You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
Senior Incident Response Analyst
New York, NY · Remote
$85K - $158K/yr
Perform threat detection, containment, eradication, and post-incident analysis . * Collaborate with security, engineering, and operations teams to ensure rapid response to threats. * Develop and ...
Quick apply
Senior Incident Response Analyst
New York, NY · Remote
$85K - $158K/yr
Perform threat detection, containment, eradication, and post-incident analysis . * Collaborate with security, engineering, and operations teams to ensure rapid response to threats. * Develop and ...
Incident Response Analyst - MDR
Irving, TX · On-site
You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
Incident Response Analyst - MDR
Irving, TX · On-site
You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
... of the incident response process - detection, validation, containment, remediation, and ... Analyze, track and triage anomalies that have been escalated to ensure appropriate identification ...
... of the incident response process - detection, validation, containment, remediation, and ... Analyze, track and triage anomalies that have been escalated to ensure appropriate identification ...
Incident Response Analyst
Washington, DC · Remote
$110K - $130K/yr
Develop and maintain indicators of compromise (IOCs), detection logic, and response procedures. * Conduct forensic analysis of systems, logs, and digital evidence when required. * Support ...
Quick apply
Incident Response Analyst
Washington, DC · Remote
$110K - $130K/yr
Develop and maintain indicators of compromise (IOCs), detection logic, and response procedures. * Conduct forensic analysis of systems, logs, and digital evidence when required. * Support ...
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA · On-site
$85/hr
TITLE - Threat Detection & Response Analyst LOCATION San Jose, CA DURATION 12+ Months (May get extend) MODE OF INTERVIEW Zoom/Webex/onsite RATE $85 per hour onW2 (Without benefits) The Security tools ...
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA · On-site
$85/hr
TITLE - Threat Detection & Response Analyst LOCATION San Jose, CA DURATION 12+ Months (May get extend) MODE OF INTERVIEW Zoom/Webex/onsite RATE $85 per hour onW2 (Without benefits) The Security tools ...
Incident Response Analyst
Austin, TX · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Incident Response Analyst
Austin, TX · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Incident Response Analyst
Phoenix, AZ · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Incident Response Analyst
Phoenix, AZ · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Senior Incident Response Analyst
Arlington, VA · On-site
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Senior Incident Response Analyst
Arlington, VA · On-site
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Incident Response Analyst
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Incident Response Analyst
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Incident Response Analyst
Atlanta, GA · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Incident Response Analyst
Atlanta, GA · On-site
$104K - $138K/yr
... analyst toil. Success looks like faster incident response, less noise, and a SOC that gets sharper ... Partner with Detection Engineering to tune detections, cut false positives, and close coverage gaps.
Incident Response Analyst
Alexandria, VA · On-site
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Incident Response Analyst
Alexandria, VA · On-site
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Incident Response Analyst
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Incident Response Analyst
$94K - $127K/yr
Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Support after-hours response with the PWS-required one-hour recall when assigned. * Perform ...
Cybersecurity Incident Response Analyst
Mclean, VA · On-site
$114K - $190K/yr
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Cybersecurity Incident Response Analyst
Mclean, VA · On-site
$114K - $190K/yr
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Cybersecurity Incident Response Analyst
Mclean, VA · On-site
$91K - $153K/yr
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Cybersecurity Incident Response Analyst
Mclean, VA · On-site
$91K - $153K/yr
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Incident Response Analyst
Bethesda, MD · On-site +1
$60K - $85K/yr
Knowledge of digital investigations and incident response processes, including detection, triage, incident analysis, remediation, and reporting * Experience creating and tracking investigations to ...
Incident Response Analyst
Bethesda, MD · On-site +1
$60K - $85K/yr
Knowledge of digital investigations and incident response processes, including detection, triage, incident analysis, remediation, and reporting * Experience creating and tracking investigations to ...
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Senior Incident Response Analyst
Arlington, VA · On-site
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Senior Incident Response Analyst
Arlington, VA · On-site
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Detection Response Analyst information
What is a detection response analyst?
What are the key skills and qualifications needed to thrive as a detection response analyst?
How does a detection response analyst typically collaborate with other teams within an organization?
What is the difference between Detection Response Analyst vs Security Analyst?
| Aspect | Detection Response Analyst | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, GIAC certifications | CompTIA Security+, CISSP, CEH |
| Work Environment | Security operations centers, incident response teams | IT departments, security teams, consulting firms |
| Employer & Industry Usage | Cybersecurity firms, large enterprises, government agencies | Organizations across various industries, including finance, healthcare, and tech |
| Primary Focus | Detecting and responding to security incidents in real-time | Monitoring, analyzing, and improving security posture |
The Detection Response Analyst primarily focuses on identifying and responding to security threats as they occur, often working within security operations centers. Security Analysts have a broader role in monitoring, analyzing, and enhancing overall security measures across an organization. While both roles require similar certifications and work in cybersecurity environments, Detection Response Analysts are more incident-response oriented, whereas Security Analysts focus on ongoing security management.
What cities are hiring for Detection Response Analyst jobs?
Cities with the most Detection Response Analyst job openings:
What states have the most Detection Response Analyst jobs?
States with the most job openings for Detection Response Analyst jobs include:
What job categories do people searching Detection Response Analyst jobs look for?
The top searched job categories for Detection Response Analyst jobs are:

Full-time
Medical, Retirement, PTO
Posted 28 days ago
Job description
TrendAI, the global AI security leader and enterprise business unit of Trend Micro, empowers organizations with full AI visibility and consolidated security that inspires confidence, drives innovation, and eliminates risk.
At TrendAI, we're always seeking exceptional talent; people who want to collaborate with the best and push boundaries together. Here, your work goes beyond building a career. You will help protect what matters and play a vital role in shaping a safer, more trustworthy AI-powered future.
AI Fearlessly.
Location: This is a hybrid role with a minimum in-office requirement of 3 days per week in the Las Colinas, Texas office located at 225 E John W Carpenter Fwy #1500, Irving, TX 75062.
The cybersecurity industry is at an inflection point. As adversaries evolve and detection demands accelerate, 24/7 security monitoring is transforming from reactive alert processing into intelligent, customer-centric threat defense. You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster, reduce false positives and focus on what matters most: knowing our customers deeply, protecting them completely and being the team they trust without question.
About the Role
In this role, you're not just responding to breaches. You're the person customers rely on when it matters most. You'll build trusted relationships with enterprise customers, translate complex threat data into intelligence that drives decisions, and lead organisations through their most critical security moments with clarity and control. Working alongside AI systems that accelerate your investigative capabilities, you'll compress detection times from hours to minutes and deliver insights that turn incidents into lasting security improvements. Every forensic analysis you conduct, every malware sample you dissect, and every recommendation you make leaves customers measurably harder to compromise than before you arrived.
As an Incident Response Analyst, you'll investigate sophisticated security breaches, lead containment under pressure and become the person enterprise customers trust when everything is on the line. You'll be the critical link between TrendAI Vision One and customer recovery, operating across global threat operations where seconds matter, relationships are everything and AI amplifies what you're already capable of.
You will also play an active role in shaping how AI transforms incident response. That means contributing to automation initiatives, stress-testing AI-driven workflows and helping define how our analysts and AI systems work together to respond faster, investigate deeper and protect more effectively at scale. The analysts who join us now are not just using the tools. They are helping build them.
Core Responsibilities
Forensic Investigation: Conduct root cause analysis of security breaches; determine attack vectors, scope and business impact with precision and accountability.
Incident Response: Lead containment and threat eradication using TrendAI Vision One, coordinating across internal teams and customer stakeholders from first alert to resolution.
Threat Analysis & Detection: Analyze malware and threat components; develop and refine detection rules; generate threat intelligence and IoCs.
Customer Reporting: Create executive-ready incident reports; deliver briefings to stakeholders; recommend security improvements.
Proactive Threat Operations: Hunt for advanced threat indicators across customer networks; improve detection logic and fidelity.
AI Orchestration: Contribute to automation and AI initiatives that compress response times, reduce analyst burden, and sharpen the overall quality of MDR delivery.
Required Qualifications
Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related field
3+ years in security operations with demonstrated expertise in:
Incident response and forensics;
Malware analysis and threat investigation;
SOC operations or security monitoring.
Technical Competencies
AI in Practice: Familiarity with how AI and automation are reshaping incident response workflows, from alert triage to forensic analysis. Curiosity about where it's going matters as much as where you are today.
OS & Network Forensics: Advanced Windows and Linux forensics (registry, event logs, artifacts, filesystem analysis).
Forensics Tools: SIFT Workstation, WinPMEM, dd/dclfdd, Autopsy, Volatility Framework, FTK Imagerm Wireshark, Bro/SiLK, Netflow, tcpdump - or similar OS/Network Tools.
Log Analysis & Correlation: SIEM platforms, syslog analysis, event correlation procedures
Malware analysis: Static and dynamic analysis techniques.
Threat Intelligence: Understand threat actor TTPs and MITRE ATT&CK framework alignment; contribute to organizational threat intelligence. Leverage threat intelligence platforms.
TrendAI familiarity: Working knowledge of the Vision One platform or equivalent threat intelligence/XDR platforms.
Professional Certifications Preferred
GCIH (GIAC Certified Incident Handler).
GCFA / GCFE (GIAC Certified Forensic Analyst / Examiner).
CISSP or OSCP.
Professional Attributes:
Strong written and verbal communication, ability to translate complex forensic findings for technical and executive audiences.
Self-directed learner with aptitude for rapidly mastering new tools and threat landscapes.
Comfortable working under pressure; thrives in fast-paced, high-stakes environments.
Ability to work 24/7 rotating shifts, including nights, weekends, and holidays.
Willing to travel when required.
Strong analytical and problem-solving skills with ability to work effectively in a global team environment.
Comfortable speaking to customer via e-mail, chat and phone.
What We Offer You
You're important to us. What matters to you, matters to us too. Trend Micro provides benefit options for you and your family. Here some of the top-rated benefits that employees enjoy today:
Comprehensive health benefits and paid time off package
Pre-partum, maternity, parental, medical leave and adoption assistance
Mental Health Wellness Program & Annual Wellness Incentive
401(k) with company match
Pet Insurance
Collaborative and innovative culture
We are committed to fostering a professional, respectful, and inclusive work environment that promotes collaboration and high performance. We value diverse backgrounds and perspectives and welcome candidates who bring unique strengths and experiences. If you're excited about this role and believe you can contribute and grow with us, we encourage you to apply.
Be Passionate. Be Innovative. Be a Trender.
This position does not offer sponsorship for work permit applications or renewals, either now or in the future. Candidates must be authorized to work in the U.S. without the need for employment-based visa sponsorship, both currently and moving forward. The company will not sponsor applicants for U.S. work visa status for this role (including, but not limited to, H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT, or any other employment-based visa).
#LI-JL
At Trend Micro, we embrace change, empower people, and encourage innovation in a connected world. Our diversity and multicultural workforce are key contributing factors to our success across the globe. Trend Micro provides equal employment opportunity for all applicants and employees. Trend Micro does not unlawfully discriminate on the basis of race, color, religion, sex, pregnancy and childbirth or related medical conditions, national origin, ancestry, age, physical or mental disability, medical condition, family care leave status, veteran status, marital status, sexual orientation, or gender identity.