Computer Security Incident Report Analyst

Salesforce

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Herndon, VA
Salary
$111,000–$122,000 / yr
Posted
53 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $158k
This role $116k
$101k most similar roles pay here $200k

This role pays less than 88% of similar roles. Most pay $134,725–$182,070 — the shaded band above. At the midpoint, this role pays about $116k versus about $158k for comparable roles.

Based on 239 similar postings.

Employer

About Salesforce

Salesforce is the world''s leading customer relationship management (CRM) platform, offering cloud-based software for sales, service, marketing, analytics, and application development. Industry: Enterprise Software & Cloud Computing

Salesforce currently has 106 open roles on FindRole.

Listed pay typically runs $148,500–$260,100 across 98 roles with salary data.

Most-posted roles

View all roles at Salesforce

At a glance

TL;DR · Computer Security Incident Report Analyst

Computer Security Incident Report Analyst with TS/SCI Clearance joins the Government Cloud Security Operations team within the Infrastructure Security division. This role involves defending critical infrastructure and customer data against information security threats by monitoring, analyzing alert data in a SIEM, and performing rapid incident response across SNS Cloud environments. The analyst investigates cyber security events, tracks incidents in ticketing systems, and collaborates with multi-disciplined teams to resolve high-priority operations issues. Key responsibilities include automating workflows, hunting for indicators of compromise, and applying mitigations for adversary TTPs. Required skills include experience with AWS, Splunk, Azure Sentinel, or ElasticStack; proficiency in SQL, SPL, GraphQL, and scripting languages like Python or Bash; and knowledge of TCP/IP protocols. The role addresses security challenges specifically for government agencies performing national security functions within a cloud infrastructure context.

What you'll do

  • Respond to and investigate cyber security events within SNS Cloud environments.
  • Track and document security events and incidents within a ticketing system.
  • Analyze log data in a SIEM to identify signs of malicious activity.
  • Coordinate incident response actions with multi-disciplined teams for high-priority issues.
  • Automate workflows, develop new analytics, and apply mitigations for adversary tactics.
  • Hunt for undetected indicators of compromise within the network.
  • Provide 24x7 on-call support and perform occasional travel to customer sites.

What we're looking for

  • Must be a U.S. citizen (born or naturalized) who does not hold dual citizenship.
  • Must possess an active U.S. Government Top Secret/SCI security clearance with Polygraph.
  • Must have a technical degree in Computer Science, Software Engineering, Cybersecurity, Information Assurance, or equivalent experience.
  • Requires 2+ years of experience in cybersecurity, engineering, and/or incident response roles.
  • Must possess strong interpersonal and communication skills to coordinate responses with both technical and non-technical stakeholders.
  • Experience with AWS Cloud, Splunk, Azure Sentinel, or ElasticStack is preferred.
  • Proficiency in scripting languages (e.g., Bash, Python) and experience with data query languages like SQL, SPL, or GraphQL.
  • Relevant information security certifications such as CISSP, GCFR, GCIA, or GCIH are desired.

More like this

Similar roles

Senior Incident Responder, Global CSIRT

Salesforce

Remote (Mclean, VA) 7 days ago $148,500$223,900
Incident Response SOAR CI/CD AWS Azure GCP Windows macOS Linux Malware Analysis Detection Engineering Forensics AI LLM Salesforce Platform SaaS
5+ yrs exp Remote

Lead, Incident Response

Salesforce

Remote (Mclean, VA) 7 days ago $172,500$260,100
Incident Response SOAR Detection-as-Code AWS Azure GCP CI/CD Network Forensics Malware Analysis Detection Engineering MITRE ATT&CK Linux Windows macOS Security Orchestration
8+ yrs exp Remote

Incident Response Analyst, React

Cloudflare, Inc

Bengaluru, India 79 days ago
Incident Response WAF AWS Azure Google Cloud Python Golang Yara BGP DNS TCP/IP Linux Windows MITRE ATT&CK NIST Cyber Security Framework Malware Analysis Reverse Engineering Bash Regular Expressions
5+ yrs exp

Cyber Defense Response Analyst II

CME Group

Chicago, IL 15 days ago $93,900$156,500
Digital Forensics Incident Response Malware Analysis Python Pandas REST APIs AWS GCP Azure Q Radar Sentinel Splunk Chronicle ArcSight KAPE EnCase Cellebrite FTK Magnet Axiom Autopsy Ghidra Ida Pro PEStudio x64dbg SIEM

Senior Principal Classified Cybersecurity Analyst

Northrop Grumman

Dulles, VA 14 days ago $142,200$213,400
Risk Management Framework RMF eMASS NIST ACAS NESSUS SPLUNK SCAP NISPOM Cybersecurity System Audits Vulnerability Scanning Security Test and Evaluation Information Systems Lifecycle Assessment and Authorization CGRC CASP+ CompTIA Security X
8+ yrs exp

Senior InfoSec Analyst

Apex

Belfast, United Kingdom 113 days ago
SIEM EDR SOAR UEBA Python PowerShell Bash .NET Ruby Java C Infrastructure as Code MITRE ATT&CK D3FEND Cyber Kill Chain Diamond Model TCP/IP DNS SSL/TLS Firewalls NIDS NIPS HIDS HIPS DLP
5+ yrs exp Hybrid