Control Risks logo
Control Risks
Posted 4 days agoVerified live 2d ago

Cyber Detection and Response Analyst

Brief overview

Remote
$120k–$140k/yrStated range
3+ yrsMinimum
Cybersecurity Incident ResponseSecurity Operations Center (SOC) OperationsSecurity Information and Event Management (SIEM)Endpoint Detection and Response (EDR/XDR)Log AnalysisSplunkMicrosoft SentinelCrowdStrikeMITRE ATT&CKNIST Incident Response FrameworkThreat HuntingMalware Analysis

About the company

Control Risks logo
Control Riskscontrolrisks.com

Control Risks is a global specialist risk consultancy that helps to create secure, compliant and resilient organisations.

Job description

Summary

Control Risks is seeking a Cyber Detection and Response Analyst to join its Cyber Detection and Response Team. The role supports day-to-day detection, investigation, threat hunting, and response activities across endpoint, network, cloud, and identity systems, while collaborating with Security Engineering and supporting 24/7 incident response operations.

Responsibilities

  • Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems
  • Support incident response activities including analysis, containment, remediation, and documentation
  • Execute established incident response playbooks and contribute to their continuous improvement
  • Perform threat hunting activities to identify potential compromises and gaps in detection coverage
  • Leverage threat intelligence to inform investigations and detection tuning
  • Collaborate with Security Engineering to tune detection logic and improve security controls
  • Produce clear, concise incident reports and support root cause analysis and remediation efforts
  • Support escalation processes as part of a 24/7 detection and response capability

Skills

  • 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike)
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques
  • Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly
  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent)

Qualifications

Must Haves

  • 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike)
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques
  • Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly

Nice to Haves

  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent)

Benefits

  • Discretionary bonus scheme based on company and individual performance.
  • Hybrid working arrangements, wherever possible, with flexible and remote working.
  • Medical Benefits
  • Prescription Benefits
  • FSA
  • Dental Benefits
  • Vision Benefits
  • Life and AD&D
  • Voluntary Life and AD&D
  • Disability Benefits
  • Voluntary Benefits
  • 401 (K) Retirement
  • Nationwide Pet Insurance
  • Employee Assistance Program

More jobs like this