Technical Incident Response Analyst
Elk Grove Village, IL, United States
USD 98K-130K (estimate) Mid-level Full Time
Tasks
- Analyze authentication endpoint network and application activity
- Assign or resolve Microsoft Defender alerts
- Collaborate with Infrastructure and Application teams
- Communicate incident status
- Contain threats using incident response playbooks
- Correlate data across security platforms
- Document incident activity
- Escalate unauthorized changes
- Investigate phishing emails
- Investigate security incidents
- Monitor cybersecurity alerts
- Participate in SOC working group sessions
- Perform log reviews using templates
- Prepare incident reporting for audit and regulatory reviews
- Reconcile firewall rule changes
- Remediate security incidents
- Review SIEM and Kibana dashboards
- Review external SOC tickets for closure
- Review firewall logs and intrusion alerts
- Track incidents end to end closure
- Update alerts and incident response playbooks
- Validate change authorization and compliance
- Validate evidence with screenshots and reports
Perks/Benefits
- N/A
Skills/Tech-stack
365 Security | Anti-Malware | Endpoint protection | Firewall | HIDS | IDS | Incident Response | Intrusion Detection | Intrusion Detection System | Intrusion Prevention | Intrusion Prevention System | Kibana | Linux | Log Analysis | Microsoft 365 | Microsoft 365 Security | Microsoft Defender | NIDS | Phishing analysis | SIEM | Security monitoring | TCPIP
Education
N/A
Regions
Countries
States
Related jobs
-
Analyst, Corporate Cybersecurity 1 USD 75K-122KAccess Control | Active Directory | Change Management | DHCP | DNSNone Full TimePhiladelphia, PA, US, 19130 R7h ago
-
DevOps Security Contractor USD 130K-179KAWS | Access Management | Alerting | Amazon Web Services | CI/CDAsync friendly | Flexible on-call support | Part-time scheduleSenior-level ContractRemote US R13h ago
-
Senior Security Analyst, Customer Assurance USD 122K-167KAPI Security | Artificial Intelligence | Automation | Cloud Security | EncryptionSenior-level Full TimeBellevue, Washington; Chicago, Illinois; New York, …13h ago
-
Security Engineer USD 150K-205KAWS | Cloud Security | Detection and Response | GCP | Incident Response401k | Commuter benefits | Dental insurance | Fitness stipend | Health insuranceSenior-level Full TimeSan Francisco (HQ)14h ago
-
Cybersecurity Analyst II USD 80KAccess Management | Automation | By Design | CASB | CIS Controls401k match | Corporate mobile phone plan | Dental insurance | Employer Paid Long Term Disability Insurance | Employer paid short term disability insuranceMid-level Full TimeLafayette, LA, US14h ago
-
SOC Chief (R-00159) USD 180K-230KClassified environment | Classified environment security | Cross-team | Cross-team coordination | Cyber Kill Chain401k match | Cell phone reimbursement | Internet reimbursement | Maternity leave | Medical coverageExecutive-level Full TimeD.C./ MD / VA14h ago
-
Product Security Engineer (Starlink) USD 130K-175KAdversary detection | Authenticated Boot | C++ | Cryptography | Distributed Systems401k plan | Company Stock Awards | Dental insurance | Employee shuttle service | Life insuranceSenior-level Full TimeRedmond, WA14h ago
-
Embedded Security Engineer (Starlink) USD 130K-175KApplied cryptography | Authenticated Boot | C++ | Cryptography | Distributed Systems401k retirement plan | Company stock | Company stock options | Dental insurance | Employee stock purchase planSenior-level Full TimeRedmond, WA14h ago
-
Security Operations Coordinator (Remote) USD 72K-80KAccounts Payable | Accounts Receivable | Client Relationship Management | Client relationship | Concur401k employer match | Coaching and mentoring | Dedicated Security Training | Employee assistance program | HSA employer contributionEntry-level Full TimeKirkland, WA R14h ago
-
Suricata Security Engineer USD 50K-100KBash | DMA | DMA RSS | DNF | Direct memory accessCorporate holidays | Flexible time off | Group dental insurance | Group medical insurance | Health mobile phone allowanceEntry-level Full TimeWashington, DC15h ago
-
Security Analyst (2nd Shift) USD 90K-122KBash | Detection Systems | EDR | Endpoint Analysis | ForensicsEmployee recognition program | Health insurance | Life insurance | Paid time off | Remote workMid-level Full TimeRemote, United States R16h ago
-
Senior Security Operations Engineer USD 122K-179KDetection engineering | EDR | Firewalls | Forensics | IDSIPS401k match | Disability insurance | Employee stock purchase program | Flexible PTO | Flexible spending accountSenior-level Full TimeLivingston, NJ / New York, NY …16h ago
-
Manager, Security Incident Response Team (USA) USD 150K-235KAI for Incident Response | AWS | Automation | Cloud Forensics | Digital Forensics and Incident ResponsePsychological safety | Remote-first cultureMid-level Full TimeRemote, US R16h ago
-
Senior Product Security Engineer USD 162K-260KAuthentication Protocols | Automotive Cybersecurity | C++ | Code review | Computer SecurityHybrid work environmentSenior-level Full TimeSan Francisco, California17h ago
-
Sr Soc Analyst - 2nd Shift USD 102K-127KATTACK | Alert Tuning | Cyber Threat | Cyber Threat Intelligence | Detection engineering401k matching | Bereavement leave | Dental and vision care | Employee assistance program | Employee discount programSenior-level Full TimeRemote - Nationwide, United States R19h ago
-
Security Engineer USD 140K-190KAccess Control | Blockchain Security | Cloud KMS | Code review | CryptographyRemote workMid-level Full TimeUSA (Remote) R20h ago
-
Senior Security Operations Engineer II USD 148K-237KAWS KMS | Alerting | Azure Key Vault | CI/CD | Cause analysisDiscretionary paid time off | Emotional and mental wellness support | Fitness programs | Learning and development programs | Medical, dental, vision plansSenior-level Full TimeBoston, Massachusetts, United States R20h ago
-
Senior Security Operations Engineer II USD 141K-225KAWS KMS | Alerting | Azure Key Vault | CI/CD | Cause analysisDental insurance | Employer 401k match | Fitness programs | Learning and development programs | Medical insuranceSenior-level Full TimeScottsdale, Arizona, United States R20h ago
-
Senior Security Operations Engineer II USD 148K-237KAWS KMS | Alerting | Azure Key Vault | CI/CD | Certificate Lifecycle Management401k match | Dental insurance | Emotional & mental wellness support | Fitness programs | Learning and development programsSenior-level Full TimeSeattle, Washington, United States R20h ago
-
Security Engineering Intern - Summer 2026 USD 100K-125KAWS | Access Management | Data Classification | GCP | Go401k match | Commuter stipend | Flexible paid time off | Health, dental, vision coverage | On call support team collaborationEntry-level InternshipSan Francisco Office (Fremont St)21h ago
-
Security Consultant (Identity & SecOps) - Mid-Atlantic region (Remote in NC, VA, MD, DC, DE, PA, or NJ) USD 50K-150KAccess Control | Access Management | Azure AD | Azure Security | Conditional AccessFlexible time off | Group dental insurance | Group medical insurance | Paid Holidays | Pet benefitMid-level Full TimeRemote R22h ago
-
Cybersecurity Lead USD 122K-231KAccess Management | Azure CLI | Azure Policy | CIS | Cloud apps401k match | Commute options | Continuing education reimbursements | Dental insurance | Disability insuranceSenior-level Full TimeHouston, United States23h ago
-
Mid-level Full TimeUnited States-Texas-Galveston23h ago
-
Staff Security Engineer, Office of the Finance CISO USD 207K-300KComputer Security | Design reviews | Enterprise Security | GDPR | Network SecuritySenior-level Full TimeNew York, NY, USA1d ago
-
Director of Information Security USD 141K-178KAudit Coordination | Awareness Training | CIS Controls | Continuous Improvement | Cybersecurity Framework401k match | Dental insurance | ESOP Match | Employee assistance program | Flexible spending accountsExecutive-level Full TimeLouisville, KY, 40223-4145, USA1d ago