Incident Response Analyst
Core
Hands-on security role ensuring end-to-end triage and closure of security events, assessing and deploying detection capabilities to protect enterprise systems and data.
Role type
Incident Response Analyst (SOC)
Builds
Runbooks, playbooks, and detection workflows for incident response (via careerplan.io/jobs/JR9266-incident-response-analyst-at-caa)
Domain
Cyber Security, Threat Detection, Incident Response
Required skills
Windows disk and memory forensics, Network traffic analysis, Log analysis, Unix or Linux disk and memory forensics, Malware analysis, Server/OS/Network fundamentals, Workflow and playbook design, NIST framework understanding
Preferred skills
Cloud security integration, Security control validation, Kill chain analysis
Responsibilities
Conduct day-to-day incident response and SOC detection activities, Design and implement incident response runbooks and playbooks, Coordinate with technical and business stakeholders during incidents, Perform host, cloud, network, memory, or log analysis and forensics, Review security logs and reports to provide findings and recommendations, Implement continual review and improvement of technical security controls