Why This Role Stands Out
This remote Incident Response Analyst role offers significant impact by directly tackling complex cybersecurity threats, providing an excellent opportunity for advanced skills development in a dynamic field. You'll thrive here if you have hands-on experience with various incident types and a strong technical background, making this a compelling opportunity to advance your career. The competitive salary range of $80,000-$120,000 makes this an attractive position to apply for.
Quick Overview
Job Description
Incident Response Analyst
Location: Remote – U.S.
Work Arrangement: Remote
Type: Full-time
Role Focus
Hands-on incident response position supporting active cybersecurity incidents from initial investigation through containment, scoping, eradication, and recovery. This role will work directly on ransomware, business email compromise, credential theft, cloud compromise, lateral movement, data exfiltration, and other active security incidents. Remote position, must currently live in the U.S. and not require sponsorship or a 3 rd party at any time.
Target Candidate
- Professional hands-on incident response experience
- Strong Windows endpoint investigation experience
- Strong understanding of Active Directory, Entra ID, Microsoft 365, authentication, and identity-related attacks
- Experience responding to ransomware, BEC, compromised accounts, persistence, credential access, lateral movement, and data exfiltration
- Strong EDR experience; CrowdStrike experience strongly preferred
- Experience analyzing endpoint, authentication, identity, network, email, and cloud telemetry
- Ability to scope incidents and identify affected users, systems, accounts, and infrastructure
- Experience identifying attacker activity and reconstructing attack timelines
- Comfortable making containment and remediation recommendations during active incidents
- Ability to operate effectively during high-pressure and rapidly evolving incidents
- Strong investigative documentation and case management discipline
- Ability to communicate findings clearly to senior technical personnel, engagement leadership, clients, and other stakeholders
- Digital forensics experience is beneficial, but this position should be incident-response-first
- Currently reside in the U.S. and be eligible to work for any U.S. employer without ever requiring sponsorship or a 3rd party
- Able to pass a background check
Level: Analyst / Senior Analyst depending on experience
Preference: Experienced responder capable of independently owning significant portions of an active incident while coordinating effectively with senior DFIR personnel.
Compensation: $80,000–$120,000 and benefits package
Similar jobs
- PE
Information Systems Security Engineer Top Secret/SCI w/Poly with Security Clearance
NewPeraton
Fort Meade, MD🇺🇸$146k - $234k/yrHybridYesterdayTechnology - RT
Systems Security Engineer I - Anti-Tamper / Program Protection ( with Security Clearance
NewRTX
Tucson, AZ🇺🇸$57.2k - $108.8k/yrHybridYesterdayEmbedded SystemsTechnology - LM
Cyber Systems Security Engineering Stf with Security Clearance
NewLockheed Martin
King of Prussia, PA🇺🇸HybridYesterdayVMwareSplunkTechnology - MA
Senior Principal Cyber Engineer with Security Clearance
NewMANTECH
Chantilly, VA🇺🇸HybridYesterdayAgileTechnology - PE
Information Systems Security Engineer with Security Clearance
NewPeraton
Fort Meade, MD🇺🇸$135k - $216k/yrHybridYesterdayTechnology - ZP
Information Security Analyst - 175986 with Security Clearance
NewZachary Piper Solutions, LLC
Fort Rucker, AL🇺🇸$65k - $70k/yrOn-siteYesterdayTechnology