Incident Response Analyst - L2
SOFTSWISS
Overview SOFTSWISS is looking for an Incident Response Analyst (L2) to join our Security Operations team. In this role, you will investigate complex security incidents, handle L1 escalations, and help improve our detection and incident response capabilities. Purpose of the role You will be responsible for investigating complex cybersecurity incidents, handling escalations from L1, and enhancing our SOC detection and incident response capabilities. We're looking for someone with an incident-driven mindset who can analyze attack chains, validate hypotheses, and make evidence-based decisions to effectively identify, investigate, and contain security threats. Key responsibilities Investigate and respond to complex security incidents throughout the entire incident lifecycle Perform digital forensic investigations, malware analysis, and evidence collection to determine the scope and root cause of security incidents Analyze attack techniques, correlate security events, and reconstruct attack timelines Develop and improve SIEM detections, correlation rules, and incident response playbooks Conduct threat hunting activities and reduce false positives through detection tuning Automate repetitive SOC activities using scripting where appropriate Collaborate with Infrastructure, Development, IT, and Security teams during incident response Mentor L1 analysts by providing technical guidance and feedback Required Experience 3+ years of experience in SOC, Incident Response, DFIR, or MSSP environments Strong understanding of modern cyber threats, attack techniques, and frameworks such as MITRE ATT&CK and the Cyber Kill Chain Hands‑on experience investigating security incidents, performing digital forensics, and malware analysis Hands‑on experience with SIEM platforms (e.g. Splunk, Wazuh, ClickHouse, Redash), including writing complex search queries, correlating events, and investigating large volumes of security data Good understanding of enterprise infrastructure, including Windows, Linux, macOS, Active Directory, email systems, Kubernetes, Docker, and databases Experience with automation using Python, PowerShell, or Bash Knowledge of Kubernetes and Docker security concepts Strong analytical mindset, problem‑solving skills, and effective communication in cross‑functional environments Intermediate or higher English level Nice to have Experience with Threat Hunting, Network Traffic Analysis (NTA), or cloud security (AWS) Familiarity with CI/CD and Infrastructure as Code (e.g. Terraform, Ansible) Participation in Red Team or Purple Team exercises Industry certifications such as GCIA, GCIH, GCED, OSCP, CEH, or Splunk certifications Familiarity with security frameworks such as NIST Our Benefits Private health insurance Sports benefits Comprehensive Mental Health Program Free English lessons (online) Local language courses Paid time off Maternity leave support Referral program rewards Upskilling, internal workshops, and participation in professional conferences and corporate events #J-18808-Ljbffr SOFTSWISS
- SOFTSWISS is seeking an Incident Response Analyst (L2) to join our Security Operations team. You will investigate complex incidents, handle L1 escalations, and help improve detection and response capabilities. You will analyze attack chains, validate hypotheses, and make...Suggested
- ...Job Description: Incident Response Analyst Position Title Incident Response Analyst Job Summary We are seeking an experienced Incident Response Analyst to investigate, contain, and remediate cybersecurity incidents across enterprise environments...SuggestedFull timeContract work
- ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build and refine AI systems designed to understand and respond to real-world cybersecurity threats. As an Incident Response Analyst, you'll bring your hands...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- CrowdStrike Holdings, Inc. is seeking an Analyst I for Falcon Complete, remote-friendly. This role focuses on incident handling, malware analysis, and proactive security... ..., Mac, and Linux, with emphasis on rapid response and precise reporting to clients. The ideal candidate...SuggestedRemote job
- ...message the job poster from V Group Inc. Recruiting for NY - MTA, VITA, State of NC, SC, MI, MS, TN at V Group Job Title: Incident Response & Forensics Analyst Duration: 6+ Months Location: Remote with Occasional visit to NYC Position Type: Contract Interview Type: In-person...SuggestedContract workWork at officeLocal areaRemote work
- ...seeking a Senior Security Operations Center (SOC) Analyst to lead investigations and mitigate security incidents. This role involves triaging alerts, performing... ...teams and aims to strengthen the organization’s response capabilities. #J-18808-Ljbffr Zelis Healthcare Inc...
- JetBlue is seeking an experienced Incident Response Analyst to support the Cyber Security Incident Response function. You will triage escalated alerts, investigate telemetry from SIEM and EDR, and help with containment and remediation while documenting findings. You will...
- University of Vermont seeks a Security Operations Analyst to analyze security telemetry from EDR/IDPS, detect threats, and coordinate incident response with CSIRT. You'll work with ETS to monitor data flow, refine alerts, and automate where possible, while enforcing access...Work at office
- Keyloop’s 24/7 Security Operations Center seeks an experienced L2 SOC Analyst to investigate, analyze, and respond to security alerts and incidents. You’ll act as the escalation point from L1 analysts and drive containment, remediation, and post-incident improvements....
$82k - $92k
WTW is seeking a professional in the United States for Incident & Crisis Management Support. The ideal candidate will have 4-7 years... ...in Operational Resilience and Business Continuity. Responsibilities include coordinating response activities, maintaining documentation...Temporary work- Fullsteam is seeking an experienced security incident response professional to lead investigations and cross-team containment efforts across its business units. The role requires handling alerts, phishing, malware, and other cybersecurity events with on-call rotation and...
- Alignerr is seeking an Incident Response Analyst for AI training to help shape how AI systems understand and respond to cybersecurity threats. This remote hourly contractor role offers flexible scheduling and 10-40 hours per week, allowing you to contribute hands-on SOC...Remote jobHourly payFor contractors10 hours per weekFlexible hours
- Reporting to the Manager of Cybersecurity Operations, the Cybersecurity Analyst supports Columbia University’s enterprise-wide Digital Forensics and Incident Response (DFIR) program. This role focuses on threat detection, incident handling, forensic investigation, and...Local area
- The Phoenix Group is seeking a security-focused professional to monitor security events, analyze logs, and assist in incident response. You will support vulnerability management, basic pen testing, and red team activities while helping maintain policies aligned with NIST...
$135k - $140k
...Americas. Senior Security Operation Center (SOC) Analyst - L2Cyber | New York, NYReports to: Cyber Incident Response ManagerRole OverviewWe are looking for a Senior SOC... ...within the Cyber Incident Response team to be an L2: this is a professional responsible for protecting...Permanent employmentFull timeLocal areaFlexible hours$110k - $125k
...Fox Rothschild in Atlantic City is seeking a Senior Analyst for Cybersecurity Operations & Response. This role involves supporting the execution and improvement... ...operations, and a bachelor’s degree. Duties include incident response, monitoring security tools, and...- ...Title: Cyber Security Specialist - Incident Response & Forensics Location: New York, NY 10004 Duration: 12 Months Contract Description The technical Incident Response & Forensics Specialist is a part of the IT Threat Intelligence group within the Cyber...Contract work
$75k - $100k
...The Incident Response Analyst is responsible for monitoring, investigating, and responding to security alerts and incidents across the organization. This role partners with internal and external teams to contain threats, remediate vulnerabilities, and restore impacted...Full time- Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams to...
- S&P Global is seeking a Cyber Incident Response Analyst to join the Cyber Defence team. You will detect, analyze, and respond to security incidents, enrich investigations with intelligence, and drive proactive defences across endpoints, networks, cloud, and SaaS. Your role...
- Omnissa is seeking an Information Security Analyst in Atlanta, GA, hybrid. You will monitor security events, respond to incidents, and develop detections and playbooks to strengthen our security posture. The role requires cloud security experience, SIEM/TESR proficiency...
- ...Street in New York invites students to join our Cybersecurity Analyst internship. You will work alongside mentors on real-world... ...matter to the firm, while learning about security investigations, incident response, and tooling development. As part of our cybersecurity team,...Internship
- ...of Toyota Tsusho Systems. Summary: The Senior Detection and Response Analyst role will provide ongoing support to the Regional Security Operations... ...Functions: Act as the point of escalation for all security incidents; provide expert level feedback regarding current monitoring...Work at officeWorldwideShift work
$100k - $130k
A leading cybersecurity firm is seeking a proactive Security Analyst to join their team in the United States. This role involves monitoring security alerts, responding to incidents, and developing threat detection capabilities. The ideal candidate will have 4-6 years of...Remote job$82k - $92k
Description The Role Incident & Crisis Management Support Support the coordination and facilitation of response activities during operational disruption events Assist with incident communications, stakeholder updates, and response tracking Maintain and update incident...Temporary workLocal areaVisa sponsorshipWork visaFlexible hours- A leading cybersecurity firm based in the United States is seeking an experienced Project Manager for their Incident Response practice. The ideal candidate will have over three years of project coordination experience and strong organizational skills to manage multiple...
- ...production systems. The ideal candidate will have 4-6 years of experience in production support and incident management, particularly in fintech or SaaS environments. Responsibilities include monitoring systems, managing incidents, and facilitating communication among cross-...
- ...Production Support & Issue Management Specialist to enhance system stability and reliability. The role involves real-time monitoring, incident response, and compliance documentation. Preferred candidates will have 4-6 years of experience in production support within fintech,...
- ...security operations and involves coordinating with our managed detection and response provider. The ideal candidate should have over 5 years of experience in security operations, proficiency in incident response, and strong communication skills. A comprehensive benefits...
$64k - $84k
Long View Systems is seeking an Intermediate Security Operations Centre Analyst for our Denver or Houston branches to work in an overnight role. You will monitor, investigate, and respond to security alerts in real time, acting as a frontline defender for our client’s environment...Night shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Analyst - L2. Be the first to apply!
- pay analyst New York, NY
- design analyst New York, NY
- internal audit analyst New York, NY
- open source analyst New York, NY
- production control analyst New York, NY
- legislative analyst New York, NY
- trade analyst New York, NY
- accessibility analyst New York, NY
- soc analyst New York, NY
- hybrid analyst New York, NY

