Remote Lead Incident Response & Forensics

Merck & Co.

Rahway (NJ)

On-site

USD 117,000 - 184,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Merck & Co. is seeking a Lead Incident Response Analyst to manage the day-to-day operations of the Cyber Fusion Center in the US Tech Center, Rahway, NJ. The role supports a 24x7x365 team and requires flexibility to respond to incidents outside core hours.

You will lead complex investigations across cloud and on-prem environments, coordinate across locations, and drive containment actions while mentoring staff and updating playbooks for improved response.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity or equivalent work experience.
  • 7+ years of hands-on experience in cybersecurity operations, incident response, or threat detection.
  • Experience leading complex investigations involving cloud environments, identity systems, and modern endpoint tooling.
  • Experience building or shaping a detection and response program in partnership with leadership.
  • Strong familiarity with attacker TTPs (MITRE ATT&CK), log analysis, and correlation techniques.
  • Practical experience with digital forensics fundamentals (artifact analysis, timeline creation, host/network investigation).
  • Ability to interpret MDR escalations and independently drive deeper analysis and containment actions.

Responsibilities

  • Incident Response & Investigation: conduct response for escalated MSSP/MDR alerts across cloud and endpoint environments; on-call for high-severity incidents.
  • Perform forensic review of affected systems with log correlation and event reconstruction.
  • Provide clear incident findings, timelines and remediation steps to technical and non-technical stakeholders.
  • Coordinate incident response activities across teams or with partners.
  • Lead the initial response for the Cyber Fusion Center for high impact cybersecurity events.
  • Develop, mentor, and lead the teams and individual members; oversee day-to-day operations.

Skills

Incident Response
Forensic Analysis
Log Analysis
Threat Detection
Cloud Security
MDR/IR Leadership

Education

Bachelor's degree in CS/Cybersecurity

Tools

SIEM
EDR
CloudTrail
CloudWatch
WAF
Proxy

Job description

Merck & Co. is seeking a Lead Incident Response Analyst to manage the day-to-day operations of the Cyber Fusion Center in the US Tech Center, Rahway, NJ. The role supports a 24x7x365 team and requires flexibility to respond to incidents outside core hours.

You will lead complex investigations across cloud and on-prem environments, coordinate across locations, and drive containment actions while mentoring staff and updating playbooks for improved response.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Incident Response Lead
Remote Incident Response Lead

MSD Malaysia • Rahway (NJ)

On-site
USD 117,000 - 184,000
Medical
Dental
Vision
+4
Lead Incident Response Analyst - Remote & On-Call
Lead Incident Response Analyst - Remote & On-Call

Merck • Rahway (NJ)

On-site
USD 117,000 - 184,000
Medical, dental, vision
401(k) plan
Paid holidays
+1
Senior Cyber Incident Responder & Technical Lead
Senior Cyber Incident Responder & Technical Lead

Meriplex-Communication • Town of Texas (WI)

On-site
USD 110,000 - 160,000
Remote Senior Cyber Incident Response Lead
Remote Senior Cyber Incident Response Lead

Highmark Health • Louisiana (MO)

Hybrid
USD 86,000 - 139,000
Senior Incident Response Engineer – Remote Forensics Lead
Senior Incident Response Engineer – Remote Forensics Lead

Elsevier • New Jersey

Hybrid
USD 89,000 - 143,000
Annual incentive bonus
Remote Cyber Defense Analyst: Incident Response Lead
Remote Cyber Defense Analyst: Incident Response Lead

UnitedHealth Group • Eden Prairie (MN)

On-site
Confidential
Lead Cyber Incident Responder — 24/7 MSP Client IR
Lead Cyber Incident Responder — 24/7 MSP Client IR

Meriplex Communications, Ltd. • Town of Texas (WI), Northern (KY)

Hybrid
USD 110,000 - 150,000
Senior Cyber Incident Responder – Lead High-Severity Incidents
Senior Cyber Incident Responder – Lead High-Severity Incidents

Meriplex • Town of Texas (WI)

On-site
USD 110,000 - 140,000
Senior Incident Response Lead: Forensics, Automation & AI
Senior Incident Response Lead: Forensics, Automation & AI

Jobgether • United States

On-site
USD 120,000 - 180,000
Medical, dental, and vision insurance
401(k) retirement plan with company匹配
Life insurance
+1
Lead Incident Response Analyst - Detection and Response
Lead Incident Response Analyst - Detection and Response

Merck • Rahway (NJ)

On-site
USD 117,000 - 184,000
Medical, dental, vision
401(k) plan
Paid holidays
+1