Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Incident Response Analyst

NTT DATA

Information Security Incident Response Analyst

Make an impact with NTT DATA. Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.

Job Description Summary

The Information Security Incident Response Analyst supports clients during security incidents by performing technical investigations, analyzing digital forensic evidence, and assisting with containment and remediation activities. This role focuses on identifying indicators of compromise, reconstructing attacker activity, and communicating clear, actionable findings.

The analyst works as part of a global DFIR team, handling a variety of incident types across diverse environments. They contribute to process improvements, maintain strong client communication, and continue building advanced DFIR skills through hands-on investigations and internal project work.

Key Responsibilities

  • Investigates security incidents by performing host, disk, memory, network, and cloud forensic analysis under established processes and guidance.
  • Analyzes artifacts across Windows, Linux, and macOS systems, helping reconstruct timelines and determine root cause.
  • Supports clients through containment and recovery efforts by providing technical recommendations and clear communication.
  • Participates in the team's on-call rotation for urgent incident response needs.
  • Completes internal and client tasks such as tabletop exercises, IR readiness assessments, basic forensic reviews, and environment hardening support.
  • Identifies observable gaps and risks within client environments and recommends improvements to strengthen security posture.
  • Produces accurate documentation—including investigation notes, status updates, and final reports.
  • Collaborates with global DFIR and other teams and stays current on threats, attacker techniques, and emerging forensic tools.

Knowledge and Attributes

  • Solid understanding of digital forensics fundamentals, including host-based analysis across major operating systems.
  • Working knowledge of network forensics, cloud log analysis (e.g., Azure, AWS, GCP), and common forensic tools.
  • Ability to clearly communicate technical findings to both technical and non-technical audiences.
  • Strong analytical and problem-solving skills, especially during time-sensitive investigations.
  • Motivated to continuously learn deeper DFIR techniques and methodologies.

Required Experience

  • Proven experience in incident response and digital forensics, with capability in host-based, image, and log analysis.
  • Experience using SIEM, EDR, IDS/IPS, and other security tools to triage, investigate, and respond to incidents.
  • Ability to perform network analysis using tools such as Wireshark, tcpdump, and other tools.
  • Experience in cybersecurity operations, consulting, DFIR services, or related technical security roles.

Academic Qualifications, Certifications

  • Bachelor's degree or equivalent experience in Information Technology, Computer Science, Cybersecurity, or a related discipline (preferred).
  • Relevant certifications such as:
    • SANS GIAC Security Essentials (GSEC) or equivalent preferred.
    • SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred.
    • SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred.
    • GICSP – GIAC Global Industrial Cyber Security Professional
    • GRID – GIAC Response and Industrial Defense
    • GCIP – GIAC Critical Infrastructure Protection
    • ISA/IEC 62443 Cybersecurity Certificates (ISA/IEC 62443 Cybersecurity Fundamentals, etc.)
    • IC32/IC33/IC34
    • Any additional DFIR-related certifications.

Additional UK-Specific Role Requirements

UK Security Clearance

  • Active UK Security Clearance is required to deliver services within sensitive or regulated client environments.

Operational Technology (OT) Incident Response & Digital Forensics

  • Background and hands-on experience in OT environments.
  • Experience investigating ICS/SCADA systems and industrial sectors such as manufacturing, energy, utilities, or critical infrastructure.
  • Ability to collect and analyze OT forensic artifacts, interpret OT protocols and system behavior, and assess the impact of cyber incidents on physical processes.
  • Experience with any of the following tools: Claroty CTD, Nozomi Guardian, Dragos Platform, Tenable.ot and/or Forescout/SCADAfence.

Workplace type: Remote Working

About NTT DATA NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.

Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, color, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.

Third parties fraudulently posing as NTT DATA recruiters

NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Information Security Incident Response Analyst in United States vacancy
  • Paycom is seeking an Information Security Analyst in North Richland Hills, TX to monitor security alerts and assist with incident response and compliance. The role emphasizes building foundational cybersecurity skills while supporting audit-driven operations. Responsibilities... 
    Suggested

    Paycom

    North Richland Hills, TX
    2 days ago
  • $115k - $154k

     ...technical backbone of Biogen's Security Operations Center — an analyst who leads complex incident investigations, engineers and...  ...is our primary detection and response platform — we need an engineer...  ...Computer Science, Cybersecurity, Information Technology, or related field... 
    Suggested
    Full time
    Temporary work
    Local area
    Remote work

    Biogen Idec

    North Carolina
    2 days ago
  • $95.7k - $144.9k

     ...every connection. We do this by driving Responsible Growth and delivering for our clients, teammates...  ...candidates with malware analysis and incident response experience. • Specific...  ...static and dynamic analysis, identifying security gaps, and implementing preventative measures... 
    Suggested
    Full time
    Work at office
    Flexible hours
    Day shift

    Bank of America

    Denver, CO
    2 days ago
  • TrendAI, the global AI security leader and enterprise...  ...Global Managed Detection & Response (MDR) team at exactly...  ...are enabling analysts to identify genuine threats...  ...deliver insights that turn incidents into lasting security...  ..., Cybersecurity, Information Security, or related field... 
    Suggested
    Full time
    H1b
    Work at office
    Night shift
    Rotating shift
    3 days per week

    Trend Micro

    Irving, TX
    4 days ago
  • $131.3k - $237.35k

     ...Leidos has a critical need for a Senior Incident Response Analyst to support the DHS CISA Program.The Department of Homeland Security (DHS), Security Operations Center (SOC) Support...  ...degree in Computer Science, Engineering, Information Technology, Cyber Security, or related... 
    Suggested
    Full time
    Flexible hours

    Leidos

    Arlington, VA
    4 days ago
  •  ...are seeking a highly skilled Senior Incident Response Analyst to lead advanced threat detection, investigation...  ..., and remediation efforts within our Security Operations program. This role is...  ...or expression, pregnancy, genetic information, protected military and veteran... 
    Full time
    Worldwide

    Dun & Bradstreet

    Center Valley, PA
    1 day ago
  •  ...according to Staffing Industry Analysts' 2012 annual report. Artech...  ...· 5 + years Cybersecurity incident response and technical forensics...  ...Demonstrate expert skills in cyber security incident monitoring and...  ...: ContractFunction: Information TechnologyExperience level:... 
    H1b
    Immediate start

    Artech

    Plano, TX
    2 days ago
  • $95.17k - $156.36k

     ...sits at the intersection of hands-on incident response, cyber defense and threat mitigation....  ...responding to and investigating high-impact security incidents.The ideal candidate is an...  ...automate the sorting and filtering of information provided by applicants as part of its... 
    Full time
    Work at office
    Visa sponsorship
    Work visa
    Flexible hours

    Guardian Life Insurance

    Holmdel, NJ
    4 days ago
  •  ...candidate will advise clients on cybersecurity incidents, regulatory investigations, and provide advisory services such as incident response and risk assessments. Candidates should have strong knowledge of data privacy and security laws, experience with incident response,... 

    BCG Attorney Search

    Los Angeles, CA
    5 days ago
  •  ...Senior Incident Response Analyst Remote (USA-based, on-call support required) Full-time The Senior Incident Response Analyst will manage...  ...cloud (AWS/Azure) environments, contributing to scalable security enhancements and threat detection. This individual will also... 
    Full time
    Remote work

    Veracity

    United States
    6 hours ago
  • $100k - $125k

     ...Senior Incident Response Analyst At Zimmer Biomet, we believe in pushing the boundaries of innovation and driving our mission forward. As...  ...rotations. How You'll Create Impact Investigate security alerts and confirmed incidents; determine scope, impact, and... 
    Remote work
    Flexible hours

    Zimmer Biomet

    United States
    3 days ago
  •  ...Incident Response Analyst Everyone deserves to work in a safe and secure environment. That's why we're passionate about delivering secure, remote workforce products...  ...business assets, customer data, and employee information. We're committed to creating products that... 
    Local area
    Remote work
    Work from home

    Go To Services

    United States
    7 hours ago
  • $94k - $127k

     ...Description Incident Response Analyst Xcelerate Solutions is seeking an Incident Response...  ...cybersecurity, privacy, records and information management, and related enterprise support...  ..., endpoint, firewall, IDS/IPS, web-security, antispam, malware-prevention, and... 

    Xcelerate Solutions

    Alexandria, VA
    3 days ago
  •  ...Job Description The Incident Response Analyst serves as the central point of coordination for customer and internal inquiries related...  ...cybersecurity incidents. This role partners closely with Information Security, Privacy, Legal, Corporate Communications, Customer... 
    Afternoon shift

    Insight Global

    Marlborough, MA
    2 days ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-focused AI systems - and we need real incident responders to make it happen. Your hands-on experience in SOC environments... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Denver, CO
    7 hours ago
  • $104k - $138.1k

     ...Meet the Team Splunk's Threat Response SOC operates globally, 24/7, at the intersection of incident response, detection...  ...better ways to do it. Our team of analysts and engineers turns repetitive...  ...Your Impact Own the full arc of security incidents from first alert to... 
    Full time
    Temporary work
    Local area
    Flexible hours
    Shift work

    Cisco

    Austin, TX
    7 hours ago
  •  ...Incident Response Analyst We are seeking an experienced Incident Response Analyst to support Task 4 – Incident Response Management on a federal...  ...services contract. This role provides front-line security event triage, investigation, reporting, and coordination across... 
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy

    United States
    2 days ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of intelligent security tools - and we need experienced incident responders to help get it right. Your hands-on knowledge of real... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Miami, FL
    1 day ago
  • $60k - $85k

     ...Incident Response Analyst Job Locations US-MD-Bethesda ID 2026-4753 Category Information Technology Type Full Time Overview Edgewater...  ...Science, Information Management, Cyber Security, or related field (additional... 
    Full time
    Contract work
    Flexible hours

    Edgewater Federal Solutions

    Bethesda, MD
    1 day ago
  • $110k - $130k

     ...and effectively - anytime, anywhere, securely. We combine technical expertise, mission...  ...SkyePoint Decisions is seeking an Incident Response Analyst to support cybersecurity operations by...  ...in Cybersecurity, Computer Science, Information Systems, Information Assurance, or related... 
    Contract work
    Remote work

    SkyePoint Decisions

    Bethesda, MD
    3 days ago
  •  ...Incident Response Analyst Salisbury, NC (Remote) 90% Remote: must be within driving distance...  ...response experience # MS Security Tools Suite Experience (Defender)...  ...for managing threats, disseminating information, and handling, responding to, and investigating... 
    Contract work
    Work experience placement
    Remote work

    My3Tech Inc

    Salisbury, NC
    3 days ago
  •  ...Supporting the global Helpline team, the full-time Incident Response Analyst will manage digital security incidents, conduct root cause analyses, and strengthen the Helpline's capacity to respond to threats while working remotely from Indonesia, India, or the Philippines... 
    Full time
    Remote work

    Virtual Vocations Inc

    United States
    8 hours ago
  •  ...Incident Response Analyst Access Now defends and extends the digital rights of people and communities...  ...'s capacity to respond to digital security incidents affecting Access Now's...  ...team of incident handlers in conducting information security incident root cause analyses... 
    Full time
    Work at office
    Local area
    Remote work
    Work from home

    Access Now

    United States
    3 days ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-focused AI systems - and we need real incident responders to make it happen. Your hands-on experience in SOC operations... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Worldwide
    Flexible hours

    Alignerr

    Chicago, IL
    1 day ago
  •  ...Job Title: Senior SOC L3 Analyst / Incident Response Lead Location: San Jose, CA (4 days onsite, 1 day remote) About The AES Group:...  .... Act as the technical escalation point for critical security incidents. Perform threat hunting, root cause analysis... 
    Remote work

    The AES Group

    San Jose, CA
    2 days ago
  • Alignerr is seeking an Incident Response Analyst (AI Training) to evaluate how AI interprets security alerts and supports digital investigations. You will work with realistic incident data to improve AI reasoning and alignment with experienced responders. This remote hourly... 
    Remote job
    Hourly pay
    Contract work
    10 hours per week
    Flexible hours

    Alignerr

    Seattle, WA
    4 days ago
  • $131.3k - $237.35k

    Leidos Inc is seeking a Senior Incident Response Analyst to join their team in Arlington, Virginia. The role involves coordinating incident response efforts, analyzing cyber threats, and developing security protocols for the Department of Homeland Security's CISA Program... 

    Leidos

    Arlington, VA
    3 days ago
  • cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative...  ...clearance B.S. Computer Science, Information Technology, or a related field 3+...  ...29: CSF, and NIST SP-800-61 Computer Security Incident Handling Guide. Active SANS... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • $70k - $72k

     ...investigations. Conducts initial incident investigations,...  ...coordinates cross-functional responses, and performs forensic...  .... 0-2 years in IT or Security Ops. Bachelor's degree in Information Systems, or Computer Science...  ..., mentor to junior analysts. Visionary, able to design... 
    Temporary work
    Night shift

    Astreya

    Austin, TX
    16 hours ago
  • Spectraforce Technologies seeks an Information Security Analyst in Newark, NJ, with remote capability, for a 6-month contract...  ..., and escalation of potential data security incidents to the appropriate teams. Responsibilities include reviewing DLP alerts across email, web,... 
    Remote job
    Contract work

    Spectraforce Technologies

    Newark, NJ
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Incident Response Analyst. Be the first to apply!