SOC Analyst & Incident Response Lead
Tasks
- Analyze memory and disk artifacts
- Conduct malware analysis
- Conduct post-incident reviews
- Contain, eradicate, and recover from incidents
- Correlate threat intelligence with incident data
- Drive continuous process improvement
- Escalate complex security alerts
- Facilitate lessons learned workshops
- Lead incident response lifecycle
- Lead root cause and RCA reporting
- Maintain incident response documentation
- Perform digital forensic investigations
- Perform reverse engineering
- Perform root cause investigations
- Support incident triage
- Tune and optimize detection use cases
Perks/Benefits
Skills/Tech-stack
Defender for Endpoint | Detection engineering | Digital forensics | Disk forensics | EDR | Log Forensics | Malware analysis | Memory Forensics | Microsoft 365 | Microsoft Azure | Microsoft Defender | Microsoft Defender for Endpoint | Microsoft Sentinel | Mitre Attack | Network Forensics | Powershell | Python | Reverse Engineering | SIEM | Scripting | Threat hunting
Education
Related jobs
-
Lead Product Security Engineer USD 165K-205K800-171 | 800-53 | Application Security | Bash | Build provenance401k | Dental insurance | Health insurance | Hybrid remote/in-office | Inclusive cultureSenior-level Full TimeRemote (United States) R16h ago
-
Senior Security Engineer, Detection Engineering USD 181K-217KAWS | Cloud Security | Cloud platform | Data Pipelines | Detection engineering401k match | Accident insurance | Dental insurance | Disability insurance | Employee assistance programSenior-level Full TimeDenver, CO; New York City, NY; … R19h ago
-
Sr. SIEM Engineering Consultant USD 140K-180KAccess Management | Ansible | Azure | Azure Monitor | BashRemote work | Security clearance eligibility | Support for on site engagementsSenior-level Full TimeWork from home, VA, United States R23h ago
-
Cyber Security Analyst USD 80K-130KAuthentication Security | Conditional Access | CrowdStrike Falcon | Elasticsearch | Endpoint Security401k match | Dental insurance | ESPP | Flexible spending account | Health insuranceMid-level Full TimeRemote, United States R23h ago
-
Security Engineer, Insider Threat USD 130K-192KAutomation | Cloud Computing | DLP | Data Pipelines | Git401k employer matching | Basic life insurance | Commuter benefits match | Disability insurance | Family-forming assistanceMid-level Full TimeUnited States - Remote R1d ago
-
Manager, Security Engineering & Operations USD 123K-175KAI | AWS | Automation | CNAPP | Detection engineeringHybrid work | Remote workSenior-level Full TimeUnited States, Remote R1d ago
-
Information Security Engineer | North America (EST) USD 165K-220KBrowser Extension | Browser extension security | Cloud Access Security Broker | Cloud Security | Cloud accessOptional WeWork access | Remote work flexibility | Stock grant opportunitiesSenior-level Full TimeUSA R1d ago
-
AWS | Automation | Azure | CI/CD | CIMSenior-level Full TimeRemote, Missouri, United States of America R1d ago
-
Cybersecurity Analyst USD 100K-135KAWS | Alert prioritization | Azure | BMS | Bash401k matching | Employee referral program | Paid Maternity Leave | Remote work | Summer FridaysEntry-level Full TimeUS OH - Remote, United States R1d ago
-
Security Manager USD 112K-155K800-53 | AWS GuardDuty | AWS Security | AWS Security Hub | Access ManagementMid-level Full TimeWashington D.C., DC, USA (All Remote) R1d ago
-
Access Management | Active Directory | Cloud Security | Crisis simulation | Detection evasionSenior-level Full TimeUnited States - Remote R1d ago
-
AOUSC - Cyber Threat Intelligence & Threat Hunting Lead USD 120K-177KAutomation | Content engineering | CrowdStrike | Cyber Threat | Cyber Threat IntelligenceSenior-level Full TimeUnited States - Remote R1d ago
-
Cloud Security | Cloud security monitoring | CrowdStrike | Detection and Response | Detection engineeringSenior-level Full TimeUnited States - Remote R1d ago
-
AOUSC - Insider Threat Program Lead USD 101K-183KAbuse detection | Anomaly Detection | Behavioral analytics | Credential abuse | Credential abuse detectionSenior-level Full TimeUnited States - Remote R1d ago
-
OSOC Security Analyst USD 65K-80KApplication Security | Bash | Command Line | Command Line Administration | Incident Response401k match | Annual vacation reimbursement | Flexible paid time off | Healthcare benefits | Parental leaveEntry-level Full TimeUnited States - Remote R1d ago
-
Penetration Tester - Contract USD 99K-180KAI Security | API Security | AWS CloudWatch | AWS IAM | AWS LambdaBackground checkMid-level Full TimeU.S. Remote R1d ago
-
Staff Product Security Engineer USD 17K-231KAWS | Admission Controller | CNAPP | CSPM | Cloud BuildCoworking stipend | Flexible time off | Health insurance covered | Paid parental leave | Phone and internet stipendSenior-level Full TimeUnited States - Remote R1d ago
-
Engineering Manager, Application Security USD 210K-240KAWS | Anomaly Detection | Application Security | Auth Logs | CI/CD401k | Biweekly all hands meetings | Commuter benefits | Flexible time off | Health insuranceMid-level Full TimeUnited States of America R1d ago
-
Security Analyst USD 55K-80KAWS | Alert Tuning | Azure | Cloud platform | CrowdStrikeDental insurance | Health insurance | Life insurance | Long-term disability insurance | Office setup reimbursementMid-level Full TimeKansas City, MO, US R1d ago
-
Quantitative Analyst (Hybrid-Miami Lakes) USD 71K-119KAllowance for Credit Losses | Attribution | Backtesting | Credit Losses | Credit RiskHybrid workMid-level Full TimeMiami Lakes, FL, United States R1d ago
-
Security Solutions Senior Consultant – CyberArk USD 126K-158KActive Directory | CIS | CPM | Cloud access | Conjur401k plan with company matching | Employee assistance program | Health, dental, and vision care | Holidays | Life and disability insuranceSenior-level Full TimeRemote - Nationwide, United States R1d ago
-
Security Analyst (Remote) USD 80K-109KAccess Control | Access Management | Bash | CSRF | Cross-Site ScriptingRemote workMid-level Full TimeDallas, TX, US R1d ago
-
Access Management | Business Continuity | CISA | CISM | CISSPExecutive-level Full TimePittsburgh, PA, United States R2d ago
-
Senior Security Operations Center (SOC) Analyst USD 127K-160KAlert triage | Bash | Cloud Security | DLP | Data Normalization401k match | Dental insurance | Disability insurance | Flexible paid time off | Health insuranceSenior-level Full TimeUS NJ Remote, United States R2d ago
-
Analyst I, Falcon Complete (Remote) USD 85K-120K.NET | C Sharp | C# | Computer Security | Computer forensicsEmployee networks | Hybrid work schedule | Paid adoption leave | Paid parental leave | Professional development opportunitiesSenior-level Full TimeUSA TX Remote, United States R2d ago