MD
Incident Response Analyst
Macpower Digital Assets Edge Private Limited
πΊπΈ United States
Remote
5 days ago
$85,300 β $158,100 / year
- Incident Response
- triage
- AWS
- Azure
- Wiz
- CrowdStrike
- Defender
- GSEC
- GCIA
- GCIH
5 days ago
Compensation: Base + 8% annual bonus (performance-based)
Visa Sponsorship: Not available
Schedule: Some on-call support required
Position Purpose:
- Resolve security incidents and recommend improvements to strengthen enterprise security.
- Execute incident response plans and contribute to scalable preventative security measures.
- Identify attack patterns and enhance the organization's defensive posture.
- Collaborate with business units on remediation plans and present insights to senior leadership.
- Review production systems and network configurations to ensure compliance with security standards.
- Prepare and manage prevention and resolution processes for security breaches.
- Implement audit schedules, review access authorizations, and perform access control testing.
- Develop automated scripts and contingency plans triggered during detected cyberattacks.
- Coordinate with Information Security Architects, Engineers, and infrastructure stakeholders.
- Manage prioritized alert notifications, escalation trees, and triage of security alerts.
- Integrate third-party threat monitoring and reporting systems with internal communications tools.
- Conduct post-incident analyses using logs and traffic data to identify intrusions or policy violations.
- Ensure adherence to all information security policies and standards.
- Bachelor's degree in computer science, engineering, mathematics, statistics, or a related field.
- 4β6 years of professional cybersecurity experience.
- Equivalent experience considered based on proven skill and accomplishments.
- 4β6 years of cloud cybersecurity experience focused on incident triage and response.
- Hands-on experience with AWS and Azure environments.
- Strong understanding of threat actor tools, tactics, and processes (TTPs).
- Knowledge of Indicators of Compromise (IOC).
- Experience with Wiz and Wiz Defend preferred.
- Expertise in endpoint protection and enterprise detection tools (e.g., CrowdStrike, MS Defender).
- Solid understanding of network infrastructure (routers, switches, firewalls).
- SANS GIAC Security Essentials (GSEC), GIAC Certified Intrusion Analyst (GCIA), or GIAC Certified Incident Handler (GCIH).
- Healthcare industry exposure (helpful but not required).
- Analytical mindset with strong problem-solving abilities.
- Ability to manage projects and work independently.
- Strong accuracy, judgment, and decision-making under pressure.
- Clear communication and presentation capabilities.
Incident Response Analyst Β· Macpower Digital Assets Edge Private Limited