31 incident response analyst jobs at 22 companies in Rye Brook, NY
3d
Save
Mark Applied
Hide
3d
Incident Response Analyst - Overnight Shift
Boston or New York City or Philadelphia or Cleveland or Richmond or Atlanta or Chicago or St. Louis or Minneapolis or Kansas City or Dallas or San Francisco
RemoteFull Time
Federal Reserve Bank of Richmond: Public-service regional central bank serving the Federal Reserve’s Fifth District and supporting a sound financial system.
3+ YOEBachelor's degree or equivalent experience and 3+ years relevant experience; incident response, SIEM/SOAR, forensics, threat analysis, IT infrastructure, communication, and analytical skills required.
Incident Response Planning and Operations, Analyst
Tempe or Jersey City or New York or New Jersey
$85k-$123k/yrHybridFull Time
MUFG Bank, Ltd.: Core commercial banking subsidiary of Mitsubishi UFJ Financial Group.
1+ YOEBachelor’s degree in cybersecurity, information technology, computer science, or related field; 1+ year in cybersecurity; incident response or threat management experience; communication, facilitation, writing, analytical, and cybersecurity framework knowledge.
DTCC: Global post-trade market infrastructure for the financial services industry.
6+ YOEMinimum 6 years of related experience, including 3 years as a SOC analyst or similar role, with cybersecurity incident response, forensic interpretation, technical leadership, reporting, mentoring, and security tools expertise.
SOC, Cyber Monitoring and Incident Response Team (CMIR), OS, DFIR
Dublin or Los Angeles or Singapore or New York City or London or Paris or Berlin or Dubai or Jakarta or Seoul or Tokyo
OnsiteFull Time
TikTok: Short-form mobile video and social media platform.
4+ YOEBachelor's degree and 4+ years in Trust & Safety incident, risk, investigations, escalations, crisis management, or related work. Requires quantitative, communication, content moderation, and regulatory knowledge.
S&P Global Inc.NYSE: SPGI: Global provider of financial intelligence, ratings, and market analytics.
3+ YOERequires 3+ years of information security experience focused on incident response, threat hunting, or threat intelligence; SIEM experience, advanced TCP/IP and HTTP knowledge, and strong analytical, communication, and presentation skills.
FlexTrade Systems: Private financial technology providing customizable multi-asset execution and order management systems to buy- and sell-side institutions.
5+ YOE5+ years in SOC, security operations, or incident response; proficiency with SIEM and EDR platforms; vulnerability management, threat hunting, scripting, and incident response experience. CISSP required or strongly preferred.
Splunk, Microsoft Sentinel, Sumo Logic, CrowdStrike Falcon, Microsoft Defender, Entra, Purview, Tenable, Qualys, Rapid7, MITRE ATT&CK, Python, PowerShell, Bash, AWS, Azure, GCP, MISP, Recorded Future, OpenCTI, KAPE, Volatility, Velociraptor
Vancouver or Burnaby or Toronto or Calgary or Canada or Dublin or London or New York City or Sydney or Barcelona or Bogotá
$105k-$142k/yrHybridFull Time
Clio: Cloud-based legal practice management and software platform.
5+ YOE5–8 years in security operations/detection engineering/incident response; hands-on with EDR,DLP,SIEM,SSO; incident command experience; scripting and AI experience; strong written communication and coaching skills.
DLP, EDR, SIEM, SSO, SOAR, Google Workspace, Python, Bash, PowerShell, AI
Teachers Federal Credit Union: Member-owned nonprofit credit union providing personal and business banking, lending, investment, and financial services nationwide.
3+ YOEBachelor's degree or equivalent certifications; 3+ years networking/data center experience; Linux; hybrid datacenter; security and incident response knowledge; financial sector experience preferred
City of New York: Official government portal for the City of New York.
4+ YOEBachelor's degree and four years of related full-time experience, or equivalent education and experience. Requires cybersecurity, intrusion detection, SIEM, threat hunting, and incident response expertise.
Nscale: Vertically integrated AI infrastructure and GPU cloud platform.
3+ YOE3+ years in security operations or related roles; experience investigating endpoint, identity, SaaS, cloud, email, network telemetry; strong incident response and writing skills; comfortable with query languages, logs, dashboards, and case management.
Subway: Global quick-service restaurant chain specializing in submarine sandwiches.
1+ YOEBachelor's degree or equivalent experience; 1–3 years in security or identity operations; IAM, MFA, SSO, Okta, SIEM, Active Directory, Microsoft Entra ID, Microsoft 365, ServiceNow, documentation, and incident-response knowledge.
CrowdStrike Falcon Identity Protection, CrowdStrike Falcon Next-Gen SIEM, Okta Identity Governance, Okta, ServiceNow, Active Directory, Microsoft Entra ID, Microsoft 365, PowerShell, Python, SailPoint, Saviynt, Omada, MITRE ATT&CK, CAASM, LLM, CQL
Senior Associate - Security Operations Center (SOC) Analyst
New York City, New York, United States
$100k-$143k/yrHybridFull Time
New York Life Insurance: Mutual life insurance providing insurance and investment solutions.
3+ YOEBachelor's degree or equivalent practical experience and 3–4 years in security operations or incident response. Requires cloud security experience, SIEM, EDR/XDR, scripting, threat detection, and incident response skills.
SIEM, EDR/XDR, Amazon Web Services (AWS), Google Cloud Platform (GCP), AWS GuardDuty, AWS Security Hub, Microsoft Defender for Cloud, Google Security Command Center, Elastic, Splunk, Google Chronicle, CrowdStrike Falcon, SentinelOne, Palo Alto Cortex XDR, MITRE ATT&CK, Cyber Kill Chain, Python, PowerShell, Bash, SOAR, Kubernetes, Docker, Terraform, CloudFormation, DevSecOps, IAM
TGI Office Automation: Privately held managed IT services provider delivering network, cloud, cybersecurity, and data-center solutions to businesses.
2+ YOEBachelor's degree or equivalent experience; 2–4 years in SOC, cybersecurity operations, or managed security services; SIEM, XDR, endpoint security, incident response, and security platform administration experience.
SentinelOne, Microsoft Defender for Endpoint, Microsoft Defender XDR, SIEM, Microsoft Sentinel, Splunk, LogRhythm, PowerShell, ConnectWise Manage, NIST, ISO 27001, CIS
New York University: Private research university in New York City.
2+ YOEBachelor's degree or equivalent experience, 2+ years in IT or information security, incident response knowledge, analytical and communication skills, and proficiency with Windows, macOS, and Linux.
Trinity Church Wall Street: Trinity Church Wall Street is a nonprofit Episcopal parish serving New Yorkers through worship, education, philanthropy, and community services.
3+ YOEBachelor's or equivalent, 3+ years IT risk/security experience, knowledge of PCI DSS/NIST/ISO27001, audit support, disaster recovery, vendor risk, incident response, strong communication and project skills.
Coral Gables or Fort Lauderdale or Charlotte or Horsham or New York City or Scottsdale or Agoura Hills or Flower Mound
$70k-$130k/yrHybridFull Time
Lakeview Loan Servicing: Private mortgage servicer and lender that manages residential loans and servicing rights for U.S. homeowners.
4+ YOEBachelor’s degree or equivalent experience, 4+ years in data protection or incident response, hands-on DLP technology experience, analytical skills, security knowledge, and strong communication abilities.
Microsoft Purview, Microsoft Defender, Netskope, Zscaler, Varonis, Splunk, Microsoft Sentinel, Python, PowerShell, API, CASB
BlackstoneNYSE: BX: The world's largest alternative asset manager.
2+ YOE2+ years in cyber threat intelligence, security operations, incident response, or related cybersecurity. Requires scripting, intelligence analysis, AI tooling, threat frameworks, and a relevant bachelor's degree.
S&P Global Inc.NYSE: SPGI: Global provider of financial intelligence, ratings, and market analytics.
3+ YOERequires 3+ years of information security experience focused on incident response, threat hunting, or threat intelligence; SIEM investigation experience; MITRE ATT&CK, network protocols, cloud/SaaS logs, and intelligence workflow knowledge.