Cyber Detection & Response Analyst

Control Risks

San Francisco (CA)

Hybrid

USD 120,000 - 140,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical Benefits
401(k) Retirement
Hybrid work
Discretionary bonus

Job summary

Control Risks is seeking a Cyber Detection and Response Analyst in California to join a 24/7 DART. The role focuses on hands‑on detection, investigation, and response across endpoints, networks, and cloud environments.

You will work with Security Engineering and stakeholders to improve detection and response efficacy. Responsibilities include monitoring alerts, running incident response playbooks, threat hunting, and producing clear incident reports.

Qualifications

  • 3–5 years of cybersecurity experience focused on incident response or SOC operations.
  • Hands-on with SIEM, EDR/XDR, and log analysis tools (Splunk, Sentinel, CrowdStrike).
  • Familiarity with MITRE ATT&CK and NIST frameworks; threat hunting and malware analysis skills.

Responsibilities

  • Monitor, triage, and investigate security alerts across endpoints, networks, cloud, and identity systems.
  • Support incident response activities including analysis, containment, remediation, and documentation.
  • Execute incident response playbooks and contribute to their improvement.
  • Perform threat hunting to identify compromises and coverage gaps.
  • Leverage threat intelligence to inform investigations and tuning.
  • Collaborate with Security Engineering to improve detection logic and controls.
  • Produce incident reports and support root cause analysis and remediation.
  • Support 24/7 escalation processes as part of the SOC capability.

Skills

Incident response
SOC operations
Threat hunting
Analytical thinking
Communication of findings
MITRE ATT&CK
NIST frameworks
Cloud environments
Security certifications

Tools

Splunk
Microsoft Sentinel
CrowdStrike

Job description

The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands‑on technical role focused on identifying, analyzing, and responding to cyber threats across the client's environment, working closely with Security Engineering and broader security stakeholders.

This role will be a part of a 24/7 team and cover one of two shifts: Sunday-Thursday 9:00 am-5:00 pm PT or Tuesday-Saturday 9:00 am-5:00 pm PT.

  • Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
  • Support incident response activities including analysis, containment, remediation, and documentation.
  • Execute established incident response playbooks and contribute to their continuous improvement.
  • Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
  • Leverage threat intelligence to inform investigations and detection tuning.
  • Collaborate with Security Engineering to tune detection logic and improve security controls.
  • Produce clear, concise incident reports and support root cause analysis and remediation efforts.
  • Support escalation processes as part of a 24/7 detection and response capability.
Requirements
  • 3-5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
  • Hands‑on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
  • Strong analytical and problem‑solving skills, with the ability to communicate technical findings clearly.
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
Benefits
  • Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarised in the full job offer.
  • We operate a discretionary bonus scheme that incentivises, and rewards individuals based on company and individual performance.
  • Control Risks supports hybrid working arrangements, wherever possible, that emphasise the value of in‑person time together - in the office and with our clients - while continuing to support flexible and remote working.
  • Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Programme.
  • As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.

The base salary range for this position is $120000-$140000 per year. Exact compensation offered may vary depending on job‑related knowledge, skills, and experience.

Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.

Control Risks participates in the E‑Verify programme to confirm employment authorisation of all newly‑hired employees. The E‑Verify process is completed during new hire onboarding and completion of the Form I‑9, Employment Eligibility Verification, at the start of employment. E‑Verify is not used as a tool to pre‑screen candidates. For more information on E‑Verify, please visit www.uscis.gov.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Hands-on Cyber Threat Detection & Response Analyst - 24/7
Hands-on Cyber Threat Detection & Response Analyst - 24/7

Control Risks • San Francisco (CA)

Hybrid
USD 120,000 - 140,000
Medical Benefits
401(k) Retirement
Hybrid work
+1
Partner - Cyber Incident Response, Americas
Partner - Cyber Incident Response, Americas

Control Risks • New York (NY)

Hybrid
USD 250,000 - 400,000
Medical benefits
401 (K) Retirement
Flexible working arrangements
GSOC Analyst
GSOC Analyst

Control Risks • New Brunswick (NJ)

On-site
USD 70,000 - 80,000
Medical Benefits
Prescription Benefits
Dental Benefits
+4
GSOC Analyst - Night Shift
GSOC Analyst - Night Shift

Control Risks • Boston (MA)

On-site
USD 70,000 - 80,000
Discretionary bonus scheme
Medical and dental benefits
401 (K) Retirement
+1
Intelligence Analyst - Weekend Swing Shift
Intelligence Analyst - Weekend Swing Shift

Control-Risks • Boise (ID)

On-site
USD 80,000 - 90,000
GSOC Analyst - Day Shift
GSOC Analyst - Day Shift

Control Risks • Irving (TX)

Hybrid
USD 55,000 - 60,000
Competitive compensation and benefits
Discretionary bonus scheme
Flexible and remote working options
+3
Intelligence Analyst - Weekend Swing Shift
Intelligence Analyst - Weekend Swing Shift

Control Risks • Boise (ID)

On-site
USD 80,000 - 90,000
Discretionary bonus
Hybrid working
Medical benefits
+3
Intelligence Analyst - Weekend Swing Shift
Intelligence Analyst - Weekend Swing Shift

Control Risks Group • Boise (ID)

Hybrid
USD 80,000 - 90,000
Medical Benefits
Dental Benefits
Vision Benefits
+5
Detection and Response Engineer
Detection and Response Engineer

United States Digital Space LLC • United States

Hybrid
USD 120,000 - 180,000
Paid parental leave
Certification reimbursement
Digital mental health support
+1
GSOC Analyst - Night Shift
GSOC Analyst - Night Shift

Control-Risks • New Brunswick (NJ)

On-site
USD 70,000 - 80,000
Medical Benefits
Dental Benefits
Vision Benefits
+4