Principal Lead Analyst, Detection & Response Team (DART)
$168k - $195kCorebridge Financial
Who We Are
At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow. We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:- We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners.
- We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders.
- We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future.
- We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work.
About The Role As the Principal Lead Analyst of DART , you are the ultimate technical authority for cyber defense and incident response. This is a high-impact leadership role that combines elite-level technical expertise with strategic vision. You will oversee the most complex security breaches, drive the evolution of our threat-hunting program, and mentor the next generation of responders. You are responsible for ensuring that the organization is not just "ready" for a crisis, but resilient enough to withstand one.
This role partners closely with Cyber Intelligence, Defense and Response, Application Security, and Cyber Resilience teams, and supports incident response efforts as an expert resource on adversarial capabilities. Responsibilities Strategic Incident Command (Major Incidents)
- Incident Commander: Serve as the primary Incident Commander for all Tier 3/Critical-level events. You will direct the technical response across all workstreams (Forensics, Network, Cloud, Legal, and PR).
- Crisis Communication: Act as the technical voice for executive leadership. You must be able to translate complex exploit chains and technical risks into business-impact narratives for the C-Suite and Board of Directors.
- Adversary Emulation: Lead "Purple Team" exercises to test DART's readiness against specific APT (Advanced Persistent Threat) groups and real-world attack scenarios.
- Threat Hunting Architecture: Design and oversee the organization's long-term threat-hunting roadmap, ensuring coverage across the MITRE ATT&CK framework for Cloud (Azure/AWS), Identity, and On-Prem infrastructure.
- Detection Engineering Oversight: Collaborate with engineering teams to ensure that hunt findings are converted into high-fidelity, automated detections and SOAR (Security Orchestration, Automation, and Response) workflows.
- Intelligence Integration: Direct the consumption of tactical and strategic Threat Intelligence to proactively "harden" the environment before a known threat actor targets the industry.
- Force Multiplier: Elevate the entire SOC/DART capability by providing technical mentorship to L1 and L2 analysts. You are responsible for the technical "QA" of the team's investigative output.
- Tooling & Innovation: Evaluate and select next-generation forensic and response technologies. You will drive the business case for new security investments.
- Post-Incident Strategy: Lead the "Lessons Learned" process for major incidents, ensuring that root causes result in fundamental shifts in the enterprise security posture.
- Experience: 8+ years in Cybersecurity, with at least 5 years in a dedicated Incident Response or DFIR role. Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike).
- Forensics: Solid understanding of deep-system forensics (Memory, Disk, Network) and specialized experience in Cloud IR (Azure/AWS/O365).
- The Nuix and/or Axiom Forensic Suite: Deep familiarity with enterprise forensic platforms (Nuix, Magnet AXIOM, EnCase) and the ability to guide L2 analysts in their usage.
- Adversary Knowledge: Expert-level understanding of TTPs (Tactics, Techniques, and Procedures) used by both state-sponsored and financially motivated (Ransomware) threat actors.
- Coding for Defense: High proficiency in automation (Python, PowerShell) to build custom response scripts or API integrations between security tools.
- Advanced SANS: GCFA (Forensics), GNFA (Network Forensics), GREM (Reverse Engineering Malware), or GXPN (Exploit Researcher).
- Leadership: CISSP-ISSMP (Management) or GCIH (Incident Handler).
- Decisiveness: The ability to make $1M+ decisions (e.g., "Shut down this data center now") with limited information during a live attack.
- Political Acumen: Skill in navigating the complexities of a large organization, working with Legal, Privacy, and Human Resources during sensitive internal investigations.
- Resilience: Unwavering composure during high-stress, 24/7 incident cycles.
- Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
- Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
- Employee Assistance Program: Confidential counseling services and resources are available to all employees.
- Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
- Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
- Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Principal Lead Analyst, Detection & Response Team (DART) in Houston, TX vacancy
- ...one of the United States' leading producers of natural gas and... ...As a Fundamentals Analyst/Senior/Lead or Principal (title commensurate with experience), you will be responsible for developing and managing... ..., strategy, and analytics teams to align views and provide...PrincipalFor contractorsLive inWork at officeRemote workRelocationShift work
- ...their network. The role involves analyzing alerts, providing incident detection, and maintaining documentation. Applicants should have at least 7 years in IT, with 5 years focused on Incident Response, along with relevant security certifications like Security+ or CISSP....SuggestedWork at office
- Corebridge Financial is seeking a Principal Lead Analyst of DART based in Houston, TX. This high-impact role involves overseeing complex security... ...cybersecurity experience with a strong focus on incident response, and expertise in forensics and automation. The position...Suggested
- Capital One is looking for a Principal Risk Specialist in Houston, TX, who will work on risk management to ensure the bank remains stable and profitable. Responsibilities include providing risk consulting, client management, and monitoring compliance efforts. The ideal...Principal
- A security services provider is seeking an experienced Tier 2 SOC Analyst to support after-hours security operations in Houston. The role emphasizes proactive threat detection, incident response, and vulnerability management. The ideal candidate will work independently...Suggested
- A global investment firm is seeking a Principal Red Team Operator to conduct advanced adversary-simulation exercises and assess vulnerabilities. The ideal candidate will have at least 6 years of information security experience, with extensive knowledge of offensive tools...Principal
- Revenue Data and Analytics Lead page is loaded## Revenue Data and... ...value chain. Our trusted team of 2,700 experts across 30 countries... ...knowledge into action**Key Responsibilities****Revenue & Customer... ...reconciliation, and anomaly detection across systems**Business Insights...
- ...security operations, focusing on threat detection and vulnerability management across various... ...controls while collaborating with IT teams to embed security practices. Ideal candidates... ...and strong hands-on skills in incident response and SIEM engineering. The role includes...
- ...you to be a part of our team. Job Summary... ...the Analytics Team, the Lead Technical Business Intelligence (BI) Analyst is responsible for individually contributing... ...building skills. PRINCIPAL ACCOUNTABILITIES... ...through processes to detect and resolve data anomalies...Remote work
- ...Why Join Us? As the world's leading vendor of Cyber Security, facing the... ...attacks, we've assembled a global team of the most driven, creative, and... ...seeking an experienced Incident Response Team Leader to lead a team of IR analysts supporting enterprise customers across...Remote work
- ...Lead - AI Risk, Governance & Responsible AI Location: US / Canada (Remote/Hybrid) Type: Contract / Full... ...standards ~ Manage AI risk, bias detection, and model validation processes... ...closely with ML engineers and data teams for compliance integration...Full timeContract workRemote work
- ...global analytics firm in Houston is seeking a Principal Analyst for its LNG Assets Research team. The successful candidate will lead North American LNG export research,... ...on market factors and project economics. Responsibilities include publishing insights, engaging clients...Principal
- Workday Analyst - Payroll, Absence, Time Tracking (PATT) - Senior / Lead Level (REMOTE) Overview We are seeking an experienced... ...Workday Functional Analyst (PATT) is responsible for the configuration,... ...Advisory & influencing mindset Team collaboration & knowledge sharing...Remote job
- ...entire value chain. Our trusted team of 2,700 experts across 30... ...Description We are looking for a Principal for Wood Mackenzie's LNG... .... Our team provides industry-leading analysis of LNG assets around... ...successful candidate will be responsible for leading our North...Principal
- ...NAVA Software solutions is looking for a Lead Oracle HCM Analyst Details: Lead Oracle HCM Analyst Duration... .../week onsite As part of the IT Applications team, this position will be responsible for implementing, maintaining, and supporting...Full timeTemporary workFlexible hours
- Job Description We are looking for a Principal for Wood Mackenzie’s LNG Assets Research team within our Global Gas & LNG research practice. The role is... ...the success of Wood Mackenzie gas research. Responsibilities Lead North American LNG export research, providing high...Principal
$115.4k - $192.3k
About the role As an Analytics Team Lead, you will provide technical... ...largest, real‑time fraud detection platform to craft solutions... ...needs and project demand. Responsibilities Lead analytics workstreams... ...guidance and mentorship to analysts and partners (without direct...Local areaImmediate startRemote work- ...entire value chain. Our trusted team of 2,700 experts across 30... ...Research team, the Prinicpal Analyst will monitor and assess key... ...accountable for delivering industry leading Upstream research To be... ...improvement Key Responsibilities Contributes to strategic...PrincipalFull timeWork at officeRemote workFlexible hours2 days per week
- ...Lead Analyst, Project Cost Department: LNG Employment Type: Full Time Location:... ...natural gas and LNG company focused on responsible sourcing of low-emission fuel to domestic... ...EPC contractors and crossfunctional teams. The Lead Analyst, Project Cost will report...Full timeContract workFor contractorsWork at office
- ...Hines Lead Analyst, Real Estate Infrastructure Operations When you join Hines, you will... ...to grow and make your mark at Hines. Responsibilities *Hybrid position requiring at least three... ...coordination across internal teams and external vendors to ensure infrastructure...Casual workWork at officeLocal areaRemote work3 days per week
- ...As a Principal IT Analyst within Honeywell's Digital Supply Chain (DSC) /... ...accountable for independently leading the analysis, design, and... ...work 100% onsite M-F KEY RESPONSIBILITIES ~ Serve as a Principal-level... ...to analysts and project team members through guidance, reviews...PrincipalTemporary workWorldwideFlexible hours
$60k - $80k
...JOB SUMMARY The Mechanic Team Lead supervises, assigns and schedules work... ...buses, vans, trucks, and support vehicles. Responsible for ensuring that repairs and preventative... ...impact to HISD. Errors can be readily detected, usually by the employee, and, if made,...Contract workWork experience placementWork at officeLocal areaImmediate start$18 per hour
...direct supervision, serves as Food Services team lead for all food service operations for a... ...regulatory agencies. MAJOR DUTIES & RESPONSIBILITIES Orders food and supplies to be used... ...impact to HISD. Errors can be readily detected, usually by the employee, and, if made,...Contract workWork experience placementWork at officeLocal area- Wood Mackenzie is a leading analytics and insights provider in the energy and natural... ...the US Lower 48 Upstream Research team, the Principal Analyst will monitor and assess key events... ...‑team or pan‑sectoral issues. Key Responsibilities Contribute to strategic planning and...PrincipalFull timeWork at officeRemote work2 days per week
- ...Principal It Analyst – Fico As a Principal IT Analyst – FICO in PT, you will lead and manage SAP FICO and financial systems. You will play... ...and innovation within your team, while your technical... ...operational efficiency. Responsibilities KEY RESPONSIBILITIES...PrincipalFull timeTemporary workRelocation packageFlexible hoursShift work
- ...Operations is looking to add a Power Lead to the team. This role is tasked with providing day... ...to and work with large datasets. Job Responsibilities Responsible for confirming valuation,... .... Lead and mentor commercial trade analysts to develop the team's overall capabilities...Work at office
$109.9k - $125.4k
Principal Risk Specialist Do you like working in the spotlight? Are... ...Associate at Capital One you’ll be responsible for working with business... ...the Global Payment Network team, you will be asked to identify... ...Deposit Compliance efforts Lead change control efforts at the...PrincipalFull timePart timeWork at officeLocal areaVisa sponsorship- ...services across North America. The Principal LNG Growth & Advisory Lead will lead service development,... ..., reliability, and gas value chain teams. Strengthen technical excellence... ...across all LNG-related engagements. Responsibilities ~ Generous paid time off (...PrincipalTemporary workFor contractorsWork at officeFlexible hours3 days per week
- ...World Physical Education in Houston, Texas is looking for a Lead Team Leader. This role requires facilitating activities related to... ...in special education. The position is full-time with responsibilities that include coordinating the admission process, ensuring compliance...Full time
$24 per hour
Retina Consultants Houston seeks a Drug Senior Team Lead to manage the Drug Coordinator Team. Responsible for resolving patient concerns and overseeing operations. Ideal candidates will have 2 years' experience in relevant fields and possess strong communication and organizational...Hourly pay
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Lead Analyst, Detection & Response Team (DART). Be the first to apply!
Related searches
- entry level analyst Houston, TX
- cash analyst Houston, TX
- workforce analyst Houston, TX
- sales and trading analyst Houston, TX
- remote epic analyst Houston, TX
- packaging analyst Houston, TX
- back office analyst Houston, TX
- intellectual property analyst Houston, TX
- senior database analyst Houston, TX
- strategic sourcing analyst Houston, TX

