Information Security Incident Response Analyst
NTT DATA
Information Security Incident Response Analyst
Make an impact with NTT DATA. Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.
Job Description Summary
The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings.
The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands-on investigations and internal project work.
Key Responsibilities
- Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance.
- Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause.
- Supports clients through containment and recovery efforts by providing technical recommendations and clear communication.
- Participates in the team's on-call rotation for urgent incident response needs.
- Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support.
- Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture.
- Produces accurate documentation—including investigation notes, status updates, and final reports.
- Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools.
Knowledge and Attributes
- Solid understanding of digital forensics fundamentals, including host-based analysis across major operating systems.
- Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools.
- Ability to clearly communicate technical findings to both technical and non-technical audiences.
- Strong analytical and problem-solving skills, especially during time-sensitive investigations.
- Motivated to continuously learn deeper DFIR techniques and methodologies.
Required Experience
- Proven experience in incident response and digital forensics, with capability in host-based, image, and log analysis.
- Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents.
- Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools.
- Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles.
Academic Qualifications, Certifications
- Bachelor's degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred).
- Relevant certifications such as:
- SANS GIAC Security Essentials (GSEC) or equivalent preferred.
- SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.
- SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
- GICSP – GIAC Global Industrial Cyber Security Professional
- GRID – GIAC Response and Industrial Defense
- GCIP – GIAC Critical Infrastructure Protection
- ISA/IEC 62443 Cybersecurity Certificates (ISA/IEC 62443 Cybersecurity Fundamentals, etc.)
- IC32/IC33/IC34
- Any additional DFIR-related certifications.
Additional UK-Specific Role Requirements
UK Security Clearance
- Active UK Security Clearance is required to deliver services within sensitive or regulated client environments.
Operational Technology (OT) Incident Response & Digital Forensics
- Background and hands-on experience in OT environments.
- Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
- Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes.
- Experience with any of the following tools: Claroty CTD, Nozomi Guardian, Dragos Platform, Tenable.ot and/or Forescout/SCADAfence.
Workplace type: Remote Working
About NTT DATA NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.
Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, color, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Third parties fraudulently posing as NTT DATA recruiters
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.
- Paycom is seeking an Information Security Analyst in North Richland Hills, TX to monitor security alerts and assist with incident response and compliance. The role emphasizes building foundational cybersecurity skills while supporting audit-driven operations. Responsibilities...Suggested
$115k - $154k
...technical backbone of Biogen's Security Operations Center — an analyst who leads complex incident investigations, engineers and... ...is our primary detection and response platform — we need an engineer... ...Computer Science, Cybersecurity, Information Technology, or related field...SuggestedFull timeTemporary workLocal areaRemote work$95.7k - $144.9k
...every connection. We do this by driving Responsible Growth and delivering for our clients, teammates... ...candidates with malware analysis and incident response experience. • Specific... ...static and dynamic analysis, identifying security gaps, and implementing preventative measures...SuggestedFull timeWork at officeFlexible hoursDay shift- TrendAI, the global AI security leader and enterprise... ...Global Managed Detection & Response (MDR) team at exactly... ...are enabling analysts to identify genuine threats... ...deliver insights that turn incidents into lasting security... ..., Cybersecurity, Information Security, or related field...SuggestedFull timeH1bWork at officeNight shiftRotating shift3 days per week
$131.3k - $237.35k
...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support... ...degree in Computer Science, Engineering, Information Technology, Cyber Security, or related...SuggestedFull timeFlexible hours- ...are seeking a highly skilled Senior Incident Response Analyst to lead advanced threat detection, investigation... ..., and remediation efforts within our Security Operations program. This role is... ...or expression, pregnancy, genetic information, protected military and veteran...Full timeWorldwide
- ...according to Staffing Industry Analysts' 2012 annual report. Artech... ...· 5 + years Cybersecurity incident response and technical forensics... ...Demonstrate expert skills in cyber security incident monitoring and... ...: ContractFunction: Information TechnologyExperience level:...H1bImmediate start
$95.17k - $156.36k
...sits at the intersection of hands-on incident response, cyber defense and threat mitigation.... ...responding to and investigating high-impact security incidents.The ideal candidate is an... ...automate the sorting and filtering of information provided by applicants as part of its...Full timeWork at officeVisa sponsorshipWork visaFlexible hours- ...candidate will advise clients on cybersecurity incidents, regulatory investigations, and provide advisory services such as incident response and risk assessments. Candidates should have strong knowledge of data privacy and security laws, experience with incident response,...
- ...Senior Incident Response Analyst Remote (USA-based, on-call support required) Full-time The Senior Incident Response Analyst will manage... ...cloud (AWS/Azure) environments, contributing to scalable security enhancements and threat detection. This individual will also...Full timeRemote work
$100k - $125k
...Senior Incident Response Analyst At Zimmer Biomet, we believe in pushing the boundaries of innovation and driving our mission forward. As... ...rotations. How You'll Create Impact Investigate security alerts and confirmed incidents; determine scope, impact, and...Remote workFlexible hours- ...Incident Response Analyst Everyone deserves to work in a safe and secure environment. That's why we're passionate about delivering secure, remote workforce products... ...business assets, customer data, and employee information. We're committed to creating products that...Local areaRemote workWork from home
$94k - $127k
...Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response... ...cybersecurity, privacy, records and information management, and related enterprise support... ..., endpoint, firewall, IDS/IPS, web-security, antispam, malware-prevention, and...- ...Job Description The Incident Response Analyst serves as the central point of coordination for customer and internal inquiries related... ...cybersecurity incidents. This role partners closely with Information Security, Privacy, Legal, Corporate Communications, Customer...Afternoon shift
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-focused AI systems - and we need real incident responders to make it happen. Your hands-on experience in SOC environments...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
$104k - $138.1k
...Meet the Team Splunk's Threat Response SOC operates globally, 24/7, at the intersection of incident response, detection... ...better ways to do it. Our team of analysts and engineers turns repetitive... ...Your Impact Own the full arc of security incidents from first alert to...Full timeTemporary workLocal areaFlexible hoursShift work- ...Incident Response Analyst We are seeking an experienced Incident Response Analyst to support Task 4 – Incident Response Management on a federal... ...services contract. This role provides front-line security event triage, investigation, reporting, and coordination across...Contract workRemote workMonday to Friday
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of intelligent security tools - and we need experienced incident responders to help get it right. Your hands-on knowledge of real...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
$60k - $85k
...Incident Response Analyst Job Locations US-MD-Bethesda ID 2026-4753 Category Information Technology Type Full Time Overview Edgewater... ...Science, Information Management, Cyber Security, or related field (additional...Full timeContract workFlexible hours$110k - $130k
...and effectively - anytime, anywhere, securely. We combine technical expertise, mission... ...SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity operations by... ...in Cybersecurity, Computer Science, Information Systems, Information Assurance, or related...Contract workRemote work- ...Incident Response Analyst Salisbury, NC (Remote) 90% Remote: must be within driving distance... ...response experience # MS Security Tools Suite Experience (Defender)... ...for managing threats, disseminating information, and handling, responding to, and investigating...Contract workWork experience placementRemote work
- ...Supporting the global Helpline team, the full-time Incident Response Analyst will manage digital security incidents, conduct root cause analyses, and strengthen the Helpline's capacity to respond to threats while working remotely from Indonesia, India, or the Philippines...Full timeRemote work
- ...Incident Response Analyst Access Now defends and extends the digital rights of people and communities... ...'s capacity to respond to digital security incidents affecting Access Now's... ...team of incident handlers in conducting information security incident root cause analyses...Full timeWork at officeLocal areaRemote workWork from home
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-focused AI systems - and we need real incident responders to make it happen. Your hands-on experience in SOC operations...Hourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...Job Title: Senior SOC L3 Analyst / Incident Response Lead Location: San Jose, CA (4 days onsite, 1 day remote) About The AES Group:... .... Act as the technical escalation point for critical security incidents. Perform threat hunting, root cause analysis...Remote work
- Alignerr is seeking an Incident Response Analyst (AI Training) to evaluate how AI interprets security alerts and supports digital investigations. You will work with realistic incident data to improve AI reasoning and alignment with experienced responders. This remote hourly...Remote jobHourly payContract work10 hours per weekFlexible hours
$131.3k - $237.35k
Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program...- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative... ...clearance B.S. Computer Science, Information Technology, or a related field 3+... ...29: CSF, and NIST SP-800-61 Computer Security Incident Handling Guide. Active SANS...Work at office
$70k - $72k
...investigations. Conducts initial incident investigations,... ...coordinates cross-functional responses, and performs forensic... .... 0-2 years in IT or Security Ops. Bachelor's degree in Information Systems, or Computer Science... ..., mentor to junior analysts. Visionary, able to design...Temporary workNight shift- Spectraforce Technologies seeks an Information Security Analyst in Newark, NJ, with remote capability, for a 6-month contract... ..., and escalation of potential data security incidents to the appropriate teams. Responsibilities include reviewing DLP alerts across email, web,...Remote jobContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Incident Response Analyst. Be the first to apply!
- remote data analyst intern United States
- virtual data analyst United States
- compliance data analyst United States
- entry level information security analyst United States
- data analyst excel United States
- lead data analyst United States
- information security analyst United States
- data warehouse analyst United States
- data analyst United States
- data protection analyst United States


