CIR Tier II Analyst

Posted 6 Days Ago
Be an Early Applicant
Hines, IL
Mid level
Information Technology • Consulting
The Role
The CIR Tier II Analyst is responsible for real-time monitoring, triage of security alerts, incident analysis, and documentation in cybersecurity. The role involves participating in investigations of incidents and improving response capabilities, working collaboratively with cross-functional teams to enhance the efficacy of security measures and technologies.
Summary Generated by Built In

Work location


Hines, Illinois


Telework options: Not at this time


Shift schedule


Shift Shift Days Shift Time

2nd Sun-Thurs 1430-2300

2nd Tue-Sat 1430-2300


Responsibilities


· Perform real-time monitoring and triage of security alerts in Cybersecurity toolsets including SIEM, and EDR

· Make accurate determination of what alerts are false positives or require further investigation and prioritization

· Lead and actively participate in the investigation, analysis, and resolution of cybersecurity incidents. Analyze attack patterns, determine the root cause, and recommend appropriate remediation measures to prevent future occurrences

· Ensure accurate and detailed documentation of incident response activities, including analysis, actions taken, and lessons learned. Collaborate with knowledge management teams to maintain up-to-date incident response playbooks

· Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and incident-related updates to management and stakeholders

· Identify and action opportunities for tuning alerts to make the incident response team more efficient

· Monitor the performance of security analytics and automation processes regularly, identifying areas for improvement and taking proactive measures to enhance their efficacy

· Leverage Security Orchestration, Automation, and Response (SOAR) platforms to streamline and automate incident response processes, including enrichment, containment, and remediation actions

· Support the mentoring and training of more junior IR staff

· Stay informed about the latest cybersecurity threats, trends, and best practices. Actively participate in cybersecurity exercises, drills, and simulations to improve incident response capabilities


Requirements


· Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent work experience)

· 3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC)

· A deep understanding of cybersecurity principles, incident response methodologies, and a proactive mindset to ensure our SOC operates effectively in a high-pressure environment.

· Strong experience with security technologies, including SIEM, IDS/IPS, EDR, and network monitoring tools

· Experience with enterprise ticketing systems like ServiceNow

· Excellent analytical and problem-solving skills.

· Ability to work independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with minimal oversight.

· Ability to learn and function in multiple capacities and learn quickly.

· Strong verbal and written communication skills


Must currently have or be willing to obtain one of the following certifications (or equivalent)


· GIAC Certified Incident Handler

· EC-Council’s Certified Incident Handler (E|CIH)

· GIAC Certified Incident Handler (GCIH)

· Incident Handling & Response Professional (IHRP)

· Certified Computer Security Incident Handler (CSIH)

· Certified Incident Handling Engineer (CIHE)

· EC-Council’s Certified Ethical Hacker


About PingWind


PingWind is focused on delivering outstanding services to the federal government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and other professional services such as system design and continuous improvement. PingWind is an SBA certified Service-Disabled Veteran-Owned Small Business (SDVOSB) with offices in Northern Virginia and Huntsville AL. www.PingWind.com


Our benefits include:


Paid Federal Holidays

Robust Health & Dental Insurance Options

401k with matching

Paid vacation and sick leave

Continuing education assistance

Short Term / Long Term Disability & Life Insurance

Employee Assistance Program through Sun Life Financial EAP Guidance Resources


Veterans are encouraged to apply


PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.


Top Skills

Cybersecurity
The Company
HQ: Annandale, VA
142 Employees
Hybrid Workplace
Year Founded: 2012

What We Do

Secure. Modernize. Optimize.

PingWind is a CVE certified Service Disabled Veteran Owned Small Business (SDVOSB). We combine cybersecurity, information technology, and supply chain services to help our clients secure information, modernize systems, and optimize performance.

Visit our webpage at www.PingWind.com for more information.

Similar Jobs

Discover Logo Discover

Principal Enterprise Risk Management, Risk Insights, Reporting, and Analytics

Cloud • Fintech • Machine Learning • Analytics • Financial Services
Hybrid
Chicago, IL, USA
18000 Employees
91K-153K Annually

Invenergy Logo Invenergy

Supplier Maintenance Analyst, Accounts Payable

Greentech • Real Estate • Social Impact • Energy • Industrial • Solar • Renewable Energy
Chicago, IL, USA
2500 Employees

Grainger Logo Grainger

Senior Staff Data Engineer

eCommerce • Information Technology • Retail • Industrial
Hybrid
Chicago, IL, USA
26000 Employees

Invenergy Logo Invenergy

Senior Analyst, Reliability Compliance

Greentech • Real Estate • Social Impact • Energy • Industrial • Solar • Renewable Energy
Chicago, IL, USA
2500 Employees

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
357 Employees
Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Cloud
Chicago, IL
45 Employees
InCommodities Thumbnail
Renewable Energy • Machine Learning • Information Technology • Energy • Automation • Analytics
Austin, TX
234 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account