Security Analyst - Incident Response (all genders)
Core
First responder for security incidents, driving digital forensics investigations, and maintaining high-fidelity detection capabilities via SIEM optimization and AI integration.
Role type
Incident Response Security Analyst
Builds
Incident response playbooks, automated security workflows, and proactive threat controls
Domain
Cybersecurity, Digital Forensics, Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
Digital forensics, SIEM configuration and log querying, Python scripting, Linux command-line usage, Cloud environment management (AWS/Azure/GCP), Incident response procedures, Threat hunting, Vulnerability identification, WAF configuration
Preferred skills
SANS/GIAC certifications, OffSec OSIR, HackTheBox/TryHackMe experience, Laravel/PHP knowledge, Gitlab CI/CD, Terraform/Terragrunt, Digital forensics expertise
Technologies
Python, SIEM, AWS, Azure, GCP, Linux, Cloudflare WAF, Gitlab CI/CD, Terraform, Terragrunt
Responsibilities
Deploy and maintain DFIR tools and infrastructure, Serve as first responder for security incidents, Maintain and optimize SIEM platforms, Enhance monitoring systems using Python scripts, Integrate AI technologies into security operations, Investigate and remediate security alerts, Create and update incident response playbooks, Track emerging cyber threats and zero-day vulnerabilities
Seniority
Mid-level, hands-on IC
