Posted 2 days ago
Incident Response Analyst II
AI Summary
Incident Response Analyst II investigates security incidents, analyzes alerts and logs, and leads tactical response efforts to protect applications, systems, and networks.
About this role
If you’re passionate about building a better future for individuals, communities, and our country—and you’re committed to working hard to play your part in building that future—consider WGU as the next step in your career.
Driven by a mission to expand access to higher education through online, competency-based degree programs, WGU is also committed to being a great place to work for a diverse workforce of student-focused professionals. The university has pioneered a new way to learn in the 21st century, one that has received praise from academic, industry, government, and media leaders. Whatever your role, working for WGU gives you a part to play in helping students graduate, creating a better tomorrow for themselves and their families.
The salary range for this position takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.
At WGU, it is not typical for an individual to be hired at or near the top of the range for their position, and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is:
Job Description
The current information security landscape is technically complex and constantly changing. The IT Security Analyst II uses their knowledge of current security methods and standards to gather operational information and assess and analyze tools, systems, and processes in defense of applications, systems, and networks and collaborate with Infrastructure and business teams.This role has a strong incident response and security operations focus, with opportunities to apply expertise across digital forensics, intrusion detection, continuous monitoring, cloud security, and security automation. You’ll collaborate with infrastructure teams, architects, risk professionals, and other security specialists to strengthen defensive capabilities and continuously improve how security threats are detected and addressed.
What You’ll Do
- Serve as a lead analyst for incident response and related security efforts, including digital forensics, continuous monitoring, intrusion detection and prevention, penetration testing, integration, and automation.
- Investigate security events and unusual activity using SIEM, IDS/IPS, endpoint security, DLP, HIPS, EPP, client proxy, firewalls, and other security technologies.
- Analyze phishing emails, logs, network traffic, alerts, and other security telemetry using industry-standard tools to identify malicious, suspicious, or anomalous behavior.
- Lead or participate in tactical response efforts to investigate and address identified security risks across technical environments.
- Develop and refine SIEM security rules and security use cases aligned with the MITRE ATT&CK Framework.
- Collaborate with architects, risk professionals, infrastructure teams, and security specialists to build and integrate detective, preventive, and corrective security controls.
- Improve incident response and security operations through documentation, automation, lessons learned, Correction of Errors (CoE), and the development of more effective security practices.
What You’ll Bring
- Bachelor's Degree in IT Security, Computer Science, Engineering, or related field.
- 3 years of Information Security experience.
- Experience analyzing SIEM, network, event, security, and IDS alert logs.
- Experience working with MITRE ATT&CK Framework.
- Experience with security industry standards and best practices, specifically with interpreting and implementing those standards in a corporate environment.
- Scripting language experience (Bash, Python, etc.) with strong working knowledge of automation.
- Experience working with compliance and regulatory program requirements.
- Experience designing and deploying security solutions.
- Knowledge and experience in incident handling, computer forensics, intrusion detection systems, firewalls, antivirus, syslog, and related security technologies.
- Strong understanding of SIEM content security rules to detect malicious, suspicious, and/or abnormal events.
- Working knowledge of intrusion detection methodologies, network traffic analysis, sensor tuning, and interpreting signatures.
- Understanding of AWS services, cloud security principles, CI/CD security, infrastructure-as-code, and data encryption strategies.
- Excellent analytical, problem-solving, decision-making, written, and verbal communication skills.
Equivalent relevant experience performing the essential functions of this job may substitute for education degree requirements. Generally, equivalent relevant experience is defined as 1 year of experience for 1 year of education and is the discretion of the hiring manager.
Bonus Points
- 8 years of Information Security experience.
- Experience recommending additional security requirements and safeguards.
- Experience in the development of end-user operating manuals and documentation.
- Familiarity with Cloud infrastructure.
- Relevant security certifications (CISSP, GIAC, ISACA, CCSP, CCSK, AWS, etc.).
What to Expect
At WGU, our mission drives everything we do, including how we hire. Our interview experience is designed to give qualified candidates the opportunity to show their best work through meaningful conversations and collaboration.
We thoughtfully review every application and invite forward the candidates whose experience and potential best align with the role and our mission.
- Introductory call
- Hiring leader interview
- Senior Executive Interview
Work Location
This is a full-time, in-office position requiring five days per week in our Salt Lake City, Utah or Raleigh, North Carolina office, designed to foster the collaboration and connection that fuel our best work.
This role works a swing shift of 3:00 p.m. to 12:00 a.m., aligned to either Eastern or Mountain Time.
#LI-AW2
Position & Application Details
Full-Time Regular Positions (classified as regular and working 40 standard weekly hours): This is a full-time, regular position (classified for 40 standard weekly hours) that is eligible for bonuses; medical, dental, vision, telehealth and mental healthcare; health savings account and flexible spending account; basic and voluntary life insurance; disability coverage; accident, critical illness and hospital indemnity supplemental coverages; legal and identity theft coverage; retirement savings plan; wellbeing program; discounted WGU tuition; and flexible paid time off for rest and relaxation with no need for accrual, flexible paid sick time with no need for accrual, 11 paid holidays, and other paid leaves, including up to 12 weeks of parental leave.How to Apply: If interested, an application will need to be submitted online. Internal WGU employees will need to apply through the internal job board in Workday.
Additional Information
Disclaimer: The job posting highlights the most critical responsibilities and requirements of the job. It’s not all-inclusive.
Accommodations: Applicants with disabilities who require assistance or accommodation during the application or interview process should contact our Talent Acquisition team at [email protected].
Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to any protected characteristic as required by law.
Skills
Explore related jobs
More jobs at Western Governors University
- WInstructional DesignerSalt Lake City, UT
- WStrategic Operations Program ManagerSalt Lake City, UT
- WSenior Manager, Associate Dean- HR ProgramsSalt Lake City, UT
- WSoftware Engineer II (Salesforce)Phoenix, AZ
- WExecutive Assistant, E3Salt Lake City, UT
- WSenior Instructional Technologist- Salt Lake City, UtahSalt Lake City, UT
Similar AWS jobs
Jobs in Salt Lake City
- C
Spring 2026 Wealth Operations InternshipCrewe Advisors · Salt Lake City, Utah - C
Spring 2026 Investment Research InternCrewe Advisors · Salt Lake City, Utah - W
Account Manager - SLCWestern Steel Buildings · Salt Lake City, Utah - W
Project ManagerWestern Steel Buildings · Salt Lake City, Utah - C
Senior Mechanical Engineer ManagerCycloKinetics · Salt Lake City, Utah - H
Care Access Specialist IHeadlight · Salt Lake City, Utah
Browse these categories
Market data for this role
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.