Haystack
← Back to Jobs
Remote
Administrative

Senior Information Security Analyst (Incident Response)/Remote

Apetan ConsultingUnited States🇺🇸United StatesPosted 10 Aug 2026

Quick Overview

Work Type
Remote
Level
Mid Senior

Job Description

Job Description - Senior Information Security Analyst – Incident Response

Location-Remote

Role Overview

We are looking for a Senior Information Security Analyst – Incident Response to detect, investigate, and respond to cybersecurity incidents. The role will focus on monitoring security events, conducting investigations, coordinating incident response activities, and improving the organization’s overall security posture.

Key Responsibilities

  • Monitor and investigate security alerts, incidents, and suspicious activities.
  • Lead or support incident response activities from detection through containment, eradication, and recovery.
  • Perform security event analysis, threat investigation, and root-cause analysis.
  • Analyze logs, network traffic, endpoint activity, and other security telemetry.
  • Work with SOC, IT, Infrastructure, Cloud, and Application teams during security incidents.
  • Develop and maintain incident response procedures, playbooks, and runbooks.
  • Perform threat hunting and identify indicators of compromise (IOCs).
  • Support forensic investigations and evidence collection when required.
  • Use SIEM, EDR/XDR, SOAR, and other security tools for detection and investigation.
  • Document incidents, findings, timelines, impact, and remediation actions.
  • Conduct post-incident reviews and recommend improvements to security controls.
  • Stay current with emerging threats, vulnerabilities, attack techniques, and security best practices.
  • Participate in security exercises, incident simulations, and continuous improvement initiatives.

Required Skills & Experience

  • Strong understanding of incident response lifecycle and security operations.
  • Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, or equivalent.
  • Experience with endpoint security/EDR tools such as CrowdStrike, Microsoft Defender, SentinelOne, or equivalent.
  • Strong knowledge of network security, Windows/Linux systems, authentication, and common attack techniques.
  • Experience analyzing security logs, alerts, IOCs, and malware-related activity.
  • Strong understanding of MITRE ATT&CK and common threat actor tactics and techniques.
  • Scripting knowledge in Python, PowerShell, Bash, or similar languages.
  • Strong analytical, troubleshooting, documentation, and communication skills.

Similar jobs