Cybersecurity Analyst, CSIRT

Target

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Brooklyn Park, MN
Salary
$69,800–$125,700 / yr
Posted
58 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $149k
This role $98k
$56k most similar roles pay here $202k

This role pays less than 97% of similar roles. Most pay $123,000–$174,800 — the shaded band above. At the midpoint, this role pays about $98k versus about $149k for comparable roles.

Based on 239 similar postings.

Employer

About Target

Target Corporation is a large-format general merchandise and grocery retailer offering a wide assortment of everyday essentials, apparel, home goods, and electronics through stores and online. Industry: General Merchandise Retail

Target currently has 58 open roles on FindRole.

Listed pay typically runs $98,000–$176,000 across 58 roles with salary data.

Most-posted roles

View all roles at Target

At a glance

TL;DR · Cybersecurity Analyst, CSIRT

As a Cybersecurity Analyst - CSIRT, you will join the Cyber Fusion Center team to detect and assess security events across the enterprise environment. You will work within a 24x7 operational framework to monitor SIEM and logging environments for threats, intrusions, and compromises while collaborating with the Cyber Threat Intel team to understand the global threat landscape. Your daily responsibilities include triaging service requests, escalating incidents according to established plans, participating in Cyber Hunt activities, and documenting comprehensive investigation reports. You will utilize expertise in SOAR, SIEM, and incident management systems to manage cases and perform network and host investigations. The role requires proficiency in TCP/IP, operating systems, and intrusion detection tools to mitigate risks and implement new processes for continuous improvement of monitoring capabilities within the corporate infrastructure.

What you'll do

  • Detect and assess cybersecurity events and incidents across the Target environment.
  • Monitor SIEM and logging environments for security events, alerts, and potential threats.
  • Implement new processes and procedures to improve monitoring, detection, and mitigation capabilities.
  • Triage service requests from customers and internal teams while escalating events per the Incident Response Plan.
  • Contain threats and perform remediation of the environment during or after a security incident.
  • Participate in Cyber Hunt activities directed by Target Incident Commanders.
  • Document event analysis and write comprehensive reports regarding incident investigations.

What we're looking for

  • A four-year degree or equivalent experience is required.
  • At least 2 years of experience in a Security Operations Center or Cyber Security Incident Response Team is required if no degree is held.
  • Candidates must possess a security certification such as Security+, GCIA, GCIH, or CISSP.
  • Experience managing cases with enterprise SOAR, SIEM, and/or Incident Management systems is required.
  • Experience supporting network and host investigations is required.
  • A thorough understanding of fundamental security and network concepts including operating systems, intrusion detection, TCP/IP, and ports is required.
  • Strong analytical expertise, critical thinking, and excellent written and oral communication skills are required.
  • Experience with host and network-based security tools and network monitoring in a SOC environment is preferred.

More like this

Similar roles

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Security+ CE CSSP-Infrastructure Support Vulnerability Management Network Security
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Fort Belvoir, VA 17 days ago $87,100$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp

Cyber Threat Intelligence Analyst

Leidos

Washington, DC 59 days ago $107,900$195,050
Cyber Threat Intelligence MITRE ATT&CK Threat Intelligence Platforms (TIP Python PowerShell SIEM SOAR Firewalls IDS/IPS AWS Azure O365 KQL Elastic DSL SPL Cyber Kill Chain Diamond Model Data Correlation
8+ yrs exp Hybrid