> Markdown version of [/jobs/ext/1976776-cyber-monitoring-incident-response-senior-associate](https://www.wearedevelopers.com/jobs/ext/1976776-cyber-monitoring-incident-response-senior-associate). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Monitoring & Incident Response Senior Associate - **Company:** The Depository Trust & Clearing Corporation - **Location:** Jersey City, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Log Files - **Published:** August 7, 2026 - **Apply:** https://www.dice.com/job-detail/7b96e37e-95cb-42eb-a34a-38ebf277ec83 ## About the Role * Minimum of 6 years of related experience * Bachelor's degree preferred and/or equivalent experience Talents Needed for Success: * Have at least three (3) years previous experience as a SOC analyst or similar technical role. * Demonstrate strong grasp of forensic interpretation of data. * Demonstrate the ability to research and mentor team members on interpreting on OS log files, network logs, flow data and other security data. * Have previous experience successfully leading technical projects and complex incidents requiring collaboration with multiple people. * Demonstrate tactical leadership of teams to accomplish technical tasks and projects. * Demonstrate the ability to produce written reports including detailed analysis and recommendations. * Demonstrate the ability to convey complex technical concepts to both technical and non-technical audiences. * Be a subject matter expert in a particular technology or security domain as well as have hands-on experience and knowledge of modern security tools and DFIR best practices. * Demonstrate the ability to take minimal high-level requirements and independently produce and execute an action plan to accomplish tasks. * Demonstrate the ability to independently prioritize and manage multiple tasks. * Demonstrate a strong desire to achieve and contribute to a high-performing team. ## Description Being a member of CISO team, reporting to a Cyber Monitoring & Incident Response Manager, you are responsible for detecting, analyzing, and responding to cyber security events. As a technical lead, you lead detecting, investigating, and responding to cyber security events in the organization. You are a member of the Cyber Monitoring and Incident Response Team (CMIR) and qualified to act as Incident Commander on serious incidents, as a result may be tasked with responding to cyber incidents outside of normal work hours. You are also responsible for leading certain programs and initiatives within the Cyber Monitoring as well as assisting in measuring and improving team performance and processes. Your Primary Responsibilities: * Monitor, Detect, Analyze, research, and respond to cyber security events including Network events, OS Log events and forensic information. * Act as an escalation point for junior team members. * Lead and coordinate major investigations and incident response activities. * Act as Incident Commander for serious incidents. * Perform eDiscovery and other technical tasks. * Independently lead technical programs and large projects. * Train and mentor junior staff members. * Work with management and QA/QC lead to improve the overall performance of the team. * Work with the Content Development Team to implement content and tune security platforms. * Collaborate with stakeholders from other business units to conduct investigations, review plans and procedures, and respond to cyber incidents. * Participate in training, exercises, and process improvement program. * Occasionally travel to conferences, training, and other DTCC offices (up to 10%). * Participate in on-call rotation and occasional after-hours work. * Create messaging, socialize your program, and evangelize security at DTCC. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [The Software Bug All Stars - and what we can learn from them](https://www.wearedevelopers.com/videos/423-the-software-bug-all-stars-and-what-we-can-learn-from-them) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Logs in observability - Correlation](https://www.wearedevelopers.com/videos/1430-logs-in-observability-correlation) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf)