of America
Workplace
Onsite
Type
Full-time
Experience
5+ years
Source
Workday

Description

Date Posted:

2026-09-03

Country:

United States of America

Location:

US-CT-FARMINGTON-0004 ~ 4 Farm Springs Rd ~ 4 FARM SPRINGS

Position Role Type:

Onsite

U.S. Citizen, U.S. Person, or Immigration Status Requirements:

U.S. citizenship is required, as only U.S. citizens are authorized to access information under this program/contract.

Security Clearance Type:

None/Not Required

Security Clearance Status:

Not Required

RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, and Raytheon. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, VA.

Role Overview: 

Enterprise Services (ES) Cybersecurity has an immediate opening for a qualified technical analyst to join RTX Cyber Defense reporting to the Sr. Manager, Security Operations Center. As an Incident Handler of Security Operations Center, you will be responsible for leading our organization's cyber defense capabilities to minimize impact to RTX operations from cyber adverse events and incidents. You will collaborate with multiple stakeholders, including Incident Command, HR, Legal, Ethics, Privacy, Security Operations, Cyber Insider Threat, and Global Security to create a comprehensive strategy for mitigating cyber threats while maintaining a culture of trust and transparency.

What You Will Do 

The ideal candidate shall perform specific activities that include, but are not limited to the following: 

  • Monitor, identify, investigate and escalate security events using enterprise security tools and automation platforms.
  • Conduct hands‑on technical investigation and analysis during cyber incidents under the guidance of Senior Incident Responders and Incident Commanders.
  • Lead analysis, containment and remediation activities by following established playbooks and procedures
  • Provide technical enrichment and contextual data to support incident investigations.
  • Collaborate with cross‑functional partners during incident handling and follow standard communication channels, including Incident Command, Legal, HR, Ethics, Privacy, Security Operations, Cyber Insider Threat, and Global Security.
  • Contribute to improving detection content, playbooks, and operational workflows through feedback and testing.
  • Create and maintain detailed records of investigations, produce reports, and communicate findings to senior management and relevant stakeholders.
  • Support continuous enhancements to Cyber Defense processes and perform additional duties as assigned.

Qualifications You Must Have :

  • Typically requires a University Degree or equivalent experience and a minimum 5 years of experience, or an Advanced Degree and a minimum 3 years experience.
  • Minimum 5 years of experience in technical Cyber Defense operational roles, including Incident Response, SOC, and / or Forensics. 

Qualifications We Prefer:

  • Hands‑on experience with EDR/XDR tools, SIEM technologies, and common security platforms.
  • Working knowledge of digital forensics concepts, insider threat indicators, and TTPs.
  • CompTIA CySA+, Cloud certifications, CEH, GIAC certifications such as GSEC, GCIH or similar are a plus..
  • Excellent written and verbal communication skills; must be able to effectively communicate technical details to peers and all levels of executive leadership with varying levels of technical expertise.
  • Operating knowledge of MITRE ATT&CK (or other industry frameworks), incident handling methodologies, and  AI\automation concepts is highly desired.
  • Strong analytical skills and the ability to clearly document and communicate findings.
  • Eligible to obtain a US security clearance.

Work Location: Onsite, Please consider the following role type definition as you apply for this role:

Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products

What We Offer: Whether you’re just starting out on your career journey or are an experienced professional, we offer a robust total rewards package with compensation; healthcare, wellness, retirement and work/life benefits; career development and recognition programs. Some of the benefits we offer include parental (including paternal) leave, flexible work schedules, achievement awards, educational assistance and child/adult backup care.

Learn More & Apply Now

As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.

The salary range for this role is 86,800 USD - 165,200 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate’s work experience, location, education/training, and key skills.

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.

Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company’s performance.

This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.

RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.

RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans’ Readjustment Assistance Act.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms

Skills

CybersecuritySIEMSOCComplianceCompTIA

Similar Jobs

8

Incident Handler

Peraton · Fort Huachuca, AZ, US

3 days ago

Incident Handler

GoSecure · Montréal, QC +1

6 months ago

Incident Handler / Threat Hunter

KPN · Hilversum, NH, Netherlands · Hybrid

1 week ago

Senior Incident Handler

Yale · Outside of Connecticut, United States of America · Remote

1 month ago

Senior Incident Handler

Yale · Outside of Connecticut, United States of America · Remote

1 month ago

Security Incident Handler

DXC Technology · BG108 - Sofia Business Park, Bldg. 15 (BG108), Bulgaria +1

1 month ago

Senior Incident Handler

Allstate · USA - IL (Remote), United States of America · Remote

1 month ago

Incident Handler Tier 2

Arsiem · Monterey, CA · Onsite

1+ year ago