Mid-level Incident Response Consultant

Cypress HCM

United States

On-site

USD 83,000 - 124,000

Full time

17 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Cypress HCM is seeking two incident responders for an immediate, hands‑on contract role in the United States. You will pick up an active caseload, investigate indicators of compromise, read alerts, and connect information to prevent bigger incidents.

You will triage alerts, conduct end‑to‑end investigations, document findings for handoff or audit, and participate in on‑call rotations. 3–5 years of relevant experience is required.

Qualifications

  • 3–5 years in incident response or SOC operations.
  • Experience with SIEM/EDR tools and log analysis.
  • Ability to manage caseload with minimal ramp-up.

Responsibilities

  • Triage alerts and run investigations from initial detection through containment.
  • Work assigned incidents end to end, escalating to the technical lead when severity or scope changes.
  • Document findings and timelines clearly enough for handoff or audit.
  • Participate in on‑call rotation.

Skills

Incident response
SOC analyst
Security operations
Independent work

Tools

SIEM
EDR
Log analysis

Job description

Engagement: contract, immediate start, initial 6 to 12 months, likely to extend.

Reports to: Sr. Director, Security Operations Center, with day to day direction from the SOC technical lead or the Sr. Director.

We need two incident responders to pick up active caseload right away. This is hands‑on investigative work. We need people who can start working cases within the first week, comfortable with understanding indicators of compromise, reading alerts, and connecting information that may lead to preventing a bigger incident.

Responsibilities
  • Triage alerts and run investigations from initial detection through containment.
  • Work assigned incidents end to end, escalating to the technical lead when severity or scope changes.
  • Document findings and timelines clearly enough for handoff or audit.
  • Participate in on‑call rotation.
Requirements
  • 3 to 5 years in incident response, SOC analyst, or similar hands‑on security operations work.
  • Working knowledge of SIEM and EDR tools, log analysis, and common attack patterns.
  • Able to work independently on a caseload from day one with minimal ramp time.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Incident Response Consultant
Principal Incident Response Consultant

Cypress HCM • United States

On-site
USD 140,000 - 180,000
Sr. SOC Analyst Incident Response Lead 5457
Sr. SOC Analyst Incident Response Lead 5457

Tier4 Group • Wixom (MI)

Hybrid
USD 110,000 - 150,000
Senior Incident Response Lead - SOC Contract
Senior Incident Response Lead - SOC Contract

Cypress HCM • United States

On-site
USD 140,000 - 180,000
Incident Response IR Analyst Engineer
Incident Response IR Analyst Engineer

Accrescent Group • Roanoke (TX)

Hybrid
USD 95,000 - 140,000
Security Engineer, Incident Response
Security Engineer, Incident Response

Eliassen Group • Burbank (CA)

Hybrid
Confidential
Medical insurance
Dental insurance
Vision insurance
+2
Senior SOC Analyst- Tuesday- Saturday
Senior SOC Analyst- Tuesday- Saturday

BNY Mellon • Pittsburgh

On-site
USD 110,000 - 150,000
Security Analyst-Incident Response
Security Analyst-Incident Response

Consulting Solutions • Pittsburgh

Hybrid
USD 120,000 - 160,000
Security Operations Center Analyst
Security Operations Center Analyst

StevenDouglas • Miami (FL)

Hybrid
USD 100,000 - 140,000
Hybrid work arrangement
Senior SOC Analyst- Tuesday- Saturday
Senior SOC Analyst- Tuesday- Saturday

BNY Mellon • Town of Florida (NY)

On-site
USD 110,000 - 160,000
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

MFI Technologies Incorporated • New York (NY)

On-site
USD 75,000 - 100,000