Sr. Staff Security Analyst- Incident Commander
$145.6k - $209.3kUKG (Ultimate Kronos Group)
Why UKG: At UKG, the work you do matters. The code you ship, the decisions you make, and the care you show a customer all add up to real impact. Today, tens of millions of workers start and end their days with our workforce operating platform. Helping people get paid, grow in their careers, and shape the future of their industries. That's what we do. We never stop learning. We never stop challenging the norm. We push for better, and we celebrate the wins along the way. Here, you'll get flexibility that’s real, benefits you can count on, and a team that succeeds together. Because at UKG, your work matters- and so do you. Description: As a Senior Staff Security Analyst - Incident Commander, you will be part of UKG's Global Security Operations team. This global team is responsible for detecting, investigating, responding to, and leading containment of sophisticated cyber threats and major security incidents. In your role you will leverage a variety of tools, forensic techniques, threat hunting methods, and incident command practices to proactively investigate, respond to, and drive resolution for emerging and/or persistent threats impacting UKG and/or its customers. Responsibilities: You will provide hands-on digital forensics and incident response expertise across endpoint disk, memory, network, cloud, Windows, Linux, and runtime environments You will lead major cyber incident command activities, including coordinating technical response, guiding investigative workstreams, tracking actions, briefing stakeholders, and driving incidents through containment and recovery You will perform hands-on keyboard threat hunting with and without GenAI assistance across SIEM, EDR, cloud, identity, network, and forensic data sources You will support and lead complex incident response investigations as a technical contributor and collaborator across Security Operations Center, Threat Intelligence, Detection Engineering, Cloud Security, Infrastructure, Legal, Privacy, and business stakeholder teams You will guide, mentor, and train analysts during active incidents, post-incident reviews, tabletop exercises, and proactive hunting engagements You will create and present incident strategies, investigation plans, findings, timelines, and technical summaries to audiences of technical and executive leadership levels when asked You will develop and maintain training materials, playbooks, procedures, and practical exercises for incident command, digital forensics, incident response, and threat hunting capabilities You will use mid-level scripting and automation to accelerate investigations, enrich forensic analysis, standardize response actions, and improve repeatability across the SOC You will support continuous improvement of incident handling processes, forensic collection methods, threat hunting tradecraft, and analyst readiness You will partner with Detection Engineering and Threat Intelligence teams to convert investigative findings into durable detections, response logic, hunting hypotheses, and operational improvements You will support reverse engineering or malware analysis activities when needed, including triage of suspicious binaries, scripts, payloads, and attacker tooling where skillsets apply Qualifications: The ability to lead complex security incidents, guide technical teams, influence response direction, and support building strategic and technical SOC initiatives 5+ years of direct hands-on digital forensics and incident response experience supporting major enterprise environments Advanced knowledge of forensic artifact areas across network, cloud, Windows, Linux, endpoint, identity, and runtime environments Demonstrated experience leading or supporting major cyber incident command, including technical coordination, action tracking, decision support, stakeholder updates, and post-incident improvement activities Deep hands-on experience performing endpoint disk, memory, cloud, and host-based forensic analysis in active incident response scenarios Demonstrated hands-on threat hunting experience using SIEM, EDR, cloud telemetry, identity logs, network data, and forensic artifacts Experience applying GenAI-assisted workflows to investigation, summarization, hunt development, scripting, or analyst enablement, while maintaining strong technical validation and judgment Ability to lead, mentor, train, and influence technical analysts during investigations, hunting activities, and operational readiness efforts Demonstratable hands-on skills in a scripting language such as Python, PowerShell, Bash, or similar for use in investigation, automation, parsing, enrichment, and response workflows Strong understanding of SOC operations, incident response lifecycle, forensic collection standards, evidence handling, investigation documentation, and executive-ready incident reporting Ability to develop practical training content for incident command, digital forensics, incident response, and threat hunting programs Experience with one or more major public cloud service provider environment required Reverse engineering and malware analysis experience preferred, including static or dynamic triage of malware, scripts, payloads, or attacker tooling Hands-on keyboard investigative analysis experience with one or more major SIEM, EDR, SOAR, cloud security, case management, and forensic tooling platforms Company Overview: UKG is the Workforce Operating Platform that puts workforce understanding to work. With the world's largest collection of workforce insights, and people-first AI, our ability to reveal unseen ways to build trust, amplify productivity, and empower talent, is unmatched. It's this expertise that equips our customers with the intelligence to solve any challenge in any industry - because great organizations know their workforce is their competitive edge. Learn more at ukg.com. Equal Opportunity Employer UKG is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, disability, religion, sex, age, national origin, veteran status, genetic information, and other legally protected categories. View The EEO Know Your Rights poster ( UKG participates in E-Verify. View the E-Verify posters here ( . It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Disability Accommodation in the Application and Interview Process For individuals with disabilities that need additional assistance at any point in the application and interview process, please email View email address on click.appcast.io . The pay range for this position is $145,600 to $209,300. The actual base pay offered may vary depending on skills, experience, job-related knowledge and work location. In addition to base pay, employees may be eligible to participate in a performance-based bonus plan and to receive restricted stock unit awards as part of total compensation. Learn more about UKG's benefits and rewards at It is the policy of Ultimate Software to promote and assure equal employment opportunity for all current and prospective Peeps without regard to race, color, religion, sex, age, disability, marital status, familial status, sexual orientation, pregnancy, genetic information, gender identity, gender expression, national origin, ancestry, citizenship status, veteran status, and any other legally protected status entitled to protection under federal, state, or local anti-discrimination laws. This policy governs all matters related to recruitment, advertising, and initial selection of employment. It shall also apply to all other aspects of employment, including, but not limited to, compensation, promotion, demotion, transfer, lay-offs, terminations, leave of absence, and training opportunities. #J-18808-Ljbffr UKG (Ultimate Kronos Group)
$94.49k - $131.16k
...what we can achieve. Together.SummaryThe Senior Information Security Analyst is responsible for identifying, investigating, and addressing... ...critical role in driving initiatives for advanced threat detection, incident response, and vulnerability management, which are vital for...SeniorFull timeWork at officeRemote workRelocationVisa sponsorshipRelocation package- ...exceptional place to grow your career! We are seeking a seasoned security professional to join our Information Security team and help... ...systems, data, and applications.· Participate in detection and incident response activities, including investigation, containment, and...SeniorFull timeWork at officeRemote workWork visa2 days per week
- ...motivated candidate to join our talented Team.Job Title: Network Security Analyst 2Location(s): Austin, TX Job Summary The Network Security... ...experience across SIEM, SOAR, EDR, network detection, and incident response platforms. This role requires sound judgment, technical...SuggestedMonday to FridayShift work
- ...workplace where people are encouraged to come as they are and do their best work.What We Need2K Security is looking for a motivated Lead Security Analyst for high-profile incidents, directing the team and effectively communicating with cross-team stakeholders while...Suggested
$87.63k - $177.5k
...Responsible for moderate-scale security assignments with... ...Loss Prevention (DLP) Analyst. This role combines real... ...to prevent data loss incidents.What You'll Do:Essential... ...Looking For:Security Spec Sr (SG7)Education... ...identified above.Security Spec Staff (SG10)Education...SeniorFull timeWork experience placement- ...About the job Network Security Analyst Application Last date Deadline Date: December... ...Austin, TX 78701 NOTE: Cybersecurity staff are currently primarily working remotely... ...Professional (CCSP), EC-Council Certified Incident Handler (ECIH), Certified Information...Local areaRemote work
- ...candidate to join our talented Team. Job Title: Network Security Analyst 1 Location(s): Austin, TX Job Description A... ...suspicious activity; identifying potential threats; and coordinating incident response activities to protect information systems, networks,...
- ...maritime operations for defense and national security. We're looking for a hands-on Security... ...own initial response for well-scoped incidents to contain, eradicate, recover. You'll tune... ...response playbooks, runbooks, and analyst workflow documentation Run targeted...Permanent employmentTemporary workInternshipWork at office
- ...Job Title Responsibilities may include, but are not limited to: Assist in analyzing data security incidents: Collaborate with the cybersecurity team to investigate and analyze potential security incidents using Crowdstrike and other technologies. Help identify...
$125k - $150k
...TechnologyOverviewGovCIO is seeking a highly experienced Data Security Analyst — Master to lead the design, implementation, operation, and... ...endpoint detection and response, extended detection and response, incident investigation, automation, orchestration, and response...Full timeRemote work- ...Description Job Description POSITION SUMMARY: The IT Security and Systems Analyst serves as a liaison between business departments,... ...and cybersecurity governance activities. Participates in incident response activities, documentation, and post-incident reviews...
- Saronic Technologies is seeking a hands-on Security Engineer to join our Security Operations team in Austin. You will triage security... ...perform root-cause analysis, and own initial response for scoped incidents across endpoints, cloud, and identity. You will tune...
- ...Job Description Job Description Network Security Analyst (SOC Operations, SIEM & Incident Response): Required Experience in Years: 10+ Years Mode of Work: 100% Onsite Austin, TX Metropolitan Area Locals Only The Network Security Analyst will perform advanced...Local areaAfternoon shift
- ...TXCompany: Realtor.comSoftware Eng, Sr StaffLocation: Austin, TX,... ....We are seeking a Senior Staff DevOps Engineer to join our CI... ...allow product teams to deploy securely without becoming infrastructure... ...principles, capacity planning, incident response, and operational excellencePreferred...SeniorWork at officeLocal areaImmediate start
- ...external stakeholders, including business partners and/or external DSHS parties to identify, analyze, and resolve complex problems or security gaps. 3 Required Fulfill basic DSHS project management duties to ensure the successful completion of DSHS short-term engagements,...Temporary work
- ...independent judgment. Ability to maintain the security and integrity of critical infrastructure... ...Job Description A network security analyst ensures that information systems and... ...(GRC) Specialist Contract Type: ITSAC Staff Augmentation Client: Texas Health and...Contract workFor contractorsWork at officeRemote work
- ...diverse backgrounds, experiences, and perspectives to join our network of industry subject matter experts. The Logistics Security Analyst, assigned to one of Pinkerton’s largest global clients, will be a part of a diverse team within the centralized hub of...Work at officeLocal areaWeekend work
$45 - $55 per hour
...We are working with a successful Agency in Austin, Texas, to find a Security & Vulnerability Analyst to join a small team. The project is to analyze the Agency's front-end systems to identify architectural pitfalls, map and detect endpoints, and conduct vulnerability...Contract workMonday to Friday- Vestwell’s Corporate Information Technology team is seeking an experienced, meticulous Information Security compliance analyst to monitor and improve our compliance systems. You will review SOC controls, automate compliance tasks, respond to RFPs, and build a knowledge...
- ...innovative company and help us improve the lives of people and animals everywhere. Job Details Summary: The Information Security Human Risk Analyst II coordinates and delivers Human Risk program activities under general direction. This role supports Information Security...Full timeWork experience placementWork at officeLocal area
$90k - $105k
...Vestwell Corporate Information Technology team is looking for an experienced, meticulous and detail-oriented Information Security compliance analyst to be responsible for monitoring the compliance systems in our rapidly scaling organization. The compliance analyst's responsibilities...Contract workFor subcontractorWork at officeLocal area$77k - $202k
...SectorNot ApplicableSpecialismOracleManagement LevelSenior AssociateJob Description & SummaryThe OpportunityAs an Oracle Application Security & Controls Senior Associate, you will play a pivotal role in consulting services for Oracle applications, focusing on compliance...SeniorFull timeH1b- AX9 Security, Inc. is seeking an Armed Security Guard in Austin, TX to join a fast-growing provider... ...trust. You will perform access control, patrols, incident reporting, and enforce policies while engaging with clients and staff. This full-time role offers outdoor/indoor...SeniorFull time
- ...bigger — technology that moves the world forward. Join us and, together, we’ll advance your career.THE ROLE: AMD responds to security incidents in collaboration with industry peers, partners, customers, and other PSIRTs. The AMD Product Security Office (PSO) is looking...SeniorWork at office
$191.8k - $287.8k
...DDR and HBM memory systems Virtualization technologies such as SR-IOV Familiarity with formal verification methods for cache... ...applicable policies and procedures, including but not limited to security and other requirements regarding protection of Company confidential...SeniorWork experience placementWork from homeNight shift$125k - $220k
...more resourceful world. Join us.As a member of the Information Security leadership team, you will lead security architecture, risk remediation... ...across security controls, including logging, monitoring, incident response, vulnerability management, and penetration testing....SeniorFull time$183k - $247.6k
...the world’s largest Cloud Services provider. As a Senior Reliability Engineer you will engage with an experienced cross-disciplinary staff to conceive and design infrastructure technologies. You will work closely with an internal inter-disciplinary team, and outside...SeniorWork experience placementLocal areaFlexible hours- ...customer and market requirements. Together they form the core team responsible for identifying opportunities, defining solutions, securing investments, and delivering successful market launches. This positioning clearly creates a "triad model": Solution Marketing Market...Senior
$173.9k - $235.2k
...software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You’ll... ...and cooperatively with other employees, supervisors, and staff; adhere to standards of excellence despite stressful conditions...SeniorInternshipLocal areaFlexible hours$173.9k - $235.2k
...system-level software with focus on durability, availability, security, and diagnostics- Develop and maintain device drivers for Linux... ...safely and cooperatively with other employees, supervisors, and staff; adhere to standards of excellence despite stressful conditions...SeniorInternshipLocal areaWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Staff Security Analyst- Incident Commander. Be the first to apply!
- security analyst intern Austin, TX
- rate analyst Austin, TX
- bond analyst Austin, TX
- security analyst Austin, TX
- information security compliance analyst Austin, TX
- security operations analyst Austin, TX
- junior security analyst Austin, TX
- IT security analyst Austin, TX
- work from home security analyst Austin, TX
- senior security analyst Austin, TX




