
Incident Response Analyst – L2
Posted Jul 18

Posted Jul 18
This is a fully remote position, open to applicants in Georgia.
• Investigate and address intricate security incidents throughout the full incident lifecycle.
• Conduct digital forensic examinations, malware assessments, and evidence gathering to ascertain the extent and root cause of security incidents.
• Analyze attack methodologies, correlate security events, and reconstruct timelines of attacks.
• Enhance and develop SIEM detections, correlation rules, and incident response protocols.
• Execute threat hunting initiatives and minimize false positives through detection optimization.
• Automate repetitive SOC tasks using scripting where suitable.
• Collaborate with Infrastructure, Development, IT, and Security teams during incident response efforts.
• Provide mentorship to L1 analysts through technical guidance and constructive feedback.
• Over 3 years of experience in SOC, Incident Response, DFIR, or MSSP settings.
• Strong grasp of contemporary cyber threats, attack strategies, and frameworks such as MITRE ATT&CK and the Cyber Kill Chain.
• Practical experience in investigating security incidents, conducting digital forensics, and performing malware analysis.
• Hands-on experience with SIEM solutions (e.g., Splunk, Wazuh, ClickHouse, Redash).
• Solid understanding of enterprise infrastructure, encompassing Windows, Linux, macOS, Active Directory, email systems, Kubernetes, Docker, and databases.
• Experience in automation using Python, PowerShell, or Bash.
• Knowledge of security concepts related to Kubernetes and Docker.
• Strong analytical skills, problem-solving abilities, and effective communication in cross-functional settings.
• Intermediate or higher proficiency in English.
• Preferred: Experience in Threat Hunting, Network Traffic Analysis (NTA), or cloud security (AWS).
• Private health insurance.
• Sports benefits.
• Comprehensive Mental Health Program.
• Free online English lessons.
• Local language courses.
• Paid time off.
• Maternity leave support.
• Rewards for referral program participation.
• Opportunities for upskilling, internal workshops, and participation in professional conferences and corporate events.
Cencora
Cencora
Cencora
Cencora
Get handpicked remote jobs straight to your inbox weekly.