Hybrid Cybersecurity Incident Response Analyst

Posted 2 days ago

Apply now

About the role

  • Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.

Responsibilities

  • Monitor, triage, and investigate alerts from SIEM, EDR, identity platforms, and cloud environments
  • Use AI/LLM-powered tools to enrich alerts, summarize logs, and support root cause analysis
  • Correlate telemetry across identity, endpoint, cloud, and network systems to build clear incident timelines
  • Support containment and remediation efforts in collaboration with SOC, engineering, and IT teams
  • Analyze AI-generated threat scores, behavioral anomalies, and recommendations to detect stealthy or emerging threats
  • Assist in evidence collection for forensics, insider threat, or audit-related investigations
  • Document incidents thoroughly and contribute to response playbooks and process improvements
  • Participate in tabletop exercises and threat simulation activities to improve detection and response maturity
  • Recommend enhancements to detection rules and automation workflows based on incident learnings
  • Other duties as assigned by organization leadership

Requirements

  • Possess strong communications and interpersonal skills in English
  • Self-directed, organized, and able to manage multiple priorities
  • Strong ability to work collaboratively with others, to influence based on knowledge and experience
  • Experience in a SOC, cybersecurity operations, or incident response role
  • Hands-on experience with tools like SentinelOne, Defender for Endpoint, Microsoft Sentinel, Zscaler, or Splunk
  • Familiarity with MITRE ATT&CK and common attacker tactics, techniques, and procedures
  • Working knowledge of endpoint behavior, log analysis, DNS/HTTP/SOC telemetry, and identity-related indicators
  • Basic scripting or automation (PowerShell, Python, Bash) to assist in triage or data parsing
  • Experience using or interpreting AI/ML-driven detection tools, or LLM-based security assistants (e.g., for alert summaries or ticket generation)
  • Strong communication and documentation skills for technical and non-technical audiences
  • Calm under pressure and effective in active response situations

Benefits

  • Health insurance
  • Life insurance
  • Disability insurance
  • Retirement plan
  • Paid time off

Job title

Cybersecurity Incident Response Analyst

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job