Threat Hunter & Incident Response Analyst

Divvy Cloud Corp.

Northern (KY)

Hybrid

USD 82,000 - 110,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Rapid7 is seeking a Security Operations Analyst to review alert data and identify malicious activity within the Rapid7 environment. You will lead investigations, collect evidence, and document technical analyses to support remediation efforts.

You will perform rotational threat hunting, assist Incident Response engagements, and provide high-quality threat detection services. Candidates should be proficient with Windows, macOS, Linux, and SIEM tools such as Rapid7's platform or Splunk.

Qualifications

  • Experience with SIEM tools (Rapid7 or Splunk) and security monitoring.
  • Strong background in SOC functions: incident response, threat hunting, and forensics.
  • Proven ability to lead investigations, document findings, and drive remediation actions.

Responsibilities

  • Review alert data to identify malicious activity in the Rapid7 environment.
  • Lead investigations spanning evidence collection, analysis, intrusion vector determination, and misuse detection.
  • Create detailed Incident Reports with findings and remediation steps.
  • Perform rotational threat hunting to uncover unknown threats.
  • Assist Incident Response engagements by analyzing forensic artifacts and tracking threat actor movements.
  • Provide high-quality threat detection services to secure the organization.
  • Research current attack methods to enhance detection capabilities.
  • Offer feedback to product teams to improve security features.

Skills

Windows
macOS
Linux
SIEM tools
Threat hunting
Incident response
Forensic investigations

Tools

Rapid7 Platform
Splunk

Job description

Rapid7 is seeking a Security Operations Analyst to review alert data and identify malicious activity within the Rapid7 environment. You will lead investigations, collect evidence, and document technical analyses to support remediation efforts.

You will perform rotational threat hunting, assist Incident Response engagements, and provide high-quality threat detection services. Candidates should be proficient with Windows, macOS, Linux, and SIEM tools such as Rapid7's platform or Splunk.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Analyst II
Security Operations Analyst II

Divvy Cloud Corp. • Northern (KY)

Hybrid
USD 82,000 - 110,000
Detection & Response Analyst
Detection & Response Analyst

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 85,000 - 115,000
Lead Detection & Response Analyst
Lead Detection & Response Analyst

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 140,000 - 210,000
24/7 Threat Detection & Response Analyst
24/7 Threat Detection & Response Analyst

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 85,000 - 115,000
Remote SOC Threat Detection & Incident Response Analyst
Remote SOC Threat Detection & Incident Response Analyst

Tech Net Inc • Folsom (CA)

Remote
USD 95,000 - 135,000
SOC Analyst: Incident Response & Threat Hunter
SOC Analyst: Incident Response & Threat Hunter

Inforcer • Cerritos (CA)

On-site
USD 90,000 - 130,000
Senior Threat Hunter & Incident Response Leader
Senior Threat Hunter & Incident Response Leader

Foresite Cybersecurity • Overland Park (KS)

On-site
USD 90,000 - 120,000
Health insurance
Paid time off
Professional development
+2
Lead MDR Detection & Response Architect
Lead MDR Detection & Response Architect

X4V Rapid7 LLC • Arlington (VA)

On-site
USD 140,000 - 210,000
Incident Response Analyst — Threat Hunting & Forensics
Incident Response Analyst — Threat Hunting & Forensics

TrendMicro • Irving (TX)

On-site
USD 70,000 - 110,000
Senior Incident Response Lead & Threat Hunter
Senior Incident Response Lead & Threat Hunter

Peraton • Reston (VA)

On-site
USD 104,000 - 166,000