Security Analyst - Incident Response (all genders)
Core
Build and maintain DFIR tools and security infrastructure, act as first responders to security incidents, perform digital forensics, and implement risk minimization measures.
Role type
Incident Response Security Analyst
Builds
Security operations infrastructure, automated monitoring systems, and incident response playbooks
Domain
Cybersecurity / Digital Forensics / Cloud Security
Required skills
Digital forensics, SIEM operations and optimization, Python scripting for automation, Linux command line proficiency, Cloud environment management (AWS/Azure/GCP), Threat hunting, Incident response playbooks creation, WAF configuration
Preferred skills
AI/LLM agent integration for security analysis, Laravel/PHP, GitLab CI/CD, Terraform/Terragrunt
Technologies
Python, SIEM, AWS, Azure, GCP, Linux, Cloudflare WAF, GitLab CI/CD, Terraform, Terragrunt
Responsibilities
Build and maintain DFIR tools and security infrastructure, perform digital forensics and act as first responders during incidents, operate and optimize SIEM systems for threat detection, develop monitoring and scanning systems using Python, integrate AI-driven solutions into security operations, analyze and remediate security alerts across internal and cloud environments, create and update incident response playbooks, monitor emerging cyber threats and zero-day vulnerabilities
Seniority
Mid-level, hands-on IC
