Job Closed

This listing is no longer active.

Target logo
Target

An industry-leading retailer with corporate headquarters in Minneapolis, Minnesota, Target operates over 1,800 stores in 47 states, as well as several distribution centers around t

Lead Cybersecurity Analyst - CSIRT (Incident Response)

Location

United States

Posted

71 days ago

Salary

$113K - $203K / year

Seniority

Lead

Job Description

Lead Cybersecurity Analyst - CSIRT (Incident Response)

Target

The pay range is $113,000.00 - $203,000.00 Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits. JOIN TARGET CYBERSECURITY AS A LEAD CYBERSECURITY ANALYST - CSIRT (INCIDENT RESPONSE) About Us Target is an iconic brand, a Fortune 50 company and one of America’s leading retailers. Target as a tech company? Absolutely. We’re the behind-the-scenes powerhouse that fuels Target’s passion and commitment to cutting-edge innovation. We anchor every facet of one of the world’s best-loved retailers with a strong technology framework that relies on the latest tools and technologies—and the brightest people—to deliver incredible value to guests online and in stores. Target Technology Services is on a mission to offer the systems, tools and support that guests and team members need and deserve. Our high-performing teams balance independence with collaboration, and we pride ourselves on being versatile, agile and creative. We drive industry-leading technologies in support of every angle of the business, and help ensure that Target operates smoothly, securely, and reliably from the inside out. As a Lead Cybersecurity Analyst on CSIRT, you will assist with leading the team as you assess information security events and incidents across the Target environment. In this role, you will use your expertise to collaborate and utilize problem solving skills as you work among a team of skilled analysts to address complex problems within a 24x7 Cyber Fusion Center (CFC) environment. You will implement new processes and procedures as identified by the CSIRT and CFC Leadership to ensure continuous improvements for Target’s monitoring, detection, and mitigation capabilities. You will use your expert-level knowledge of Information Security to monitor SIEM and logging environments for security events and alerts to potential (or active) threats, intrusions, and/or compromises. You will lead internal training of CSIRT Analysts to ensure their continued education as an Analyst and growth. You will work to understand the global threat landscape by working with Target Cyber Threat Intel team to maintain awareness. You will review and guide requests from internal teams and will escalate information security events according to Target’s Cyber Security Incident Response Plan. Additionally, you will lead with containment of threats and remediation of environment during or after an incident. You’ll act as the leader during Cyber Hunt activities alongside of the Target's Cyber Hunt Team. You will leverage your expert-level knowledge to write comprehensive reports of incident investigations. Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs. Note: This is a shift position on Shift 2 within CSIRT. The working hours for this role are Sunday through Wednesday, 12:30pm - 10:30pm CT. If you are applying for this role you acknowledge and accept the days and times of this role. About You - 4-year degree, relevant certifications (e.g. GCFA, GREM, GEIR, 13Cubed), or equivalent experience - 5+ years' direct experience with Security Operations, Incident Response, or Digital Forensics - Thorough understanding of advanced security and network concepts (Operating systems, intrusion/detection, TCP/IP, ports, etc.) - Expertise with host and network-based security tools (Velociraptor and Google SecOps preferred) - Expertise with network monitoring and SOAR use in a SOC environment - Knowledge in malware analysis, memory forensics and cloud IR desired - Ability to navigate ambiguity and develop working business relationships - Ability to demonstrate expert-level analytical expertise, close attention to detail, excellent critical thinking, logic, and adaptive learning - Demonstrates leadership skills that assist with driving desired outcomes - Excellent written and oral communication skills This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs.  A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year.  A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs.  A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year.  A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Benefits Eligibility Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_E Americans with Disabilities Act (ADA) In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com. Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed through this channel.   Application deadline is : 03/26/2026

Job Requirements

  • 4-year degree, relevant certifications (e.g. GCFA, GREM, GEIR, 13Cubed), or equivalent experience.
  • 5+ years' direct experience with Security Operations, Incident Response, or Digital Forensics.
  • Thorough understanding of advanced security and network concepts (Operating systems, intrusion/detection, TCP/IP, ports, etc.).
  • Expertise with host and network-based security tools (Velociraptor and Google SecOps preferred).
  • Expertise with network monitoring and SOAR use in a SOC environment.
  • Knowledge in malware analysis, memory forensics and cloud IR desired.
  • Ability to navigate ambiguity and develop working business relationships.
  • Ability to demonstrate expert-level analytical expertise, close attention to detail, excellent critical thinking, logic, and adaptive learning.
  • Demonstrates leadership skills that assist with driving desired outcomes.
  • Excellent written and oral communication skills.
  • This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs. A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year. A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target.

Benefits

  • Comprehensive health benefits and programs, which may include medical, vision, dental, life insurance, and more.
  • 401(k) plan.
  • Employee discount.
  • Short term disability.
  • Long term disability.
  • Paid sick leave.
  • Paid national holidays.
  • Paid vacation.
  • Find competitive benefits from financial and education to well-being and beyond at Target Benefits .

Related Job Pages

More Security Analyst Jobs

OtherRemoteTeam 5,001-10,000

Division or Field Office: Law Division Department of Position: Special Investigations Dept Work from: Home in Westmoreland/Allegheny County (PA) Salary Range: $70,705.00 - $112,944.00 * salary range is for this level and may vary based on actual level of role hired for *This range represents a national range and the actual salary will depend on several factors including the scope and complexity of the role and the skills, education, training, credentials, location (State) based on ERIE's geographical differences, and experience of an applicant, as well as level of role for which the successful candidate is hired. Position may be eligible for an annual bonus payment. At Erie Insurance, you’re not just part of a Fortune 500 company; you’re also a valued member of a diverse and inclusive team that includes more than 6,000 employees and over 13,000 independent agencies. Our Employees work in the Home Office complex located in Erie, PA, and in our Field Offices that span 12 states and the District of Columbia. Benefits That Go Beyond The Basics We strive to be Above all in Service® to our customers—and to our employees. That’s why Erie Insurance offers you an exceptional benefits package, including: - Premier health, prescription, dental, and vision benefits for you and your dependents. Coverage begins your first day of work. - Low contributions to medical and prescription premiums. We currently pay up to 97% of employees’ monthly premium costs. - Pension. We are one of only 13 Fortune 500 companies to offer a traditional pension plan. Full-time employees are vested after five years of service. - 401(k) with up to 4% contribution match. The 401(k) is offered in addition to the pension. - Paid time off. Paid vacation, personal days, sick days, bereavement days and parental leave. - Career development. Including a tuition reimbursement program for higher education and industry designations. Additional benefits that include company-paid basic life insurance; short-and long-term disability insurance; orthodontic coverage for children and adults; adoption assistance; fertility and infertility coverage; well-being programs; paid volunteer hours for service to your community; and dollar-for-dollar matching of your charitable gifts each year. Position Summary Conducts in-depth investigations of potentially fraudulent claims for all lines of insurance marketed by ERIE. - This position is full-time remote from and will service the Westmoreland and Allegheny Counties and southwestern territories. A company car is provided. - The hiring team will consider candidates for Investigator or Senior Investigator level positions. The level of position offered will be based on depth and breadth of selected candidate's qualifications and experience. Duties and Responsibilities - Conducts in-depth investigations of questionable or suspicious claims, including obtaining reports, statements, records and related materials. - Preserves and documents the chain of evidence. Prepares related reports for documentation. - Participates in litigation process and/or coordinates activities with counsel. - Assists in preparation for trial procedures. Attends pre-trial functions and trials as necessary. - Develops expertise in civil and criminal terminology and judicial procedures for both courts. - Develops and maintains contact with local, state and federal law enforcement agencies and other industry/service agencies. - Under the direction of the section supervisor, conducts fraud-awareness programs for field claims and law enforcement personnel. The first three duties listed are the functions identified as essential to the job. Essential functions are those job duties that must be performed in order for the job to be accomplished. This position description in no way states or implies that these are the only duties to be performed by the incumbent. Employees are required to follow any other job-related instruction and to perform any other duties as requested by their supervisor, or as become evident. Capabilities - Values Diversity - Self-Development - Nimble Learning - Collaborates - Information Management Skills - Customer Focus - Cultivates Innovation - Job-Specific Knowledge - Instills Trust - Optimizes Work Processes (IC) - Ensures Accountability - Decision Quality Qualifications Minimum Educational and Experience Requirements - Bachelor’s degree in criminal justice or a related field and three years of previous experience in criminal investigation, special investigations unit (SIU), claims investigation or equivalent required, or: - Associate’s degree in criminal justice or a related field and five years of previous experience in criminal investigation, special investigations unit (SIU), claims investigation or equivalent required, or: - High School Diploma or GED and seven years of previous experience in criminal investigation, special investigations unit (SIU), claims investigation or equivalent required. Additional Experience - Extensive travel required. Designations and/or Licenses - Valid driver's license and good driving record required. Physical Requirements - Lifting/Moving 0-20 lbs; Occasional (<20%) - Lifting/Moving 20-50 lbs; Occasional (<20%) - Ability to move over 50 lbs using lifting aide equipment; Occasional (<20%) - Driving; Frequent (50-80%) - Pushing/Pulling/moving objects, equipment with wheels; Occasional (<20%) - Manual Keying/Data Entry/inputting information/computer use; Often (20-50%) - Climbing/accessing heights; Rarely

United States
$70.7K - $112K / year
Job Closed
OtherRemoteTeam 501-1,000Since 1998H1B Sponsor

Company Description Education Job Description Test Security Specialist (3 Openings) – 3-4 months w/ possibility to extend - Remote Profile: Experience service/analytics person who has proven experience in investigations, compliance, test security, fraud prevention, risk management, or casework in a regulated environment. Ideal to have call center exposure and investigations experience. Will manage 1500-2000 cases - initially via phone that translates to email and outbound communications as cases mature. About You Qualifications may include: • Associate degree required; bachelor’s degree preferred. • Strong investigative and problem-solving instincts, with analytical skills to support sound decisions and timely action. • Demonstrated success planning, executing, and completing projects within defined scope, timeline, and budget. • Excellent organizational and time-management skills, with the ability to manage multiple priorities and deadlines. • Strong interpersonal and communication skills, with a professional and diplomatic approach in both domestic and international settings, including sensitive customer interactions. • Proven ability to work effectively as part of a diverse team and contribute to collaborative, solutions-focused outcomes. • Experience managing relationships with internal stakeholders, third-party partners, and vendors. • Proficiency in PowerPoint, Word, Excel, and Salesforce. • Ability to learn new internally developed systems quickly and apply them to streamline and manage daily work. • Experience in investigations, compliance, test security, fraud prevention, risk management, or casework in a regulated environment. • Strong data analysis skills, including comfort interpreting statistical flags and trends in Excel. • Experience interpreting plagiarism findings and/or AI-related authorship indicators and translating technical outputs into clear documentation. • Demonstrated ability to manage escalations and sensitive stakeholder interactions with discretion and sound judgment. • Experience partnering with legal counsel or working in environments requiring strict confidentiality and documentation standards. Additional Information All your information will be kept confidential according to EEO guidelines.

United States
$45 / hour
Job Closed
Foxhole Technology, Inc. logo

Assess and Authorize (A&A) Analyst

Foxhole Technology, Inc.

Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer evolving and complex needs. Our talented employee-owners provide agile, scalable services and solutions that solve operational gaps, operate critical systems, and protect and secure the enterprise – across the organization and around the world.

Security Analyst71 days ago
OtherRemoteTeam 51-200

Role Description The Assess & Authorize (A&A) Analyst supports a DoD customer Cybersecurity Assess & Authorize function to ensure information systems and technologies are assessed and authorized by the Authorizing Official (AO) prior to introduction and operation on the network. This role provides Information System Security Officer (ISSO)-equivalent support by executing the DoD Risk Management Framework (RMF) in accordance with DoDI 8510.01, NIST SP 800-37, and NIST SP 800-30, and by developing and managing authorization packages and continuous monitoring artifacts in eMASS. - Execute RMF activities and provide ISSO / ISSO-equivalent A&A support for assigned systems across the system lifecycle (assessment, authorization, operations, and continuous monitoring). - Support multiple Authorization to Operate (ATO), Authorization to Use (ATU), and Assess Only packages annually (approximately seven (7) authorization packages per year). - Develop, maintain, and submit complete RMF Executive Packages for each authorization, including: - System Security Plan (SSP) - Security Assessment Report (SAR) - Risk Assessment Report (RAR) - Plan(s) of Action and Milestones (POA&M) - Authorization Decision Document - Register systems within the Enterprise Mission Assurance Support Service (eMASS) and use eMASS to support and automate RMF documentation, workflows, and reporting. - Manage and maintain system authorization artifacts in eMASS, ensuring accurate documentation of: - Security controls and implementation status. - Inheritance and shared control relationships. - Risk posture and supporting evidence. - POA&M creation, updates, and tracking. - Authorization status and lifecycle updates. - Coordinate with system owners, ISSMs, assessors, engineers, and AOs to support: - Assessment planning and execution. - Remediation and risk mitigation activities. - Risk acceptance decisions and authorization outcomes. - Ongoing continuous monitoring activities. - Register and maintain all system/application connections in the Systems Network Approval Process (SNAP). - Produce and deliver monthly and annual SNAP registration metrics. - Support cybersecurity compliance, audit readiness, and reporting to ensure systems and technologies remain in an approved security posture. Qualifications - Active Secret security clearance - 3-7 years of relevant cybersecurity / RMF / A&A experience Requirements - Core Tools and Knowledge: - eMASS, DoDI 8510.01, NIST SP 800-37, NIST SP 800-30 - DoD IAM Level III certification (one of the following): CISM, CISSP (or Associate), GSLC, CCISO - Think analytically - Effective verbal and written communication skills - Make decisions - Observe/remember details - Interpret data - Concentrate on tasks - Adjust to change - Handle stress/emotions - Regular attendance - Maintain work schedule - Attend meetings - Meet deadlines - Keyboard/type - Handle confidential information - Use math/calculations - Stay organized - Operate office equipment - May direct others - May be exposed to dust/dirt, humidity, and noise Company Description Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer evolving and complex needs. Our talented employee-owners provide agile, scalable services and solutions that solve operational gaps, operate critical systems, and protect and secure the enterprise – across the organization and around the world.

United States + 1 moreAll locations: United States | United Arab Emirates
Job Closed
Quad logo

IT Security Analyst, QuadMed

Quad

QuadMed was founded in 1991 by Harry Quadracci with the belief that there had to be a better way to provide employees with access to affordable, high-quality health care. Now, we partner with employers across the nation to provide value-driven health and wellness services in or near the workplace. Focus on breaking down cost, access, and quality barriers. Empower employees and their families to live healthier, happier lives.

Security Analyst71 days ago
OtherRemoteTeam 10,001

QuadMed is looking for an IT Security Analyst to join our QuadMed IT team. This is a remote role with occasional travel. GENERAL PURPOSE OF JOB The IT Security Analyst assists the Director of Information Security and Compliance in developing, coordinating, and supporting the overall objectives of QuadMed’s information security, risk management and compliance programs. This includes participating in special projects, developing and implementing information security and compliance auditing and monitoring activities, and identifying opportunities to improve QuadMed’s overall risk posture. KEY RESPONSIBILITIES - Conducts reviews of organizational and functional activities, evaluating the adequacy and effectiveness of information technology security controls. (IT General Controls/Splunk/Nessus/3rd Party) - Performs regular audits and participates in a variety of special projects to improve systems or processes and/or to reduce organizational risks. (IT General Controls, SOC2, PCI, HIPAA) - Assists with the development of risk and threat matrices to track organizational risks and mitigation efforts. (Scorecards, Security reporting, System vulnerability tracking) - Coordinates and assists with third party audits and assessments (HIPAA, Risk, DR, PCI, SOC2). - Assists with security risk assessments for new and current third-party vendors. (VSQ, BDS, SOC 2) - Collaborates with other departments to implement process improvement or remediation activities as generated by findings from internal / external audits. - Utilizes reporting tools to identify questionable user behaviors such as inappropriate access, irregular usage patterns, excessive account lock outs or other activities. - Identifies, prepares and maintains appropriate and required data, records, reports and other documentation relevant to carrying out all the above activities and assists with reporting the business’ performance in these areas. - Coordinates employee education, awareness, training and testing activities including phish and insider threat testing. - Actively seeks knowledge of new, automated, or more efficient auditing and monitoring techniques to increase departmental and/or organizational efficiency and effectiveness. - Helps coordinate the reviews of system documentation, and security or compliance related policies and procedures. - Performs other duties as assigned to support departmental initiatives as well as overall strategic goals and objectives of the Company. JOB REQUIREMENTS Education: - Bachelor’s Degree from a four-year college or university in business, healthcare, information technology, security or a related field required Experience: - The ideal candidate will have at least one (1) year experience in a healthcare setting, most notably in a HIPAA, privacy, security or audit/compliance-related role. Certificates, Licenses, Registrations: - Certifications in areas of healthcare compliance, privacy, security, health information management, risk management assurance, internal auditing, and/or Epic Systems preferred Knowledge, Skills & Abilities: - Knowledge of healthcare laws and regulations, auditing and monitoring principles, risk management, electronic health record systems and a strong ability to interpret and present multifaceted concepts and analyses. - Knowledge and experience with HIPAA and other privacy-related regulations and the application of these regulations in a healthcare setting, or a similar job that required interpretation of complex regulations and communication of same to all levels of workforce. - Requires analytical and problem-solving skills to ensure that internal controls, policies and procedures are being followed consistently in order to safeguard the Company’s assets, verify the accuracy and reliability of its data, and promote adherence to the prescribed policies, resulting in recommendations that add value for process improvements throughout all areas of the organization. - Individual must possess excellent attention to detail, strong writing and verbal communications skills, and be able to make critical decisions based on data analysis. - Highly collaborative individual with ability to influence others and build strong professional relationships. - Maintains a high degree of creditability, independence, integrity, confidentiality and trust. - Ability to work independently, make independent judgments and set priorities. - Demonstrated ability to research, compile and analyze regulatory and business information, assess compliance or other business risks, and provide feedback as to resolutions or recommendations for process improvement. - Proven ability to work effectively with diverse populations and a demonstrated commitment to fostering inclusion. - May require occasional travel. Creating a better way. It’s more than just the philosophy we were founded on. It’s our purpose. For our employees, it means more time with patients. Unrushed visits to build meaningful relationships. And most importantly, an opportunity to empower our patients to achieve their full potential – at work and in life. Determined to make a difference? Join our health care revolution and be a part of something better. Harry Quadracci was determined to do things differently, and to do them better. In 1991, the visionary print manufacturing CEO founded QuadMed out of the belief that there had to be a better way to provide his employees with access to affordable, high-quality health care. And what started as doing the right thing, ended up sparking a health care revolution. Now 30 years later, we partner with employers across the nation to provide value-driven health and wellness services in or near the workplace. With a focus on breaking down cost, access and quality barriers, we empower employees and their families to live healthier, happier lives. We offer excellent benefits to eligible employees, including 401(k), holidays, vacations and more. QuadMed and Quad is proud to be an equal opportunity employer. We are committed to creating a place of belonging — a space where employees do not need to sacrifice who they are to exist and grow in our workplace. QuadMed and Quad does not discriminate on any unlawful basis including race, religion, color, national origin, disability, gender, gender identity, sexual orientation, age, marital status, veteran status, genetic information, or any other basis prohibited by applicable federal, state, or local laws. QuadMed and Quad also prohibits harassment of applicants and employees based on any of these protected categories. Drug Free Workplace

United States
Job Closed