Cyber Security Incident Response Expert
Core
Level 3 analyst and Subject Matter Expert leading incident response, threat hunting, and forensic analysis to detect, contain, and eradicate security threats for clients.
Role type
Senior IC Cyber Security Incident Response Expert
Builds
Incident response capabilities, threat hunting operations, and forensic investigations for client security resilience
Domain
Cybersecurity / Threat Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response leadership, forensic analysis, threat hunting, TTP analysis (APTs), OS expertise (Linux/Windows), high-pressure investigation
Preferred skills
SIEM tools (Splunk, QRadar, Arcsight, ELK), EDR tools, Cyber Threat Intelligence integration, consulting experience
Technologies
Splunk, QRadar, Arcsight, ELK, EDR tools
Responsibilities
Lead technical investigations and recovery efforts for cybersecurity incidents, conduct forensics to identify compromised systems, lead investigations in unknown compromised environments (e.g., ransomware, APTs), mentor junior colleagues, improve team tradecraft
Seniority
Senior, hands-on IC with mentorship duties