US_IT Security & Risk Officer_Senior Job at Belcan, Greensboro, NC

Zkd1dFRkUmVsWGt1dXo4cWhNS1l4YWFtTFE9PQ==
  • Belcan
  • Greensboro, NC

Job Description

Job Title: Cyber Defense Incident Responder, Senior (L3) Location: Greensboro, NC Zip Code: 27409 Start Date: Right Away Job Type: Contract Pay Rate: $87.50 /hr. DoE Keywords: #CyberDefenseIncidentResponder

JOB RESPONSIBILITIES:

Job Title: Cyber Defense Incident Responder, Senior (L3) As a Senior Cyber Defense Incident Responder within the Global Cybersecurity Operations Center (CSOC) you will play a crucial role as a key technical expert responsible for managing and responding to advanced cyber threats, conducting in-depth investigations, and supporting the overall security posture of The Client Group. This role combines hands-on technical expertise with mentoring responsibilities, ensuring effective threat detection, incident response, and continuous improvement of SOC capabilities. What you will do:
  • Analyze and respond to complex security incidents and alerts generated by SOC tools (e.g., SIEM, EDR, IDS/IPS)
  • Investigate and resolve escalated incidents from Level 1 and Level 2 analysts, ensuring swift containment and remediation
  • Lead investigations into cybersecurity incidents, including malware infections, data breaches, and insider threats
  • Perform digital forensics to collect, analyze, and preserve evidence for legal or compliance requirements
  • Provide incident reports with detailed root cause analyses and actionable recommendations
  • Use threat intelligence to identify patterns and indicators of compromise (IOCs) relevant to the organization
  • Work closely with junior analysts to provide guidance, training, and mentorship, fostering a culture of growth and knowledge-sharing
  • Collaborate with IT, cybersecurity, and business stakeholder teams to implement and improve security controls
  • Support the continuous improvement of SOC processes, tools, and technologies to enhance efficiency and effectiveness.
  • Identify gaps in detection and response capabilities and recommend improvements to SOC leadership.
  • Bachelor"s degree in Computer Science or a related 4-year technical degree
  • Minimum 7 years of experience in supporting cyber defense operations in highly complex enterprise networks. Experience in SOC, SIRT, or CSIRT capacities
  • One or more of the following certifications: GIAC Certified Intrusion Analyst, GCIH Certified Incident Handler, GCIA Certified Intrusion Analyst, CISSP
  • Experience in enterprise cybersecurity environment investigating targeted intrusions through complex network segments
  • Expert understanding of Advanced Persistent Threat (APT), Cybercrime, and Hacktivist tactics, techniques, and procedures (TTPs)
  • Subject Matter Expert in cybersecurity principles, threat lifecycle management, incident management
  • Comprehensive knowledge of various operating systems (Windows, OS X, Linux), network protocols, and application layer protocols
  • Demonstratable experience in scripting languages (may include Powershell, Python, PERL, etc.)
  • Understanding of the Cyber Kill Chain methodology, the NIST framework, the MITRE ATT&CK framework, and SANS Critical Security controls
  • Working knowledge in modern cryptographic algorithms and systems
  • Experience working with and tuning signatures, rules, signatures, and security technologies (IDS/IPS, SIEM, Sandboxing tools, EDR, email security platforms, user behavior analytics
  • Network design knowledge including security architecture
  • Strong analytical and technical skills in network defense operations including experience with incident handling (detection, analysis, triage)
  • Conceptual understanding of cyber threat hunting
  • Prior experience and ability analyzing cybersecurity events to determine true positives and false positives. Including cybersecurity alert triage, incident investigation, implementing countermeasures, and managing incident response
  • Previous experience with SIEM platforms and log aggregation systems that perform collection, analysis, correlation, and alerting
  • Ability to develop rules, filters, views, signatures, countermeasures, and other cyber defense platforms as well as the ability to support analysis and detection continual improvement
  • Knowledge of new and emerging cybersecurity technologies
  • Ability to create technical documents as well as stakeholder sitreps and briefing documents
Preferred Qualifications: 
  • Deep Cybersecurity Operations Center experience in the following: intelligence driven detection, security principles, threat lifecycle management, incident management, digital forensics and investigations, network monitoring, endpoint monitoring, OT security principles
  • CSOC Process Management experience, to include: process and procedure management, CSOC initiative management, continual operational improvement
  • Preferred certifications: CISSP, GCIH, GCIA, Linux+, CCNA, CCNP
  • Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles to both business leaders/key stakeholders as well as technical teams and SMEs
  • Demonstrated knowledge in cyber defense policies, procedures, and regulations
  • Knowledge of cyber vulnerability management processes
  • Knowledge of common user and system authentication and authorization mechanisms
If you are interested in this role, please apply via the apply now link provided. Our overriding goal is to provide quality staffing solutions that help people, organizations, and communities succeed. Belcan is a leading provider of qualified personnel to many of the world's most respected enterprises. We offer excellent opportunities for contract, temporary, temp-to-hire, and direct assignments. We are the employer of choice for thousands worldwide. For more information, please visit our website at Belcan.com EOE/F/M/Disability/Veterans

Job Tags

Contract work, Temporary work, Immediate start, Worldwide,

Similar Jobs

Adelphi Staffing, LLC

Emergency Medicine Physician Job at Adelphi Staffing, LLC

 ...Job Quick Facts: Specialty: Emergency Medicine Job Type: Locum Tenens Facility Location: Kenansville, NC Service Setting: Inpatient/Outpatient Reason For Coverage: Supplemental Coverage Period: Aug 1-26, 2025 Coverage Type: Clinical Only ... 

Archdiocese of St. Louis

Substitute Teacher Job at Archdiocese of St. Louis

 ...Job Summary Substitute Teacher - St. Cecilia School and Academy A Substitute Teacher is responsible for teaching and supervising students...  ...or substitute teacher permit may be required. Experience: Prior teaching or classroom experience preferred but not always... 

Brilliant Earth

Polisher/Jeweler/Setter Job at Brilliant Earth

Polisher/Jeweler - Secaucus, NJ Team Overview: Our Jewelry team is dedicated to delivering excellence from the time a customer places an order to the moment a customer opens their package. The team coordinates and executes day-to-day operations of jewelry production...

Feld Entertainment, Inc.

Production Stage Manager - Monster Jam Job at Feld Entertainment, Inc.

Part of a key touring unit management team, the Production Stage Manager for a Monster Jam show provides leadership to the traveling crew, as well as oversight and logistical coordination of the technical operations of the production. Essential Job Functions~Responsible... 

S&K Building Services

Commercial Lift Operator and Window Cleaning Technician Job at S&K Building Services

S&K Building Services is expanding our team across the nation and looking for a Commercial Lift Operator and Window Cleaning Technician! As a Commercial Lift Operator and Window Cleaning Technician Technician, youll be an integral part of our team, supporting our client...