Perform alert triage, in-depth investigation, and forensic analysis across the full incident ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Perform alert triage, in-depth investigation, and forensic analysis across the full incident ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Perform alert triage, indepth investigation, and forensic analysis across the full incident ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Perform alert triage, indepth investigation, and forensic analysis across the full incident ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
... remote workforce operating in the United States, Canada, Mexico and the United Kingdom. As the ... Security Operations & Incident Response: * Own the organization\'s incident response program ...
... remote workforce operating in the United States, Canada, Mexico and the United Kingdom. As the ... Security Operations & Incident Response: * Own the organization\'s incident response program ...
... remote workforce operating in the United States, Canada, Mexico and the United Kingdom. As the ... Security Operations & Incident Response: * Own the organization's incident response program ...
Quick apply
... remote workforce operating in the United States, Canada, Mexico and the United Kingdom. As the ... Security Operations & Incident Response: * Own the organization's incident response program ...
Cybersecurity Architect (Palo Alto / Network Security)
Orange, CA · Remote
$170K - $180K/yr
Architect and secure remote access (VPN), wireless, and DNS infrastructures, enforcing MFA, least ... Serve as technical lead for incident response, developing playbooks and guiding all phases from ...
Quick apply
Cybersecurity Architect (Palo Alto / Network Security)
Orange, CA · Remote
$170K - $180K/yr
Architect and secure remote access (VPN), wireless, and DNS infrastructures, enforcing MFA, least ... Serve as technical lead for incident response, developing playbooks and guiding all phases from ...
Cybersecurity Architect
Orange, CA · Remote
$85 - $90/hr
Architect and optimize secure remote access using solutions such as Palo Alto GlobalProtect with ... Lead response lifecycle and conduct post-incident reviews. * Ensure adherence to CJIS and other ...
Quick apply
Cybersecurity Architect
Orange, CA · Remote
$85 - $90/hr
Architect and optimize secure remote access using solutions such as Palo Alto GlobalProtect with ... Lead response lifecycle and conduct post-incident reviews. * Ensure adherence to CJIS and other ...
Senior SOC Analyst - 2nd Shift Weekends
Pomona, CA · Remote
$62.50 - $64.90/hr
Hands‑on experience performing responsibilities aligned to incident response, security operations ... LI-MP1LI-REMOTE
Senior SOC Analyst - 2nd Shift Weekends
Pomona, CA · Remote
$62.50 - $64.90/hr
Hands‑on experience performing responsibilities aligned to incident response, security operations ... LI-MP1LI-REMOTE
Senior Site Reliability Engineer, Data & Analytics
Irvine, CA · On-site +1
$61.25 - $81.25/hr
Familiarity with observability (metrics, logs, traces, alerting, incident response) * Solid ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Senior Site Reliability Engineer, Data & Analytics
Irvine, CA · On-site +1
$61.25 - $81.25/hr
Familiarity with observability (metrics, logs, traces, alerting, incident response) * Solid ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Senior Site Reliability Engineer, Data & Analytics
Irvine, CA · On-site +1
$61.25 - $81.25/hr
Familiarity with observability (metrics, logs, traces, alerting, incident response) * Solid ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
Senior Site Reliability Engineer, Data & Analytics
Irvine, CA · On-site +1
$61.25 - $81.25/hr
Familiarity with observability (metrics, logs, traces, alerting, incident response) * Solid ... and interns with the Company. You can learn more by visiting In the U.S., the standard base pay ...
County Counsel Senior Paralegal
San Bernardino, CA · On-site +1
$71K - $102K/yr
San Bernardino, CA Job Type: Full-time Remote Employment: Flexible/Hybrid Job Number: 26-03507-01 ... Former PSE, WEX, or interns are eligible to apply up to 6 months from the end of their assignment.
County Counsel Senior Paralegal
San Bernardino, CA · On-site +1
$71K - $102K/yr
San Bernardino, CA Job Type: Full-time Remote Employment: Flexible/Hybrid Job Number: 26-03507-01 ... Former PSE, WEX, or interns are eligible to apply up to 6 months from the end of their assignment.
County Counsel Senior Paralegal
San Bernardino, CA · On-site +1
$71K - $102K/yr
Former PSE, WEX, or interns are eligible to apply up to 6 months from the end of their assignment ... or partial remote work option. The Office of the County Counsel is recruiting for a Senior ...
County Counsel Senior Paralegal
San Bernardino, CA · On-site +1
$71K - $102K/yr
Former PSE, WEX, or interns are eligible to apply up to 6 months from the end of their assignment ... or partial remote work option. The Office of the County Counsel is recruiting for a Senior ...
HR Service Center Advisor (Contract)
Irvine, CA · On-site +1
$50K - $64K/yr
... remote. * Monday-Friday, 40 hours/week * Salary range for this role is $50,000-64,000 ... Preparing templated responses for frequently asked questions * Assisting Managers with workflows ...
HR Service Center Advisor (Contract)
Irvine, CA · On-site +1
$50K - $64K/yr
... remote. * Monday-Friday, 40 hours/week * Salary range for this role is $50,000-64,000 ... Preparing templated responses for frequently asked questions * Assisting Managers with workflows ...
Tax Intern (January 2027)
Irvine, CA · On-site +1
$29 - $33/hr
... interns on a project to showcase acquired knowledge and skills ... Champion sustainable workplace practices by supporting remote-first operations, promoting paperless ...
Tax Intern (January 2027)
Irvine, CA · On-site +1
$29 - $33/hr
... interns on a project to showcase acquired knowledge and skills ... Champion sustainable workplace practices by supporting remote-first operations, promoting paperless ...
Internship Remote Incident Response information
See Riverside, CA salary details
$9.03 - $10.28
2% of jobs
$10.28 - $11.54
4% of jobs
$11.54 - $12.79
14% of jobs
$13.27 is the 25th percentile. Wages below this are outliers.
$12.79 - $14.04
12% of jobs
$14.04 - $15.30
15% of jobs
The median wage is $15.48 / hr.
$15.30 - $16.55
18% of jobs
$17.77 is the 75th percentile. Wages above this are outliers.
$16.55 - $17.81
10% of jobs
$17.81 - $19.06
6% of jobs
$19.06 - $20.31
8% of jobs
$20.31 - $21.57
5% of jobs
$21.57 - $22.82
5% of jobs
$9
$16
$22
How much do internship remote incident response jobs pay per hour?
What is the difference between Internship Remote Incident Response vs Internship Remote Security Analyst?
| Aspect | Internship Remote Incident Response | Internship Remote Security Analyst |
|---|---|---|
| Required Credentials | Basic cybersecurity knowledge, relevant coursework | Similar credentials, often with additional certifications like Security+ |
| Work Environment | Remote, team-based, often fast-paced | Remote, analytical, monitoring-focused |
| Employer & Industry Usage | Tech companies, cybersecurity firms, government agencies | Same as incident response, with broader security focus |
| Search & Comparison Intent | Understanding incident handling roles | Exploring security monitoring roles |
Internship Remote Incident Response focuses on identifying, managing, and mitigating cybersecurity incidents, while Internship Remote Security Analyst involves monitoring security systems and analyzing threats. Both roles require similar foundational knowledge and often overlap in cybersecurity teams, but incident response is more reactive, whereas security analysis emphasizes ongoing monitoring and prevention.
What types of projects and responsibilities can I expect during a remote incident response internship?
What is a remote incident response internship?
What are the key skills and qualifications needed to thrive as a remote incident response intern?
- Cyber Security Internship
- Cyber Security Internship No Experience
- Intern Cyber Security Internships
- Vulnerability Researcher Internship
- Internship Malware Analysis
- No Experience Cybersecurity Bootcamp
- Entry Level Cyber Security Internships
- Internship Cyber Security Social Engineering
- Cybersecurity Internship
- Entry Level Cybersecurity Researcher
Expert Detection and Response Engineer (Remote)
Irvine, CA • On-site, Remote
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 26 days ago
Activision Blizzard rating
8.3
Based on 11 frontline employees who took The Breakroom Quiz
14th of 75 rated media
Job description
Expert Detection and Response Engineer (Remote)
Requisition ID:
R027801
Job Description:
Role Overview
Activision is seeking an Expert Detection and Response Engineer to help protect our players, studios, platforms, and enterprise environments from advanced cyber threats. As part of our Global Security Operations organization, this role is responsible for actively identifying, investigating, and responding to security threats. This role is highly hands-on and focuses on real-world attacker behavior, rapid analysis, and effective containment.
Responsibilities
- Detect, investigate, and respond to security incidents across cloud, corporate, and production environments as a hands-on member of the TDIR team.
- Monitor and analyze security telemetry and audit logs to identify anomalous activity, unauthorized access, and emerging threats, including targeted attacks and advanced adversaries.
- Perform alert triage, in-depth investigation, and forensic analysis across the full incident lifecycle, from identification through containment, remediation, and post-incident review.
- Execute endpoint, identity, cloud, and malware investigations, including timeline reconstruction, indicator extraction, and root cause analysis.
- Develop, refine, and tune threat detections within the SIEM based on real-world attacker behavior and investigation findings.
- Enhance investigation and response efficiency through automation, SOAR workflows, scripting, and advanced analytics.
- Design, build, or operate AI/LLM-assisted triage and enrichment workflows (e.g., agentic pipelines integrated with case management platforms) to accelerate investigation and reduce analyst toil.
- Evaluate and harden AI-assisted security tooling against adversarial input, including prompt injection and verdict-poisoning risks introduced via analyzed artifacts, applying schema-constrained or otherwise bounded output design rather than relying solely on input-side filtering.
- Contribute to TDIR procedures, playbooks, runbooks, documentation, and operational metrics.
- Collaborate closely with engineering teams, business stakeholders, and vendors during active investigations and response efforts.
- Participate in an on-call rotation and provide off-hours support for critical incidents and material security events.
- Communicate investigation findings clearly and effectively to technical teams and leadership.
- Occasional travel (up to approximately 10%) may be required to support studios or on-site incident response.
Required Qualifications
- Bachelor's degree in computer science, Information Security, or equivalent practical experience. 10+ years of progressively accountable security experience, with a demonstrated track record of independent, expert-level judgment in incident response.
- Hands-on experience in threat detection, security operations, and incident response, with active involvement across the full incident lifecycle.
- Strong understanding of the modern threat landscape, attacker tactics, techniques, and procedures.
- Proven ability to detect, triage, investigate, and respond to security incidents in enterprise environments.
- Experience performing detailed log analysis, correlation, and investigative triage.
- Strong written and verbal communication skills, with the ability to clearly articulate incident findings and response actions.
- Ability to work independently and collaboratively within the TDIR team and with technical and business stakeholders.
- Willingness to participate in an on-call rotation and provide off-hours support for critical security incidents.
- Hands-on experience with security monitoring platforms such as SIEM and EDR, including building or significantly extending detection content (not solely tuning existing rules).
- Scripting or programming experience (e.g., Python, PowerShell, KQL) to support detection, investigation, or response automation.
- Strong host- and network-based forensic skills, including timeline reconstruction and root cause analysis.
- Working knowledge of how LLMs are applied to security operations (alert enrichment, auto-triage, summarization) and the failure modes specific to that application, such as hallucinated verdicts, injection via log or artifact content, and over-trust in model output.
- Fluency in English.
Preferred Qualifications
- 12+ years of relevant IT and security experience, including prior leadership or mentorship of less-senior analysts.
- Hands-on malware analysis experience using static and dynamic techniques.
- Experience implementing or operating SOAR platforms and security automation.
- Hands-on experience building or integrating AI-assisted triage into a SOC workflow (SOAR, case management, or custom pipeline), including designing constrained output schemas or guardrails rather than relying solely on vendor-side content filtering.
- Familiarity with emerging threat models for AI-augmented security tooling, such as prompt injection and verdict poisoning via analyzed artifacts.
- Identity-focused detection experience, including Active Directory, hybrid identity, and privileged account monitoring.
- Understanding foundational security best practices, including system and network hardening.
- Ability to assess incidents quickly, recommend effective response actions, and mitigate operational and reputational risk.
- Experience interfacing effectively with leadership, engineering teams, and external vendors.
- Demonstrated engagement with the cybersecurity community or strong evidence of self-driven learning and professional contribution.
Our World
At Activision, we strive to create the most iconic brands in gaming and entertainment. We're driven by our mission to deliver unrivaled gaming experiences for the world to enjoy, together. We are home to some of the most beloved entertainment franchises including Call of Duty®, Crash Bandicoot™, Tony Hawk's™ Pro Skater™, and Guitar Hero®. As a leading worldwide developer, publisher and distributor of interactive entertainment and products, our "press start" is simple: delight hundreds of millions of players around the world with innovative, fun, thrilling, and engaging entertainment experiences.
We're not just looking back at our decades-long legacy; we're forging ahead to keep advancing gameplay with some of the most popular titles and sophisticated technology in the world. We have bold ambitions to create the most inclusive company as we know our success comes from the passionate, creative, and diverse teams within our organization.
We're in the business of delivering fun and unforgettable entertainment for our player community to enjoy. And our future opportunities have never been greater - this could be your opportunity to level up.
Ready to Activate Your Future?
The videogame industry and therefore our business is fast-paced and will continue to evolve. As such, the duties and responsibilities of this role may be changed as directed by the Company at any time to promote and support our business and relationships with industry partners.
We love hearing from anyone who is enthusiastic about changing the games industry. Not sure you meet all qualifications? Let us decide! Research shows that women and members of other under-represented groups tend to not apply to jobs when they think they may not meet every qualification, when, in fact, they often do! We are committed to creating a diverse and inclusive environment and strongly encourage you to apply.
We are committed to working with and providing reasonable assistance to individuals with physical and mental disabilities. If you are a disabled individual requiring an accommodation to apply for an open position, please email your request to accomodations@activisionblizzard.com. General employment questions cannot be accepted or processed here. Thank you for your interest.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, gender identity, age, marital status, veteran status, or disability status, among other characteristics.
Rewards
We provide a suite of benefits that promote physical, emotional and financial well-being for 'Every World' - we've got our employees covered! Subject to eligibility requirements, the Company offers comprehensive benefits including:
- Medical, dental, vision, health savings account or health reimbursement account, healthcare spending accounts, dependent care spending accounts, life and AD&D insurance, disability insurance;
- 401(k) with Company match, tuition reimbursement, charitable donation matching;
- Paid holidays and vacation, paid sick time, floating holidays, compassion and bereavement leaves, parental leave;
- Mental health & wellbeing programs, fitness programs, free and discounted games, and a variety of other voluntary benefit programs like supplemental life & disability, legal service, ID protection, rental insurance, and others;
- If the Company requires that you move geographic locations for the job, then you may also be eligible for relocation assistance.
Eligibility to participate in these benefits may vary for part time and temporary full-time employees and interns with the Company. You can learn more by visiting https://www.benefitsforeveryworld.com/.
In the U.S., the standard base pay range for this role is $124,000.00 - $229,400.00 Annual. These values reflect the expected base pay range of new hires across all U.S. locations. Ultimately, your specific range and offer will be based on several factors, including relevant experience, performance, and work location. Your Talent Professional can share this role's range details for your local geography during the hiring process. In addition to a competitive base pay, employees in this role may be eligible for incentive compensation. Incentive compensation is not guaranteed. While we strive to provide competitive offers to successful candidates, new hire compensation is negotiable.
What Activision Blizzard employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Activision Blizzard
Sourced by ZipRecruiter
Activision Blizzard, Inc. (NASDAQ: ATVI), is one of the world's largest and most successful interactive entertainment companies and is at the intersection of media, technology and entertainment. We are home to some of the most beloved entertainment franchises including Call of Duty®, World of Warcraft®, Overwatch®, Diablo®, Candy Crush™ and Bubble Witch™. Our combined entertainment network delights hundreds of millions of monthly active users in 196 countries, making us the largest gaming network on the planet!
Industry
Arts, entertainment, and recreation
Company size
5,001 - 10,000 Employees
Headquarters location
Santa Monica, CA, US
Year founded
2008