488 incident response analyst jobs at 359 companies in United States

4d
Save
Mark Applied
Hide
Incident Response Analyst
Irving, Texas, United States
HybridFull Time
Trend Micro
Trend MicroTokyo Stock Exchange: 4704: Provides cybersecurity platforms protecting clouds, networks, and endpoints.
3+ YOEBachelor's degree,3+ years in security operations with incident response,forensics,malware analysis and SOC experience; familiarity with OS/network forensics,SIEM,threat intelligence,and rotating 24/7 shifts;must be authorized to work in the U.S.
SIFT Workstation, WinPMEM, dd, dclfdd, Autopsy, Volatility Framework, FTK Imager, Wireshark, Bro/SiLK, Netflow, tcpdump, SIEM, Vision One
2w
Save
Mark Applied
Hide
Sr. Incident Response Analyst
United States
$160k-$170k/yr RemoteFull Time
Cherokee Federal
Cherokee Federal: Provides specialized professional and technical services to federal government agencies.
5+ YOE5+ years cybersecurity experience with 3+ years in incident response or SOC roles; hands-on Windows/Linux/cloud incident handling, SIEM/EDR/forensics, threat hunting, and strong communication skills.
Splunk Enterprise Security (Splunk ES), Microsoft Sentinel, QRadar, Microsoft Defender, CrowdStrike, SentinelOne, AWS GuardDuty, Security Hub, Azure Defender, Splunk SOAR, Python, PowerShell
1w
Save
Mark Applied
Hide
Principal Incident Response Analyst
Illinois, United States
$122k-$225k/yr OnsiteFull Time
Centene
CenteneNYSE: CNC: Provides government-sponsored and commercial healthcare insurance programs and services.
6+ YOEExecutes enterprise incident response, conducts access controls testing, develops remediation and automated responses; requires bachelor’s in quantitative/business field and 6–8 years related experience.
CrowdStrike, Carbon Black
1w
Save
Mark Applied
Hide
Incident Response Analyst II
Austin, Texas, United States
$98k-$155k/yr OnsiteFull Time
Astreya
Astreya: Provides managed IT services and digital workplace solutions for enterprises.
3+ YOE3+ years incident response experience in data center/NOC/SOC environments; familiarity with UPS/CRAC failures, EOP/MOP execution, vendor coordination, and regulatory standards; strong analytical and communication skills.
Incident io, Grafana, Ring, JIRA, Teleport, Confluence, BMS, DCIM
2mo
Save
Mark Applied
Hide
Technical Incident Response Analyst
Elk Grove Village, Illinois, United States
$85k-$115k/yr HybridFull Time
First American Bank
First American Bank: Full-service community bank providing personal and business financial solutions.
3+ YOEThree+ years in incident response or security monitoring; hands-on with SIEM and incident response tools; firewall, endpoint, and Linux exposure; strong written/spoken communication.
SIEM, Incident response tooling, Firewall, Endpoint protection, Microsoft 365 security tools, IDS/HIDS, Kibana
2w
Save
Mark Applied
Hide
SOC / Incident Response Analyst
Washington, District of Columbia, United States
OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Provides engineering, technology, and mission support to government agencies.
3+ YOE3+ years SOC/incident response experience; familiarity with SIEM, EDR, threat hunting, malware analysis, digital forensics; knowledge of MITRE ATT&CK and NIST CSF; active TS/SCI or DOE Q clearance required.
SIEM, EDR, MITRE ATT&CK, NIST Cybersecurity Framework
3w
Save
Mark Applied
Hide
Senior Incident Response Analyst
Arlington, Virginia, United States
HybridFull Time
Tetrad Digital Integrity
Tetrad Digital Integrity: Provides cybersecurity performance management software and specialized consulting services.
12+ YOEAbility to obtain Public Trust; required bachelor's degree and 12+ years experience; hands-on incident detection/response, malware analysis or forensics; expertise with Windows/Linux, networking, SIEM/EDR/IDS/IPS; scripting (Python, PowerShell, Bash).
SIEM, EDR, IDS/IPS, Python, PowerShell, Bash, Windows, Linux, MITRE ATT&CK, Cyber Kill Chain, firewalls, proxies, VPN
1mo
Save
Mark Applied
Hide
Cybersecurity Incident Response Analyst
McLean, Virginia, United States
OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
2+ YOEActive TS/SCI w/Poly required; 2+ years incident response experience; Bachelor's in a technical field +3 years or High School +7 years; ability to obtain DoD 8570 IAT-II within 6 months.
SIEM, MITRE ATT&CK
1mo
Save
Mark Applied
Hide
Senior Incident Response Analyst (R-19347)
Center Valley, Pennsylvania, United States
OnsiteFull Time
Dun & Bradstreet
Dun & Bradstreet: Providing commercial data and analytics for business decisions.
Bachelor's degree required. Senior-level incident response expertise, hands-on experience with SIEM (Splunk, Microsoft Sentinel), EDR (CrowdStrike, Carbon Black), cloud platforms, log and network analysis, malware/binary analysis, scripting, and mentoring junior analysts.
Splunk, Microsoft Sentinel, CrowdStrike, Carbon Black, Azure, AWS, GCP, AliCloud, NetFlow, PCAP, Mitre ATT&CK, Javascript, VBScript, PowerShell, Python
1w
Save
Mark Applied
Hide
AOUSC - Incident Response Analyst
Washington, District of Columbia, United States
HybridFull Time
cFocus Software
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
3+ YOEPublic Trust clearance, BS in CS/IT or related, 3+ years IR experience, 2+ years Python and PowerShell, experience with live triage, log correlation, Velociraptor, Splunk ES, Sentinel, and familiarity with NIST incident handling.
Python, PowerShell, Velociraptor, Splunk ES, Sentinel
1mo
Save
Mark Applied
Hide
Cybersecurity Incident Response Analyst
Los Angeles, California, United States
OnsiteFull Time
Creative Artists Agency
Creative Artists Agency: Provides talent representation and brand consulting services globally.
3+ YOE3+ years in IT with ~2 years hands-on incident response/threat hunting/forensics; experience with Windows/Unix/Linux forensics, network (netflow, pcap) and log analysis, malware analysis, playbook/runbook development, and NIST framework.
netflow, pcap, NIST, Windows, Unix, Linux
2d
Save
Mark Applied
Hide
Tier II-III Incident Response Analyst
Oak Ridge, Tennessee, United States
$131k-$154k/yr OnsiteFull Time
Boston Government Services
Boston Government Services: Engineering and technology solutions for government and energy sectors.
Experience in incident response/SOC operations, familiarity with SIEM/EDR/IDS/IPS, evidence handling, and ability to produce clear incident documentation; U.S. citizenship and drug screen required; bachelor’s degree or equivalent.
SIEM, EDR, IDS/IPS
1d
Save
Mark Applied
Hide
Cybersecurity Incident Response Analyst, Senior
Texas, United States
RemoteFull Time
Cook Children's
Cook Children's: Provides comprehensive pediatric medical care and specialized health services.
5+ YOEBachelor's in CS/IS/cybersecurity, 5+ years in cybersecurity operations or incident response, hands-on incident investigation across network/endpoint/cloud, experience with SIEM, EDR, SOAR, and developing playbooks.
SIEM, EDR, SOAR
1mo
Save
Mark Applied
Hide
Cyber Incident Response Senior Analyst
Jersey City, New Jersey, United States
$80k-$95k/yr OnsiteFull Time
Brown Brothers Harriman
Brown Brothers Harriman: Providing global investment management, custody, and private banking services.
Experience in cyber incident response; strong writing, analytical, and presentation skills; proficient in PowerPoint and Excel; knowledge of financial services security.
PowerPoint, Excel, Incident management tools
1w
Save
Mark Applied
Hide
Cybersecurity Incident Response Triage IR Analyst
Arlington, Virginia, United States
$54k-$120k/yr RemoteFull Time
Accenture Federal Services
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
1+ YOEUS citizenship required;1-2 years information security experience;experience with event/log analysis and SIEM;familiarity with TCP/IP, Windows/Linux, endpoint and malware analysis;strong communication and incident response skills.
SIEM, Microsoft Excel, grep, sed, awk, regex, Active Directory, Anti-Virus, Firewalls, Web Proxies, Data loss prevention tools
3mo
Save
Mark Applied
Hide
Incident Response & Intel Analyst (Seasonal)
New York, New York, United States
$25-$30/hr RemoteSeasonal
Major League Baseball
Major League Baseball: Professional sports league governing North American baseball teams and media.
Bachelor’s or Master’s in Cybersecurity or related field; experience in incident response/investigations; knowledge of IOCs, MITRE ATT&CK; OSINT; strong communication; ability to handle confidential info; foreign language skills a plus.
OSINT, MITRE ATT&CK, Threat intelligence platforms, SIEM, SOAR
2mo
Save
Mark Applied
Hide
Tier 3 Incident Response Senior Analyst
Quantico, Virginia, United States
OnsiteFull Time
Sentar
Sentar: Provides cybersecurity and intelligence solutions for national security agencies.
5+ YOERequires Secret clearance (upgrade to TS/SCI), IAT Level II and CSSP Incident Responder certifications, Associate's in CS/IT or 5 years related experience, forensic analysis and incident management skills.
2w
Save
Mark Applied
Hide
Lead Analyst – Cyber Incident Response
Saint Petersburg, Florida, United States
HybridFull Time
Raymond James
Raymond JamesNew York Stock Exchange: RJF: Provides wealth management, investment banking, and retail banking services.
5+ YOEBachelor's degree and 5+ years information security experience with minimum 4 years incident response; 2+ years programming/scripting (Python, JavaScript, PowerShell, or Rust); SIEM/EDR/SOAR experience; API/integration and AI/ML familiarity.
SIEM, EDR, SOAR, Python, JavaScript, PowerShell, Rust, API, AI/ML, LLM
3w
Save
Mark Applied
Hide
Incident Response and Forensic Analyst
Colorado Springs, Colorado, United States
$135k-$203k/yr OnsiteFull Time
The Aerospace Corporation
The Aerospace Corporation: Provides technical expertise and research for national space programs.
5+ YOE5+ years incident response and digital forensics experience, bachelor’s in a related field or equivalent, hands-on forensics on Windows/Linux/macOS, memory and network forensics, malware analysis, strong communication and analytical skills.
EnCase, FTK, X-Ways, Autopsy, Wireshark, tcpdump, NetworkMiner, Python, PowerShell, Bash, MITRE ATT&CK, CrowdStrike, Carbon Black, SentinelOne, SIEM, NIST SP 800-61
1d
Save
Mark Applied
Hide
Cyber Incident Response Analyst- Junior
Washington, District of Columbia, United States
$84k-$88k/yr OnsiteFull Time
Cayuse Holdings
Cayuse Holdings: Tribally-owned provider of IT and professional services.
0+ YOEProvide first-line incident support, triage, case management, coordination with teams/partners, reporting, and customer service; Security+ and ITIL preferred; U.S. citizenship and ability to obtain Top Secret/SCI required.
Amazon Connect, ServiceNOW, Remedy, Microsoft Word, Microsoft Excel, Microsoft PowerPoint