Tier 2 Incident Response Analyst

Tyto Athene

• $110K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years in cybersecurity, 4+ years in SOC analyst or incident response roles
  • Bachelor’s Degree in Cybersecurity or related field required
  • CISSP or CEH certification preferred; other qualifications may substitute
  • Experience with SIEM, particularly Sumo Logic/Splunk
  • Familiar with attacker tools, techniques, and procedures (TTPs)
  • Experience with major cloud providers and knowledge of malware
  • Strong technical writing and communication skills

Responsibilities

  • Analyze and triage security alerts using various tools
  • Monitor customer environments for signs of cyber threats
  • Investigate and analyze high-priority cybersecurity incidents
  • Employ advanced forensic and malware analysis tools for incident resolution
  • Collaborate with threat hunting and intelligence teams
  • Contribute to SOC tool detection content and alerting enhancements
  • Document findings and manage incident reports effectively

Benefits

  • Health, Dental, and Vision insurance
  • 401(k) matching
  • Paid Time Off
  • Short-Term and Long-Term Disability and Life Insurance
  • Referral bonuses
  • Professional development reimbursement
  • Parental leave
Full Job Description
Description

Quantum Sky is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form the backbone of our cybersecurity services. You will play a critical role in securing our customers by monitoring our tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the initial point of contact for cybersecurity incidents, ensuring prompt and effective responses.We provide a supportive environment for you to learn from senior SOC team members, cross-train for other positions, and attend external training. We want to see you grow and improve your cybersecurity skills. Join us and delve into the complexities of monitoring enterprise networks, learn basic incident response techniques, and how to effectively investigate phishing threats against our clients.

 

Responsibilities:

  • Utilize security tools to analyze, investigate, and triage security alerts
  • Monitor our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
  • Perform in-depth analysis and investigation of high-priority cybersecurity incidents
  • Utilize advanced tools, such as host based digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
  • Collaborate with cyber threat hunting and cyber threat intelligence teams
  • Participate in the development, implementation, and tuning of the SOC tools detection content and alerting signatures.
  • Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
  • Learn new open and closed-source investigative techniques
  • Perform research into emerging threats and vulnerabilities to aid their prevention and mitigation
  • Help shape the evolution of processes and procedures of the SOC
  • Provide guidance and mentorship to Tier 1 SOC Analysts to enhance their skills and capabilities
Qualifications

Required:

  • Minimum of six (6) years of cybersecurity experience with at least three (4) years in a SOC watch floor analyst or IR role
  • Bachelor’s Degree or higher in Cybersecurity or related is required
  • CISSP or CEH certification; additional experience, formal training, certifications, and/or education may be substitutable at the client's discretion
  • Experience in some of the following tools and technologies :i.e. SIEM experience required with Sumo Logic/Splunk preferred.
  • Knowledge of common attacker tools, techniques and procedures (TTP)
  • Experience with major cloud service provider offerings
  • Knowledge of malware
  • Knowledge of enterprise architecture including zero trust principles
  • Knowledge of Windows and Unix operating systems
  • Knowledge of common phishing techniques and how to investigate them
  • Proficiency in technical writing
  • Able to accurately and succinctly convey information through speaking, email, and presentations
  • Comfortable in customer facing environments
  • Ability to maintain a positive customer service mentality

Desired:

  • Previous SOC or incident response experience
  • Working knowledge of regex and scripting languages
  • Any SOC analyst relevant certifications such as those from GIAC or CompTIA
  • The initiative to ask for assistance and offer fresh ideas to improve the SOC’s performance

Clearance: 

  • TS/SCI Clearance required

Location: 

  • This hybrid role is expected to be on the client site at least 2 days per week.
About Quantum Sky

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $110,000-$120,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

 

The world the mission operates in is going post-quantum, contested, and machine-speed. Quantum Sky engineers the advantage across cyber, networks, software, and quantum because the mission demands dominance, not parity. We don't follow the map. We draw it. 

 

At Quantum Sky, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamQuantumSky? 

 

Similar Jobs

More Jobs at Tyto Athene

More Information Technology Jobs

Find similar Tier 2 Incident Response Analyst jobs: