Overview
Skills
Job Details
Job Description:
***Crop to Crop resumes are accepted
The Tier 2 Incident Response Engineer will provide advanced intrusion detection and incident response services, ensuring the rapid identification, analysis, and containment of security threats. This role involves monitoring network traffic for suspicious activity, conducting in-depth incident response investigations, and coordinating with other cybersecurity team members to mitigate risks. This position mainly and primarily supports overnight shift-work (5pm 8am), weekend, federal and state holiday coverage for the 24x7 Cybersecurity Operations Center. The engineer will follow the published TxDOT incident response strategies, create detailed incident reports, and continuously improve our incident response processes through runbook and playbook documentation and inclusions of real-world lessons learned. By leveraging cutting-edge tools and techniques, this position is crucial for maintaining the security and integrity of our organization's digital assets. The Tier 2 Incident Response Engineer works for, and is under the daily management of, the TxDOT Cybersecurity Operations Center team lead.
Required Skills:
- Demonstrated understanding of cybersecurity principles, including intrusion detection, incident response, and threat intelligence.
- 4 Capability to think critically and make quick decisions during high-stress situations.
- Awareness of current cyber threats, attack vectors, and mitigation strategies.
- experience in leveraging threat intelligence to anticipate and mitigate risks.
- Experience with industry-standard detection tools and analysis techniques.
Desired Skills:
- Experience with the CISCO security suite of tools
- Experience with the State of Texas Red Book for incident response (or similar)
- Experience with IT operations of a Texas State Agency
- Communication Skills: Strong verbal and written communication skills for effective collaboration and reporting.