
Senior Incident Response Analyst
Posted Jul 29

Posted Jul 29
This is a fully remote position, open to applicants in Guatemala.
• Identify, evaluate, and manage security incidents across cloud, identity, endpoint, and network landscapes.
• Lead activities related to incident response, encompassing investigation, containment, eradication, recovery, and conducting post-incident reviews.
• Act as the primary escalation point for Information Security Analysts, offering guidance on complex alerts, root-cause analysis, investigation strategies, and mentorship for analysts.
• Propel ongoing enhancements of SOC tools, workflows, procedures, and alerting by minimizing noise, refining detections, and increasing automation while maintaining security coverage.
• Collaborate with SOC, Offensive Security, Engineering, IT, Cloud, and business teams to identify gaps in detection and response, validate controls, and proactively address security vulnerabilities.
• Advocate for the integration of AI, advanced analytics, threat intelligence, and industry best practices to enhance alert fidelity, threat detection, analyst productivity, and overall security posture.
• A minimum of 3 years of practical experience in a SOC, incident response, or a comparable cybersecurity position, with a proven record in security investigations.
• Strong experience in securing cloud-first environments, especially AWS, along with familiarity with other cloud platforms.
• Established expertise with modern security tools, including EDR/ITDR, CSPM, SIEM and logging, email protection, network and access security, case management/workflow platforms, and SOAR.
• In-depth knowledge of incident response across endpoint, cloud, identity, SaaS, and network attack scenarios, with experience in threat intelligence platforms and structured threat hunting initiatives.
• Experience in developing or enhancing playbooks, runbooks, automated response workflows, and AI/ML-driven security capabilities to boost detection and analyst efficiency.
• Superior written and verbal communication skills in English (B2+), with the capability to document incidents clearly and convey technical findings to both technical and non-technical stakeholders; relevant certifications such as GCFR, AWS Security Specialty, or AZ-500 are advantageous.
• Comprehensive health benefits.
• Generous paid time off, including paid holidays, volunteer days, quarterly self-care days, and designated no-meeting days by the company.
• Tuition reimbursement and access to both instructor-led and on-demand learning and development programs.
• The Thrive Global Wellness Program, a confidential Employee Assistance Program (EAP), a wellness app, and personalized wellness coaching.
• Employee-led communities and programs, including Employee Resource Groups (ERGs), GoTo Gives, and charitable matching.
Cencora
Cencora
Cencora
Cencora
Get handpicked remote jobs straight to your inbox weekly.