Senior Incident Response Analyst (R-18809)
Eyeota
Essential Key Responsibilities
- Review alerts
- Perform in depth, technically accurate investigations
- Identify process issues, work to build processes
- Update and build documentation
- Assist junior analysts
- Handle case escalations
- Work with other teams' company-wide to resolve incidents and drive change
- Leverage critical thinking and advanced technical skills to revise and strengthen processes
- Contribute to continuous improvement of detection engineering, log ingestion, and alert quality
- Coordinate with cross-functional teams (IT, Legal, HR, Business Units) during incident response activities
- Identify and assess security risks introduced by AI tools and platforms, including model misuse, data exposure, and automation-driven attack paths
- Required on call rotation
Education and Experience
- Bachelor's degree required with 5+ years of relevant experience
Additional Skills and/or Certifications
- At least 1 SANS/GIAC Certification (GCIH, GREM, GCFA preferred)
- Strong Hands-on experience with: SIEM Platforms (Splunk, Microsoft sentinel, etc), EDR Tools (CrowdStrike, Carbon Black), Cloud environments (Azure, AWS, GCP, AliCloud), Network log analysis (Netflows and PCAP files)
- Deep understanding of: Mitre ATT&CK framework, Malware behavior and exploitation techniques, Windows, Linux, and macOS internals
- Script analysis (Javascript, VBscript, powershell, python)
- Malicious binary analysis (Windows, MacOS, Linux)
- Clear communication rooted in technical competence
- Confidence discussing findings with peers and senior management
Physical Requirements
- Ability to sit, speak and operate telephone and/or computer for long periods of time
- Ability to handle pressure, stressful conditions, and conflict resolution
- Ability to work day, evening and/or weekend hours as needed
- Regular attendance in the office

