CSIRT Analyst

Computer Task

Buffalo (NY)

On-site

USD 80,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Computer Task is seeking a CSIRT Analyst who has a passion for Cyber Security and is experienced in Incident Response, Digital Forensics, and Threat Hunting. This role involves handling security incidents, conducting forensic analysis, and contributing to Detection Engineering in a collaborative environment.

The ideal candidate will have at least 3-5 years of relevant experience and a proactive mindset. The opportunity includes work with leading MDR tools and a commitment to promoting equal opportunities.

Qualifications

  • 3-5 years of experience in Cyber Security role.
  • Hands-on experience in disk, memory and log acquisition.
  • Proactive mindset and 'can do' attitude.

Responsibilities

  • Handle security alerts and incidents escalated by SOC Analysts.
  • Conduct DFIR readiness assessments and assignments.
  • Participate in Threat Hunting to proactively chase threats.

Skills

Cyber Security
Digital Forensics
Incident Response
Threat Hunting
Threat Intelligence
Security Monitoring

Education

Bachelor or Master degree in relevant field or equivalent experience

Tools

EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One)
NDR (Vectra, Darktrace)
SIEM technologies

Job description

Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR)? Does Incident Response, Digital Forensics, Threat Hunting, Threat Intelligence and everything related to Cyber Security feel like second nature to you? Are you a Cyber Defender at heart, driven to strengthen the blue team and help organizations that are under attack? If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst role!

  • You handle security alerts/incidents that have been escalated by the SOC Analysts (Tier 2)
  • You will handle security alerts and incidents together with your team
  • You conduct DFIR assignments, including DFIR readiness assessments
  • You participate in the weekly Threat Hunting duty to proactively chase threats through novel Tools, Techniques & Procedures (TTPs)
  • You will perform compromise assessments to identify potential compromises and their scope
  • You collect Threat Intelligence (IOCs and TTPs)
  • You will contribute to Detection Engineering in SIEM, xDR.
  • Together with the Red Team you will do Purple Teaming exercises to test and improve defenses
  • You contribute to the creation of playbooks in SOAR
  • You will co-write processes and procedures related to DFIR, Threat Intelligence, Threat Hunting.
  • You will be part of our Incident Response on call service.
What you need to succeed:
  • At least 3-5 years of experience in a similar position.
  • Significant hands‑on experience in disk, memory and log acquisition in a forensically sound manner, parsing and deep forensic analysis of extracted artifacts and professional post‑incident report writing
  • A bachelor or master degree or equivalent through experience.
  • A hands‑on and proactive mindset with a 'can do' mentality.
  • Experience and/or interest in working with the following MDR tools: EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, ...), NDR (Vectra, Darktrace, ...), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity/...).
  • Knowledge of Security Monitoring with SIEM technologies. A passion about the following security capabilities: Security Monitoring, Digital Forensics, Incident Response, Threat Intelligence, Threat Hunting.

CTG will consider for employment all qualified applicants including those with criminal histories in a manner consistent with the requirements of all applicable local, state, and federal laws.

CTG is an Equal Opportunity Employer. CTG will assure equal opportunity and consideration to all applicants and employees in recruitment, selection, placement, training, benefits, compensation, promotion, transfer, and release of individuals without regard to race, creed, religion, color, national origin, sex, sexual orientation, gender identity and gender expression, age, disability, marital or veteran status, citizenship status, or any other discriminatory factors as required by law. CTG is fully committed to promoting employment opportunities for members of protected classes.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CSIRT Analyst
CSIRT Analyst

CTG • Buffalo (NY)

On-site
USD 90,000 - 130,000
Senior SOC Analyst
Senior SOC Analyst

Computer Task • Buffalo (NY)

Hybrid
USD 110,000 - 120,000
Health insurance
401K
Paid time off
CSIRT Analyst - MDR, DFIR & Threat Hunting
CSIRT Analyst - MDR, DFIR & Threat Hunting

Computer Task • Buffalo (NY)

On-site
USD 80,000 - 120,000
CSIRT Analyst
CSIRT Analyst

Page Mechanical Group, Inc. • Mississippi

On-site
USD 70,000 - 80,000
Medical plan options
Dental and vision coverage
401(k) retirement savings plan
+2
Senior Security Analyst – Security Operations Center
Senior Security Analyst – Security Operations Center

Jobtailor • Town of Florida (NY)

On-site
USD 120,000 - 180,000
Senior MDR Analyst
Senior MDR Analyst

Blackpoint Cyber • United States

On-site
USD 110,000 - 170,000
Health insurance
Vision insurance
Dental insurance
+2
Cybersecurity Senior Analyst | Threat Detection & Response (Remote)
Cybersecurity Senior Analyst | Threat Detection & Response (Remote)

The Home Depot • Austin (TX)

Hybrid
USD 110,000 - 170,000
CSIRT Analyst: Pro Incident Response & Threat Hunting
CSIRT Analyst: Pro Incident Response & Threat Hunting

CTG • Buffalo (NY)

On-site
USD 90,000 - 130,000
CTI Cybersecurity Analyst - Sr
CTI Cybersecurity Analyst - Sr

TMC TECHNOLOGIES • Huntsville (AL)

On-site
USD 110,000 - 140,000
Cyber Detection & Response Analyst
Cyber Detection & Response Analyst

Control Risks • San Francisco (CA)

Hybrid
USD 120,000 - 140,000
Medical Benefits
401(k) Retirement
Hybrid work
+1