Summary
Control Risks is seeking a Cyber Detection and Response Analyst to join its Cyber Detection and Response Team. The role supports day-to-day detection, investigation, threat hunting, and response activities across endpoint, network, cloud, and identity systems, while collaborating with Security Engineering and supporting 24/7 incident response operations.
Responsibilities
- Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems
- Support incident response activities including analysis, containment, remediation, and documentation
- Execute established incident response playbooks and contribute to their continuous improvement
- Perform threat hunting activities to identify potential compromises and gaps in detection coverage
- Leverage threat intelligence to inform investigations and detection tuning
- Collaborate with Security Engineering to tune detection logic and improve security controls
- Produce clear, concise incident reports and support root cause analysis and remediation efforts
- Support escalation processes as part of a 24/7 detection and response capability
Skills
- 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense
- Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike)
- Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST
- Familiarity with threat hunting, malware analysis, or forensic investigation techniques
- Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly
- Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures
- Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent)
Qualifications
Must Haves
- 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense
- Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike)
- Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST
- Familiarity with threat hunting, malware analysis, or forensic investigation techniques
- Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly
Nice to Haves
- Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures
- Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent)
Benefits
- Discretionary bonus scheme based on company and individual performance.
- Hybrid working arrangements, wherever possible, with flexible and remote working.
- Medical Benefits
- Prescription Benefits
- FSA
- Dental Benefits
- Vision Benefits
- Life and AD&D
- Voluntary Life and AD&D
- Disability Benefits
- Voluntary Benefits
- 401 (K) Retirement
- Nationwide Pet Insurance
- Employee Assistance Program