Cybersecurity Incident Responder

NTT DATA Corporation
Fayetteville, United States of America
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Junior

Job location

Fayetteville, United States of America

Tech stack

Amazon Web Services (AWS)
Spyware
Antivirus Softwares
Azure
Cloud Computing
CompTIA Security+
Computer Security
DNS
Issue Tracking Systems
IT Management
Intrusion Detection Systems
Networking Basics
Phishing
Security Information and Event Management
EndPointSecurity
Computer Networking Systems
Google Cloud Platform
Malware
Forescout
Cybercrime
Cyber Warfare
Splunk
ServiceNow
Vulnerability Analysis

Job description

The Cyber Incident Responder is responsible for detecting, analyzing, containing, eradicating, and recovering from cybersecurity incidents across enterprise, endpoint, network, and cloud environments. This role supports daily cyber defense operations by responding to malicious activity, suspicious events, policy violations, malware infections, spillages, and other reportable cyber incidents. The ideal candidate understands core incident response principles, follows established procedures, and coordinates effectively with system administrators, network teams, security leadership, and mission stakeholders throughout cyber events.

Key responsibilities include conducting investigations and responding to cybersecurity alerts and confirmed incidents across enterprise networks and cloud platforms such as AWS, Microsoft Azure, and Google Cloud. The responder executes containment actions on compromised systems or accounts, supports eradication and recovery efforts, and documents all response activities through incident closure. The role also involves analyzing malware infections and responding to indicators of ransomware, trojans, spyware, and unauthorized software, coordinating host containment and remediation actions such as antivirus or EDR scanning, reimaging, and evidence preservation when necessary.

Additionally, the position requires knowledge of DoD and federal incident categories, including handling or assisting with CAT 1, 2, 4, 7, and CAT 5 spillage events, and understanding appropriate escalation procedures and reporting timelines. The responder also manages spillage and data-loss events by containing and sanitizing affected systems, coordinating reporting and remediation, and supporting insider-threat or data-exfiltration investigations as required.

The role conducts continuous monitoring by reviewing SIEM alerts, logs, endpoint notifications, and user reports, utilizing tools such as Trellix ESS, Splunk ES, Splunk SOAR, MAR/HX, NSM, Varonis, IDS, Stealthwatch, Cylance, and ForeScout to correlate data and determine incident scope and impact. Strong documentation and reporting skills are essential, including creating accurate incident tickets, detailed timelines, after-action reports, maintaining evidence and chain-of-custody records, and briefing leadership or management as needed.

Requirements

  • Minimum 7 years' of professional experience
  • Minimum 4 years' of experience in cybersecurity, help desk, system administration, SOC, or IR.
  • Minimum 1 year of experience in Incident Response lifecycle (Preparation, Identification, Containment, Eradication, Recovery, Lessons Learned)
  • Minimum 1 year of experience in Email phishing investigations
  • Minimum 1 year of experience with one or more:
  • Splunk and Elastic for Cloud
  • Endpoint Detection & Response (EDR) tools
  • Antivirus platforms
  • Vulnerability scanners (ACAS)
  • ServiceNow, Remedy or similar ticketing systems
  • DoD 8570/8140 certification: CompTIA Security+ CE
  • Top Secret Security Clearance, SCI eligible., * Malware basics
  • Networking fundamentals (IP, DNS, ports, protocols)
  • Experience supporting enterprise IT environment
  • Certification in one of: CySA+, CASP+, GIAC (GCIH, GCFA, etc.)

About the company

NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D.

Apply for this position