Automation-Driven Incident Response Analyst

The Carlyle Group

Washington (District of Columbia)

On-site

USD 120,000 - 180,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

The Carlyle Group is seeking an experienced Incident Response Analyst to join its Security Operations Center. You will investigate, contain, and remediate security incidents across endpoints, identities, networks, and cloud environments, leveraging SIEM, XDR, and EDR tools.

You will drive automation to accelerate investigations while maintaining human oversight. Ideal candidates have 5+ years in IT/security, strong incident response methodologies, and experience with cloud platforms (AWS/Azure)

Qualifications

  • Four-year college degree, or equivalent years' of relevant experience, required.
  • Certifications in incident response (GCIH, SANS) or security (CISSP, CCSP) preferred.

Responsibilities

  • Analyze, investigate, document, contain, remediate, and coordinate response to cybersecurity incidents.
  • Serve as escalation point for security events requiring deeper analysis and response.
  • Develop, test, tune, and improve detection logic and analytics.
  • Identify opportunities to automate enrichment, evidence collection, and containment actions.
  • Develop and maintain incident response playbooks and procedures.
  • Produce operational metrics and reporting related to incident response and SOC performance.
  • Mentor team members and share knowledge to improve SOC capabilities.

Skills

Incident response
Threat hunting
Automation
Security mindset

Education

Bachelor's degree or equivalent

Tools

Palo Alto XSIAM
SIEM tools
AWS
Azure
Terraform
CloudFormation
Python
Bash
PowerShell
EDR
Windows
Linux
macOS

Job description

The Carlyle Group is seeking an experienced Incident Response Analyst to join its Security Operations Center. You will investigate, contain, and remediate security incidents across endpoints, identities, networks, and cloud environments, leveraging SIEM, XDR, and EDR tools.

You will drive automation to accelerate investigations while maintaining human oversight. Ideal candidates have 5+ years in IT/security, strong incident response methodologies, and experience with cloud platforms (AWS/Azure)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Analyst - AI-Driven SOC (Hybrid)
Senior Incident Response Analyst - AI-Driven SOC (Hybrid)

Carlyle Group • Washington, Northern (KY)

Hybrid
USD 140,000 - 160,000
Health insurance
Retirement benefits
Life insurance
+5
Incident Response Analyst - Americas
Incident Response Analyst - Americas

The Carlyle Group • Washington

On-site
USD 120,000 - 180,000
Incident Response Analyst — On-Site 4 Days/Week
Incident Response Analyst — On-Site 4 Days/Week

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC • Washington

On-site
USD 140,000 - 160,000
Retirement benefits
Health insurance
Life insurance and disability
+1
Incident Response Analyst - Americas
Incident Response Analyst - Americas

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC • Washington

On-site
USD 140,000 - 160,000
Retirement benefits
Health insurance
Life insurance and disability
+1
Incident Response Analyst - Americas
Incident Response Analyst - Americas

Carlyle Group • Washington, Northern (KY)

Hybrid
USD 140,000 - 160,000
Health insurance
Retirement benefits
Life insurance
+5
Incident Response Engineer - Cyber Defense
Incident Response Engineer - Cyber Defense

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000
Incident Response Lead - AI-Driven Detection & Containment
Incident Response Lead - AI-Driven Detection & Containment

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

MFI Technologies Incorporated • New York (NY)

On-site
USD 75,000 - 100,000
Security Operations Manager: Incident Response & SOC Lead
Security Operations Manager: Incident Response & SOC Lead

McKinsey & Company, Inc. • Boston (MA)

On-site
USD 174,000 - 178,000
Healthcare benefits
Retirement plan
Paid time off
+1
Senior SOC Analyst — AI-Driven Incident Response
Senior SOC Analyst — AI-Driven Incident Response

BeyondTrust • United States

On-site
USD 90,000 - 130,000