×
Register Here to Apply for Jobs or Post Jobs. X

Incident Response Analyst II

Job in Salt Lake City, Salt Lake County, Utah, 84193, USA
Listing for: Western Governors University
Full Time position
Listed on 2026-10-08
Job specializations:
  • IT/Tech
    Cybersecurity, Network Security, Information Security & Data Protection, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 108200 - 162400 USD Yearly USD 108200.00 162400.00 YEAR
Job Description & How to Apply Below

If you’re passionate about building a better future for individuals, communities, and our country—and you’re committed to working hard to play your part in building that future—consider WGU as the next step in your career. Driven by a mission to expand access to higher education through online, competency-based degree programs, WGU is also committed to being a great place to work for a diverse workforce of student-focused professionals.

The university has pioneered a new way to learn in the 21st century, one that has received praise from academic, industry, government, and media leaders. Whatever your role, working for WGU gives you a part to play in helping students graduate, creating a better tomorrow for themselves and their families.

The salary range for this position takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At WGU, it is not typical for an individual to be hired at or near the top of the range for their position, and compensation decisions are dependent on the facts and circumstances of each case.

A reasonable estimate of the current range is:
Grade:
Technical 407 Pay Range: $ - $

Job Description

The current information security landscape is technically complex and constantly changing. The IT Security Analyst II uses their knowledge of current security methods and standards to gather operational information and assess and analyze tools, systems, and processes in defense of applications, systems, and networks and collaborate with Infrastructure and business teams. This role has a strong incident response and security operations focus, with opportunities to apply expertise across digital forensics, intrusion detection, continuous monitoring, cloud security, and security automation.

You’ll collaborate with infrastructure teams, architects, risk professionals, and other security specialists to strengthen defensive capabilities and continuously improve how security threats are detected and addressed.

What You’ll Do
  • Serve as a lead analyst for incident response and related security efforts, including digital forensics, continuous monitoring, intrusion detection and prevention, penetration testing, integration, and automation.
  • Investigate security events and unusual activity using SIEM, IDS/IPS, endpoint security, DLP, HIPS, EPP, client proxy, firewalls, and other security technologies.
  • Analyze phishing emails, logs, network traffic, alerts, and other security telemetry using industry-standard tools to identify malicious, suspicious, or anomalous behavior.
  • Lead or participate in tactical response efforts to investigate and address identified security risks across technical environments.
  • Develop and refine SIEM security rules and security use cases aligned with the MITRE ATT&CK Framework.
  • Collaborate with architects, risk professionals, infrastructure teams, and security specialists to build and integrate detective, preventive, and corrective security controls.
  • Improve incident response and security operations through documentation, automation, lessons learned, Correction of Errors (CoE), and the development of more effective security practices.
What You’ll Bring
  • Bachelor's Degree in IT Security, Computer Science, Engineering, or related field.
  • 3 years of Information Security experience.
  • Experience analyzing SIEM, network, event, security, and IDS alert logs.
  • Experience working with MITRE ATT&CK Framework.
  • Experience with security industry standards and best practices, specifically with interpreting and implementing those standards in a corporate environment.
  • Scripting language experience (Bash, Python, etc.) with strong working knowledge of automation.
  • Experience working with compliance and regulatory program requirements.
  • Experience designing and deploying security solutions.
  • Knowledge and experience in incident handling, computer forensics, intrusion detection systems, firewalls, antivirus, syslog, and related security technologies.
  • Strong understanding of SIEM content security rules to detect malicious, suspicious, and/or abnormal events.
  • Working knowledge of intrusion detection methodologies, network traffic analysis, sensor tuning, and interpreting signatures.
  • Understanding of AWS services, cloud security principles, CI/CD security, infrastructure-as-code, and data encryption strategies.
  • Excellent analytical, problem-solving,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary