> Markdown version of [/jobs/ext/2954261-jr-cyber-defense-incident-responder](https://www.wearedevelopers.com/jobs/ext/2954261-jr-cyber-defense-incident-responder). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Jr Cyber Defense Incident Responder - **Company:** World Wide Technology - **Location:** San Antonio, TX, United States - **Experience:** Starter - **Salary:** $80,000.0 - $110,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Computer Networks, Computer Forensics, Deep Packet Inspection, Linux, Networking Hardware, Intrusion Detection and Prevention, Network Security, Pcap, NetFlow, Network Forensics, Open Source Technology, Pattern Recognition, Wireshark, Firewalls (Computer Science), Information Technology, Cybercrime, Cyber Warfare, Vulnerability Analysis - **Published:** September 17, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9169836/jr-cyber-defense-incident-responder ## About the Role * 2+ years of experience in conducting incident handling/response, cyber threat hunting, Computer forensics, Cyber Network Defense and Analysis * Associate's Degree or Higher in Cybersecurity, Computer Science or related field * IAT II 8140 Certification * GIAC Certified Forensic Analyst (GCFA) * Security Clearance: Top Secret/SCI with potential for higher read-ins * Knowledge of computer networking concepts and protocols, and network security methodologies. * Knowledge of national and international laws, regulations, policies, and ethics as they relate to cybersecurity. * Knowledge of cybersecurity principles. * Knowledge of cyber threats and vulnerabilities. * Knowledge of specific operational impacts of cybersecurity lapses. * Knowledge of authentication, authorization, and access control methods. * Knowledge of cyber defense and vulnerability assessment tools, including open-source tools, and their capabilities. * Ability to interpret and incorporate data from multiple tool sources. * Knowledge of risk management processes (e.g., methods for assessing and mitigating risk). * Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions via intrusion detection technologies. * Knowledge of Palo Alto XOAR playbook development. * Linux Incident response and forensics background. * Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption). * Knowledge of network traffic analysis methods * Skilled in deep packet inspection (DPI), anomaly detection, and traffic pattern analysis using tools like Zeek, Wireshark, NetFlow, and PCAP replay environments ## Description * Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information. * Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources. * Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings). * Coordinate with enterprise-wide cyber defense staff to validate network alerts. * Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment. * Identify and analyze anomalies in network traffic using metadata. * Identify applications and operating systems of a network device based on network traffic. * Perform cyber defense trend analysis and reporting. * Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack. * Ability to interpret and incorporate data from multiple tool sources. * All other duties as defined by CSSP., We strive to create an environment where all employees are empowered to succeed based on their skills, performance, and dedication. Our goal is to cultivate a culture of belonging that encourages innovation, collaboration, and respect for all team members, ensuring that WWT remains a great place to work for All! ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)