MDAEdge logo
MDAEdge
Posted 76 days agoVerified live 2d ago

Incident Response Analyst

Brief overview

Remote
UndergradOr in progress
$85k–$158k/yrStated range
4+ yrsMinimum
Incident ResponseCloud CybersecurityAWSAzureIndicators of Compromise (IOC)WizEndpoint ProtectionCrowdStrikeMicrosoft DefenderNetwork InfrastructureRoutersSwitchesFirewalls

About the company

The world doesn't have a talent shortage. It has a talent alignment problem. MDA Edge exists to fix that.

Job description

Summary

MDAEdge is a company focused on cybersecurity solutions, and they are seeking an Incident Response Analyst to enhance their security posture. The role involves resolving security incidents, executing incident response plans, and collaborating with various business units to strengthen enterprise security.

Responsibilities

  • Resolve security incidents and recommend improvements to strengthen enterprise security
  • Execute incident response plans and contribute to scalable preventative security measures
  • Identify attack patterns and enhance the organization's defensive posture
  • Collaborate with business units on remediation plans and present insights to senior leadership
  • Review production systems and network configurations to ensure compliance with security standards
  • Prepare and manage prevention and resolution processes for security breaches
  • Implement audit schedules, review access authorizations, and perform access control testing
  • Develop automated scripts and contingency plans triggered during detected cyberattacks
  • Coordinate with Information Security Architects, Engineers, and infrastructure stakeholders
  • Manage prioritized alert notifications, escalation trees, and triage of security alerts
  • Integrate third-party threat monitoring and reporting systems with internal communications tools
  • Conduct post-incident analyses using logs and traffic data to identify intrusions or policy violations
  • Ensure adherence to all information security policies and standards

Skills

  • Bachelor's degree in computer science, engineering, mathematics, statistics, or a related field
  • 4–6 years of professional cybersecurity experience
  • Equivalent experience considered based on proven skill and accomplishments
  • 4–6 years of cloud cybersecurity experience focused on incident triage and response
  • Hands-on experience with AWS and Azure environments
  • Strong understanding of threat actor tools, tactics, and processes (TTPs)
  • Knowledge of Indicators of Compromise (IOC)
  • Expertise in endpoint protection and enterprise detection tools (e.g., CrowdStrike, MS Defender)
  • Solid understanding of network infrastructure (routers, switches, firewalls)
  • Analytical mindset with strong problem-solving abilities
  • Ability to manage projects and work independently
  • Strong accuracy, judgment, and decision-making under pressure
  • Clear communication and presentation capabilities
  • Experience with Wiz and Wiz Defend preferred
  • SANS GIAC Security Essentials (GSEC), GIAC Certified Intrusion Analyst (GCIA), or GIAC Certified Incident Handler (GCIH)
  • Healthcare industry exposure (helpful but not required)

Qualifications

Must Haves

  • Bachelor's degree in computer science, engineering, mathematics, statistics, or a related field
  • 4–6 years of professional cybersecurity experience
  • Equivalent experience considered based on proven skill and accomplishments
  • 4–6 years of cloud cybersecurity experience focused on incident triage and response
  • Hands-on experience with AWS and Azure environments
  • Strong understanding of threat actor tools, tactics, and processes (TTPs)
  • Knowledge of Indicators of Compromise (IOC)
  • Expertise in endpoint protection and enterprise detection tools (e.g., CrowdStrike, MS Defender)
  • Solid understanding of network infrastructure (routers, switches, firewalls)
  • Analytical mindset with strong problem-solving abilities
  • Ability to manage projects and work independently
  • Strong accuracy, judgment, and decision-making under pressure
  • Clear communication and presentation capabilities

Nice to Haves

  • Experience with Wiz and Wiz Defend preferred
  • SANS GIAC Security Essentials (GSEC), GIAC Certified Intrusion Analyst (GCIA), or GIAC Certified Incident Handler (GCIH)
  • Healthcare industry exposure (helpful but not required)

Benefits

  • Base + 8% annual bonus (performance-based)
  • Remote (U.S.-based)
  • Some on-call support required

More jobs like this