58 incident response analyst jobs at 39 companies in California
1w
Save
Mark Applied
Hide
1w
Sr. Incident Response Analyst
San Francisco, California, United States
$146k-$235k/yrHybridFull Time
DocuSignNASDAQ: DOCU: Provides intelligent agreement management and e-signature software solutions.
8+ YOERequires 8+ years in cybersecurity, SOC or incident response, critical incident coordination, SIEM, EDR, digital forensics, scripting, crisis management, and U.S. work authorization without sponsorship.
DocuSignNASDAQ: DOCU: Provides intelligent agreement management and e-signature software solutions.
8+ YOERequires 8+ years of cybersecurity experience, incident response and SOC expertise, critical incident leadership, SIEM, EDR, digital forensics, and scripting. U.S. work authorization required; bachelor's degree and certifications preferred.
Boston or New York City or Philadelphia or Cleveland or Richmond or Atlanta or Chicago or St. Louis or Minneapolis or Kansas City or Dallas or San Francisco
RemoteFull Time
Federal Reserve Bank of Richmond: Public-service regional central bank serving the Federal Reserve’s Fifth District and supporting a sound financial system.
3+ YOEBachelor's degree or equivalent experience and 3+ years relevant experience; incident response, SIEM/SOAR, forensics, threat analysis, IT infrastructure, communication, and analytical skills required.
Creative Artists Agency: Entertainment and sports talent agency.
3+ YOE3+ years in IT with ~2 years hands-on incident response/threat hunting/forensics; experience with Windows/Unix/Linux forensics, network (netflow, pcap) and log analysis, malware analysis, playbook/runbook development, and NIST framework.
MUFG Bank, Ltd.: Core commercial banking subsidiary of Mitsubishi UFJ Financial Group.
1+ YOEBachelor’s degree or equivalent experience, 1+ year in cybersecurity operations or information security, incident response expertise, and knowledge of security tools, operating systems, cloud environments, frameworks, and risk analysis.
Mac OS, Linux, Windows, Microsoft Windows, AWS Security, CrowdStrike, Tanium, Proofpoint, Web Application Firewall (WAF), Microsoft O365, Security Information and Event Management (SIEM), MITRE ATT&CK, Cyber Kill Chain, DevOps, AI
Sutter Health: Not-for-profit health system serving Northern and Central California.
2+ YOEBachelor's degree or equivalent experience and 2 years of recent relevant experience. Requires incident response, security analysis, vulnerability management, and information security knowledge; certifications are preferred.
Security Orchestration, Automation, and Response (SOAR), Microsoft Windows, Unix/Linux, Windows, Linux, Domain Name System (DNS), Simple Mail Transfer Protocol (SMTP), Hypertext Transfer Protocol (HTTP), Dynamic Host Configuration Protocol (DHCP), File Transfer Protocol (FTP)
Control Risks: Global risk consultancy providing strategic security and resilience advice.
3+ YOE3+ years in cybersecurity (incident response, SOC or cyber defense). Hands-on SIEM/EDR, log analysis (Splunk, Microsoft Sentinel, CrowdStrike). Knowledge of MITRE ATT&CK and NIST; cloud (AWS, Microsoft Azure, GCP) preferred. Relevant certs a plus.
SIEM, EDR/XDR, Splunk, Microsoft Sentinel, CrowdStrike, MITRE ATT&CK, NIST, AWS, Microsoft Azure, GCP
Dublin or Los Angeles or Singapore or New York City or London or Paris or Berlin or Dubai or Jakarta or Seoul or Tokyo
OnsiteFull Time
TikTok: Short-form mobile video and social media platform.
4+ YOEBachelor's degree and 4+ years in Trust & Safety incident, risk, investigations, escalations, crisis management, or related work. Requires quantitative, communication, content moderation, and regulatory knowledge.
User Safety & Risk Operations Analyst - Global Response (Weekend Shift)
San Francisco, California, United States
$189k-$210k/yrHybridFull Time
OpenAI: AI research and deployment focused on beneficial AGI.
5+ YOE5+ years in trust & safety, content moderation, investigations, or escalations; experience in incident response or operations; strong analytical, communication, and judgment skills; able to work rotating shifts and on-call coverage.
Neumo: Government software and payments serving local, state, and federal agencies with cloud-based modernization tools.
2+ YOE2–4 years in cybersecurity with SOC, vulnerability management, and incident response experience; bachelor’s preferred; equivalent work experience considered.
SIEM, EDR, Vulnerability Scanning, Cloud Security, PowerShell, Python, Microsoft Defender for Endpoint, Tenable, Microsoft Sentinel, Azure, AWS
CompassMSP: Private managed IT, cybersecurity, cloud, and compliance provider for small and mid-sized businesses.
5+ YOERequires 5+ years in SOC or incident response, end-to-end alert investigations, threat containment, and experience with Windows, Microsoft 365, Entra ID, firewalls, EDR, SIEM, and security consoles.
EDR, XDR, SIEM, Windows, Microsoft 365, Entra ID, Active Directory, VPN, RMM, SOPs
SAG-AFTRA Federal Credit Union: Member-owned credit union providing financial services to performers and entertainment-industry families.
3+ YOEBachelor's degree in information security/computer science, 3+ years information security and network support experience, Security+/Network+/Server+ (or equivalent), project management and incident response experience, strong analytical and communication skills.
SpaceXNasdaq: SPCX: Designing, manufacturing, and launching advanced rockets and spacecraft.
2+ YOEBachelor's degree in STEM or 2+ years information security experience; OS auditing (Linux/Windows/macOS); network and host-based collection tools; incident response and SIEM experience; scripting and forensic skills preferred.
AMERICAN SYSTEMS: Government services contractor delivering IT and engineering solutions.
1+ YOEU.S. citizen with Secret clearance, DoD 8570 IAT II cert or ability to obtain, 1+ year networking/UNIX/Linux experience (degree accepted), familiarity with intrusion detection, incident response, and basic programming.
VeSync: Private small smart-home-appliance designing, developing, and selling connected products under four consumer brands.
3+ YOE3+ years information security experience, hands-on security monitoring, incident response, vulnerability management, familiarity with cloud (AWS/Azure/GCP), security frameworks, and strong communication skills.
Inland Empire Health Plan: Public health plan managing Medi-Cal, Medicare-Medicaid, and Covered California coverage for Riverside and San Bernardino County residents.
8+ YOERequires 8+ years of IT experience, including 5+ years in cybersecurity, an associate degree in a computer-related field or equivalent experience, scripting, security operations, vulnerability management, and incident response expertise.
Microsoft Windows, MacOS, Linux, PowerShell, JavaScript, Python, SIEM, SOAR, EPM, DLP, WAF, SAST, DAST, MITRE ATT&CK, Cyber Kill Chain, HIPAA, NIST 800-53, NIST CSF, Zero Trust Architecture, TCP/IP, OSI Model