Senior Cyber Incident Response & Threat Intel Analyst

S&P Global

Boulder (CO)

On-site

USD 100,000 - 170,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health & Wellness
Flexible Downtime
Continuous Learning
Investment in Your Future
Family Friendly Perks

Job summary

S&P Global is seeking a Cyber Incident Response Analyst to join the Cyber Defence team. You will detect, analyze, and respond to security incidents, enrich investigations with timely intelligence, and drive proactive defences on a global scale.

Based in the UK but providing global coverage, you will partner with Security Operations and Threat Intelligence, build and refine playbooks, and deliver intel-informed insights to leadership while advancing detection capabilities across endpoints,

Qualifications

  • Understanding of attacker tactics and procedures (TTPs) and ability to map activity to MITRE ATT&CK.
  • Experience handling security events in critical environments and applying intelligence to accelerate triage and response.
  • Ability to analyze logs from systems, applications, and cloud/SaaS to investigate issues and enrich detections.
  • Hands‑on experience with a SIEM (Splunk preferred) for investigations, alerting, reporting, and threat hunting.
  • Ability to produce clear, actionable intel and incident reports for leadership and technical teams.
  • Familiarity with threat intel workflows: collection planning, source evaluation, PIRs, TLP, and feedback loops.

Responsibilities

  • Coordinate and triage response to cybersecurity events and conduct forensic analysis across endpoints, networks, cloud, and SaaS.
  • Integrate threat intelligence into investigations (enrich IOCs, map activity to MITRE ATT&CK, identify threat actors/TTPs).
  • Develop and maintain Incident Response playbooks, SOPs, PIRs, and collection plans to refine detections.
  • Collaborate with SOC to investigate incidents, deliver containment, remediation, and root cause analysis; produce intel-informed reports.
  • Create and tune detections (SIEM/SOAR, EDR) using intelligence signals and Sigma/YARA where applicable.
  • Produce consumable intelligence outputs (flash alerts, threat overviews, executive briefs) for diverse audiences.

Skills

MITRE ATT&CK mapping
Threat intel workflows
SIEM analysis
Threat hunting
Incident response
Executive/technical communication
Cloud/log analysis

Tools

Splunk
MISP
OpenCTI
Recorded Future

Job description

S&P Global is seeking a Cyber Incident Response Analyst to join the Cyber Defence team. You will detect, analyze, and respond to security incidents, enrich investigations with timely intelligence, and drive proactive defences on a global scale.

Based in the UK but providing global coverage, you will partner with Security Operations and Threat Intelligence, build and refine playbooks, and deliver intel-informed insights to leadership while advancing detection capabilities across endpoints,

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyber Incident & Threat Intelligence Analyst
Senior Cyber Incident & Threat Intelligence Analyst

Relha LLC • New York (NY)

On-site
USD 100,000 - 170,000
Senior Cyber Defense & Threat Response Lead - Remote
Senior Cyber Defense & Threat Response Lead - Remote

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Senior Cyber Defense Lead - Threat Hunting & IR Hybrid
Senior Cyber Defense Lead - Threat Hunting & IR Hybrid

SPS Commerce, Inc. • Minneapolis (MN)

Hybrid
USD 108,000 - 140,000
Sr. Cyber Defense Analyst
Sr. Cyber Defense Analyst

Patriot Talent Solutions • United States

On-site
USD 120,000 - 190,000
Cybersecurity Incident Response Analyst
Cybersecurity Incident Response Analyst

MFI Technologies Incorporated • New York (NY)

On-site
USD 75,000 - 100,000
Senior Cyber Defense Analyst - Remote SOC Operations
Senior Cyber Defense Analyst - Remote SOC Operations

Embedded Shishya • United States

On-site
USD 110,000 - 160,000
Great compensation package
Medical, dental, vision benefits
Remote/hybrid or in‑office options
+2
Lead SOC Incident Commander & Threat Hunter
Lead SOC Incident Commander & Threat Hunter

UKG • United States

On-site
USD 145,000 - 210,000
Performance-based bonus
Restricted stock units (RSUs)
Senior Cyber Security Analyst - SOC & Threat Hunting (Hybrid)
Senior Cyber Security Analyst - SOC & Threat Hunting (Hybrid)

SMBC • North Carolina

Hybrid
USD 120,000 - 180,000
Hybrid work model
Office/remote flexibility
Senior Cyber Defense Lead - Incident Response & Forensics
Senior Cyber Defense Lead - Incident Response & Forensics

Patriot Talent Solutions • United States

On-site
USD 120,000 - 190,000
Senior Cyber Security Analyst - Incident Response & SIEM
Senior Cyber Security Analyst - Incident Response & SIEM

InterEx Group • United States

On-site
USD 90,000 - 130,000