The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security ...
The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security ...
The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security ...
The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security ...
Incident Response Analyst - MDR
Irving, TX Β· On-site
You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
Incident Response Analyst - MDR
Irving, TX Β· On-site
You'll join our Global Managed Detection & Response (MDR) team at exactly the right moment: when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster ...
Senior Incident Response Analyst
New York, NY Β· Remote
$85K - $158K/yr
Perform threat detection, containment, eradication, and post-incident analysis . * Collaborate with security, engineering, and operations teams to ensure rapid response to threats. * Develop and ...
Quick apply
Senior Incident Response Analyst
New York, NY Β· Remote
$85K - $158K/yr
Perform threat detection, containment, eradication, and post-incident analysis . * Collaborate with security, engineering, and operations teams to ensure rapid response to threats. * Develop and ...
Experience building or shaping a detection and response program in partnership with leadership. * Strong familiarity with attacker TTPs (e.g., MITRE ATT&CK), log analysis, and correlation techniques.
New
Experience building or shaping a detection and response program in partnership with leadership. * Strong familiarity with attacker TTPs (e.g., MITRE ATT&CK), log analysis, and correlation techniques.
New
... detection and incident response capabilities. β’ Prepare and deliver incident reports to clients ... Incident Response Analyst. β’ Proficiency in cybersecurity EDR and SIEM tools, including ...
... detection and incident response capabilities. β’ Prepare and deliver incident reports to clients ... Incident Response Analyst. β’ Proficiency in cybersecurity EDR and SIEM tools, including ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Cyber Threat Detection and Response Analyst
Jacksonville, FL Β· On-site
$60/hr
Cyber Threat Detection and Response Analyst As a Cyber Threat Detection and Response Analyst within the Chief Security Office, you will play a key role in protecting the bank's global technology ...
Quick apply
Cyber Threat Detection and Response Analyst
Jacksonville, FL Β· On-site
$60/hr
Cyber Threat Detection and Response Analyst As a Cyber Threat Detection and Response Analyst within the Chief Security Office, you will play a key role in protecting the bank's global technology ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Incident Detection and Monitoring * Incident Analysis and Investigation * Incident Response and Mitigation * Threat Intelligence and Vulnerability Management * Reporting and Documentation Minimum ...
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA Β· On-site
$85/hr
TITLE - Threat Detection & Response Analyst LOCATION San Jose, CA DURATION 12+ Months (May get extend) MODE OF INTERVIEW Zoom/Webex/onsite RATE $85 per hour onW2 (Without benefits) The Security tools ...
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA Β· On-site
$85/hr
TITLE - Threat Detection & Response Analyst LOCATION San Jose, CA DURATION 12+ Months (May get extend) MODE OF INTERVIEW Zoom/Webex/onsite RATE $85 per hour onW2 (Without benefits) The Security tools ...
Cyber Incident Response Analyst
Cleveland, OH Β· On-site
... of the incident response process - detection, validation, containment, remediation, and ... Analyze, track and triage anomalies that have been escalated to ensure appropriate identification ...
Cyber Incident Response Analyst
Cleveland, OH Β· On-site
... of the incident response process - detection, validation, containment, remediation, and ... Analyze, track and triage anomalies that have been escalated to ensure appropriate identification ...
Incident Response Analyst
California, MO Β· On-site
* Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Coordinate incident-response activities with SOC analysts, CSSPs, system owners, technical teams ...
Incident Response Analyst
California, MO Β· On-site
* Support preparation, detection, analysis, containment, eradication, recovery, and post-incident ... Coordinate incident-response activities with SOC analysts, CSSPs, system owners, technical teams ...
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications * 1-2+ years of experience in incident response, forensic analysis, and security ...
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications * 1-2+ years of experience in incident response, forensic analysis, and security ...
Incident Response Analyst
Irving, TX Β· On-site
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications: * 1-2+ years of experience in incident response, forensic analysis, and security ...
Incident Response Analyst
Irving, TX Β· On-site
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications: * 1-2+ years of experience in incident response, forensic analysis, and security ...
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications * 1-2+ years of experience in incident response, forensic analysis, and security ...
Partner with detection engineering and security operations teams to improve visibility. Required Qualifications * 1-2+ years of experience in incident response, forensic analysis, and security ...
Utilize state-of-the-art technologies such as Endpoint Detection & Response tools, log analysis (firewall, proxy, IDS, Windows & Linux) and network forensics (full packet capture solution) to ...
Utilize state-of-the-art technologies such as Endpoint Detection & Response tools, log analysis (firewall, proxy, IDS, Windows & Linux) and network forensics (full packet capture solution) to ...
Utilize state-of-the-art technologies such as Endpoint Detection & Response tools, log analysis (firewall, proxy, IDS, Windows & Linux) and network forensics (full packet capture solution) to ...
Utilize state-of-the-art technologies such as Endpoint Detection & Response tools, log analysis (firewall, proxy, IDS, Windows & Linux) and network forensics (full packet capture solution) to ...
As Senior Security Operations Analyst (Detection & Response), you will be the second half of an incident-response rotation, partnering directly with the security lead to detect, investigate, and ...
As Senior Security Operations Analyst (Detection & Response), you will be the second half of an incident-response rotation, partnering directly with the security lead to detect, investigate, and ...
Senior Incident Response Analyst
Piscataway, NJ Β· On-site
$108K/yr
Performs daily operations of the incident detection and response program, which includes finding ... Provides expert-level analytic, investigative and forensic support of complex security incidents to ...
Senior Incident Response Analyst
Piscataway, NJ Β· On-site
$108K/yr
Performs daily operations of the incident detection and response program, which includes finding ... Provides expert-level analytic, investigative and forensic support of complex security incidents to ...
Senior Incident Response Analyst
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Senior Incident Response Analyst
$131K - $237K/yr
... detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS ... Leidos is seeking a Senior Incident Response Analyst to join our team on this highly visible DHS ...
Detection Response Analyst information
What is a detection response analyst?
What are the key skills and qualifications needed to thrive as a detection response analyst?
How does a detection response analyst typically collaborate with other teams within an organization?
What is the difference between Detection Response Analyst vs Security Analyst?
| Aspect | Detection Response Analyst | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, GIAC certifications | CompTIA Security+, CISSP, CEH |
| Work Environment | Security operations centers, incident response teams | IT departments, security teams, consulting firms |
| Employer & Industry Usage | Cybersecurity firms, large enterprises, government agencies | Organizations across various industries, including finance, healthcare, and tech |
| Primary Focus | Detecting and responding to security incidents in real-time | Monitoring, analyzing, and improving security posture |
The Detection Response Analyst primarily focuses on identifying and responding to security threats as they occur, often working within security operations centers. Security Analysts have a broader role in monitoring, analyzing, and enhancing overall security measures across an organization. While both roles require similar certifications and work in cybersecurity environments, Detection Response Analysts are more incident-response oriented, whereas Security Analysts focus on ongoing security management.
What cities are hiring for Detection Response Analyst jobs?
Cities with the most Detection Response Analyst job openings:
What states have the most Detection Response Analyst jobs?
States with the most job openings for Detection Response Analyst jobs include:
What are popular job titles related to Detection Response Analyst jobs?
For Detection Response Analyst jobs, the most frequently searched job titles are:

Cyber Detection and Response Analyst
Chelsea, MA β’ On-site
Full-time
Posted 23 days ago
Job description
Our Mission: We provide technology leadership across the Commonwealth to enhance the quality of public service and foster positive community outcomes.
This position will be a member of a Security Operations Center's Cyber Detection and Response Team. The EOTSS SOC Cyber Detection and Response Analyst I is primarily responsible for incident triage, detection, response, and remediation activities that occur within the TSS SOC. Analysts in Security Operations work with Security Engineers, Managed Security Service Providers (NuHarbor) and SOC Managers to give situational awareness via detection, containment, and remediation of IT threats. SOC Analysts cooperate with other team members to detect and respond to information security incidents, develop, and follow security events such as alerts, and engage in security investigations.
The primary work location for this role will be at 200 Arlington Street Chelsea, Massachusetts 02150. The work schedule for this position is Monday through Friday, 9AM to 5PM EST. This position would be expected to follow a hybrid model of reporting to work that combines in-office workdays and work from home days as needed.
Duties and Responsibilities:
- Managing day-to-day security monitoring, and IR activities, including but not limited to SIEM monitoring, Endpoint Detection and Response using Palo Alto's Cortex XDR, notifying agencies of potential malicious activities, managing, and/or maintaining security incident response practices
- Assist in detection and incident response functions including, but not limited to, Security Incident Reporting tickets, customer and constituent notification, tracking, and reporting. Conduct and/or participate in agency, state, regional, and/or national cyber security incident simulation exercises
- Monitor, report, and respond to anomalous Internet, Extranet, and/or Intranet activity related information provided through internal operations and/or credible external third-party threat intelligence organizations. Work with EOTSS customer organizations and EDR vendor to test software revision, EDR client file updating, and/or EDR related status reporting
- Assist in the development and delivery of cybersecurity education and awareness initiatives on behalf of state government.
- Review third party alerts to maintain overall situational awareness of security issues affecting Commonwealth agencies, EOTSS customer organizations, and/or MS-ISAC members.
- Conduct research into new threats that may affect Commonwealth agencies, EOTSS customer organizations, and/or local entities.
- Provide and promote security awareness. Assist in phishing campaigns for all users across the Commonwealth while furthering overall security awareness programs.
- Support the preparations of security reports to management on security system activities and performance utilizing enterprise security tools (Tenable, DHS, Expanse, etc.)
- Support troubleshooting security related problems.
- Other duties and responsibilities as assigned.
Preferred Knowledge, Skills, and Abilities:
Technical Skills:
- Knowledge of SIEM (Security Information and Event Management) Splunk Preferred
- TCP/IP, VLANs, computer networking, routing, and switching
- IDS/IPS, penetration and vulnerability testing
- Windows and Linux operating systems
- Network protocols and packet analysis tools
- EDR Tools Palo Alto Cortex preferred
- Cloud computing (AWS/AZURE/GCP)
- Understanding of Proofpoint and other email security tools.
Non-technical Skills:
- Critical thinking and problem-solving abilities.
- Capability to communicate and listen to needs from organizational stakeholders.
Education and Certifications:
β’ Bachelor's Degree in computer science, Information Systems, Business Administration or other related field, or equivalent work experience.
β’ Security certifications desired but not required.
Qualifications:
First consideration will be given to those applicants that apply within the first 14 days.
Minimum Entrance Requirements:
Applicants must have (A) at least one (1) year of full-time or equivalent part-time experience in the field of information technology security, or (B) any equivalent combination of the required experience and the substitutions below.
Substitutions:
I. An Associate's degree in a related field may substitute for the required experience .
Comprehensive Benefits
When you embark on a career with the Commonwealth, you are offered an outstanding suite of employee benefits that add to the overall value of your compensation package. We take pride in providing a work experience that supports you, your loved ones, and your future.
Want the specifics? Explore our Employee Benefits and Rewards!
An Equal Opportunity / Affirmative Action Employer. Females, minorities, veterans, and persons with disabilities are strongly encouraged to apply.
The Commonwealth is an Equal Opportunity Employer and does not discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, disability, national origin, veteran status, or any other basis covered by appropriate law. Research suggests that qualified women, Black, Indigenous, and Persons of Color (BIPOC) may self-select out of opportunities if they don't meet 100% of the job requirements. We encourage individuals who believe they have the skills necessary to thrive to apply for this role.