Incident Response Analyst
Thrive - United States
Hiring: Incident Response Analyst Company: Thrive Location: United States Job Posted Time: 2026-09-16 17:22:18 Target Skills & Keywords : DNS, Digital Transformation, Linux, SIEM, SOC, TCP/IP About the job Required Skills: •Technical proficiency in networking, operating systems, and security technologies •Operational familiarity with security tools like SIEM, IDS/IPS, EDR, and forensic analysis tools •Understanding of incident response procedures and methodologies •Understanding of frameworks such as MITRE ATT&CK and the Cyber Kill chain, Familiarity with TCP/IP network protocols, application layer protocols (e.g., HTTP, SMTP, DNS, etc.) •Excellent Written and Verbal Communication Skills •Expertise in forensics, malware analysis, and network intrusion response •Knowledge of common Windows and Linux/Unix system calls and APIs •Knowledge of internal file structures for file formats commonly associated with malware (e.g. OLE, RTF, PDF, EXE, etc.) Qualifications: •Process investigation requests from SOC Analysts who perform security event monitoring using Security Information and Event Management (SIEM) from multiple sources, including but not limited to, events from network and host-based intrusion detection/prevention systems, network infrastructure logs, systems logs, applications, and databases •Investigate intrusion attempts, differentiate false positives from true intrusion attempts, and perform in-depth analysis of exploits •Lead incident response and threat hunting efforts for confirmed High Priority security incidents and follow through until resolution •Utilize threat intelligence to identify and investigate potential security threats •Develop playbooks for incident response and incident management processes, including threat triage, incident investigation, and incident resolution •Conduct regular reviews of playbooks to ensure they are current and effective •Interface directly with cross-functional teams to ensure that playbooks are aligned with the overall security strategy and goals •Participate in tabletop exercises and drills to test and validate playbooks •Monitor and evaluate security incidents to identify opportunities for improving playbooks •Keep up-to-date with current security threats and trends to ensure that playbooks are relevant and effective Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!