Cyber Incident Response Analyst II
AmTrust
OverviewThe Cyber Security Incident Response II is responsible for detecting, analyzing, investigating, and responding to cybersecurity threats and incidents across the enterprise. This role performs advanced threat detection, incident triage, forensic analysis, containment, and recovery activities coordinated across internal and external stakeholders.The ideal candidate possesses a strong foundation in cyber security incident response, digital forensics, detection capabilities, and stakeholder engagement. This position requires the ability to independently manage complex cybersecurity incidents, collaborate effectively with business and technical teams, influence decision-making through risk-based recommendations, and perform successfully in time-sensitive and high-pressure environments.This role partners with third-party service providers, vendors, infrastructure teams, and security engineering and architecture teams to strengthen the organization's security posture and improve incident response capabilities. The candidate will maintain a strong understanding of AmTrust's mission, vision, and values while upholding the highest standards of professionalism and service.ResponsibilitiesInvestigate security alerts, suspicious activity, and cybersecurity incidents to determine scope, impact, root cause, and remediation actions.Lead the analysis and response efforts for medium- to high-complexity security incidents, ensuring timely containment, eradication, recovery, and documentation.Perform digital forensics, log analysis, artifact collection and preservation, and host and network investigations using enterprise security monitoring and endpoint detection tools.Analyze indicators of compromise (IOCs), tactics, techniques, and procedures (TTPs), and threat intelligence to support investigations.Utilize SIEM, EDR, threat intelligence, cloud security, and case management platforms to investigate and respond to security incidents.Develop and maintain detection logic, correlation rules, analytics, and response playbooks to improve detection and response capabilities.Document investigation findings, incident timelines, root cause analysis, and lessons learned in accordance with established procedures.Collaborate with IT, Security, Legal, Risk, HR, and Compliance teams as required during incident investigations.Participate in tabletop exercises, incident response simulations, and post-incident reviews to validate and improve response readiness.Recommend improvements to security controls, detection content, monitoring coverage, and response processes based on investigative findings.Participate in on-call and after-hours incident response support as required.QualificationsBachelor's degree in Cyber Security, Information Technology, Computer Science, Information Systems, or a related field. Equivalent practical experience may be considered in lieu of a degree.3-5+ years of experience in cyber security incident response, digital forensics, security operations, threat hunting, or related cyber security disciplines.Experience investigating and responding to security incidents in enterprise environments.Strong understanding of threat actor tactics, techniques, and procedures, cyber attack methodologies, and incident response frameworks.Experience working with security monitoring technologies, including SIEM, EDR/XDR, email security, identity security, and cloud security platforms.Ability to manage multiple investigations while maintaining attention to detail and documentation quality.Strong analytical, problem solving, written, and verbal communication skills.Ability to effectively communicate technical findings and risk-based recommendations to both technical and non-technical audiences.Proven ability to work independently, manage competing priorities, and perform effectively in fast-paced, high-pressure environments.Preferred:Industry certifications such as Security+, CySA+, SecurityX (formerly CASP+) GCIH, GCFA, GCIA, GNFA, CISSP, or other relevant cybersecurity certifications.Experience investigating incidents across hybrid environments.Experience conducting malware analysis, memory analysis, and digital forensic investigations.Knowledge of scripting, automation, and query languages such as PowerShell, Python, KQL, SPL, or similar languages.Experience operating in highly regulated industries and familiarity with applicable cybersecurity regulatory requirements.What We OfferAmTrust Financial Services offers a competitive compensation package and excellent career advancement opportunities. Our benefits include: Medical & Dental Plans, Life Insurance, including eligible spouses & children, Health Care Flexible Spending, Dependent Care, 401k Savings Plans, Paid Time Off.AmTrust strives to create a diverse and inclusive culture where thoughts and ideas of all employees are appreciated and respected. This concept encompasses but is not limited to human differences with regard to race, ethnicity, gender, sexual orientation, culture, religion or disabilities.AmTrust values excellence and recognizes that by embracing the diverse backgrounds, skills, and perspectives of its workforce, it will sustain a competitive advantage and remain an employer of choice. Diversity is a business imperative, enabling us to attract, retain and develop the best talent available. We see diversity as more than just policies and practices. It is an integral part of who we are as a company, how we operate and how we see our future.Job SummaryRequisition ID: JR1006687Category: Information TechnologyPosition Type: Regular Full-Time
$134.5k - $265.1k
Position Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-... ...Resilience team, who will have extensive experience in Cyber Incident Response. This role involves supporting our client teams in defining,...CyberLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Cyber Oracle Cloud Security - Manager / Engineering Manager II Are you interested in working in a dynamic environment that offers opportunities for growth and new responsibilities? As an Engineering Manager II in Deloitte’s Cyber practice, you will...CyberLocal areaVisa sponsorship- ...Senior Information Security Analyst We are conducting a search for a highly skilled... ...maintaining a secure environment through incident response, threat hunting, security assessments,... ...and procedures to continuously improve cyber defenses across Division and Global...Cyber
$130k - $135k
...we’re seeking a Senior SOC Analyst to support a weekend schedule... ...strengthening our detection, response, and threat-informed defense... ...play a key role in proactive cyber defense by collaborating across... ...threat landscape. Incident Response & Security Event Handling...CyberFull timeRemote workShift workWeekend work$61.5k - $85k
OverviewThe Business Analyst II - Operations plays a key role in driving operational efficiency and supporting strategic initiatives... ...skills, experience, education and training, the scope and responsibilities of the role, as well as market and business considerations.#LI...SuggestedFull timeFlexible hours$105.4k - $207.8k
Position Summary Deloitte’s Cyber team helps organizations address evolving cyber threats with solutions that strengthen resilience... ...Management Specialist on the Cyber team, you will be responsible for… Assessing client data governance and compliance environments...CyberLocal areaVisa sponsorship$69.4k - $158k
Cyber Security AnalystThe Opportunity:As a security operations center analyst, you’re in the middle of the action, responding... .... You’ll analyze incidents to figure out just... ...assessment and incident response.Join us. The world... ...GEDDoD 8570 IAT Level II CertificationCSSP Analyst...CyberFull timeContract workPart timeWork at officeLocal areaRemote workShift work$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity... ...PlainID professional at Deloitte Consulting, you will be responsible for delivering high-quality work products within defined timelines...CyberLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique... ...you'll doAs an Engineering Manager II on the Deloitte Cyber team, you will be responsible for:Leading the design and... ...resolve access-related issues and incidents efficiently.Integrate Identity solutions...CyberLocal areaVisa sponsorship$69.4k - $158k
...security operations center analyst, you’re in the middle... ...’re the first line of cyber defense for your... ...impact. You’ll analyze incidents to figure out just how... ...assessment and incident response. You Have Experience with... ...GED DoD 8570 IAT Level II Certification CSSP Analyst...CyberFull timeContract workPart timeLocal areaShift work$100k - $120k
...Skill: Cyber Threat Response Analyst Must Have Technical/Functional Skills Hands-on experience with Palo Alto XSOAR/XSIAMXDR, including playbooks... ...of SOC operations, detection engineering, and incident response workflows. Working knowledge of MITRE ATT&CK...CyberFull time$69.4k - $158k
...security operations center analyst, you're in the middle... ...'re the first line of cyber defense for your... ...impact. You'll analyze incidents to figure out just how... ...assessment and incident response. You Have Experience... ...GED DoD 8570 IAT Level II Certification CSSP Analyst...CyberFull timeContract workPart timeWork at officeLocal areaRemote workShift work$58.5k - $78k
Overview The Business Systems Analyst at AmTrust is the individual who has the primary responsibility to elicit, analyze, validate, specify, verify, and manage the real needs of the project stakeholders, including customers and end users. The BSA serves as the conduit...Full timeFlexible hoursNight shift$105.4k - $207.8k
Position Summary Are you interested in improving the cyber and organizational risk profiles of leading companies? Do you want... ..., Growth and Transformation on the Cyber team, you will be responsible for:Building scalable batch and stream processing pipelines that...CyberLocal areaVisa sponsorship$91.1k - $170.4k
...detects, responds and mitigates cyber-risk, protecting EY and... ...Investigative Services (CIS) Junior Incident Coordinator will exercise... ...coordinate security incident response to cybersecurity events or incidents... ...Security Incident Response Analyst or supporting function (2...CyberSummer holidayRemote workFlexible hours$83.3k - $133.28k
.../IEC 62443)Solid knowledge of cybersecurity fundamentals including risk assessments, access control, incident response, and vulnerability managementFamiliarity of cyber platforms (e.g. AV Solutions, Backup and recovery, Network Monitoring) and patching strategies of OT...CyberRelocationMonday to Friday$125k - $155.56k
...improvement in both visibility and threat response. This position requires both strategic... ...monitoring platforms and SIEMs.Assist with incident response and respond to incident escalations... ...and automation.Stay informed on evolving cyber threats, technologies, and industry...CyberFull timeLocal area- Position Summary Deloitte’s Cyber team helps clients address... ...Resilience team, you will be responsible for:Leading the design and... ...security operations center (SOC) analysts and threat detection... ...providing rapid crisis and cyber incident response. Through this work,...CyberLocal area
$134.5k - $265.1k
...SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across... ...Engineering Manager II on the Enterprise Security team, you will be responsible for supporting SAP security and GRC implementations,...CyberLocal areaVisa sponsorship$82.6k - $162.8k
Position Summary Join our Deloitte Cyber team to deliver powerful solutions to help our... ...31/2026.Work you'll doAs a Security Engineer II on the Deloitte Cyber Identity & Access Management team, you will be responsible for…Supporting the design, implementation, integration...CyberLocal areaVisa sponsorship$105.4k - $207.8k
...Strategy, Growth, and TransformationDeloitte’s Cyber business is passionate about making an... ...Enterprise Security team, you will be responsible for…Designing, deploying, and managing... ..., or syslog for threat detection and incident response workflowsExperience designing and...CyberWork experience placementLocal areaRemote work$105.4k - $207.8k
...Summary Join Deloitte’s Cyber practice as a Cyber SecOps... ...strengthen monitoring, detection, response, and operational efficiency.... ...security operations center analysts and threat detection... ...response, and recovery across cyber incidents and broader business disruptions...CyberLocal areaVisa sponsorship$141.2k - $278.3k
...deeply secure cloud environments.You will be responsible for the end-to-end design and... ...continuous compliance against evolving cyber threats. You will collaborate closely with... ...minimize the blast radius of potential incidents.Architect highly available and secure connections...CyberLocal areaVisa sponsorshipFlexible hours$127.2k - $246.9k
...Enterprise Security Services organization.Responsibilities:Execute the end-to-end engineering... ...closely with Threat Intelligence, SOC, and Incident Response teams to map detections and... ...metrics, and tracesSupport and streamline Cyber Operations by actively automating...CyberH1bLocal area$82.6k - $162.8k
...Consultant, ServiceNowOur Deloitte Cyber team understands the unique challenges and... ...Strategy & Transformation team, you will be responsible for...Supporting requirements workshops... ...Risk and Compliance (CIS-RC), CIS-Security Incident Response (CIS-SIR), CIS-Vulnerability...CyberLocal areaRemote workVisa sponsorship$169.01k - $370.53k
...join our Managed Services practice. Responsibilities: Provide strategic leadership for... ...management coordination and oversight of Cyber Managed Services delivery across... ...governance managed services, including incident, problem, and service request management...CyberH1bLocal area$102.5k - $210.6k
...do As a Lead Cloud Security Analyst, you are an advanced... ...strategic alignment between cyber and infrastructure domains.... ...dynamic business needs. Key Responsibilities Technical Leadership & Advanced... ...line subject matter expert in incident response, vulnerability management...CyberFull timeFlexible hoursShift work$82.6k - $162.8k
...and artificial intelligence, Deloitte’s Cyber Defense & Resilience team offers the scale... ...Defense & Resilience team, you will be responsible for…Supporting the design and... ...security operations, threat detection, and incident responseWorking with technologies such as...CyberLocal areaVisa sponsorship- ...Job-Specific Essential Duties and Responsibilities: - Provide operational support within the Command and Incident Center (CIC) by executing routine service requests... ...management activities as a Critical Incident Analyst (Tier 1), assisting with monitoring, ticket...Minimum wageContract workTemporary workWork experience placementRemote workShift workNight shift
$102.8k - $176k
...risk consulting practice. The Strategic Account Manager is responsible for developing cyber and risk consulting accounts through the cultivation of... ...and compliance, privacy, third-party risk, cloud security, incident response, and managed security leaders to identify...CyberFull timeContract workWork experience placementInternshipWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Analyst II. Be the first to apply!
- entry level cyber security analyst Cleveland, OH
- information security consultant Cleveland, OH
- cyber security analyst Cleveland, OH
- cyber Cleveland, OH
- cyber security analyst no experience
- cyber security operations analyst
- entry level cyber security analyst
- cyber soc analyst
- cyber security analyst internship
- remote cyber security analyst


