Remotery

Incident Response Analyst – L2

Posted Jul 18

This is a fully remote position, open to applicants in Georgia.

📋 Description

• Investigate and address intricate security incidents throughout the full incident lifecycle.

• Conduct digital forensic examinations, malware assessments, and evidence gathering to ascertain the extent and root cause of security incidents.

• Analyze attack methodologies, correlate security events, and reconstruct timelines of attacks.

• Enhance and develop SIEM detections, correlation rules, and incident response protocols.

• Execute threat hunting initiatives and minimize false positives through detection optimization.

• Automate repetitive SOC tasks using scripting where suitable.

• Collaborate with Infrastructure, Development, IT, and Security teams during incident response efforts.

• Provide mentorship to L1 analysts through technical guidance and constructive feedback.


⛳️ Requirements

• Over 3 years of experience in SOC, Incident Response, DFIR, or MSSP settings.

• Strong grasp of contemporary cyber threats, attack strategies, and frameworks such as MITRE ATT&CK and the Cyber Kill Chain.

• Practical experience in investigating security incidents, conducting digital forensics, and performing malware analysis.

• Hands-on experience with SIEM solutions (e.g., Splunk, Wazuh, ClickHouse, Redash).

• Solid understanding of enterprise infrastructure, encompassing Windows, Linux, macOS, Active Directory, email systems, Kubernetes, Docker, and databases.

• Experience in automation using Python, PowerShell, or Bash.

• Knowledge of security concepts related to Kubernetes and Docker.

• Strong analytical skills, problem-solving abilities, and effective communication in cross-functional settings.

• Intermediate or higher proficiency in English.

• Preferred: Experience in Threat Hunting, Network Traffic Analysis (NTA), or cloud security (AWS).


🏝️ Benefits

• Private health insurance.

• Sports benefits.

• Comprehensive Mental Health Program.

• Free online English lessons.

• Local language courses.

• Paid time off.

• Maternity leave support.

• Rewards for referral program participation.

• Opportunities for upskilling, internal workshops, and participation in professional conferences and corporate events.

People also viewed

Cencora10 hours ago

Engineer III – Cyber Incident Response

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job
Cencora14 hours ago

Engineer II – Cyber Incident Response

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job
Cencora14 hours ago

Engineer II – Cyber Incident Response

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job
Cencora1 day ago

Engineer III – Cyber Incident Response

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job
HBK - Hottinger Brüel & KjærAug 14

Vulnerability & Incident Response Analyst

IN flagIndia OnlyFull-timeIncident Response Analyst
ApplyView job
iFoodAug 8

Cybersecurity Incident Response Analyst – Mid-Level

BR flagBrazil OnlyFull-timeIncident Response Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers