Technical Incident Response Analyst
Elk Grove Village, IL, United States
USD 98K-130K (estimate) Mid-level Full Time
Tasks
- Analyze authentication endpoint network and application activity
- Assign or resolve Microsoft Defender alerts
- Collaborate with Infrastructure and Application teams
- Communicate incident status
- Contain threats using incident response playbooks
- Correlate data across security platforms
- Document incident activity
- Escalate unauthorized changes
- Investigate phishing emails
- Investigate security incidents
- Monitor cybersecurity alerts
- Participate in SOC working group sessions
- Perform log reviews using templates
- Prepare incident reporting for audit and regulatory reviews
- Reconcile firewall rule changes
- Remediate security incidents
- Review SIEM and Kibana dashboards
- Review external SOC tickets for closure
- Review firewall logs and intrusion alerts
- Track incidents end to end closure
- Update alerts and incident response playbooks
- Validate change authorization and compliance
- Validate evidence with screenshots and reports
Perks/Benefits
- N/A
Skills/Tech-stack
365 Security | Anti-Malware | Endpoint protection | Firewall | HIDS | IDS | Incident Response | Intrusion Detection | Intrusion Detection System | Intrusion Prevention | Intrusion Prevention System | Kibana | Linux | Log Analysis | Microsoft 365 | Microsoft 365 Security | Microsoft Defender | NIDS | Phishing analysis | SIEM | Security monitoring | TCPIP
Education
N/A
Regions
Countries
States
Related jobs
-
Sr. Embedded Detection Analyst USD 122K-187KAI tools | Alert Correlation | Alert triage | Cause analysis | Detection engineeringSenior-level Full TimeRemote - USA R14h ago
-
Threat & Vulnerability Analyst USD 93K-135KDetection and prevention | GDPR | ISO 27001 | Incident Response | Intrusion Detection401k with company match | Education reimbursement | Flexible work schedule | Paid Childbearing Leave | Paid paternal leaveMid-level Full TimeRemote - United States R16h ago
-
Senior Insider Threat Analyst USD 166K-220KAdversary Tradecraft | Counterintelligence | Cybersecurity | Data Lake | Data Loss PreventionSenior-level Full TimeReston, Virginia, United States16h ago
-
Security Operations Center Analyst USD 115K-130KAlarm systems | Burglar Alarm | Emergency Notification | Emergency notification systems | Incident ResponseFlexible remote work days | In office collaboration 5 days per weekMid-level Full TimeFrisco, TX, United States17h ago
-
800-53 | Access Management | CIA triad | CRM | Cyber ResilienceCompany-sponsored team events | Flexible time off | Wellness resourcesSenior-level Full TimeDenver, Colorado; Los Angeles, California; Phoenix, … R17h ago
-
Cloud Security Engineer USD 107K-193KAlert Tuning | Azure | Azure Policy | Conditional Access | Defender for401k match | Company meetings and events | Conferences | Health, dental, and vision insurance | Paid volunteer time offSenior-level Full TimeIndianapolis, IN, United States1d ago
-
Senior Cyber Security Engineer USD 135K-170KActive Directory | DNS | Detection engineering | EDR | Email Security401k | Dental insurance | Education assistance | Health insurance | Life insuranceSenior-level Full TimeReston, VA, US1d ago
-
Threat Hunter USD 160K-200KAnomaly Detection | Detection Systems | Digital forensics | EDR | FirewallsMid-level Full TimeKansas City, MO SOC1d ago
-
AI Security Engineer USD 100K-150KAccess Control | Access Management | Adversarial ML | Application Security | AuthorizationSenior-level Full TimeUnited States - Remote R1d ago
-
Security Officer Incident Response USD 36K-36KCustomer Service | Emergency response | Incident Response | Patrol operationsCareer growth | Dental insurance | Disability insurance | Discounts | Life insuranceSenior-level Full TimeTowson, Maryland1d ago
-
Cybersecurity Controls Assessor USD 114K-185K800-53 | Audit Readiness | CMMC | Continuous Monitoring | Cyber Security401k match | Employee assistance program | Employee discounts | Flexible spending account | Health savings accountSenior-level Full TimeIndianapolis, North Building Meridian Center (US-MC-NB), … R1d ago
-
Cybersecurity Analyst USD 93K-142KAnalytics | Business Intelligence | Cybersecurity | Data Privacy | Endpoint detection401k match | CliftonStrengths coaching | Community involvement | Dental insurance | Disability insuranceEntry-level Full TimeCarmel, IN, United States R1d ago
-
Digital Forensics Investigator - Vice President USD 125K-175KArtificial Intelligence | Automation | Data correlation | Data discovery | Digital forensicsExecutive-level Full TimeAlpharetta GA 1 Edison, United States1d ago
-
Sr. Solution Consultant USD 100K-176KAWS | Active Directory | Azure | Cybersecurity | Data Exchange LayerCommunity involvement support | Flexible work hours | Medical, dental & vision coverage | Paid parental leave | Paid time offSenior-level Full TimeRemote United States, United States R1d ago
-
IT Security Infrastructure Architect USD 99K-125KAccess Control | Antivirus | CIA triad | Cloud Security | Cloud Security ArchitectureMentorship | Travel as required | Work-life balance | Workplace recognitionSenior-level Full TimeTelecommuter OH, United States R1d ago
-
Access privileges | Account Management | Assessment and Authorization process | Audit Reviews | Authorization Process401k match | Dental insurance | Flexible work schedules | Holidays | Life insuranceSenior-level Full TimeUS-AZ-TUCSON-M05 ~ 1151 E Hermans Rd …1d ago
-
Security Support Manager USD 140K-165K800-53 | Active Directory | DNS | Email Security | Endpoint ManagementPaid time off | Travel 10 percentMid-level Full TimeChicago - IL - 200 N. …1d ago
-
AWS | AWS CloudFormation | Access Control | Active Directory | Bash401k | Dental insurance | Family leave | Health care | IRASenior-level Full TimeNew York, United States - Remote R2d ago
-
AWS | Access Control | Active Directory | Bash | Cloud platformFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimePennsylvania, United States - Remote R2d ago
-
AWS | Active Directory | Bash | Cloud platform | CloudFormationFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeIndiana, United States - Remote R2d ago
-
AWS CloudFormation | Access Control | Active Directory | Amazon Web Services | Azure ResourceFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeMontana, United States - Remote R2d ago
-
AWS | AWS CloudFormation | Access Control | Active Directory | AzureFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeMaryland, United States - Remote R2d ago
-
AWS | AWS CloudFormation | Access Control | Active Directory | BashFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeConnecticut, United States - Remote R2d ago
-
AWS CloudFormation | Access Control | Active Directory | Amazon Web Services | BashFamily leave | Health care plan | Paid time off | Retirement plan | Training and developmentSenior-level Full TimeAlabama, United States - Remote R2d ago
-
IT Security Analyst USD 93K-118KCyber Defense | Data correlation | Incident Response | Mission Assurance | Network SecurityOnsite position | Top Secret/SCI clearance support | Training providedMid-level Full TimeElmendorf AFB, AK, United States2d ago