1

Computer Incident Response Team Jobs (NOW HIRING)

Team Leadership & Mentorship: Provide guidance and technical mentorship for our IR engineers ... Incident Response Depth: 6+ years of hands-on experience in enterprise-scale incident response ...

Showing results 41-60

Computer Incident Response Team information

See salary details

$41K

$127.2K

$199.5K

How much do computer incident response team jobs pay per year?

As of Sep 10, 2026, the average yearly pay for computer incident response team in the United States is $127,177.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,000.00 and $172,000.00 per year, depending on experience, location, and employer.

What are popular job titles related to Computer Incident Response Team jobs?

For Computer Incident Response Team jobs, the most frequently searched job titles are:

CSIRT (Computer Security Incident Response Team)

Humble, TX • On-site

ECOM
IT Services • 51 - 200 employees

Full-time

Re-posted 28 days ago


Key responsibilities

  • Manage security incidents by investigating and defining action plans to contain and resolve threats.

  • Create and update procedures, develop scripts, and automate activities to improve the team's efficiency.

  • Identify weak signals through monitoring tools and propose improvements to monitoring rules and processes.


Job description

Job Summary:
ECOM is seeking a CSIRT (Computer Security Incident Response Team) analyst to strengthen their security operations in Houston. The role involves managing security incidents, conducting investigations, defining action plans, and creating procedures to enhance the team's efficiency.
Responsibilities:
• Incident handling:
• Alert qualification: a first level of qualification is done by the L1/L2 teams of our MSSP and advanced qualification is done by CSIRT analysts before generating an incident
• Investigation : incidents are investigated by members of the CSIRT (L3) in coordination with the local security officers in order to define the exact scope of the incident. The CSIRT analyst defines for each incident an action plan which aims to collect the artifacts needed on suspicious assets, replay binarie to extract the IOC (Indicator of Compromise), contact local teams of the group for obtaining additional information, ...
• Remediation: the CSIRT analyst also defines the remediation action plan for a return to normal and pilot remediation actions with technical teams
• Writing procedures (industrialization): CSIRT analysts enrich existing standard operating procedures (SOP) or create new ones, develop global playbooks, document the IT context of our information system, develop scripts and processes to automate activities,
• Sanitary actions: conduct actions to limit or eradicate inappropriate behaviours which are not malicious but generate false positives
• User awareness: during qualification and incident handling, remind users of the group security policies and of best practices
• Hunting: CSIRT analysts with the tools at their disposal (SIEM, IDS, PROXY, EDR) identify weak signals
• Monitoring optimization: CSIRT analysts propose evolutions to our monitoring rules and processes
• CSIRT tooling: the CSIRT has its own infrastructure (monitoring, malware analysis, ) and CSIRT analysts are involved in its maintenance and evolution by keeping it up and running, by adding new features or new tools (sandbox, scripts ...)
Qualifications:
Required:
• MSC in the field of IT security component (or equivalent experience)
• 5-8 years of experience in security operations (with at least 2 years in a CSIRT/CERT/SOC position)
• Fluency in English mandatory in multicultural environment
• Good knowledge including hands-on experience of traditional safety equipment (Firewall, proxy, reverse proxy, VPN ...)
• Understanding of the generated logs and security architectures.
• Good knowledge including hands-on experience of security issues (attacks, vulnerabilities ...)
• Good knowledge of standard protocols (HTTP, FTP, FTP, DNS, SSL ...)
• Good knowledge of Windows / Linux architectures
• Knowledge of AWS security and/or industrial IT security would be a plus
• Forensic analysis and analytics is a Plus
• Excellent communication skills (oral and written)
• Ability to work in teams (openness, interpersonal)
• Adaptability to different environments & Technologies
• A demonstrated ability in successful problem-solving and management of multiple tasks/priorities.
• Ability to effectively manage a crisis situation (technical problem)
• Able to think creatively & exploit opportunities
• Ability to simplify and synthesize complex situations, taking into account all the elements
• Sense of service. Listening and dialogue to understand needs and problems encountered by users
• Autonomy and organization in order to better manage its perimeter
Preferred:
• Knowledge of AWS security and/or industrial IT security would be a plus
• Forensic analysis and analytics is a Plus
• Certifications: GCIH, GCIA, GCFE / GCFA is a Plus
Company:
Ecom finds their Clients the right IT experts with the right qualifications. Founded in 2018, the company is headquartered in Houston, USA, with a team of 51-200 employees. The company is currently Growth Stage.