Lead Incident Response Security Analyst

4 days ago


Alpharetta GA United States Optomi Full time

Lead Incident Response Security Analyst - Hybrid in Alpharetta, GA*

Optomi, in partnership with an IT Solutions company is looking to add a Lead Incident Response Security Analyst to their growing team The Lead Incident Response Security Analyst will be part of a team investigating events of interest and incidents as they are validated, prioritized, and categorized by L1 and L2 analyst teams. The Lead Incident Response Security Analyst will investigate, contain, eradicate, and respond in a continued and unified effort to protect the confidentiality, integrity, and availability of the company, their partners’ and customers’ data and services.

What You Will Do:

  • Lead in the Cyber Incident Response Plan process as the Cyber Incident Response Lead or Cyber Incident Commander, collaborating with cross-functional and geographically dispersed teams to identify, develop, and implement containment, eradication, and recovery strategiesIdentify, develop, and operationalize security operations metrics to assist in maturing and enhancing visibility and global security capabilities
  • Continuously improve incident response processes through automations, standardizations, and tools development, customization and/or controls deployments
  • Participate in post-incident activities including coordinating and providing input reports and identifying areas for continuous improvements within the GSOC enablement, processes, or technology
  • Escalate tickets as required to Director for additional scrutiny and incident declaration
  • Identify, approve, and implement blocking, listing and other mechanisms to promote a robust security posture
  • Keep up to date with the latest security and technology developments, research/evaluate emerging cyber security threats and ways to manage them to proactively
  • Participate in threat hunts, blue team/purple team activities by simulating real-world cyber-attacks to evaluate the effectiveness of security defenses and recommend improvements
  • Be the escalation point for all junior analysts to aid and facilitate the accurate and expedient identification, verification, and remediation of security incidents. Mentor, coach and facilitate enablement opportunities to develop junior security analysts

What You Will Need:

  • 6+ years of practical experience in leading incident response investigations, including malware analysis, and implementing containment strategies
  • Experience in network, disk and memory forensics
  • Experience with Splunk, EDR, email security, and cloud environments (GCP, AWS, and Azure)
  • Knowledge and experience in developing automations using scripting languages like Python and PowerShell to automate various tasks and improve accuracy

Nice to have:

  • Bachelor's degree in computer science or a related discipline
  • CISSP, CCSP, GIAC or other relevant cyber security certifications
  • Knowledge of the common attack vectors on the network layer, different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks)
  • Knowledge of cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored)
  • Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks)
  • Thorough understanding of system and application security threats and vulnerabilities, enabling proactive identification and mitigation strategies to safeguard critical assets and data

*This role is looking for someone open to working hybrid 2-3x per week. Also has locations in Fort Lauderdale, FL, Seattle, WA or San Francisco, CA for hybrid work. .



  • Washington, DC, United States TalentRemedy Full time

    As a member of the Information Security Incident Response team, the Sr. Information Security Analyst– Incident Response will coordinate the response activities for cyber security incidents across the corporate environment. You’ll focus on reviewing, triaging, analyzing, remediating, and reporting on cyber security incidents. As the Sr. Information...


  • Vienna, VA, United States DirectViz Solutions, LLC Full time

    DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information technology solutions to government clients through the knowledge and expertise of our dedicated employees. DVS is an employee-centric employer that provides competitive...


  • , SC, United States Flexential Full time

    Job Description:Primary responsibility is to provide a superior customer experience through tactical troubleshooting, monitoring, and proactive incident resolution for Flexential's customer environments. It's vitally important that you are a strong communicator, resourceful, and articulate in communicating identified issues and resolution steps to bring the...


  • , SC, United States Flexential Full time

    Job Description:Primary responsibility is to provide a superior customer experience through tactical troubleshooting, monitoring, and proactive incident resolution for Flexential's customer environments. It's vitally important that you are a strong communicator, resourceful, and articulate in communicating identified issues and resolution steps to bring the...


  • Atlanta, GA, United States TekStream Solutions Full time

    Security Operations Center (SOC) Analysts I and IILocation: RemoteTekStream is currently looking for several Level I and Level II Security Analysts whose primary day-to-day duties involve reviewing alerts from Splunk SIEM and/or SOAR products and investigating suspected security incidents in a Managed Services SOC. These contract positions would be part-time...


  • Fort Worth, TX, United States Prudent Technologies and Consulting, Inc. Full time

    Major Incident AnalystFort Worth, TX 7613150/50 onsite in Fort Worth required until 1/2/25, then 4 days/wk onsite required 1/2/25 and after11-12 months hybrid contract The Major Incident Analyst is responsible for all aspects of the Incident Management (IM) process while working as part of a team to restore service as quickly as possible during a Major...

  • Security Analyst

    3 weeks ago


    Elkhorn, NE, United States BG Staffing - BG Multifamily Full time

    *Job Description*We are seeking a skilled and detail-oriented Security Analyst to join our team. As a Security Analyst, you will play a crucial role in protecting our organization's digital assets and infrastructure from cyber threats. This role offers exciting opportunities for growth and development in the rapidly evolving field of cybersecurity, working...


  • Reston, VA, United States Eviden Full time

    Security Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...

  • Business Analyst

    4 days ago


    Philadelphia, PA, United States A2C Full time

    Third parties need not apply, no sponsorship available - W2 Only Join our client as a Business Analyst - Incident Management for a 12 month contract to hire position in Philadelphia, PA. In this role you will work 3 days/week in the office. Job Summary:Business Analyst with a background in incident management, business analytics, and technical support.This...

  • Security Officer

    4 weeks ago


    Alpharetta, United States Marksman Security Full time

    Job Title: Security OfficerAt Marksman Security, we are seeking a highly skilled and dedicated Security Officer to join our team. As a Security Officer, you will play a critical role in ensuring the safety and security of our clients' properties.Responsibilities:Monitor and patrol designated areas to prevent and detect security breachesRespond to security...


  • Melbourne, FL, United States Insight Global Full time

    MUST BE ABLE TO OBTAIN A PUBLIC TRUST SECURITY CLEARANCE FOR THIS ROLE!Required Skills & ExperienceBachelor's degree in IT or related field, and minimum 2 years related experience2 years' experience in the Information Security field specifically offensive security and incident response.Ability to obtain a Public TrustAbility to support on call schedule...


  • College Park, MD, United States BlueVoyant Full time

    SOC Security Analyst L3This position is ideally located in College Park, Maryland. Remote US candidates may be considered.The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2...


  • Pascagoula, MS, United States Bollinger Shipyards Full time

    General Function The Cybersecurity Lead Analyst oversees and manages all cybersecurity operations related to C5ISR systems. This includes ensuring compliance with quality standards, managing risks, responding to incidents, and working closely with military and defense stakeholders to safeguard sensitive systems and data. The role involves leadership in...

  • Security Analyst

    4 days ago


    Lansing, MI, United States TEKsystems Full time

    The Security Analyst position works as a member of the Security Operations Team. The Security Analyst position reviews and remediates cyber incidents and vulnerabilities found by IT level analysts to IT security specialists and managers to maintain the confidentiality, integrity, and availability of company data.This role has a focus on networking security...

  • Security Analyst

    2 days ago


    Lansing, MI, United States TEKsystems Full time

    The Security Analyst position works as a member of the Security Operations Team. The Security Analyst position reviews and remediates cyber incidents and vulnerabilities found by IT level analysts to IT security specialists and managers to maintain the confidentiality, integrity, and availability of company data.This role has a focus on networking security...


  • Atlanta, GA, United States BlueSky Resource Solutions Full time

    RESPONSIBILITIESManage a 24/7 team of security operations analysts and maintain incident response readiness.Lead cybersecurity incidents as the incident commander and act as SME for information security response.Ensure compliance with cybersecurity regulations and support security improvements across the organization.Report on cybersecurity metrics, trends,...


  • Ashburn, VA, United States Pyramid Consulting, Inc Full time

    Immediate need for a talented Cyber Security Analyst. This is a 12+ months contract opportunity with long-term potential and is located in Ashburn, VA(Hybrid). Please review the job description below and contact me ASAP if you are interested.Job ID: 24-20104Pay Range: $40 - $45/hour. Employee benefits include, but are not limited to, health insurance...

  • Security Officer

    4 weeks ago


    , GA, United States Walden Security Full time

    Job Title: Security OfficerWe are seeking a highly motivated and detail-oriented Security Officer to join our team at Walden Security. As a Security Officer, you will play a critical role in protecting our clients' industrial and commercial properties from fire, vandalism, and illegal entry.Responsibilities:Protect clients' properties from fire, vandalism,...


  • Niles, IL, United States Shure Full time

    Overview:Join the global IT team at Shure! Great opportunity on a critical team supporting a multi-year, multi phased S4 journey.In your role as Lead Analyst, SAP Security, you will collaborate closely with internal IT and business associates located in the US, Europe and Asia to support the global SAP landscape across S/4, ECC, BW, Ariba, CPI, HANA,...


  • Springfield, MA, United States MassMutual Full time

    The OpportunityAs a Senior Security Operations Center (SOC) analyst you’ll have an opportunity to be part of a growing team of highly technical Cybersecurity analysts who are passionate about protecting MassMutual’s assets and customers by leveraging problem solving skills and innovative technology solutions. In this role, as well as all roles within...