Incident Response Analyst II

Western Governors University•Raleigh, NC
•$108,200 - $162,400•Onsite

About The Position

The current information security landscape is technically complex and constantly changing. The IT Security Analyst II uses their knowledge of current security methods and standards to gather operational information and assess and analyze tools, systems, and processes in defense of applications, systems, and networks and collaborate with Infrastructure and business teams. This role has a strong incident response and security operations focus, with opportunities to apply expertise across digital forensics, intrusion detection, continuous monitoring, cloud security, and security automation. You’ll collaborate with infrastructure teams, architects, risk professionals, and other security specialists to strengthen defensive capabilities and continuously improve how security threats are detected and addressed.

Requirements

  • Bachelor's Degree in IT Security, Computer Science, Engineering, or related field.
  • 3 years of Information Security experience.
  • Experience analyzing SIEM, network, event, security, and IDS alert logs.
  • Experience working with MITRE ATT&CK Framework.
  • Experience with security industry standards and best practices, specifically with interpreting and implementing those standards in a corporate environment.
  • Scripting language experience (Bash, Python, etc.) with strong working knowledge of automation.
  • Experience working with compliance and regulatory program requirements.
  • Experience designing and deploying security solutions.
  • Knowledge and experience in incident handling, computer forensics, intrusion detection systems, firewalls, antivirus, syslog, and related security technologies.
  • Strong understanding of SIEM content security rules to detect malicious, suspicious, and/or abnormal events.
  • Working knowledge of intrusion detection methodologies, network traffic analysis, sensor tuning, and interpreting signatures.
  • Understanding of AWS services, cloud security principles, CI/CD security, infrastructure-as-code, and data encryption strategies.
  • Excellent analytical, problem-solving, decision-making, written, and verbal communication skills.
  • Equivalent relevant experience performing the essential functions of this job may substitute for education degree requirements. Generally, equivalent relevant experience is defined as 1 year of experience for 1 year of education and is the discretion of the hiring manager.

Nice To Haves

  • 8 years of Information Security experience.
  • Experience recommending additional security requirements and safeguards.
  • Experience in the development of end-user operating manuals and documentation.
  • Familiarity with Cloud infrastructure.
  • Relevant security certifications (CISSP, GIAC, ISACA, CCSP, CCSK, AWS, etc.).

Responsibilities

  • Serve as a lead analyst for incident response and related security efforts, including digital forensics, continuous monitoring, intrusion detection and prevention, penetration testing, integration, and automation.
  • Investigate security events and unusual activity using SIEM, IDS/IPS, endpoint security, DLP, HIPS, EPP, client proxy, firewalls, and other security technologies.
  • Analyze phishing emails, logs, network traffic, alerts, and other security telemetry using industry-standard tools to identify malicious, suspicious, or anomalous behavior.
  • Lead or participate in tactical response efforts to investigate and address identified security risks across technical environments.
  • Develop and refine SIEM security rules and security use cases aligned with the MITRE ATT&CK Framework.
  • Collaborate with architects, risk professionals, infrastructure teams, and security specialists to build and integrate detective, preventive, and corrective security controls.
  • Improve incident response and security operations through documentation, automation, lessons learned, Correction of Errors (CoE), and the development of more effective security practices.

Benefits

  • medical
  • dental
  • vision
  • telehealth
  • mental healthcare
  • health savings account
  • flexible spending account
  • basic and voluntary life insurance
  • disability coverage
  • accident, critical illness and hospital indemnity supplemental coverages
  • legal and identity theft coverage
  • retirement savings plan
  • wellbeing program
  • discounted WGU tuition
  • flexible paid time off for rest and relaxation with no need for accrual
  • flexible paid sick time with no need for accrual
  • 11 paid holidays
  • other paid leaves, including up to 12 weeks of parental leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service