Remote Senior Incident Response & Threat Hunter

First Citizens Bank

Raleigh (NC)

On-site

USD 140,000 - 188,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

First Citizens Bank is seeking a Senior Incident Response Analyst to join a remote Cyber Incident Response team. The role requires leading investigations, coordinating remediation, and developing countermeasures across cloud and on-premises environments.

You will work with stakeholders to detect, respond, and post-review incidents, while mentoring colleagues and contributing to threat hunting efforts. Requirements include 3+ years in Cyber Incident Response, 2+ years in Threat Hunting, and

Qualifications

  • Bachelor's Degree plus 8 years information security experience or HS/GED with 12 years information security experience.
  • Experience with all aspects of Incident response including stakeholder management.
  • 2+ years of Threat Hunting experience.
  • Familiarity with MITRE ATT&CK and its application to countermeasure creation is a plus.
  • Experience analyzing/dispositioning and escalating security events (systems, application, network, authentication email events).
  • Experience translating threat actor techniques to building mitigations across a variety of security technologies (Yara, Sigma or Regular Expressions).
  • Ability to define security requirements and drive project deliverables.
  • Ability to keep track of multiple incidents and ensure responses are provided in a timely fashion.
  • Experience responding to cloud-related incidents in Azure, AWS and Google Cloud.
  • Cyber Incident Response experience – 3+ years required in which your primary job was an Incident Response role.
  • This role requires participation in the afterhours on call rotation. Rotations will cycle on a weekly basis.

Responsibilities

  • Investigate SIEM/SOAR events and respond to incidents.
  • Lead incidents, coordinating investigation, mitigation, and remediation with technical and business stakeholders.
  • Ensure incidents are detected, documented, investigated, and resolved.
  • Support content development for countermeasures and mitigations.
  • Support threat hunting inputs and build countermeasures to address evolving threats.
  • Provide recommendations from post-incident reviews to improve processes and communication.

Skills

Incident response
Threat hunting
Cloud incident handling
Threat analysis
communicating with stakeholders
Security requirements
Mitre ATT&CK

Education

Bachelor's Degree in Information Security or related field
High School Diploma/GED + 12 years in Information Security

Tools

SIEM/SOAR
Yara
Sigma
Regular Expressions
Azure
AWS
Google Cloud

Job description

First Citizens Bank is seeking a Senior Incident Response Analyst to join a remote Cyber Incident Response team. The role requires leading investigations, coordinating remediation, and developing countermeasures across cloud and on-premises environments.

You will work with stakeholders to detect, respond, and post-review incidents, while mentoring colleagues and contributing to threat hunting efforts. Requirements include 3+ years in Cyber Incident Response, 2+ years in Threat Hunting, and

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Senior Cyber Incident Response & Threat Hunting Lead
Remote Senior Cyber Incident Response & Threat Hunting Lead

First Citizens Bank • Scottsdale (AZ)

On-site
USD 140,000 - 188,000
Remote work
Senior Remote Incident Response Analyst & Threat Hunter
Senior Remote Incident Response Analyst & Threat Hunter

First Citizens Bank • North Carolina

On-site
USD 140,000 - 188,000
Senior Incident Response Lead | Remote & Threat Hunting
Senior Incident Response Lead | Remote & Threat Hunting

First Citizens Bank • Arizona

On-site
USD 140,000 - 188,000
Benefits package
Remote Senior Incident Response Analyst
Remote Senior Incident Response Analyst

CrowdStrike Holdings, Inc. • Town of Texas (WI)

Hybrid
USD 125,000 - 180,000
Health insurance
401k matching
Paid time off
Senior Incident Response Lead & Threat Hunter
Senior Incident Response Lead & Threat Hunter

Jobgether • United States

On-site
USD 115,000 - 160,000
Base salary
Bonuses
Health insurance
+1
Remote Security Incident Response & Threat Hunting Lead
Remote Security Incident Response & Threat Hunting Lead

Turtle Trax S.A. • United States

Remote
MXN 60,000 - 80,000
Senior Cyber Threat Hunter & Incident Response Lead
Senior Cyber Threat Hunter & Incident Response Lead

Information Technology Senior Management Forum • Atlanta (GA)

On-site
USD 140,000 - 200,000
Benefits package
Senior Cyber Defense & Threat Response Lead - Remote
Senior Cyber Defense & Threat Response Lead - Remote

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Senior Insider Threat & Threat Hunting Analyst
Senior Insider Threat & Threat Hunting Analyst

KeyBank • United States

On-site
USD 96,000 - 181,000
In-office with flexible options
Senior Cyber Threat Hunter & Incident-Response Engineer
Senior Cyber Threat Hunter & Incident-Response Engineer

Truist • Zebulon (NC)

On-site
USD 140,000 - 190,000
Medical benefits
401k plan
Paid time off