Security Incident Response Analyst

Matchgroup

Vancouver

Hybrid

CAD 110,000 - 150,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Generous vacation
RRSP matching
Udemy access for all employees
Mentorship program
Parental leave benefits
Extended health & dental benefits
ClassPass wellness benefits

Job summary

Match Group, a global leader in dating platforms, is seeking a Security Incident Response Analyst to join the Detection & Response team. You will detect, analyze, and respond to advanced threats across on-prem and cloud, leading investigations from discovery to containment.

The role requires 5+ years in IR/DFIR, strong cloud experience (AWS/GCP), and hands-on SIEM/EDR. You will mentor juniors, document findings, and collaborate with global teams to improve detection and response maturity.

Qualifications

  • 5+ years in Incident Response/DFIR/SOC
  • Experience leading significant security investigations
  • Cloud environment experience (AWS/GCP)
  • Hands-on with SIEM, EDR, and log analysis
  • Familiarity with privacy-related incident handling (e.g., GDPR)

Responsibilities

  • Lead end-to-end investigations into phishing, malware, insider threats, and other advanced incidents
  • Triage and analyze alerts, distinguish threats from noise, and prioritize response
  • Perform malware analysis with static and dynamic examination
  • Analyze host and network logs to reconstruct attacker activity and persistence
  • Investigate cloud-native incidents by analyzing audit logs, IAM, and network data
  • Contain, eradicate, and recover, coordinating with cross-functional teams
  • Develop and refine detection logic, playbooks, and response procedures
  • Escalate complex cases; mentor junior analysts
  • Document findings and communicate with stakeholders (post-incident reports)

Skills

Incident response
DFIR
Cloud (AWS/GCP)
SIEM
EDR
Log analysis
Python scripting
Communication
Mentoring
Team collaboration

Tools

SIEM tools
EDR tools
Cloud platforms

Job description

Know where you belong!

Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Hinge, Match, Meetic, PlentyOfFish, OkCupid, The League, HER, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn’t stop at our products - it’s the foundation of every team we hire.

When it comes to dating, the connection starts online, but the real magic happens once you meet in real life (IRL). We think the same is true for creating the best platforms, so we work together IRL 3 days/week.

About Match Group

Match Group (NASDAQ: MTCH) is a leading provider of dating products across the globe, operating a portfolio of brands including Tinder, Hinge, Match, OkCupid, Pairs, Meetic, and more. With hundreds of millions of users worldwide generating billions of interactions daily, our scale demands world-class security operations.

About the Team

The MG Security Engineering organization provides unified security services across all Match Group brands. The Monitoring, Incident Response & SOC team is responsible for real-time threat detection, investigation, and response across the full portfolio — operating 24/7 to ensure security alerts are effectively triaged and responded to, minimizing the impact of potential threats.

We're looking for a senior individual contributor to join our Detection & Response team as a Security Incident Response Analyst. In this role, you'll serve as a senior‑level investigator responsible for detecting, analyzing, and responding to advanced security threats across on‑prem and cloud infrastructure in a multi‑vendor environment. You'll lead investigations spanning phishing, malware, insider threats, and other complex security incidents — driving them from initial detection through containment, eradication, and recovery.

  • Lead end-to-end investigations into phishing, malware, insider threats, and other advanced security incidents
  • Triage and analyze security alerts, distinguishing true threats from noise, and prioritize response based on risk and business impact.
  • Perform technical malware analysis, including static and dynamic examination of suspicious files, to determine behavior, capability, and intent.
  • Conduct host and network-based analysis — analyzing system logs, processes, registry/configuration artifacts, memory, traffic patterns, DNS activity, and connection logs — to reconstruct attacker activity and identify persistence, command-and-control, lateral movement, and data exfiltration.
  • Investigate cloud-native incidents by analyzing audit logs, IAM and access activity, and network flow data to detect unauthorized access, privilege misuse, and malicious file activities across cloud environments.
  • Drive incidents through containment, eradication, and recovery, coordinating with cross-functional teams as needed.
  • Develop and refine detection logic, playbooks, and response procedures to improve the team's ability to identify and act on emerging threats.
  • Act as an escalation point for the most technically complex cases, mentoring junior analysts.
  • Document findings and communicate clearly with both technical and non‑technical stakeholders, including post‑incident reports and executive summaries.
  • 5+ years of experience in Incident Response, DFIR, or Security Operations
  • Experience leading significant security investigations
  • Strong familiarity with cloud environments (AWS and/or GCP)
  • Hands‑on experience with SIEM, EDR, and log analysis
  • Solid understanding of identity systems and distributed architectures
  • Ability to stay composed and structured during high‑pressure situations
  • Clear written and verbal communication skills
  • Experience in large‑scale consumer or SaaS environments
  • Experience working across global teams
  • Familiarity with privacy‑related incident handling (e.g., GDPR)
  • Scripting or automation experience (Python, etc.)
  • We operate global consumer platforms that handle sensitive user data. When incidents happen, the way we respond matters.
  • This role plays a key part in containing impact, protecting user trust, and improving our overall response maturity.
Why Match Group?

Our mission is simple – to help people find love and happiness! We love our employees too and understand the importance of all life's milestones. Here are some of the benefits we are proud to offer:

  • Generous vacation, flex days, professional development days
  • RRSP matching, and employee stock purchase plan
  • Professional development budget and unlimited access to Udemy from day one
  • Match Group mentorship program
  • Parental leave top up and fertility preservation benefits
  • Extended health & dental benefits from day one
  • Corporate ClassPass membership and other wellness benefits

We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, and any other legally protected characteristic. Period.

If you require a reasonable accommodation to participate in the hiring process — you can…

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Incident Response Analyst
Security Incident Response Analyst

Match Group • Vancouver

On-site
CAD 120,000 - 180,000
Generous vacation & flex days
RRSP matching
Udemy access
+5
Sr. Technical Program Manager, Security Engineering
Sr. Technical Program Manager, Security Engineering

Matchgroup • Vancouver

Hybrid
CAD 120,000 - 180,000
Health benefits
Pension plan
Generous PTO
Senior Information Security Engineer
Senior Information Security Engineer

Match • Vancouver

On-site
CAD 110,000 - 150,000
Mind & Body
Financial Wellness
Unplug
+3
Senior Director, Growth Technology & Platforms (WIP)
Senior Director, Growth Technology & Platforms (WIP)

Tinder • Vancouver

Hybrid
CAD 363,000 - 419,000
Medical benefits
401k match
Paid time off
+1
Senior Data Product Engineer
Senior Data Product Engineer

Matchgroup • Vancouver

Hybrid
CAD 120,000 - 170,000
Generous vacation
RRSP matching
Udemy access
+4
Staff Product Manager
Staff Product Manager

Match Group • Vancouver

Hybrid
CAD 160,000 - 185,000
Generous vacation days
RRSP matching
Udemy unlimited access
+4
Senior Data Product Engineer
Senior Data Product Engineer

PowerToFly • Vancouver

Hybrid
CAD 135,000 - 143,000
RRSP matching
Employee stock purchase plan
Udemy access
+4
Staff Product Manager
Staff Product Manager

Tinder • Vancouver

Hybrid
CAD 160,000 - 180,000
Generous vacation
RRSP matching
Udemy access
+4
Senior Data Product Engineer
Senior Data Product Engineer

Match Group • Vancouver

Hybrid
CAD 135,000 - 143,000
Generous vacation
RRSP matching
Udemy access
+4
Senior Data Product Engineer
Senior Data Product Engineer

Tinder • Vancouver

Hybrid
CAD 135,000 - 143,000
Generous vacation
RRSP matching
Employee stock purchase plan
+5