SOC Analyst & Incident Response Lead
Tasks
- Conduct malware analysis
- Conduct post-incident reviews
- Contain eradicate and recover incidents
- Coordinate with CSIRT and stakeholders
- Correlate threat intelligence with incidents
- Develop and tune detection use cases
- Drive SOC and IR process improvements
- Escalate complex security alerts
- Lead incident response lifecycle
- Maintain incident response documentation
- Maintain security tool suite
- Perform digital forensic investigations
- Perform memory and disk analysis
- Perform root cause investigations
- Prepare executive incident reporting
Perks/Benefits
- N/A
Skills/Tech-stack
Azure | Defender for Endpoint | Detection engineering | Digital forensics | Disk forensics | Dynamics 365 | EDR | Incident Response | Log Forensics | MITRE ATT&CK | Malware analysis | Memory Forensics | Microsoft 365 | Microsoft Defender | Microsoft Defender for Endpoint | Microsoft Dynamics | Microsoft Dynamics 365 | Microsoft Sentinel | Network Forensics | Powershell | Python | Reverse Engineering | SIEM | Scripting | Security Automation | Threat Intelligence | Threat hunting
Education
Related jobs
-
ME00603-Intrustion Analyst 3 USD 130K-180KAnomaly Detection | Cyber Threat | Cyber Threat Intelligence | Incident Response | Indicators of compromiseDental insurance | Health insurance | Life insurance | Long-term disability | Paid HolidaysMid-level Full TimeFort Meade, MD12h ago
-
Principal Security Sales Rep USD 170K-252KAWS Bedrock | AWS Security | AWS Security Hub | Access Management | Account PlanningSenior-level Full TimeSan Francisco, California, USA15h ago
-
Email Security Architecture Manager USD 125K-150KAccount takeover | Business email compromise | Customer Onboarding | Customer Success | Detection engineeringSenior-level Full TimeUnited States15h ago
-
Mid-level Full TimeSanta Clara, CA, United States16h ago
-
Director, Corporate Security USD 205K-220KBC/DR | Blue Team | CASB | Crisis management | Disaster RecoveryCommunity volunteer time | Employee wellness programs | Flexible paid time off | Hybrid work model | Paid counseling resourcesExecutive-level Full TimeBellevue, WA, United States17h ago
-
Senior Security Engineer (AI Platform) USD 130K-160KAPI Key | API key management | Agentic AI | Anomaly Detection | Cloud ComputingCoworking stipend | Destination summits | Flexible time off | Health insurance coverage | Paid parental leaveSenior-level Full TimeUnited States - Remote R17h ago
-
Security Engineer - Data Security USD 150K-225KAPI Integration | Access Control | Alerting | Automation | Cloud Security401k | AD and D insurance | Dependent care assistance | Employee assistance program | Health care reimbursement accountSenior-level Full TimeIssaquah, WA, US17h ago
-
Staff Security Engineer, PSIRT USD 185K-230KAWS IAM | Amazon EKS | Android security | Attack surfaces | AuthenticationCaregiver support | Company holidays | ERGs | Fertility and family benefits | Flexible PTOSenior-level Full TimeRemote - USA R17h ago
-
Data Protection Engineer USD 144K-170KAutomation | Behavior analytics | DLP | Data Loss Prevention | Data lossMid-level Full TimeRemote - USA R18h ago
-
Security Operations Center Manager USD 86K-135KAWS Security | Alert Tuning | Azure Security | Cause analysis | Cloud platformMid-level Full TimePhoenix, Arizona, United States19h ago
-
(691) Mid Information Systems Security Officer USD 97K-140KACAS | Access Management | Audit Support | C5ISR | CIS ControlsMid-level Full TimeWashington, DC20h ago
-
Cortex XSOAR | EDR | Email Security | JSON | JiraCorporate holidays | Flexible time off | Group dental insurance | Group medical insurance | Home internet allowanceSenior-level Full TimeRemote R21h ago
-
Sr. Manager, Security Engineering USD 240K-280KAI Security | Alert triage | Application Security | Compliance | Detection DevelopmentRemote-first workplaceSenior-level Full TimeRemote R21h ago
-
Information Systems Security Officer, AD&S USD 97K-129K800-53 | Access Control | Authorization and Accreditation | Cause analysis | Continuous MonitoringMid-level Full TimeAshville, Ohio, United States21h ago
-
Access Control | Access Management | Active Directory | Active Directory and LDAP | CSSEntry-level Full TimeUniontown, OH, United States22h ago
-
IT Security Analyst USD 60K-75KAccess Management | DLP | Email Security | Endpoint Security | Google WorkspaceMentorship | TrainingEntry-level Full TimeAnaheim, CA, United States22h ago
-
Information System Security Officer (ISSO) USD 104K-150KACAS | Authorization and Accreditation | Computer Security | Continuous Monitoring | DAAG401k retirement plan | Dental insurance | Flexible spending account | Health insurance | Health savings accountMid-level Full TimeMarietta, Georgia, Marietta, GA, US23h ago
-
Senior SIEM Engineer USD 130K-145KAlert Tuning | Automation | Compliance reporting | Correlation rules | DashboardingCleared positionSenior-level Full TimeWashington, DC, United States23h ago
-
Mid. Cyber Incident Coordinator USD 133K-160KComputer Networking | Computer fundamentals | Cybersecurity | Detection engineering | Incident ResponseOn-site workSenior-level Full TimeARLINGTON, VA, United States23h ago
-
Senior PKI Engineer USD 124K-179KActive Directory Certificate Services | Ansible | Bash | Certificate Authority | Certificate Lifecycle ManagementHybrid onsite/remote work | Secret clearance required | TS clearance requiredSenior-level Full TimeFAIRFAX, VA, United States23h ago
-
Access Management | Audit Logging | Authorization | Cedar | FIDO2Equity compensation | Health benefitsSenior-level Full TimeSan Mateo, CA, United States R1d ago
-
Security Sales Engineer USD 149K-198KAWS | Alert triage | Application Security | Azure | Cloud SecurityEmployee stock purchase plan | Hybrid work | Mentor and buddy program | Onboarding | Product trainingSenior-level Full TimeCalifornia, USA, Remote; Colorado, USA, Remote; … R1d ago
-
Corporate Infrastructure & Security Engineer USD 111K-139KAccess Segmentation | Azure | Business Continuity | Conditional Access | Cyber SecuritySenior-level Full TimeDC - Chevy Chase, MD1d ago
-
Jr Security Operations Center Analyst USD 75K-105KAWS | Azure | Call Support | Change Management | Cloud platformCareer growth | Paid training | RSP Plan | Relocation opportunities | Travel opportunitiesEntry-level Full TimeDenver1d ago
-
Cyber & A&A Security Lead - Level IV USD 135K-158K800-53 | AWS | Assessment and Authorization | Azure | Backup and Recovery401k matching | Long-term disability | Medical, dental, and vision coverage | Paid vacation | Short-term disabilitySenior-level Full TimeSilver Spring, MD, US1d ago