1

Detection Response Analyst Jobs (NOW HIRING)

RiVidium Inc. is seeking an Incident Response Analyst to support the MODES III team for Military ... detection, response coordination, and post-incident reporting. • Experience operating in a ...

New

This is a unique opportunity to directly influence how AI handles threat detection, incident triage ... SOC analysis, incident response, or security operations Proficient with SIEM platforms, alert ...

You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...

We are seeking a skilled and proactive Detection & Response Engineer to join our security team. In ... Monitor and analyze security alerts and logs to identify potential threats and anomalies * Develop ...

Responsibilities : • Monitor and analyze security alerts and logs to identify potential threats ... detection and response capabilities • Collaborate with other security teams to improve overall ...

The State of Iowa is seeking an experienced Security Operations Center (SOC) Analyst with strong expertise in Endpoint Detection and Response (EDR) tools and cyber security incident handling. The ...

... of the incident response process - detection, validation, containment, remediation, and ... Analyze, track and triage anomalies that have been escalated to ensure appropriate identification ...

We are seeking a skilled and proactive Detection & Response Engineer to join our security team. In ... Monitor and analyze security alerts and logs to identify potential threats and anomalies * Develop ...

next page

Showing results 1-20

Detection Response Analyst information

What are the key skills and qualifications needed to thrive as a Detection Response Analyst, and why are they important?

To thrive as a Detection Response Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often supported by a degree in computer science or cybersecurity and relevant certifications like CompTIA Security+ or GIAC. Familiarity with Security Information and Event Management (SIEM) tools, intrusion detection systems (IDS), and scripting languages such as Python or PowerShell is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts effectively investigate threats and coordinate with teams. These skills are essential for timely threat detection, minimizing risks, and safeguarding organizational assets.

How does a Detection Response Analyst typically collaborate with other teams within an organization?

Detection Response Analysts work closely with various departments, including IT, network operations, and incident response teams, to ensure timely identification and mitigation of security threats. Collaboration often involves sharing threat intelligence, participating in incident response drills, and coordinating on investigations to minimize the impact of security incidents. Regular communication with other security professionals helps analysts stay updated on emerging threats and implement best practices across the organization. This teamwork is essential for maintaining a robust and proactive cybersecurity posture.

What is a Detection Response Analyst?

A Detection Response Analyst is a cybersecurity professional responsible for monitoring, detecting, and responding to security threats within an organization’s IT environment. They analyze security alerts, investigate potential incidents, and coordinate responses to mitigate risks. Their work helps protect sensitive data and maintain the overall security posture of a company. Detection Response Analysts often use various security tools, such as Security Information and Event Management (SIEM) systems, to identify suspicious activities and ensure timely incident resolution.

What is the difference between Detection Response Analyst vs Security Analyst?

AspectDetection Response AnalystSecurity Analyst
CertificationsCompTIA Security+, GIAC certificationsCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, incident response teamsIT departments, security teams, consulting firms
Employer & Industry UsageCybersecurity firms, large enterprises, government agenciesOrganizations across various industries, including finance, healthcare, and tech
Primary FocusDetecting and responding to security incidents in real-timeMonitoring, analyzing, and improving security posture

The Detection Response Analyst primarily focuses on identifying and responding to security threats as they occur, often working within security operations centers. Security Analysts have a broader role in monitoring, analyzing, and enhancing overall security measures across an organization. While both roles require similar certifications and work in cybersecurity environments, Detection Response Analysts are more incident-response oriented, whereas Security Analysts focus on ongoing security management.

More about Detection Response Analyst jobs
What cities are hiring for Detection Response Analyst jobs? Cities with the most Detection Response Analyst job openings:
What states have the most Detection Response Analyst jobs? States with the most job openings for Detection Response Analyst jobs include:
Infographic showing various Detection Response Analyst job openings in the United States as of May 2026, with employment types broken down into 4% As Needed, 75% Full Time, 15% Part Time, and 6% Contract. Highlights an 79% Physical, 1% Hybrid, and 20% Remote job distribution.
Threat Detection & Response Analyst

Threat Detection & Response Analyst

Protingent

San Jose, CA • On-site

$80 - $85/hr

Contractor

Medical, Retirement, PTO

Posted 20 days ago


Job description

Job Description
Job Title: Threat Detection & Response Analyst
Position Description: Protingent Staffing has an exciting contract Threat Detection & Response Analyst with our client located in San Jose, CA.
Job Responsibilities:
  • Monitor, triage, and investigate security alerts and events across enterprise environments using Splunk SIEM, EDR, network, cloud, and endpoint telemetry.
  • Analyze security event logs from diverse sources including firewalls, IDS/IPS, endpoint protection platforms, operating systems, and cloud services to identify malicious activity.
  • Perform initial and advanced analysis of security incidents, determine scope and impact, identify root cause, and recommend containment and remediation actions.
  • Escalate confirmed incidents appropriately and support end-to-end incident response activities, including coordination with IT, cloud, and infrastructure teams.
  • Design, validate, tune, and optimize detection logic, correlation rules, dashboards, and alerting use cases to improve signal-to-noise ratio and operational efficiency.
  • Ensure log ingestion health, completeness, and fidelity across critical infrastructure and enterprise systems.
  • Support onboarding and integration of new log sources into the Splunk environment, including validation of parsing, normalization, and field extraction.
  • Conduct proactive threat hunting using SIEM, EDR, CASB, and cloud telemetry to identify advanced or evasive threats that bypass automated detections.
  • Monitor network traffic and behavioral indicators to detect anomalies, lateral movement, privilege abuse, and data exfiltration attempts.
  • Prioritize vulnerabilities and remediation efforts based on threat context, asset criticality, and business impact.
  • Partner with IT and infrastructure teams to track remediation, validate fixes, and reduce recurring risk.
  • Continuously improve detection coverage, response playbooks, and SOC workflows based on incident learnings and emerging threats.
  • Maintain accurate documentation for detection use cases, log flows, triage procedures, threat models, and operational standards.
  • Collaborate closely with cross-functional security and IT teams to ensure rapid, effective response to security incidents.

Job Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or a related field; Master's degree preferred.
  • 5+ years of experience in a SOC, threat detection, or incident response role with hands-on experience
  • Strong expertise in threat analysis, incident investigation, and response workflows.
  • Solid understanding of enterprise log sources including Windows/Linux servers, network devices, endpoints, and cloud platforms.
  • Experience triaging and investigating alerts in complex, multi-platform environments.
  • Familiarity with cloud environments such as AWS, Azure, or similar, including cloud-native logging and security services.
  • Knowledge of detection engineering, correlation logic, MITRE ATT&CK techniques, and SOC operational best practices.
  • Ability to communicate findings clearly and collaborate effectively across technical and non-technical teams.
  • Comfortable operating in diverse, global environments with strong adaptability and professionalism.
  • Curious, resilient, and data-driven mindset with a passion for continuous learning and threat research.
  • Relevant certifications such as CompTIA Security+, CISSP, Pentest+, or similar are a plus.

Job Details:
  • Job Type: Contract:
  • Pay Range: $80-$85/hr.
  • Location: San Jose, CA (Onsite).

Benefits Package: Protingent offers competitive salaries, insurance plan options (HDHP plan or POS plan), education/certification reimbursement, pre-tax commuter benefits, Paid Time Off (PTO), and an administered 401k plan.
About Protingent: Protingent is an Award-Winning provider of top-tier Engineering and IT talent, trusted by companies at the forefront of innovation - from Software and Aerospace to AI, Clean Tech, Medical Devices, and Connected Technologies. We're passionate about making a positive impact by connecting exceptional talent with meaningful opportunities and helping our clients build the future.
Meet Your Recruiter
Jassi Kaur Maan