Incident Response Analyst - MDR

TrendMicro

Irving (TX)

Hybrid

USD 90,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health benefits
Paid time off
Parental leave
Mental Health Wellness Program
401(k) with company match
Pet Insurance

Job summary

Trend Micro in Irving, TX invites a security operations expert to join a hybrid role in Las Colinas, leveraging TrendAI Vision One for incident response and threat detection. The position requires analyzing security breaches, leading containment, and coordinating with customers and internal teams.

You will perform malware analysis, forensics on Windows/Linux, and develop robust detection logic while communicating findings to executives. Some travel and rotating shifts may be needed.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related field.
  • 3+ years in security operations with incident response and forensics, malware analysis, SOC operations or security monitoring.
  • Advanced Windows and Linux forensics with listed tools.
  • Experience with SIEM platforms and event correlation.
  • Knowledge of MITRE ATT&CK framework and threat intelligence.
  • Working knowledge of Vision One or comparable XDR platforms.

Responsibilities

  • Forensic Investigation: Conduct root‑cause analysis of security breaches; determine attack vectors, scope and business impact.
  • Incident Response: Lead containment and threat eradication using TrendAI Vision One, coordinating across internal teams and customer stakeholders.
  • Threat Analysis & Detection: Analyze malware and threat components; develop and refine detection rules; generate threat intelligence and IoCs.
  • Customer Reporting: Create executive‑ready incident reports, deliver briefings to stakeholders, and recommend security improvements.
  • Proactive Threat Operations: Hunt for advanced threat indicators across customer networks; improve detection logic and fidelity.
  • AI Orchestration: Contribute to automation and AI initiatives that compress response times and reduce analyst burden.

Skills

Security operations
Incident response
Forensics
Malware analysis
SOC operations
Security monitoring
Windows forensics
Linux forensics
Communication skills
Threat intelligence

Education

Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related field

Tools

SIFT Workstation
WinPMEM
dd/dclfdd
Autopsy
Volatility Framework
FTK Imager
Wireshark
Bro/SiLK
Netflow
tcpdump
SIEM platforms
event correlation
MITRE ATT&CK
Vision One / XDR

Job description

About the Role

TrendAI™ is a global AI security leader and enterprise business unit of Trend Micro. In this hybrid role in Las Colinas, Texas (225 E John W Carpenter Fwy #1500, Irving, TX75062), you will help protect customers by leveraging AI‑driven alert triage and anomaly detection to reduce false positives and accelerate incident response.

Core Responsibilities
  • Forensic Investigation: Conduct root‑cause analysis of security breaches; determine attack vectors, scope and business impact.
  • Incident Response: Lead containment and threat eradication using TrendAI Vision One™, coordinating across internal teams and customer stakeholders from first alert to resolution.
  • Threat Analysis & Detection: Analyze malware and threat components; develop and refine detection rules; generate threat intelligence and IoCs.
  • Customer Reporting: Create executive‑ready incident reports, deliver briefings to stakeholders, and recommend security improvements.
  • Proactive Threat Operations: Hunt for advanced threat indicators across customer networks; improve detection logic and fidelity.
  • AI Orchestration: Contribute to automation and AI initiatives that compress response times, reduce analyst burden, and sharpen the overall quality of MDR delivery.
Required Qualifications
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or related field.
  • 3+ years in security operations with demonstrated expertise in incident response and forensics, malware analysis, SOC operations or security monitoring.
  • Advanced Windows and Linux forensics (registry, event logs, artifacts, filesystem analysis). Proficient with tools such as SIFT Workstation, WinPMEM, dd/dclfdd, Autopsy, Volatility Framework, FTK Imager, Wireshark, Bro/SiLK, Netflow, tcpdump or similar.
  • Experience with SIEM platforms, syslog analysis, event correlation procedures.
  • Static and dynamic malware analysis techniques.
  • Knowledge of threat actor TTPs and MITRE ATT&CK framework; ability to leverage threat‑intelligence platforms.
  • Working knowledge of the Vision One platform or equivalent XDR/threat‑intelligence platforms.
  • Strong written and verbal communication skills; ability to translate complex forensic findings for technical and executive audiences.
  • Self‑directed learner with aptitude for rapidly mastering new tools and threat landscapes.
  • Comfortable working under pressure; thrives in fast‑paced, high‑stakes environments.
  • Ability to work 24/7 rotating shifts, including nights, weekends, and holidays; willing to travel when required.
Preferred Qualifications
  • GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst/Examiner (GCFA/GCFE), CISSP, OSCP, or other relevant certifications.
Professional Attributes

Strong analytical and problem‑solving skills; ability to work effectively in a global team environment; comfortable communicating with customers via email, chat, and phone.

What We Offer You
  • Comprehensive health benefits and paid time off package.
  • Pre‑partum, maternity, parental, medical leave and adoption assistance.
  • Mental Health Wellness Program & Annual Wellness Incentive.
  • 401(k) with company match.
  • Pet Insurance.
  • Collaborative and innovative culture.
Additional Information

This position does not offer sponsorship for work‑permit applications or renewals. Candidates must be authorized to work in the U.S. without the need for employment‑based visa sponsorship, both currently and moving forward.

Equal Employment Opportunity Statement

Trend Micro provides equal employment opportunity for all applicants and employees. Trend Micro does not unlawfully discriminate on the basis of race, color, religion, sex, pregnancy and childbirth or related medical conditions, national origin, ancestry, age, physical or mental disability, medical condition, family care leave status, veteran status, marital status, sexual orientation or gender identity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Analyst - MDR
Incident Response Analyst - MDR

TrendAI • Irving (TX)

Hybrid
USD 110,000 - 150,000
Health benefits
401(k) plan
Parental leave
+2
Security Analyst - MDR
Security Analyst - MDR

TrendAI • Irving (TX)

Hybrid
USD 70,000 - 95,000
Health benefits and PTO
Parental leave and adoption assistance
Mental Health Wellness Program
+3
Security Analyst - MDR
Security Analyst - MDR

TrendMicro • Irving (TX)

Hybrid
USD 65,000 - 95,000
Health benefits
Paid time off
Parental/maternity leave
+2
Incident Response Coordinator
Incident Response Coordinator

TrendMicro • Irving (TX)

On-site
USD 90,000 - 130,000
Medical, dental and vision insurance
401(k) with company match
Paid Time Off
+6
Incident Response Coordinator
Incident Response Coordinator

TrendAI • Irving (TX)

On-site
USD 85,000 - 120,000
Comprehensive medical, dental and vis
Life insurance
401(k) with company match
+2
Sr. Technical Support Engineer
Sr. Technical Support Engineer

Trend Micro • Irving (TX)

On-site
USD 85,000 - 120,000
Health benefits
Paid time off
Parental leave
+4
Sr. Technical Support Engineer
Sr. Technical Support Engineer

TrendAI • Irving (TX)

Hybrid
USD 85,000 - 110,000
Health benefits
Paid time off
401(k) with company match
+1
Director, Threat News Monitoring & AI-Workflow Management
Director, Threat News Monitoring & AI-Workflow Management

TrendMicro • Austin (TX)

Hybrid
USD 150,000 - 230,000
Medical insurance
Dental insurance
Vision insurance
+5
Director, Threat News Monitoring & AI-Workflow Management
Director, Threat News Monitoring & AI-Workflow Management

TrendAI • Austin (TX)

Hybrid
USD 100,000 - 130,000
Comprehensive medical, dental and vision insurance
401(k) with company match
Paid Time Off
+1
Sr. Technical Support Engineer
Sr. Technical Support Engineer

TrendMicro • Irving (TX)

Hybrid
USD 70,000 - 95,000
Comprehensive health benefits
Paid time off
401(k) with company match
+1