Engineer III – Cyber Incident Response

Posted Aug 21

This is a fully remote position, open to applicants in India.

📋 Description

• Lead the investigation and resolution of intricate security incidents, encompassing advanced persistent threats, ransomware, phishing campaigns, and insider threats.

• Conduct forensic analysis across endpoints, networks, and cloud environments to determine root causes and the extent of compromise.

• Create and improve incident response playbooks, runbooks, and detection use cases.

• Work collaboratively with threat intelligence, vulnerability management, and countermeasures teams to bolster defenses.

• Escalate high-severity incidents to senior leadership, providing clear and actionable reports.

• Serve as a technical escalation point for Engineer I/II analysts during incident investigations.

• Contribute to red team and purple team exercises.

• Engage in after-action reviews and lessons-learned sessions to enhance SOC processes.

• Mentor and train junior engineers on best practices in incident response and investigative techniques.


⛳️ Requirements

• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience.

• Master’s degree is preferred.

• Over 7 years of progressive experience in the field of cybersecurity.

• A minimum of 4 years of experience in incident response or SOC operations.

• At least 4 years of experience in incident response, digital forensics, or advanced threat hunting is required.

• Strong understanding of incident response methodologies, digital forensics, and adversary tactics.

• Familiarity with NIST, MITRE ATT&CK, and ISO 27035 frameworks.

• Practical experience with SIEM, EDR, SOAR, and forensic tools such as Splunk, CrowdStrike, EnCase, and Wireshark.

• Proven capability to investigate advanced threats and coordinate response activities across various teams.

• Demonstrated success in mentoring junior analysts and enhancing SOC processes.

• Excellent written and verbal communication skills, including the ability to document and present technical findings clearly.

• Relevant industry certifications such as GCFA, GCIH, and CISSP are preferred.


🏝️ Benefits

• Benefit offerings outside the US may vary by country and will align with local market practices.

• Equal employment opportunity and reasonable accommodations.

People also viewed

Reinsurance Group of America, IncorporatedSep 24

Digital Forensics and Incident Response Analyst

IE flagIreland OnlyFull-timeIncident Response Analyst
ApplyView job
Kryptus SASep 21

Mid-Level Incident Response Analyst – DFIR

BR flagBrazil OnlyFull-timeIncident Response Analyst
ApplyView job
SOFTSWISSSep 15

Incident Response Analyst

GE flagGeorgia OnlyFull-timeIncident Response Analyst
ApplyView job
InetumSep 4

Analista de Respuesta a Incidentes SOC – 24/7

PT flagPortugal OnlyFull-timeIncident Response Analyst
ApplyView job
C4 GroupSep 3

Incident Response Expert, AI-Augmented Cyber Incident Response

DE flagGermany OnlyFreelanceIncident Response Analyst
ApplyView job
CencoraAug 20

Engineer II – Cyber Incident Response

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers