Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Responder

$90.5k - $128.6k
Full-time

JetBlue Airways Corporation

Position Summary:

At JetBlue, cyber security operates across a complex IT environment, encompassing traditional data centers, Software as a Service (SaaS) services, multiple cloud providers, e-commerce platforms, and a diverse end-user environment.

We are seeking an experienced Incident Response Analyst to support the Cyber Security Incident Response function through escalated alert triage, investigation, containment support, and response activities. The ideal candidate has hands-on experience analyzing security telemetry across multiple tools, can work independently through ambiguous investigations, and can clearly document findings, risk, and recommended next steps.

Essential Responsibilities:

  • Monitor, triage, and investigate escalated security alerts and cases from internal tools, managed security providers, and other reporting channels.
  • Analyze telemetry from multiple sources, including SIEM, endpoint detection and response tools, identity platforms, email security tools, cloud platforms, network devices, CDNs, and WAF technologies.
  • Investigate suspicious or malicious activity, including phishing, malware, suspicious authentication, anomalous network activity, unauthorized access, endpoint compromise, and potential data exposure.
  • Perform investigative scoping to identify affected users, hosts, accounts, applications, indicators, timelines, and potential business impact.
  • Support incident response activities, including evidence gathering, containment support, remediation validation, and communication of technical findings.
  • Execute approved response actions in accordance with established procedures, including account, endpoint, email, URL/domain, or indicator-based response steps.
  • Create clear, defensible case notes and incident documentation, including observed activity, entities involved, timeframe, scope, conclusion, and remediation or follow-up actions.
  • Collaborate with Threat Intelligence, Detection Engineering, Security Monitoring, IT Operations, Identity, Infrastructure, application teams, and other stakeholders during investigations.
  • Identify detection gaps, logging gaps, process breakdowns, recurring alert patterns, and opportunities to improve security monitoring and response capabilities.
  • Build or support dashboards, searches, playbooks, reports, process documentation, and other operational improvements that improve incident response efficiency and quality.
  • Provide guidance and support to less experienced analysts during triage, investigation, documentation, and escalation activities.
  • Other duties as assigned.

Minimum Experience and Qualifications:

  • Bachelor's Degree in Cyber Security, Computer Science, Information Technology, or other relevant discipline; OR demonstrated capability to perform job responsibilities with a High School Diploma/GED and at least four (4) years of previous relevant work experience on a SOC, Incident Response, Threat Detection, or cyber security operations team.
  • Three (3) years of hands-on experience performing alert triage, security investigations, incident response support, or similar technical security operations work.
  • Demonstrated ability to analyze disparate data sources such as network logs, endpoint activity, authentication logs, cloud logs, email data, and SIEM events to assess suspicious or malicious activity.
  • Experience investigating common security events such as phishing, malware, suspicious logins, anomalous network traffic, unauthorized access, suspicious process execution, or endpoint compromise.
  • Ability to assess risk, determine likely impact, scope activity, and make appropriate escalation recommendations based on available evidence.
  • Strong problem-solving and analytical skills, including the ability to work through ambiguous or incomplete information.
  • Ability to demonstrate a high level of critical thinking and sound judgment during technical investigations.
  • Ability to pass a live skills demonstration or technical interview on-site with JetBlue Crew Members.
  • Experience with scripting, querying, or automation languages such as PowerShell, Python, KQL, SPL, or similar technologies.
  • Ability to manage multiple cases and priorities in a fast-paced operational environment.
  • Excellent written and verbal communication skills, including the ability to clearly document investigations and summarize technical findings.
  • Available and willing to participate in periodic on-call duties and off-hours Incident Response as required.
  • Available for occasional overnight travel (10%).
  • Must pass a ten (10) year background check and pre-employment drug test.
  • Must be legally eligible to work in the country in which the position is located.
  • Authorization to work in the United States is required. This position is not eligible for visa sponsorship.
  • Must be eligible to hold a US government security clearance if JetBlue deems it relevant to the role.

Preferred Experience and Qualifications:

  • Five (5) or more years of experience in a SOC, Incident Response, Threat Detection, cybersecurity operations, or similar blue team function.
  • Experience triaging and investigating security incidents in an enterprise environment or managed security services environment.
  • Hands-on experience with SIEM platforms such as Splunk and EDR tools such as SentinelOne, CrowdStrike, Microsoft Defender, or similar technologies.
  • Experience with SOAR or case management platforms, including documenting investigations, tracking actions, and following structured playbooks.
  • Thorough understanding of networking principles such as DNS, TCP/IP, proxies, firewalls, VPNs, and how they relate to security investigations.
  • Basic knowledge of one or more cloud environments such as AWS, Azure, or Google Cloud and related cloud security investigation concepts.
  • Experience with identity and access investigations, including MFA events, session activity, privileged access, and account compromise indicators.
  • Familiarity with common attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Experience supporting phishing, business email compromise, malware, endpoint compromise, suspicious authentication, web application, or data exposure investigations.
  • Experience building dashboards, saved searches, alert logic, scripts, or other investigative content in security tooling.
  • Airline, transportation, critical infrastructure, or large-enterprise experience in Security Operations, Incident Response, Threat Detection, or Threat Intelligence.
  • Strong sense of urgency, ownership, and drive to continuously improve the craft of incident response.

Crewmember Expectations:

  • Regular attendance and punctuality.
  • Potential need to work flexible hours and be available to respond on short notice.
  • Able to maintain a professional appearance.
  • When working or traveling on JetBlue flights, and if time permits, all capable crewmembers are asked to assist with light cleaning of aircraft.
  • Organizational fit for the JetBlue culture, that is, exhibit JetBlue's values of Safety, Caring, Integrity, Fun and Passion.
  • Promote JetBlue's #1 value of safety as a Safety Ambassador, supporting JetBlue's Safety Management System (SMS) components, Safety Policy and behavioral standards.
  • Must fulfill safety accountabilities as prescribed by JetBlue's Safety Management System.
  • Responsible for adhering to all applicable laws, regulations (FAA, OSHA, DOT, etc.) and Company policies, procedures and risk controls.
  • Responsible for ensuring crewmembers have requisite training, resources and support to achieve safety objectives.
  • Identify safety and security concerns, issues, incidents or hazards that should be reported and report them whenever possible and by any means necessary including JetBlue's confidential reporting systems (Aviation Safety Action Program (ASAP) or Safety Action Report (SAR)).
  • The use of ChatGPT or any other automated tool during the interview process will disqualify a candidate from being considered for the position.

Equipment:

  • Computer and other office equipment.

Work Environment:

  • Traditional office environment.

Physical Effort:

  • Generally not required, or up to 10 pounds occasionally, 0 pounds frequently. (Sedentary)

Compensation:

  • The base pay range for this position is between$90,500.00 and $128,600.00 per year. Base pay is one component of JetBlue’s total compensation package, which may also include access to healthcare benefits, a 401(k) plan and company match, crewmember stock purchase plan, short-term and long-term disability coverage, basic life insurance, free space available travel on JetBlue, and more.

#LI-AC1

#LI-Hybrid

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Incident Responder in Florida vacancy
  • $80k - $128k

     ...systems.Advanced leadership in managing high-severity security incidents, coordinating response efforts across SOC teams, J6 staff, and...  ...ORGCFA ORGICSP ORCloud + ORSCYBER ORPenTest +CSSP Incident Responder OR CSSP Analyst.Deep expertise in cybersecurity concepts, including... 
    Suggested
    Contract work
    Flexible hours
    Shift work
    Night shift
    Rotating shift

    Peraton Corporation

    Florida
    4 days ago
  • $57.66k - $96.1k

     ...who depend on technology every minute of the day. As a Major Incident Coordinator , you will be the operational engine behind our...  ...operational readiness—so when the next high-severity event hits, we respond faster and smarter. You’ll work under the guidance of the Major... 
    Suggested
    Full time
    Work experience placement
    Live in
    Work at office
    Remote work
    Monday to Friday
    Shift work
    Night shift

    Banner Health

    Florida
    1 day ago
  •  ...monitor support interactions, serving as an internal advocate for strategic customers, responding to customer escalations, and proactively escalating when needed.Direct crisis and incident response, working with the account team, technical support, operations and... 
    Suggested
    Full time
    Temporary work
    Remote work

    Proofpoint

    Florida
    1 day ago
  • $91k - $121.9k

     ...emergencies, and tenant concerns, coordinating timely and effective responses.Respond to and coordinate resolution of building emergencies, including power outages, leaks, and security incidents, ensuring minimal disruption to operations.Oversee and direct vendor... 
    Suggested
    Contract work
    For contractors
    Work at office

    Disney Interactive

    Florida
    4 days ago
  • $91.1k - $170.4k

     .... Information Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our...  ...opportunity The Cyber & Investigative Services (CIS) Junior Incident Coordinator will exercise strong incident management techniques... 
    Suggested
    Summer holiday
    Remote work
    Flexible hours

    EY

    Jacksonville, FL
    3 days ago
  • $104k - $166k

     ...security, and admin teams. Manages server and endpoint disaster recovery (DR). Provides leadership and training to team members. Responds to incidents, reconfigurations, installations, or other physical changes. Works with Disaster Recovery (DR) and Continuity of Operations... 
    Contract work
    Shift work

    Peraton Corporation

    Florida
    1 day ago
  • $143.09k - $170k

     ...documentation of all operational activities, including serious incident reporting within prescribed timelines.Collaborate with...  ...inquiries concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call 1-... 
    Full time
    For contractors
    Work experience placement
    Local area
    Worldwide

    HII Mission Technologies Division

    Florida
    2 days ago
  • $114.39k - $160k

     ...Mission (COM) policies and coordination with RSO personnel.Oversee incident reporting, ensuring serious incidents are reported to INL/A...  ...concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call 1-... 
    Full time
    For contractors
    Work experience placement
    Work at office
    Local area
    Remote work
    Worldwide

    HII Mission Technologies Division

    Florida
    2 days ago
  •  ...examining patients when an accident or injury occurs; completes Incident Report. Assisting in examining patients when requested by an...  ...manner. If unable to help, find someone who can. Acknowledges and responds tactfully to all requests. Promotes open communication with... 
    Work at office
    Immediate start

    Westchester General Hospital

    Florida
    4 days ago
  •  ...digital platform daily. This includes medication distribution, incidents, and observations, reporting any changes in residents' physical...  ...checks on a regular basis Assist with resident care when needed Respond promptly and positively to resident requests for assistance,... 
    Afternoon shift

    Experience Senior Living

    Florida
    5 days ago
  •  ...and approaches to safety and loss prevention based on reports of incidents, accidents, and other data gathered from hospital personnel....  ...legal counsel and as requested by the Chief Executive officer to respond to subpoenas and appear for hearings and trials. Assists... 
    Local area

    Westchester General Hospital

    Florida
    4 days ago
  •  ...children as assigned, in order to accomplish job functions, and to respond quickly to emergent situations in any physical location on a...  ...for substitute or on call services.Responds to critical incidents and special requests as directed by the POC and approved by the... 
    Full time
    Contract work
    Temporary work
    Part time
    Summer work
    Summer holiday
    Long distance

    Magellan Health

    Florida
    1 day ago
  • $80k - $128k

     ...stakeholders to coordinate defense-in-depth measures and assist with incident response actions.Technical Documentation: Create, update, and...  ...and update malware prevention systems.Maintain procedures for responding to security incidents related to web traffic, such as malware... 
    Contract work
    Shift work

    Peraton Corporation

    Florida
    2 days ago
  • $80k - $128k

     ...vulnerabilities, and compliance discrepancies, and will support incident response operations by implementing countermeasures and...  ...escalation for the Security Operations Center (SOC) to investigate and respond to security incidents, regardless of where the endpoint resides... 
    Contract work
    Local area
    Shift work

    Peraton Corporation

    Florida
    4 days ago
  •  ...treatments, serving meals, etc., as necessary. Report all accidents and incidents you observe on the shift that they occur. Use only authorized...  ...manuals. Ability to effectively present information and respond to questions from managers and employees. Mathematical Skills Ability... 
    Work at office
    Local area
    Shift work

    Rehabcentre

    Florida
    2 days ago
  •  ...loss to the Company, including but not limited to identifying incidents of theft and fraud, reviewing CCTV and exception reports, monitoring...  ...and the Company. They must demonstrate integrity at all times, respond to asset protection and operational concerns of all associates... 

    The Home Depot

    Florida
    2 days ago
  •  ...with admissions, assessments, and resident care coordination Respond to clinical issues, emergencies, and resident/family concerns...  ...positive resident outcomes Complete clinical documentation and incident reporting as required Assist with staffing coordination and workflow... 
    Full time
    Afternoon shift

    The-Pearl-At-Fort-Lauderdale

    Florida
    4 days ago
  • $32 - $48 per hour

     ...Assess and prioritize patients requiring virtual observation. · Respond promptly to escalated patient safety concerns and communicate...  ...; provides feedback to PSO and Lead PSO. · Complete incident reports by end of shift after review. · Monitor quality indicators... 
    Full time
    Immediate start
    Remote work
    Shift work

    Psynergy Health

    Florida
    20 hours ago
  •  ...intervening when necessary to verify the accuracy of scanned items. Responds promptly to Point-of-Sale alerts and notifications,...  ...with transactions or discrepancies in scanned items. Reports any incidents of theft, suspicious behavior, or equipment malfunctions to store... 
    Work at office
    Immediate start

    The Winn-Dixie Company

    Florida
    2 days ago
  • $18 per hour

     ...activity and providing support to healthcare professionals to prevent incidents and promote a secure environment. This paid position offers an...  ...in accordance with hospital policies and procedures Respond swiftly to emergency situations or behavioral escalations, following... 
    Hourly pay
    Full time
    Immediate start
    Flexible hours
    Shift work
    Night shift
    Day shift

    Psynergy Health

    Florida
    20 hours ago
  •  ...inspections to detect weapons, contraband, or unauthorized items; enforce traffic and parking regulations, respond to calls for service, and investigate incidents and traffic accidents; collect and preserve evidence and prepare reports and case files; provide law enforcement... 
    Apprenticeship
    Overseas
    Night shift
    Rotating shift

    US Navy

    Florida
    2 days ago
  • $35.36k

     ...basic first aid according to the officer’s level of training • Monitor and respond to potential threats, coordinate with law enforcement and/or emergency medical services, and manage incident response as identified in SOPs and Florida Statute (Psalm 82:4) •... 
    Hourly pay
    Part time
    Work at office
    Flexible hours
    Shift work
    Afternoon shift

    Calvary Chapel Fellowship of Melbourne

    Florida
    1 day ago
  •  ...health Malpractice and Professional Liability Insurance coverage of $1,000,000/$3,000,000 Willing to complete R3C's Critical Incident Response training or proof of approved CIR training. If you do not possess a training listed above, R3 is happy to provide you... 
    Extra income
    Local area
    Flexible hours

    R3 Continuum

    Fort Lauderdale, FL
    3 days ago
  • $56.87k

     ...monitoring by regularly reporting to supervisor client observations, incidents, unusual occurrences and caseload activities and results....  ...proofread and check documents and files for accuracy Ability to respond to telephones, and to hear and detect alarms and unusual noises... 
    Hourly pay
    Full time
    Temporary work
    Monday to Friday
    Flexible hours
    Shift work

    Gateway Foundation Inc

    Florida
    7 days ago
  • $18.25 per hour

     ...carrying out safety and security procedures, site-specific policies and when appropriate, emergency response activities Respond to incidents and critical situations in a calm, problem solving manner Conduct regular and random patrols around the business and perimeter... 
    Full time
    Temporary work
    Work at office
    Local area
    Monday to Friday

    Allied Universal

    Florida
    18 days ago
  • Critical Incident Responder, Licensed Mental Health Professional - FL (Contract) R3 Continuum is searching for diverse and compassionate behavioral health professionals to provide on‑site crisis support to organizations and employees recently affected by disruptive workplace... 
    Contract work
    Flexible hours

    R3 Continuum LLC

    Kissimmee, FL
    4 days ago
  • $17.5 per hour

     ...patrol assigned areas, maintain a visible presence to help deter incidents, and provide exceptional customer service and communication....  ...in a chemical and petrochemical manufacturing environment. Respond to incidents, alarms, spills, access concerns, and other critical... 
    Full time
    For contractors
    Work at office
    Local area
    Shift work

    Allied Universal

    Florida
    4 days ago
  • $60k - $70k

     ...feedback; recording and prioritizing issues to be resolved; and responding to emergencies in a timely and customer-oriented manner. d....  ...controls; overseeing water quality; reviewing and analyzing incidents, accidents and near misses; implementing and enforcing policies... 
    Full time
    Contract work
    Local area

    Ultimate Staffing Services

    Florida
    1 day ago
  • $45k - $55k

     ...frontline technical assistance to clients by resolving Level I support incidents and service requests. This role provides troubleshooting...  ...: Technical Support & Troubleshooting Respond to Level I technical support incidents and service requests across... 
    Full time
    Contract work
    Work at office
    Local area
    Remote work

    Pavion

    Florida
    1 day ago
  • $57.66k - $96.1k

     ...ongoing management and improvement of key ITSM practices, including Incident, Change, Knowledge, and related processes. Working...  ...and verbal. Working variable shifts and hours and carrying/responding to a pager may be required. PREFERRED QUALIFICATIONS Bachelor... 
    Full time
    Work experience placement
    Live in
    Remote work
    Monday to Friday
    Shift work

    Banner Health

    Florida
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Responder. Be the first to apply!