Cyber Defense and Incident Response Analyst
Tasks
- Build incident response playbooks and runbooks
- Coordinate response with SOC and first line teams
- Develop and improve logging monitoring and detection coverage
- Drive detection and mitigation improvements
- Investigate cyber incidents
- Lead incident response and forensics activities
- Manage user behavior analytics program
- Perform threat hunting and malware analysis
- Produce incident metrics and after action reports
- Respond to and contain security incidents
- Support audits and regulatory requests
Perks/Benefits
- N/A
Skills/Tech-stack
Automation | Behavior analytics | Crisis management | Cyber Threat | Cyber Threat Intelligence | DLP | Digital forensics | Evidence handling | Incident Response | Insider Risk | Insider Risk Management | Log Analytics | MITRE ATT&CK | Malware analysis | NIST CSF | Risk Management | SIEM | Threat Intelligence | Threat hunting | UBA | User Behavior | User Behavior Analytics
Education
Related jobs
-
Cybersecurity Forensics and Incident Response Analyst USD 125K-140KActive Directory | Application Firewall | Artifact analysis | Autopsy | BashOccasional travel | Rotating on-call scheduleMid-level Full TimePittsburgh, PA, United States10h ago
-
Data Classification | Incident Response | Information security | Security Compliance | Security DocumentationIn-person interview | Professional growth opportunitiesSenior-level Contract Full TimeRichmond, VA, United States16h ago
-
Incident Response Business Analyst - West Coast USD 70K-120KData Analysis | Incident Response | Postmortem Analysis | Problem Solving | Process ImprovementOn-call rotation | Telecommuting optionsMid-level Full TimeUnited States (Remote) R16h ago
-
800-37 | 800-53 | Access Control | Agile | Authorization to OperateHealth insurance | Learning and development opportunities | Paid leave | Retirement benefitsSenior-level Full TimeWashington, DC16h ago
-
Sr Security Analyst USD 140K-180KDetection engineering | Elastic SIEM | Elasticsearch | Firewall | IDS/IPSCustomer enablement training | Domestic travel | International travelSenior-level Full TimeScott AFB, IL, United States17h ago
-
Cyber Security Analyst USD 106K-129KCyber Operations | Cyber Security | Emulation | Encryption | Fraud DetectionMid-level Full TimeChantilly, VA18h ago
-
Information Systems Security Officer (ISSO) USD 103K-155K800-171 | 800-53 | CMMC Level 2 | Configuration Management | Continuous MonitoringMid-level Full TimeMelbourne, FL19h ago
-
Cyber Security Operations Jr. Analyst USD 90K-111KBash | Cause analysis | Incident Triage | McAfee HBSS | Network Protocols401k | Dental insurance | Health insurance | Life insurance | Long-term disabilityEntry-level Full TimeFort Belvoir, VA, United States1d ago
-
Threat Detection & Response Analyst (Tier 1) USD 80K-106KCloud Security | Cyber Kill Chain | Database security | Detection and Response | Digital forensicsEducational assistance | Health and wellness benefits | Income replacement for qualified employees with disabilities | Paid Holidays | Paid maternity and parental bonding leaveMid-level Full TimeWatermark - 410 North Scottsdale Road, … R1d ago
-
SOC Cyber Security Analyst I USD 107K-145KAntivirus | Data correlation | Elasticsearch | FTP | Firewall401k match | Education Training Reimbursement | Flexible spending account | Health & wellness reimbursement | Paid time offMid-level Full TimeAtlanta, GA, USA1d ago
-
Mid-level Full TimeUSA, VA, Fort Belvoir (10221 Burbeck …1d ago
-
ACAS | Assessment and Authorization | Continuous Monitoring | JSIG | Management FrameworkMid-level Full TimeMDLI22, United States1d ago
-
Cybersecurity Analyst USD 69K-125KAWS | Application Management | Behavioral Analysis | Cloud Security | Cloud platformFlexible shift options | On-site workMid-level Full Time3347 Whitehall OH, United States1d ago
-
APT detection | Cyber Kill Chain | Cyber Threat | Cyber Threat Intelligence | Detection and ResponseSenior-level Full Time5612 Ashburn VA, United States1d ago
-
Event Monitoring | FortiAnalyzer | Fortigate | Incident Response | Log AnalysisCompensating time off | Paid time off | Professional development opportunities | Remote work opportunityMid-level Full TimeFL - Home Office, United States1d ago
-
Sr. Information Security Analyst USD 94K-151KAccess Control | Account Management | Awareness Training | Backup Integrity | Backup Integrity TestingSenior-level Full TimeFort Worth, United States; Fort Worth, …1d ago
-
Senior Security Operations Center (SOC) Analyst USD 105K-133KAWS | Alert triage | Bash | Cloud Security | Cloud platformSenior-level Full TimeUS NJ Remote, United States R1d ago
-
Security Operations Analyst Fixed Term USD 55K-187KBusiness Continuity | Business Continuity Management | CCURE | Continuity management | Crisis managementMid-level Full Time TemporaryTPA ESC-4040 W Boy Scout Blvd, …1d ago
-
Cyber Threat Hunt Senior Analyst, VP USD 125K-188KCloud Security | Data Science | EDR | Incident Response | Log AnalysisSenior-level Full Time6400 LAS COLINAS BLVD IRVING, United …1d ago
-
Senior Associate, Risk Management - FRM USD 101K-126KCompliance | Control Testing | Coso | Data Analysis | Enterprise RiskHealth benefits | Incentive compensation | Performance incentivesSenior-level Full TimeMcLean, VA, United States1d ago
-
Cleared Information System Security Officer (ISSO) — L3 USD 140K-180K800-53 | ACAS | Cloud Security | Configuration Management | Continuous MonitoringOnsite work | Relocation assistanceMid-level Full TimeLorton, VA, US1d ago
-
Grc Security Analyst USD 114K-139KApplication Security | Audit management | Audit scoping | CCPA | Cloud Computing401k match | ADandD insurance | Accident insurance | Career development resources | Communication StipendsMid-level Full TimeReno, NV1d ago
-
Information Security Analyst USD 113K-139KCIS Benchmarks | Cisco | DISA STIG | EDR | Event Logs401k match | Career development resources | Communication stipend | Company-paid Short Term Disability | Dental insuranceMid-level Full TimeReno, NV1d ago
-
Cybersecurity Analyst (3rd shift/Nights) USD 150K-204KAnomaly Detection | Automation and response | Detection Systems | Endpoint protection | FirewallGrowth and development opportunities | Night shift schedule | Onsite work | Training opportunitiesEntry-level Full TimeKansas City, MO SOC1d ago
-
Cyber Security Analyst (US Based) USD 85K-115KAccess reviews | Active Directory | Azure AD | Azure AD Identity Security | Azure Active DirectoryMid-level Full TimeUnited States1d ago