Remote New
Incident Response Analyst
![]() | |
![]() | |
![]() | |
![]() United States, Maryland, Hanover | |
![]() 7437 Race Road (Show on map) | |
![]() | |
*Description*
The digital forensic/incident response analyst is a key member of an organization's cybersecurity team who identifies, investigates, and responds to security incidents. Their primary role is to ensure that incidents are handled efficiently and effectively, minimizing damage and allowing operations to resume as quickly as possible Subject matter expertise including: * Demonstrate and provide in-depth knowledge with Threat Actor tactics, techniques, and procedures (TTPs), log analysis, network traffic analysis, and analyzing system artifacts (file system, memory, running processes, network connections) for indicators of infection/compromise * Provide forensic tool expertise with proficiency in using software such as Magnet Forensics, Joe Sandbox, IDA Pro, and/or Wireshark * Support Malware Analysis to understand its behavior and impact as well as identifying indicators of compromise (IOCs) * Document investigative findings in a manner aligned with TU Processes & DFIR best practices * Support Incident Reporting for management, legal, and regulatory purposes * Organize, perform, and support Cybersecurity tabletop exercises * When not addressing an active IR Investigation: * Lead & assist with IR process workflow improvements * Lead & assist with Threat Hunting activities to identify unknown threats and posture gaps *Skills* incident response, security, endpoint, bilingual *Top Skills Details* incident response,security,endpoint,bilingual *Additional Skills & Qualifications* Subject matter expertise including: * Performing rapid response and triage of security incidents, data breaches, malware infection, & other system compromises as escalated by the Cyber Defense Operations Center (CDOC) * Perform containment & eradication by assessing the situation, containing threats, & eradicating it from affected systems * Adhere to strict procedures for evidence collection, ensuring the integrity of digital evidence throughout the investigation (Chain of Custody) * Facilitate communication and collaborate with internal teams, management, and external stakeholders to provide timely updates on incident progress * Familiarity with security controls/tooling used by TransUnion in an IR capacity, such as: * Splunk and Elasticsearch * Splunk SOAR (For case management) * Endpoint: Microsoft Defender for Endpoint, CrowdStrike, Wazuh, & Tanium * Network: Netskope SWG and CASB, Palo Alto IPS, CloudFlare WAF, Extrahop, & NetWitness * IAM: Azure AD *Experience Level* Expert Level *Pay and Benefits* The pay range for this position is $60.00 - $90.00/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: * Medical, dental & vision * Critical Illness, Accident, and Hospital * 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available * Life Insurance (Voluntary Life & AD&D for the employee and dependents) * Short and long-term disability * Health Spending Account (HSA) * Transportation benefits * Employee Assistance Program * Time Off/Leave (PTO, Vacation or Sick Leave) *Workplace Type* This is a fully remote position. *Application Deadline* This position is anticipated to close on Sep 19, 2025. h4>About TEKsystems: We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law. About TEKsystems and TEKsystems Global Services We're a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We're a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We're strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We're building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com. The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law. |