Incident Response Analyst - Americas
The Carlyle Group - Washington, DC
Hiring: Incident Response Analyst - Americas Company: The Carlyle Group Location: Washington, DC Job Posted Time: 2026-09-12 14:17:13 Target Skills & Keywords : AWS, Azure, Bash, CloudFormation, Encryption, IAM, IaC, Infrastructure as Code, Linux, PowerShell, Python, SIEM, SOC, SaaS, Terraform, macOS About the job Experience: •5+ years of overall relevant technical experience, required. •3+ years of IT security operations and incident response experience, required. •Knowledge of financial services industry and alternative asset management, strongly preferred. •In-depth knowledge of incident response methodologies (identify, contain, eradicate, recover, learn). •Proven ability to conduct investigations, analyze evidence, and identify root causes of security incidents. Required Skills: •This role will be an advocate for an automation-first SOC. •SOC Escalation and Advanced Investigation •Develop, test, tune, and continuously improve detection logic, correlation rules, analytics, queries, and behavioral detections designed to identify advanced and emerging threats. Translate lessons learned from incidents and threat hunting activities into improved detection and prevention capabilities. •Security Automation and AI-Assisted Operations •Develop, maintain, test, and continuously improve incident response playbooks and operational procedures for common and high-impact security scenarios, including compromised accounts, phishing, malware, ransomware, data exfiltration, insider threats, cloud compromise, and other emerging attack techniques. Qualifications: •Bachelors degree, required. •Certifications in incident response (GCIH, SANS) or security (CISSP, CCSP) preferred. •Proficiency with security orchestration, automation and response (SOAR) platforms (Palo Alto XSIAM). •Proficiency with security information and event management (SIEM) tools •Proficiency with at least one major cloud platform (AWS, Azure) •Operational familiarity with Infrastructure as Code (IaC) tools (Terraform, CloudFormation). •In-depth knowledge of network security concepts (firewalls, intrusion detection/prevention systems). •Proficiency with endpoint security tools (antivirus, endpoint detection and response (EDR), Application Control. •Solid functional working knowledge of various operating systems (Windows, Linux, macOS). •The compensation range for this role is specific to Washington, DC and takes into account a wide range of factors including but not limited to the skill sets required/preferred; prior experience and training; licenses and/or certifications. Compensation: •$140,000 - $160,000 / year •Competitive benefits and rewards package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!