Engineer II in Cyber Incident Response responsible for detecting and responding to cybersecurity incidents. Collaborating with global teams to minimize business impact and strengthen detection capabilities.
Responsibilities
Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts
Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents
Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff, providing clear documentation and evidence
Assist in containment, eradication, and recovery activities during incident response
Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures
Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies
Participate in lessons-learned sessions and recommend improvements to SOC processes and tooling
Support junior analysts (Engineer I) by sharing knowledge and providing guidance on investigative techniques
Requirements
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience
Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics
Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035
2–5 years of progressive experience in cybersecurity with at least 2 years in SOC operations or incident response
Hands-on experience with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark)
Senior Cyber Incident Response Analyst managing cybersecurity incidents for clients. Focused on proactive threat hunting, incident response, and digital forensics in a hybrid environment.
Incident Response expert managing IT security incidents across teams in a global retail company. Focusing on advanced incident response and continual improvement in a dynamic work environment.
Digital Forensics & Incident Response Analyst providing real - time threat analysis and mitigation at Cayuse. Engaging in cybersecurity initiatives while leveraging extensive forensics experience.
Incident Response Analyst managing complex security incidents and leading response teams at Vanguard. Develop and implement incident action plans for security breaches and vulnerabilities.
Cyber Incident Response Analyst supporting 24/7 cybersecurity incident management and response operations for client. Engaging in case management, triage, and operational coordination activities.
Senior Manager for the Security Operations Center at Cencora, leading incident response operations and team management in Texas. Collaborating with global teams for security incident remediation.
Incident Manager coordinating incident resolution and change management processes at SONDA. Responsible for major incident management and supporting effective change processes.
Cyber Incident Response Director at PwC resolving complex cyber security incidents and improving strategies. Leading Crisis Management engagements and collaborating with national cybersecurity bodies.
Sr Sourcing Air Analyst at Despegar leading the expansion of airline partnerships in Mexico City. Collaborating on growth strategies and negotiating marketing agreements with airlines.
Incident Manager receiving and registering incidents through various channels at SONDA. Collaborating with resolver groups to ensure timely solutions in Bogotá.