Cyber Defense and Incident Response Analyst
$95.17k - $156.36kGuardian Life Insurance
Cybersecurity Incident Response Leader
This role sits at the intersection of hands-on incident response, cyber defense and threat mitigation. You will be part of a highly collaborative cyber defense and incident response organization, responding to and investigating high-impact security incidents.
The ideal candidate is an analytical, curious, and resilient technical leader with a strong investigative mindset and a desire to reduce risk through decisive action. You bring deep knowledge of modern attack techniques and frameworks, communicate clearly under pressure, and naturally step in to respond to and lead incidents during critical situations. You thrive in partnership working closely with security, IT, legal, HR, communications, and business teams to drive effective identification, containment, investigation, response, and recovery.
You Have:
- 5-7 years of overall cybersecurity experience, with a focus in digital forensics, incident response, SOC, or threat mitigation.
- Broad and deep technical expertise across enterprise environments, including public cloud and SaaS platforms.
- Experience with AI models, LLM's and implementing AI for Cyber detection response.
- Eagerness to grow within the security leadership and obtain experience, ideally in incident response or cyber defense, with a player/coach mindset.
- Strong command of incident response methodologies, digital forensics principles, and evidence handling.
- Knowledge and experience in threat hunting, malware analysis, attacker techniques, and common vulnerabilities.
- Practical experience working with NIST CSF, MITRE ATT&CK, and related security frameworks.
- Hands-on experience with SIEM and log analytics platforms including logging, monitoring, insider threat, and UBA concepts.
- Ability to translate cyber threat intelligence into actionable detections, mitigations, and response strategies.
- Experience operating in regulated environments, preferably financial services or insurance, with understanding of U.S. privacy regulations.
- Proven ability to lead, mentor, and develop high-performing technical teams.
- Strong written and verbal communication skills, with experience engaging technical teams, executives, and cross-functional partners.
- Analytical, curious, and resilient under pressure; able to think structurally and creatively during incidents.
- BS or MS in cyber security, digital forensics, or equivalent experience and/or industry certifications preferred.
- A continuous, lifelong learner with a desire to grow into broader cyber leadership.
You Will:
- Investigate complex, high-impact cyber incidents advanced from the SOC.
- Act as a technical lead, working as part of a collaborative team responding to actions across cybersecurity security teams while collaborating with legal, enterprise technology, engineering, and other internal teams.
- Contribute to and refine test incident response plans, playbooks, quick-reference guides, and crisis communication procedures.
- Partner with first-line SOC teams to build muscle memory, clarify containment authorities, and standardize response actions.
- Coordinate with business continuity/disaster recovery teams to ensure an integrated response to large-scale cyber events.
- Drive continuous improvement of logging, monitoring, detection coverage, and UBA capabilities, proactively identifying gaps.
- Ensure incidents are tracked, reported, and reviewed, with high-quality after-action reports and meaningful metrics.
- Collaborate across teams through cross-functional incident response training events, and debriefs to align on threats, trends, and lessons learned.
- Lead risk mitigation initiatives and improvements to security control effectiveness.
- Collaborate with cybersecurity leadership on strategy, roadmap development, vendor management, and talent planning.
- Contribute to enterprise programs such as DLP and insider risk management.
- Support internal and external audits, regulatory requests, and due diligence activities.
- Continuously identify opportunities to enhance incident response maturity, automation, and cyber defense capabilities.
- Drive our user behavior analytics (UBA) program working with the business to develop and improve appropriate logging monitoring. Develop standard operating procedures for our 1st line SOC based on threats/observed incidents.
Location and Travel
- Three days a week at a Guardian office in New York, NY. or Holmdel, NJ
- 20% travel to other Guardian Offices as needed
Salary Range:
$95,170.00 - $156,355.00
The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.
Our Promise
At Guardian, you'll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.
Equal Employment Opportunity
Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law.
Visa Sponsorship
Guardian is not currently or in the foreseeable future sponsoring employment visas. In order to be a successful applicant. you must be legally authorized to work in the United States, without the need for employer sponsorship.
- ...Alignerr is seeking an Incident Response Analyst to analyze security events, shape AI responses, and work flexibly from anywhere. Work spans 10... ...of SOC experience and is skilled at identifying meaningful cyber threats, communicating findings clearly, and working independently...CyberRemote work10 hours per week
- ...Ashland Inc. seeks a Cyber Security Manager: Incident Detection and Response for a remote role. The successful candidate will lead a blended team and oversee cyber incident investigations while ensuring compliance with robust security operations. Candidates must have 7...CyberRemote work
- ...Job Title: Incident Response Sr. Analyst Location: Jersey City, NJ [Hybrid - Week 3 days to onsite is must] Duration: 26 Months... ...Qualifications: Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related discipline Both...CyberLocal area
$100k - $185k
...A global intelligence firm is seeking a Cyber Incident Response Analyst to join its Cyber Defence team. The successful candidate will coordinate cybersecurity responses, integrate threat intelligence, and develop operational playbooks. Candidates should have a solid grasp...Cyber- ...Neier Inc. is looking for a Manager of Cyber Defense to lead their team based in the United States. This role includes responsibilities such as supporting the company’s security... ...posture by handling cybersecurity threats and incidents, leading incident response activities,...CyberRemote work
- ...NY $60-70/hr, $125-150k when converted to perm Seeking an Incident Response Analyst to support a security operations and incident response program... .... Conduct digital forensics and evidence analysis. Support cyber threat intelligence collection and analysis. Develop and...CyberPermanent employment2 days per week
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build and refine AI systems designed... ...will directly shape how AI handles the next generation of cyber threats. Organization : Alignerr Type :...CyberHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-... ...opportunity to directly influence how AI understands and responds to cyber threats. Organization: Alignerr Type: Hourly Contract...CyberHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$75k - $100k
...information is available at Who are we hiring? The Incident Response Analyst is responsible for monitoring, investigating, and... ...digital forensics involving investigating and remediating cyber events. ~ Comprehend current cyber security threats such...CyberLocal area- ...Request Title: Bilingual Global Incident Response (GIR) Analyst Qty: 4 Desired Start Date: ASAP Duration: 12 Months, Hrs/Wk:40.00... ...required. Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related discipline 5 + years...CyberContract workImmediate startRemote workShift work3 days per week
- ...VITA, State of NC, SC, MI, MS, TN at V Group Job Title: Incident Response & Forensics Analyst Duration: 6+ Months Location: Remote with Occasional visit... ...a part of the IT Threat Intelligence group within the Cyber Security Operations Center and will be expected to provide...CyberContract workWork at officeLocal areaRemote work
- Senior Incident Responder Lead cradle-to-grave incident response actions for declared incidents impacting the OT and IT environments... ...orchestration following the cyber technical incident response plan... ...- GCIH GIAC Certified Forensic Analyst - GCFA GIAC Certified Forensic...Cyber
$77k - $202k
...protecting organisations from cyber threats through advanced... ...sensitive data. In cybersecurity incident management at PwC, you will focus... ...and data. You will be responsible for identifying, analysing, and... ...common attack techniques and defenses. Hunting and responding to advanced...CyberH1b- ...cybersecurity levels, manage risk, and train personnel in proper cyber hygiene. The ideal candidate will have an Associate's degree... ...Essentials (GSEC), CISSP, or SSCP. This role includes responsibilities such as monitoring data security, conducting vulnerability assessments...Cyber
- ...Neevsys LLC is seeking a Cybersecurity Analyst responsible for ensuring the confidentiality, integrity, and availability of IT systems. You will monitor security events, conduct vulnerability assessments, and ensure compliance with federal security requirements. The ideal...Cyber
- ...Join the CERT team in New York on a V.I.E assignment to detect and respond to global security incidents while contributing to improvements in detection capability and cyber threat intelligence. The position requires a Master's degree in computer science or cybersecurity...Cyber
$152.29k - $250.2k
...Head of Cyber Incident Response Position Overview Are you passionate about leading complex cyber incident response efforts while remaining deeply... .... You will be part of a highly collaborative cyber defense organization, leading the response to high‑impact security...CyberWork at office3 days per week$77k - $202k
PwC is seeking a Senior Associate in Cybersecurity Incident Management in New York City. This role involves analyzing complex cybersecurity challenges and mentoring junior team members. Applicants should have a Bachelor’s Degree in a relevant field and at least 3 years...Cyber- ...A leading cybersecurity consultancy is seeking a strategic leader to head Cyber Incident Response in the Americas. Candidates must have over 15 years of experience and a proven track record with C-level executives in Fortune 500 companies. The role involves delivering...Cyber
- 600 Mobility Tech Solutions LLC is seeking a Cyber Security Engineer to join its Information Security & Cyber Security team. The ideal candidate will have strong experience in incident response, digital forensics, and threat detection, ensuring robust security measures...Cyber
- ...global immigration services, is hiring a Cyber Security Engineer to join their... ...Cyber Security team. This role focuses on incident response, digital forensics, and improving threat... ...strengthening Fragomen’s security posture while mentoring junior analysts. #J-18808-Ljbffr...Cyber
- ...functional teams within the organization. This leader will oversee critical cybersecurity functions including incident response, threat detection, and team accountability, while providing insights into security metrics to enhance Alkami's defensive posture. #J-18808-Ljbffr...Cyber
- ...AmerisourceBergen Corporation is seeking an Engineer II for Cyber Incident Response. This mid-level role in our Security Operations Center involves detecting and responding to cybersecurity incidents, analyzing alerts, and collaborating with global teams to enhance security...Cyber
- ...Apital Inc. is seeking a proactive Incident Response Analyst to join its cybersecurity team supporting modern train control systems. In this role... ...to protect rail communication systems and respond to cyber events that may affect public safety. The ideal candidate will...Cyber
- ...Carlsbad Tech is seeking an experienced Cyber Security Engineer to work onsite in Franklin or Madison County, Ohio. The role demands... ...0 years of experience in network security, threat detection, incident response, and vulnerability management. Responsibilities include...Cyber
- ...A global cybersecurity consultancy is seeking an Incident Response Engagement Lead to manage cyber incidents and lead a team of experts. The role involves project management, relationship building, and effective incident response. Ideal candidates should possess strong...Cyber
$150k - $185k
...Summary The Cybersecurity Incident Response Team Lead is a leadership role responsible for leading and enhancing the bank’s Security Operations... ...business objectives. Provide thought leadership on emerging cyber risks and recommend proactive measures to mitigate them....Cyber- ...mSupply is searching for a Manager of Cyber Security to execute the organization... ...while leading a team of Security Analysts. The role is operational, requiring... ...execution and compliance experience. Responsibilities include incident response and management of security...CyberRemote work
- ...A cybersecurity company is seeking an Incident Response Analyst to support the Incident Response lifecycle through triage of detections. This remote position is aimed at current U.S. Armed Forces service members. Candidates should possess technical skills including experience...Remote work
- ...A leading cybersecurity firm seeks an Incident Response Analyst to support incident response activities remotely. The role involves triage and investigation of security events, with a focus on developing detection criteria across various technologies. Candidates should...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense and Incident Response Analyst. Be the first to apply!
- entry level analyst New York, NY
- cash analyst New York, NY
- workforce analyst New York, NY
- sales and trading analyst New York, NY
- dna analyst New York, NY
- kyc analyst New York, NY
- remote epic analyst New York, NY
- packaging analyst New York, NY
- back office analyst New York, NY
- intellectual property analyst New York, NY

