Job Title: Incident Response Analyst
Location: 100% remote
Shift: 1830 to 0330 hours IST
Type: FTE
Responsibilities:
- Work with Business Units to eliminate shared accounts, inactive accounts, and accounts without MFA.
- Assist in developing and managing a quarterly user review process with attestations from Business Units. Handle accounts from multiple identity sources and instances.
- Respond to alerts and incidents in the Corporate and Product Defender Platforms, address phishing messages, and develop runbooks for common security alerts and incidents.
- Escalate issues to client’s Defensive Security FTEs as needed.
- Collaborate with Business Units to implement centralized Defender EDR installations.
Skills Required:
- 3+ years of EDR administration experience with Microsoft Windows Defender & Sentinel.
- 3+ years of experience with EDR tools, including requirements gathering, deployment, configuration, and threat hunting.
- 5+ years in incident response, security infrastructure management, or monitoring services.
- Proactive and initiative-taking attitude, able to lead meetings with Business Units and demonstrate creativity.
- Ability to think quickly and provide solutions proactively.
Personal Skills:
- Good team player.
- Positive attitude and eagerness to learn.
- Excellent verbal and written communication skills.
- Sense of ownership, ability to prioritize, and work autonomously.
- Willingness to travel up to 50% of the time.