Tier II-III Incident Response Analyst

Boston Government Services, LLC (BGS) - Knoxville Metropolitan Area

Hiring: Tier II-III Incident Response Analyst Company: Boston Government Services, LLC (BGS) Location: Knoxville Metropolitan Area Job Posted Time: 2026-09-11 13:24:44 Employment Type: Full-time / Remote Target Skills & Keywords : Program Management, SIEM, SOC About the job Required Skills: •The Tier II - III Incident Response Analyst provides hands-on support for incident escalation, advanced analysis, cyber threat investigation, forensic support, containment coordination, remediation tracking, and after-action reporting across the client’s managed environment. •Support escalations from Tier 1, requiring deeper analysis, investigation, or response coordination. •Conduct triage, event analysis, evidence review, threat correlation, and incident documentation. •Analyze suspicious emails, websites, web downloads, endpoint alerts, network activity, and SIEM/EDR data. •Support malware analysis, forensic analysis, artifact collection, and digital evidence preservation under established procedures. •Coordinate with stakeholders during incident response activities and support containment, eradication, recovery, and lessons learned. •Develop incident response tickets, after-action reports, daily remediation activity reports, chain-of-custody forms, and monthly forensic activity summaries. •Collect and disseminate indicators of compromise and support cyber threat intelligence analysis. Qualifications: •Bachelor’s degree or equivalent. •Operational familiarity with SIEM, EDR, IDS/IPS, endpoint telemetry, logging platforms, ticketing systems, malware analysis processes, and evidence handling. •Knowledge of NIST SP 800-61, NIST SP 800-86, US-CERT/Federal incident notification expectations, and common attack techniques. •Demonstrated capacity to work under time-sensitive conditions and produce clear incident documentation. •Must be a U.S. citizen. •Must be eligible to obtain and maintain a security or clearance badge. •GCIH, GCIA, GCFA, GCFE, Security+, CySA+, CISSP, CEH, or equivalent. •Schedule is full-time, Monday – Friday 40-hour week, 4/10’s, or 9/80’s and may require on call or overnight shifts depending on contract needs. •This position may be fully onsite or hybrid/remote depending on the needs of the specific contract. Compensation: •$131,316 - $154,489 / year •Competitive benefits and rewards package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!