🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Senior Information Security Analyst Incident Response 100% Remote Role Overview We are looking for a Senior Information Security Analyst Incident Response to detect, investigate, and respond to cybersecurity incidents. The role will focus on monitoring security events, conducting investigations, coordinating incident response activities, and improving the organizations overall security posture. Key Responsibilities Monitor and investigate security alerts, incidents, and suspicious activities. Lead or support incident response activities from detection through containment, eradication, and recovery. Perform security event analysis, threat investigation, and root-cause analysis. Analyze logs, network traffic, endpoint activity, and other security telemetry. Work with SOC, IT, Infrastructure, Cloud, and Application teams during security incidents. Develop and maintain incident response procedures, playbooks, and runbooks. Perform threat hunting and identify indicators of compromise (IOCs). Support forensic investigations and evidence collection when required. Use SIEM, EDR/XDR, SOAR, and other security tools for detection and investigation. Document incidents, findings, timelines, impact, and remediation actions. Conduct post-incident reviews and recommend improvements to security controls. Stay current with emerging threats, vulnerabilities, attack techniques, and security best practices. Participate in security exercises, incident simulations, and continuous improvement initiatives. Required Skills & Experience Strong understanding of incident response lifecycle and security operations. Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or equivalent. Experience with endpoint security/EDR tools such as CrowdStrike, Microsoft Defender, SentinelOne, or equivalent. Strong knowledge of network security, Windows/Linux systems, authentication, and common attack techniques. Experience analyzing security logs, alerts, IOCs, and malware-related activity. Strong understanding of MITRE ATT&CK and common threat actor tactics and techniques. Scripting knowledge in Python, PowerShell, Bash, or similar languages. Strong analytical, troubleshooting, documentation, and communication skills. .