Senior Incident Response Analyst

🔥 0 minutes ago

🇮🇳 India – Remote

⏰ Full Time

🟠 Senior

🚨 Incident Response Analyst

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Sophos

Sophos

1001 - 5000 employees

Founded 1985

💼 Consulting

🏥 Healthcare

🏭 Manufacturing

💰 Post-IPO Equity on 2021-08

Consulting • Healthcare • Manufacturing

Sophos is a leading cybersecurity company that specializes in protecting businesses against advanced cyber threats. The company offers a comprehensive suite of security solutions, including endpoint protection, managed detection and response (MDR), network security, and cloud security. With a prevention-first approach, Sophos aims to stop ransomware and other cyber threats before they cause harm. Sophos provides services such as threat research, security training, and operational support to ensure robust defense against cyberattacks. Their solutions cater to various industries including finance, healthcare, government, manufacturing, and retail. The Sophos Central platform delivers centralized security management, integrating seamlessly with existing IT infrastructure to enhance security posture.

📋 Description

• Lead investigative execution of active cyber incidents for MDR customers and MSPs • Use Sophos technologies to investigate, contain, and respond to cyber incidents • Perform advanced incident response analysis to identify initial access, persistence, and lateral movement • Mentor incident response analysts and MDR operations analysts through technical guidance, review, and escalation support • Support customers and MSPs through phone calls and meetings about cyber incidents • Provide recommendations to contain, neutralize, and remediate threats • Analyze malware, ransomware, and other common attack types • Maintain accurate and detailed incident analysis documentation • Collaborate with SophosLabs, Detection Engineering, Threat Hunting, and MDR Operations teams • Contribute, where appropriate, to Sophos blogs, social media, and other sources on adversary TTPs and IOCs • Evaluate technologies and processes to improve incident response capability • Create technical incident reports as post-incident deliverables for MDR customers and MSPs

🎯 Requirements

• 4+ years of experience conducting cybersecurity investigations and investigating threats, or 2+ years of experience performing incident response engagements • Understanding of network architecture and IT infrastructure • Experience creating technical documentation and technical reports for customers • Ability to work under high-pressure situations when response time matters • Network and endpoint investigation experience across macOS, Linux, and Windows • Experience with IDS, IPS, EDR, and basic malware analysis • Understanding of at least one of OSQuery, SQL, or KQL • Experience applying frameworks such as MITRE Attack and Cyber Kill Chain • Ability to work some weekends and holidays • Knowledge of Windows and Linux command and script interpreters • Legal authorization to work in India without requiring employer sponsorship • Advanced cybersecurity certifications such as GCFE/GCFA, CompTIA CySA+, or OSCP are desired • Experience calling customers and providing excellent customer service is desired • Cybersecurity publications are desired

🏖️ Benefits

• Remote-first working model • Employee-led diversity and inclusion networks • Annual charity and fundraising initiatives • Volunteer days • Global employee sustainability initiatives • Global fitness and trivia competitions • Global wellbeing days • Monthly wellbeing webinars and training • Recruitment adjustments to support applicants with disabilities or other needs

Apply Now

Similar Jobs

🕒 August 20

Cencora

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Engineer II investigating and containing cyber incidents for Cencora, a global pharmaceutical solutions company. Improving SOC detection, response playbooks, and security operations.

🕒 August 20

Cencora

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Cyber incident response engineer leading complex investigations for Cencora, a global pharmaceutical solutions company. Improving SOC detection, forensics, threat response, and analyst capabilities.

🕒 August 20

Cencora

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Cyber incident response engineer investigating threats for Cencora, a global pharmaceutical solutions company. Strengthening SOC detection, containment, recovery, and response processes.

🕒 August 19

Cencora

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Cyber incident response engineer leading complex threat investigations for Cencora, a global pharmaceutical solutions company. Improving SOC detection, response, forensics, and analyst capability.

🕒 August 14

HBK - Hottinger Brüel & Kjær

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Vulnerability & Incident Response Analyst supporting HBK, a global sensors, analytics, and collaboration technology company. Coordinating vulnerability triage, regulatory reporting, threat monitoring, and remediation across product security teams.