> Markdown version of [/jobs/ext/2733960-cyber-security-incident-responder](https://www.wearedevelopers.com/jobs/ext/2733960-cyber-security-incident-responder). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Incident Responder - **Company:** Swisslog Holding AG - **Location:** Newport News, VA, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Cyber Security, Software Debugging, Domain Name System (DNS), Intrusion Detection and Prevention, Python (Programming Language), Network Service, Windows PowerShell, Phishing, Security Information and Event Management, Scripting, Malware, Information Technology, Microsoft Sentinel - **Published:** September 5, 2026 - **Apply:** https://www.swisslog.com/en-us/careers/how-to-apply-unsolicited-application-process ## About the Role * IT Experience Or Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent practical experience. * Knowledge of windows OS / General IT (Debugging and IT Problem solving) * Knowledge of phishing, malware, ransomware, account compromise, and insider-threat investigations is a plus * Basic understanding of SOAR technology is a plus * Experience working in a 24x7 SOC or shift-based operational environment is an advantage. * Understanding of common network services (Web, mail, DNS, authentication) is a plus * Previous hands-on experience in the field of IT security (Threat prevention, SIEM, Endpoint protection) is a plus * Experience with scripting or automation using PowerShell, Python, or similar technologies is an advantage. ## Description The Cyber Security Incident Responder is responsible for monitoring, investigating, triaging, and responding to cybersecurity incidents across the enterprise within established operating procedures. The role supports the Security Operations Center (SOC) by analyzing security alerts, conducting investigations, coordinating containment and remediation activities, and continuously improving detection capabilities. The successful candidate will work closely with global IT and security teams to reduce cyber risk and strengthen the organization's security posture. * Perform daily security monitoring, incident triage, investigation, containment, and response activities in accordance with established SOC procedures and service level agreements (SLAs). * Monitor, investigate, and respond to security alerts using Microsoft Sentinel, Microsoft Defender XDR, and other security technologies. * Ability to identify issues, compromised computers using logs, and related computer-centric evidence sources * Document investigations, findings, and remediation actions accurately within case management systems. * Contribute to security use-case tuning and continuous detection improvement. Support automation initiatives through SOAR playbooks and workflow optimization. * Demonstrate ability to perform event analysis and tools utilization (identification, response, escalation) * Exercise attention to detail and due care in regards to work-related communication and documentation. * Exhibit willingness to learn, a desire to collaborate with others, and the drive to take on additional responsibilities when called upon. * Pursue job-related growth and knowledge via higher education, certification, and training. * Maintain awareness of changing processes, procedures, and standards critical to job performance. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [Is Switzerland Better Than Silicon Valley For Software Developers?](https://www.wearedevelopers.com/magazine/2-is-switzerland-better-than-silicon-valley-for-software-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Welcome to Switzerland](https://www.wearedevelopers.com/magazine/4-welcome-to-switzerland) - [Software Developer Salary in Switzerland [2023]](https://www.wearedevelopers.com/magazine/215-software-developer-salary-in-switzerland-2023) - [Swiss Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/323-swiss-business-culture-and-etiquette) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)