Comcast Cybersecurity: Cyber Incident Response Triage Analyst

Posted 7 Hours Ago
Be an Early Applicant
Hiring Remotely in Pennsylvania, USA
Remote or Hybrid
60K-139K Annually
Junior
Digital Media • Information Technology • News + Entertainment
Come to Comcast and bring connection to life.
The Role
Monitors, triages, investigates, and resolves cybersecurity alerts and incidents in a high-volume SOC environment. Manages incidents through closure, performs event correlation and enrichment, executes response actions, documents investigations, meets SLAs, escalates complex threats, supports audits, and contributes to detection tuning and process improvements during 24x7 operations.
Summary Generated by Built In
Make your mark at Comcast -- a Fortune 30 global media and technology company. From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions of customers, viewers, and guests worldwide. Become part of our award-winning technology team that turns big ideas into cutting-edge products, platforms, and solutions that our customers love. We create space to innovate, and we recognize, reward, and invest in your ideas, while ensuring you can proudly bring your authentic self to the workplace. Join us. You'll do the best work of your career right here at Comcast. (In most cases, Comcast prefers to have employees on-site collaborating unless the team has been designated as virtual due to the nature of their work. If a position is listed with both office locations and virtual offerings, Comcast may be willing to consider candidates who live greater than 100 miles from the office for the remote option.)
Job Summary
Responsible for monitoring, identifying, investigating, and analyzing cybersecurity events and incidents within an organization. Performs triage and response activities across a high volume of alerts while independently managing incident handling beyond entry-level expectations. This role operates primarily within a Security Operations Center (SOC) L1 function but is expected to demonstrate developing L2-level capabilities, including deeper investigation, event correlation, and independent judgment in incident resolution. Analysts in this role handle moderate complexity incidents and are responsible for end-to-end case management, including accurate documentation and timely closure. Works under general supervision while exercising independent discretion in matters of significance, including incident prioritization, response actions, and escalation decisions.
Job Description
This position is ineligible for visa sponsorship. To be considered for this role, you must be legally authorized to work in the United States and not require sponsorship for employment now or in the future.
Job Duties:
  • Monitor security tools and platforms for alerts, suspicious activity, and potential threats
  • Triage, investigate, and resolve a high volume of security events and incidents
  • Independently open, manage, and close incidents with accurate classification, documentation, and adherence to SLA requirements
  • Perform deeper analysis beyond entry-level triage, including event correlation and alert enrichment
  • Determine alert validity, impact, and appropriate response actions
  • Execute containment, eradication, and recovery steps in accordance with established playbooks
  • Identify intrusion methods, affected systems, and potential scope during investigations
  • Escalate complex, ambiguous, or high-risk incidents to senior analysts as appropriate
  • Maintain working knowledge of common threats, vulnerabilities, attack techniques, and adversary behaviors
  • Identify false positives and recommend opportunities for detection tuning and process improvement
  • Assist with audits, reporting, and investigative support activities
  • Prepare clear and concise incident documentation and summaries for operational tracking and reporting
  • Participate in After Action Reviews (AARs) and contribute to response and process improvements
  • Follow and maintain standard operating procedures, playbooks, and escalation paths
  • Support 24x7 operations, including nights, weekends, or on-call rotations as required

Position Expectations
  • Operate effectively in a high-volume incident handling environment
  • Demonstrate independent ownership of incident lifecycle from intake through closure
  • Maintain consistent SLA adherence, documentation quality, and case accuracy
  • Apply analytical judgment to distinguish between benign, false positive, and true positive activity
  • Perform enrichment and basic correlation without direct supervision
  • Recognize and escalate incidents that exceed role scope or complexity

Basic Qualifications
  • 2-4 years of experience in cybersecurity, Security Operations Center (SOC), or incident response
  • Experience monitoring and responding to security alerts in a production environment
  • Familiarity with SIEM, SOAR, EDR, and related security tools
  • Understanding of networking fundamentals, operating systems, and common security controls
  • Knowledge of common attack techniques (e.g., phishing, malware, credential abuse, lateral movement)
  • Strong analytical, problem-solving, and decision-making skills
  • Basic knowledge of AI fundamentals, including LLMs, AI agents, skills, and the differences between leading AI models and platforms such as GPT, Claude, and Anthropic.

Preferred Qualifications
  • Experience working in a 24x7 SOC or Incident Response environment
  • Familiarity with threat intelligence platforms and alert enrichment processes
  • Exposure to scripting or automation (e.g., Python, PowerShell)
  • Experience supporting audits or compliance-driven environments
  • Knowledge aligned to incident response frameworks (e.g., NIST lifecycle concepts)

Disclaimer
This information has been designed to indicate the general nature and level of work performed by employees in this role. It is not intended to be a comprehensive inventory of all duties, responsibilities, and qualifications.
EEO Statement
Comcast is an EOE/Veterans/Disabled/LGBT employer.
Comcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law. Comcast will consider for employment applicants with arrest or conviction records in accordance with the requirements of applicable law, including the San Francisco Fair Chance Ordinance, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Please note that federal state, or local laws and regulations may restrict or prohibit Comcast from hiring individuals convicted of certain crimes. Additionally, an applicant's criminal history may have a direct, adverse, and negative relationship on the job duties of this position, which may result in the withdrawal of a conditional offer of employment.
Skills:
Incident Response; Artificial Intelligence (AI); Communication; Network Security
Salary:
National Pay Range: $59,512.60 USD-$139,482.65 USD Illinois Pay Range: $63,232.13 USD - $122,744.73 USD Colorado Pay Range: $66,951.67 USD - $128,324.03 USD Hawaii Pay Range: $78,110.28 USD - $117,165.42 USD Washington DC Pay Range: $85,549.36 USD - $128,324.03 USD Maryland Pay Range: $70,671.21 USD - $128,324.03 USD Minnesota Pay Range: $66,951.67 USD - $117,165.42 USD New York Pay Range: $70,671.21 USD - $139,482.65 USD Washington Pay Range: $66,951.67 USD - $133,903.34 USD New Jersey Pay Range: $74,390.74 USD - $133,903.34 USD Vermont Pay Range: $70,671.21 USD - $111,586.12 USD Massachusetts Pay Range: $74,390.74 USD - $133,903.34 USD Virginia Pay Range: $66,951.67 USD - $128,324.03 USD Maine Pay Range: $66,951.67 USD - $111,586.12 USD Connecticut Pay Range: $70,671.21 USD - $133,903.34 USD California Pay Range: $66,951.67 USD - $123,984.57
Comcast intends to offer the selected candidate base pay within this range, dependent on job-related, non-discriminatory factors such as experience. The application window is 30 days from the date job is posted, unless the number of applicants requires it to close sooner or later.
The application window is 30 days from the date job is posted, unless the number of applicants requires it to close sooner or later.
Base pay is one part of the Total Rewards that Comcast provides to compensate and recognize employees for their work. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus. Additionally, Comcast provides best-in-class Benefits to eligible employees. We believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools, that are personalized to meet the needs of your reality - to help support you physically, financially and emotionally through the big milestones and in your everyday life. Please visit the compensation and benefits summary on our careers site for more details.
Education
Bachelor's Degree
While possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.
Relevant Work Experience
2-5 Years

Skills Required

  • 2-4 years of experience in cybersecurity, Security Operations Center, or incident response
  • Experience monitoring and responding to security alerts in a production environment
  • Familiarity with SIEM, SOAR, EDR, and related security tools
  • Understanding of networking fundamentals, operating systems, and common security controls
  • Knowledge of common attack techniques, including phishing, malware, credential abuse, and lateral movement
  • Strong analytical, problem-solving, and decision-making skills
  • Basic knowledge of AI fundamentals, LLMs, AI agents, and major AI models and platforms
  • Experience working in a 24x7 SOC or incident response environment
  • Familiarity with threat intelligence platforms and alert enrichment processes
  • Exposure to scripting or automation, such as Python or PowerShell
  • Experience supporting audits or compliance-driven environments
  • Knowledge of incident response frameworks, including NIST lifecycle concepts
  • Bachelor's degree

What the Team is Saying

Justin
Ying
Margi
James
Jackie-Jane

Comcast Compensation & Benefits Highlights

  • Healthcare Strength — Offerings include medical, dental, vision, virtual care, healthcare advocacy, and mental‑health resources, which are highlighted as comprehensive. This area is frequently portrayed as a standout component of the package.
  • Retirement Support — A 401(k) program with a company match (reported as dollar‑for‑dollar up to 6%, with vesting) is emphasized as a strong element of total rewards. Retirement features are consistently referenced as a meaningful part of overall compensation.
  • Parental & Family Support — Paid parental leave for primary and non‑primary caregivers, fertility/family‑forming assistance, adoption/surrogacy reimbursements, and caregiving resources are described as part of a broad suite. The breadth of family support is repeatedly underscored as a strength.

Comcast Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Philadelphia, PA
115,000 Employees
Year Founded: 1963

What We Do

Welcome to Comcast. From the connectivity and platforms we provide to the content and experiences we create, we bring people together, globally. Our people think the world of our work, and that’s why our work is the best in the world.

Why Work With Us

We believe you can achieve extraordinary things when you feel connected - to the work you do and who you do it with. From the platforms we provide to millions of people, to the content and experiences we create - we bring our customers, viewers and teammates closer together across the globe.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Comcast Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: 4 days a week
HQComcast Center
India
Los Angeles Entertainment Office
Atlanta Corporate Office
Beijing Office
Chicago Corporate Office
Denver Corporate Office
Sky Headquarters
Miami Corporate Office
Milan Office
Munich Office
NBCUniversal Headquarters
Comcast Technology Center
São Paulo Office
Singapore Regional Hub
Sunnyvale Technology Office
Sydney Office
Tokyo Office
Learn more

Similar Jobs

Comcast Logo Comcast

Data Engineer

Digital Media • Information Technology • News + Entertainment
Remote or Hybrid
Pennsylvania, USA
115000 Employees
80K-133K Annually

Comcast Logo Comcast

Sales Representative

Digital Media • Information Technology • News + Entertainment
Remote or Hybrid
Pennsylvania, USA
115000 Employees
26K-28K Hourly

Comcast Logo Comcast

Sales Representative

Digital Media • Information Technology • News + Entertainment
Remote or Hybrid
Pennsylvania, USA
115000 Employees
26K-30K Hourly

Comcast Logo Comcast

Senior Software Engineer

Digital Media • Information Technology • News + Entertainment
Remote or Hybrid
Pennsylvania, USA
115000 Employees
99K-231K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account