Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Response Analyst - L2

SOFTSWISS

Overview SOFTSWISS is looking for an Incident Response Analyst (L2) to join our Security Operations team. In this role, you will investigate complex security incidents, handle L1 escalations, and help improve our detection and incident response capabilities. Purpose of the role You will be responsible for investigating complex cybersecurity incidents, handling escalations from L1, and enhancing our SOC detection and incident response capabilities. We're looking for someone with an incident-driven mindset who can analyze attack chains, validate hypotheses, and make evidence-based decisions to effectively identify, investigate, and contain security threats. Key responsibilities Investigate and respond to complex security incidents throughout the entire incident lifecycle Perform digital forensic investigations, malware analysis, and evidence collection to determine the scope and root cause of security incidents Analyze attack techniques, correlate security events, and reconstruct attack timelines Develop and improve SIEM detections, correlation rules, and incident response playbooks Conduct threat hunting activities and reduce false positives through detection tuning Automate repetitive SOC activities using scripting where appropriate Collaborate with Infrastructure, Development, IT, and Security teams during incident response Mentor L1 analysts by providing technical guidance and feedback Required Experience 3+ years of experience in SOC, Incident Response, DFIR, or MSSP environments Strong understanding of modern cyber threats, attack techniques, and frameworks such as MITRE ATT&CK and the Cyber Kill Chain Hands‑on experience investigating security incidents, performing digital forensics, and malware analysis Hands‑on experience with SIEM platforms (e.g. Splunk, Wazuh, ClickHouse, Redash), including writing complex search queries, correlating events, and investigating large volumes of security data Good understanding of enterprise infrastructure, including Windows, Linux, macOS, Active Directory, email systems, Kubernetes, Docker, and databases Experience with automation using Python, PowerShell, or Bash Knowledge of Kubernetes and Docker security concepts Strong analytical mindset, problem‑solving skills, and effective communication in cross‑functional environments Intermediate or higher English level Nice to have Experience with Threat Hunting, Network Traffic Analysis (NTA), or cloud security (AWS) Familiarity with CI/CD and Infrastructure as Code (e.g. Terraform, Ansible) Participation in Red Team or Purple Team exercises Industry certifications such as GCIA, GCIH, GCED, OSCP, CEH, or Splunk certifications Familiarity with security frameworks such as NIST Our Benefits Private health insurance Sports benefits Comprehensive Mental Health Program Free English lessons (online) Local language courses Paid time off Maternity leave support Referral program rewards Upskilling, internal workshops, and participation in professional conferences and corporate events #J-18808-Ljbffr SOFTSWISS

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Incident Response Analyst - L2 in New York, NY vacancy
  • SOFTSWISS is seeking an Incident Response Analyst (L2) to join our Security Operations team. You will investigate complex incidents, handle L1 escalations, and help improve detection and response capabilities. You will analyze attack chains, validate hypotheses, and make... 
    Suggested

    SOFTSWISS

    New York, NY
    4 days ago
  •  ...Job Description: Incident Response Analyst Position Title Incident Response Analyst Job Summary We are seeking an experienced Incident Response Analyst to investigate, contain, and remediate cybersecurity incidents across enterprise environments... 
    Suggested
    Full time
    Contract work

    Ova Technologies

    New York, NY
    2 days ago
  •  ...Incident Response Analyst (AI Training) About the Role We're partnering with leading AI research labs to build and refine AI systems designed to understand and respond to real-world cybersecurity threats. As an Incident Response Analyst, you'll bring your hands... 
    Suggested
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    1 day ago
  • CrowdStrike Holdings, Inc. is seeking an Analyst I for Falcon Complete, remote-friendly. This role focuses on incident handling, malware analysis, and proactive security...  ..., Mac, and Linux, with emphasis on rapid response and precise reporting to clients. The ideal candidate... 
    Suggested
    Remote job

    CrowdStrike Holdings, Inc.

    New York, NY
    2 days ago
  •  ...message the job poster from V Group Inc. Recruiting for NY - MTA, VITA, State of NC, SC, MI, MS, TN at V Group Job Title: Incident Response & Forensics Analyst Duration: 6+ Months Location: Remote with Occasional visit to NYC Position Type: Contract Interview Type: In-person... 
    Suggested
    Contract work
    Work at office
    Local area
    Remote work

    V Group

    New York, NY
    3 days ago
  •  ...seeking a Senior Security Operations Center (SOC) Analyst to lead investigations and mitigate security incidents. This role involves triaging alerts, performing...  ...teams and aims to strengthen the organization’s response capabilities. #J-18808-Ljbffr Zelis Healthcare Inc... 

    Zelis Healthcare Inc.

    New York, NY
    13 hours ago
  • JetBlue is seeking an experienced Incident Response Analyst to support the Cyber Security Incident Response function. You will triage escalated alerts, investigate telemetry from SIEM and EDR, and help with containment and remediation while documenting findings. You will... 

    JetBlue

    New York, NY
    4 days ago
  • University of Vermont seeks a Security Operations Analyst to analyze security telemetry from EDR/IDPS, detect threats, and coordinate incident response with CSIRT. You'll work with ETS to monitor data flow, refine alerts, and automate where possible, while enforcing access... 
    Work at office

    University of Vermont

    New York, NY
    4 hours ago
  • Keyloop’s 24/7 Security Operations Center seeks an experienced L2 SOC Analyst to investigate, analyze, and respond to security alerts and incidents. You’ll act as the escalation point from L1 analysts and drive containment, remediation, and post-incident improvements.... 

    Socket.dev

    New York, NY
    4 days ago
  • $82k - $92k

    WTW is seeking a professional in the United States for Incident & Crisis Management Support. The ideal candidate will have 4-7 years...  ...in Operational Resilience and Business Continuity. Responsibilities include coordinating response activities, maintaining documentation... 
    Temporary work

    WTW

    New York, NY
    1 day ago
  • Fullsteam is seeking an experienced security incident response professional to lead investigations and cross-team containment efforts across its business units. The role requires handling alerts, phishing, malware, and other cybersecurity events with on-call rotation and... 

    Fullsteam Personnel, LLC

    New York, NY
    4 days ago
  • Alignerr is seeking an Incident Response Analyst for AI training to help shape how AI systems understand and respond to cybersecurity threats. This remote hourly contractor role offers flexible scheduling and 10-40 hours per week, allowing you to contribute hands-on SOC... 
    Remote job
    Hourly pay
    For contractors
    10 hours per week
    Flexible hours

    Alignerr

    New York, NY
    2 days ago
  • Reporting to the Manager of Cybersecurity Operations, the Cybersecurity Analyst supports Columbia University’s enterprise-wide Digital Forensics and Incident Response (DFIR) program. This role focuses on threat detection, incident handling, forensic investigation, and... 
    Local area

    Columbia University Information Technology

    New York, NY
    4 days ago
  • The Phoenix Group is seeking a security-focused professional to monitor security events, analyze logs, and assist in incident response. You will support vulnerability management, basic pen testing, and red team activities while helping maintain policies aligned with NIST... 

    The Phoenix Group

    New York, NY
    3 days ago
  • $135k - $140k

     ...Americas. Senior Security Operation Center (SOC) Analyst - L2Cyber | New York, NYReports to: Cyber Incident Response ManagerRole OverviewWe are looking for a Senior SOC...  ...within the Cyber Incident Response team to be an L2: this is a professional responsible for protecting... 
    Permanent employment
    Full time
    Local area
    Flexible hours

    Richemont

    New York, NY
    1 day ago
  • $110k - $125k

     ...Fox Rothschild in Atlantic City is seeking a Senior Analyst for Cybersecurity Operations & Response. This role involves supporting the execution and improvement...  ...operations, and a bachelor’s degree. Duties include incident response, monitoring security tools, and... 

    Fox Rothschild

    New York, NY
    2 days ago
  •  ...Title: Cyber Security Specialist - Incident Response & Forensics Location: New York, NY 10004 Duration: 12 Months Contract Description The technical Incident Response & Forensics Specialist is a part of the IT Threat Intelligence group within the Cyber... 
    Contract work

    InterSources

    New York, NY
    2 days ago
  • $75k - $100k

     ...The Incident Response Analyst is responsible for monitoring, investigating, and responding to security alerts and incidents across the organization. This role partners with internal and external teams to contain threats, remediate vulnerabilities, and restore impacted... 
    Full time

    MFI Technologies Incorporated

    New York, NY
    1 day ago
  • Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams to... 

    Richemont

    New York, NY
    13 hours ago
  • S&P Global is seeking a Cyber Incident Response Analyst to join the Cyber Defence team. You will detect, analyze, and respond to security incidents, enrich investigations with intelligence, and drive proactive defences across endpoints, networks, cloud, and SaaS. Your role... 

    SPGI

    New York, NY
    13 hours ago
  • Omnissa is seeking an Information Security Analyst in Atlanta, GA, hybrid. You will monitor security events, respond to incidents, and develop detections and playbooks to strengthen our security posture. The role requires cloud security experience, SIEM/TESR proficiency... 

    Omnissa

    New York, NY
    4 days ago
  •  ...Street in New York invites students to join our Cybersecurity Analyst internship. You will work alongside mentors on real-world...  ...matter to the firm, while learning about security investigations, incident response, and tooling development. As part of our cybersecurity team,... 
    Internship

    Jane Street

    New York, NY
    3 days ago
  •  ...of Toyota Tsusho Systems. Summary: The Senior Detection and Response Analyst role will provide ongoing support to the Regional Security Operations...  ...Functions: Act as the point of escalation for all security incidents; provide expert level feedback regarding current monitoring... 
    Work at office
    Worldwide
    Shift work

    Socket

    New York, NY
    3 days ago
  • $100k - $130k

    A leading cybersecurity firm is seeking a proactive Security Analyst to join their team in the United States. This role involves monitoring security alerts, responding to incidents, and developing threat detection capabilities. The ideal candidate will have 4-6 years of... 
    Remote job

    BLACKCLOAK

    New York, NY
    1 day ago
  • $82k - $92k

    Description The Role Incident & Crisis Management Support Support the coordination and facilitation of response activities during operational disruption events Assist with incident communications, stakeholder updates, and response tracking Maintain and update incident... 
    Temporary work
    Local area
    Visa sponsorship
    Work visa
    Flexible hours

    WTW

    New York, NY
    1 day ago
  • A leading cybersecurity firm based in the United States is seeking an experienced Project Manager for their Incident Response practice. The ideal candidate will have over three years of project coordination experience and strong organizational skills to manage multiple... 

    MOXFIVE

    New York, NY
    1 day ago
  •  ...production systems. The ideal candidate will have 4-6 years of experience in production support and incident management, particularly in fintech or SaaS environments. Responsibilities include monitoring systems, managing incidents, and facilitating communication among cross-... 

    ClarityPay

    New York, NY
    3 days ago
  •  ...Production Support & Issue Management Specialist to enhance system stability and reliability. The role involves real-time monitoring, incident response, and compliance documentation. Preferred candidates will have 4-6 years of experience in production support within fintech,... 

    ClarityPay Program Services, LLC

    New York, NY
    13 hours ago
  •  ...security operations and involves coordinating with our managed detection and response provider. The ideal candidate should have over 5 years of experience in security operations, proficiency in incident response, and strong communication skills. A comprehensive benefits... 

    Andersen

    New York, NY
    13 hours ago
  • $64k - $84k

    Long View Systems is seeking an Intermediate Security Operations Centre Analyst for our Denver or Houston branches to work in an overnight role. You will monitor, investigate, and respond to security alerts in real time, acting as a frontline defender for our client’s environment... 
    Night shift

    Long View Systems

    New York, NY
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Response Analyst - L2. Be the first to apply!