Cyber Response Analyst
Core
Lead the end-to-end lifecycle of security incidents from detection to resolution and root cause analysis for Wabtec Corporation's cybersecurity program.
Role type
Lead Response Analyst (Cybersecurity)
Builds
Incident response playbooks, runbooks, documentation, and After-Action Reports (AARs)
Domain
Cybersecurity / Incident Response
Deliverable
client delivery
Required skills
Incident response lifecycle management, security incident triage and escalation, root cause analysis, threat landscape understanding, project management, independent work
Preferred skills
Enterprise security tools (SIEM, EDR, SOAR, threat intelligence platforms, cloud security controls), modern defensive control strategies, 24/7/365 monitoring coordination
Technologies
SIEM, EDR, SOAR, threat intelligence platforms, cloud security controls, firewalls, IDS, IPS, WAF, Mail Gateway, DLP
Responsibilities
Monitor active security incidents and lead response efforts including triage, escalation, and coordination; Review alerts and post-incident analyses to identify trends and gaps; Maintain and enhance incident response playbooks and documentation; Detect, investigate, and respond to security events from various sources; Produce After-Action Reports (AARs); Lead coordination with 24/7/365 monitoring and MSS providers
Seniority
Lead, hands-on IC with strategic project ownership