Find Jobs
Find Jobs Near You – Available Work in Your Location
Cybersecurity Analyst
Career Insights for Incident Analyst / Responder
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Florida data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
An Incident Analyst or Responder investigates an IT-related incident: an unplanned interruption to a service, a reduction in the quality of a service, or an event that has not yet impacted the service to the customer. Works to restore a normal service operation as quickly as possible and to minimize the impact on business operations.
$117,470 / year median in Florida
+13% projected growth
Job Description
The position will focus on cybersecurity monitoring, incident response, threat detection, and administration of security technologies within a 24/7 Cybersecurity Operations Center (CSOC) environment. Experience working in a 24/7 Cybersecurity Operations Center (CSOC) Hands-on experience with: Security Information and Event Management (SIEM) Intrusion Prevention Systems (IPS) Endpoint Detection and Response (EDR) Antivirus (AV) Network intrusion detection and prevention Host-based security Operational Technology (OT) monitoring tools Experience with Cybersecurity Incident Response, including triage, containment, and eradication Experience with SDLC security requirements High School Diploma/GED Bachelor's degree or equivalent experience Previous cybersecurity internship or professional experience Security+ or similar cybersecurity certification Key Responsibilities Administer, operate, and monitor information security sensors, logging, alerting, and other detection mechanisms. Identify, investigate, and respond to cybersecurity threats. Participate as a member of the Cybersecurity Incident Response Team (CIRT). Triage, contain, and eradicate threats affecting client assets and data. Serve as a subject matter expert for assigned cybersecurity technology stacks, such as: SIEM Network intrusion detection/prevention Host-based security OT monitoring tools Monitor and respond to alerts from IPS, EDR, phishing, AV, and SIEM tools. Collaborate with Security Architecture teams to evaluate and recommend cybersecurity technologies. Communicate cybersecurity activities, priorities, risks, and mitigation strategies to stakeholders at multiple organizational levels. Provide guidance on cybersecurity requirements throughout the System Development Life Cycle (SDLC). Support application development and organizational projects as required. Help strengthen the organization's overall security posture through continuous monitoring and threat response.