Security Analyst Incident Response (all genders)
Job Summary
- Deployed configured and maintained DFIR tools and infrastructure to preserve incident readiness
- Served as the first responder for security incidents driving digital forensics investigations and post-incident risk mitigation
- Maintained optimized and fine-tuned SIEM platforms to maintain reliable high-fidelity detection capabilities
- Enhanced monitoring and scanning systems using Python to automate routine security workflows and identify vulnerabilities
- Integrated AI technologies into security operations to optimize detection triage and threat hunting.
- Investigated analyzed and remediated security alerts across internal systems and cloud environments
- Created and updated incident response playbooks to standardize workflows and shorten response times
- Tracked emerging cyber threats and zero-day vulnerabilities to implement proactive security controls
Qualifications :
- Proven background in IT security (24 years of hands-on experience in incident response security operations (SOC) or digital forensics)
- Hands-on experience with incident response blue teaming or digital forensics with exposure to cloud environments (AWS/Azure/GCP)
- Practical experience using and configuring SIEM tools (e.g. investigating alerts querying logs)
- Strong team player with comfortable cross-functional technical communication skills
- Ability to write scripts to automate daily tasks in Python (or a similar scripting language)
- Familiarity with using modern AI-assisted tools to streamline analysis or automation tasks (not using AI as a chatbot but doing agentic work)
- Solid command of Linux operating system fundamentals and command-line usage
- Basic experience managing or configuring web application firewalls (WAF) preferably Cloudflare
- Good communication skills with the ability to convey technical findings clearly to both technical peers and non-technical stakeholders
- Fluent English skills (spoken and written)
Nice to Have:
- Certificates:
- Trainings from SANS / GIAC
- OffSec OSIR
- HackTheBox / TryHackMe incident response challenges
- Knowledge of Laravel / PHP.
- Experience with AWS / GCP.
- Experience with Gitlab CI/CD Pipelines.
- Experience with Terraform / Terragrunt.
- Experience with digital forensics.
Additional Information :
Remote Work :
No
Employment Type :
Full-time
About Company
SCAYLE is one of the fastest-growing enterprise commerce platforms in the world and empowers B2C brands and retailers to create outstanding customer experiences with one unified backend. SCAYLE’s headless and composable architecture is based on an API-first approach and is continuousl ... View more