Incident Response Analyst - Fully Remote

Mercor

New York (NY)

Remote

USD 83,000 - 138,000

Full time

13 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote work

Job summary

Mercor is conducting a short paid research engagement to gather perspectives from current practitioners in enterprise security. You will join two to three one-hour video conversations with the Mercor team over roughly four weeks, scheduled around your availability.

Remote, US-based participation is requested. This is a paid, spot-bonus interview engagement with no deliverables beyond your input to inform benchmark design.

Qualifications

  • Current or recent hands-on practitioners in enterprise security.
  • Experience with EDR and SIEM stacks is a plus.

Responsibilities

  • Participate in one-hour video interviews about how your work is performed.
  • Share perspectives on tools, workflows, and measures used in triage and detection.

Skills

Hands-on security
Incident response
Threat hunting
EDR/SIEM experience

Tools

CrowdStrike Falcon
Microsoft Defender
SentinelOne
Splunk
Elastic

Job description

About the work

Mercor is designing a benchmark that measures how well AI agents do real enterprise cyber defense work. Before we build it, we want to hear from people who do that work every day.

This is a short paid research engagement, not a task or data project. You will join two to three one-hour video conversations with the Mercor team over roughly four weeks, scheduled around your availability.

What we will talk about
  • How your work actually happens: the tools you live in, what lands in your queue, where judgment matters and where it does not.
  • How your team measures whether a triage, investigation, containment, hunt, detection rule or patch was done well.
  • Where AI assistance helps you today, where it gets in the way, and what would make a benchmark of AI on this work credible to you.
  • Our draft task taxonomy: what is missing, what is mislabeled, what you would weight differently.
Who we are looking for

Current or recent hands-on practitioners in enterprise security, for example:

  • SOC analysts and SOC leads (tier 2 and above)
  • Incident responders and digital forensics investigators
  • Detection engineers and threat hunters
  • Application security or product security engineers who find and fix vulnerabilities in production code
  • Security engineers who have run or been on the receiving end of a red team engagement

Experience with an EDR and SIEM stack (CrowdStrike Falcon, Microsoft Defender and Sentinel, Splunk, SentinelOne, Elastic or similar) is a plus. Security leaders are welcome if you are still close to the work.

Pay and time
  • Paid hourly for interview time as a spot bonus. Sessions are one hour; no prep is expected.
  • Two to three sessions in total. Nothing to build, label or submit.
  • Remote, US-based.
Confidentiality

We will ask you to describe patterns, not specific incidents, and to leave out anything confidential about current or former employers or customers. Your input is used only to design the benchmark and is never attributed to you or your employer.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)

DigiNo • Northern (KY)

Hybrid
USD 41,000 - 83,000
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec) - review AI outputs in your specialty
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec) - review AI outputs in your specialty

Mercor • United States

Remote
USD 55,000 - 83,000
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)

HumanitApp • Northern (KY)

Hybrid
USD 172,000 - 241,000
Spot bonus
Hourly pay
Remote work
Remote Incident Response Analyst - Benchmark Contributor
Remote Incident Response Analyst - Benchmark Contributor

Mercor • New York (NY)

Remote
USD 83,000 - 138,000
Remote work
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)
Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec)

Remolity, Inc. • Northern (KY)

Hybrid
USD 83,000 - 165,000
Cybersecurity Practitioner: Remote Paid Expert Interviews
Cybersecurity Practitioner: Remote Paid Expert Interviews

Remolity, Inc. • Northern (KY)

Hybrid
USD 83,000 - 138,000
Security Analyst - Fully Remote
Security Analyst - Fully Remote

Obsidian • San Francisco (CA)

Remote
USD 19,530 - 23,994
Performance bonus
Hourly opportunity for top performers
Remote Enterprise Cyber Defense Practitioner - Interview
Remote Enterprise Cyber Defense Practitioner - Interview

Mercor • United States

Remote
USD 55,000 - 83,000
Senior Security Analyst
Senior Security Analyst

Obsidian • San Francisco (CA)

On-site
USD 19,530 - 23,994
Cyber Defense Practitioner - Remote Research Interview
Cyber Defense Practitioner - Remote Research Interview

HumanitApp • Northern (KY)

Hybrid
USD 172,000 - 241,000
Spot bonus
Hourly pay
Remote work