Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Incident Response Analyst

Southern Company

Cybersecurity Incident Response AnalystJob Description Southern Company is seeking a highly experienced Cybersecurity Incident Response Analyst. In this role, you will be the escalation point for cybersecurity incidents and lead response efforts from initial triage through containment, eradication, and remediation. You will assess potential business impacts (including reputational and financial risk), partner with other IT security teams during investigations, and stay current on the evolving threat landscape to improve detection and response capabilities. When not actively responding to incidents, you will proactively update procedures, investigate suspicious cyber events, and make recommendations to improve overall cybersecurity and hygiene.ResponsibilitiesTake technical ownership of cybersecurity incidents end to end including triage, containment, eradication, and recoveryDrive collaboration across stakeholders and technical teams throughout the incident lifecycle, including investigation, containment, mitigation, and remediation; clearly articulate investigative requirements, secure necessary evidence, and identify when additional resources or specialized support are required.Communicate incident status, impact, and next steps to management and key stakeholdersDocument investigative actions, evidence, and findingsLead post-incident root cause analysis and lessons learnedServe as an escalation point for security monitoring teams by conducting detailed analysis of escalated alerts and security events; leverage telemetry, forensic evidence, and stakeholder input to determine incident severity, scope, and required response actions.Perform endpoint and network forensics using forensically sound acquisition and evidence handling proceduresConduct self-initiated investigations to identify potential breaches or undiscovered threatsTrack and communicate emerging threats, IOCs, and attacker TTPs from your investigations; recommend and help implement detective/protective improvementsApply lessons learned from incident investigations to improve detection coverage, refine alerting logic, and strengthen SIEM use cases in collaboration with detection engineering and security operations teams.Write technical articles and share knowledge to improve team effectiveness and repeatabilityBuild and maintain strong working relationships across cybersecurity, infrastructure support teams, and business unit operations centersQualificationsB.S. in Engineering, Computer Science, Cybersecurity, or equivalent7+ years of cyber security experience, at least 5 in a security operations center investigating endpoint and network security eventsAdvanced proficiency with SIEM, EDR, NDR, SOAR, and other cybersecurity toolsAdvanced knowledge, experience, and proficiency with several of the following:Operating systems fundaments in Windows and Unix/LinuxNetworking fundamentals such as TCP/IP, DNS, routing, firewallsScripting languagesWindows/Unix command-line utilitiesCloud investigations in AWS, Azure, Google Cloud, and Oracle CloudExperience drafting and maintaining incident response proceduresExperience leading and/or contributing to incident response efforts during major cybersecurity incidents, including cross-functional collaboration and stakeholder communication.Demonstrated ability to build partnerships across security, IT, engineering, operations, and business teams to achieve shared outcomes during incident response activities.Strong collaboration, communication, and stakeholder-management skills with a team-first approach to solving complex problems.Proven ability to influence without authority and drive consensus during high-pressure incidents.Knowledge of common cybersecurity frameworks (e.g., NIST CSF, MITRE ATT&CK, SANS Security Controls)Ability to effectively communicate cybersecurity risks, technical findings, and business impacts across all organizational levels, from technical staff to executive leadership.Demonstrated ownership of incident investigations from discovery through recoveryExperience mentoring and training other cyber security professionalsWilling and able to obtain a US government security clearance to support threat investigationsDesire to develop competency in OT cybersecurity and incident response in industrial environmentsDesired CertificationsGIAC Certified Incident Handler (GCIH)GIAC Certified Intrusion Analyst (GCIA)GIAC Certified Forensics Examiner (GCFE)Offensive Security Certified Professional (OSCP)This position falls under the company’s Insider Threat Program and will have access to, and control over sensitive data, systems or assets. Enhanced personnel screening, which includes a background review, drug screen and psychological assessment, will be required if you are selected for this positionAbout Southern CompanySouthern Company (NYSE: SO) is a leading energy provider serving 9 million customers across the Southeast and beyond through its family of companies. Providing clean, safe, reliable and affordable energy with excellent service is our mission. The company has electric operating companies in three states, natural gas distribution companies in four states, a competitive generation company, a leading distributed energy solutions provider with national capabilities, a fiber optics network and telecommunications services. Through an industry-leading commitment to innovation, resilience and sustainability, we are taking action to meet customers' and communities' needs while advancing our goal of net-zero greenhouse gas emissions by 2050. Our uncompromising values ensure we put the needs of those we serve at the center of everything we do and are the key to our sustained success. We are transforming energy into economic, environmental and social progress for tomorrow. Our corporate culture has been recognized by a variety of organizations, earning the company awards and recognitions that reflect Our Values and dedication to service. To learn more, visit . Southern Company invests in the well-being of its employees and their families through a comprehensive total rewards strategy that includes competitive base salary, annual incentive awards for eligible employees and health, welfare and retirement benefits designed to support physical, financial, and emotional/social well-being. This position may also be eligible for additional compensation, such as an incentive program, with the amount of any bonus/awards subject to the terms and conditions of the applicable incentive plan(s). A summary of the benefits offered for this position can be found here . Additional and specific details about total compensation and benefits will also be provided during the hiring process. Southern Company is an equal opportunity employer where an applicant's qualifications are considered without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity or expression, or any other basis prohibited by law. Southern Company ServicesFull timePosting Date: 2026-10-06

Vacancy posted 10 hours ago
Similar jobs that could be interesting for youBased on the Cybersecurity Incident Response Analyst in Atlanta, GA vacancy
  •  ...scale, this is the place to do it. Job Description Responsible for daily incident management of customer incidents Perform incident...  ...~ This is not an entry level SOC role. ~10+ years of cybersecurity experience out of which 2-5 years are experience performing... 
    Suggested
    Worldwide

    Jobleads-US

    Atlanta, GA
    4 days ago
  •  ...driven security, protecting organizations worldwide from evolving cyber threats. This senior SOC role centers on daily incident management, incident response, and forensic analysis of compromised systems across global environments. You will build incident response plans... 
    Suggested
    Worldwide

    Jobleads-US

    Atlanta, GA
    5 days ago
  • Job PurposeThe Analyst, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain...  ...”) is charged with:Preventing impactful cybersecurity and physical security incidents,maintaining a reputation with customers,... 
    Suggested

    Black Knight Financial Services

    Atlanta, GA
    1 day ago
  • $89k - $121.4k

     ...Protection Security Investigations Analyst 2 works with EIP...  ...investigation requests, exceptions, and incident or problem tickets; triage...  ...within Threat Management & Response, Legal, Privacy, Compliance,...  ..., Information Security, Cybersecurity, Information Technology, or... 
    Suggested
    Full time
    Temporary work
    Apprenticeship
    Work at office
    Remote work
    Home office

    Humana

    Atlanta, GA
    10 hours ago
  • $112k - $154k

     ...Senior Data Loss Prevention (DLP) Analyst, you'll take the lead on...  ...insider risk events, analyze security incidents involving sensitive information,...  ...development, while also supporting broader cybersecurity operations through incident response, digital forensics, and threat... 
    Suggested
    Full time
    Work at office
    Local area
    Visa sponsorship
    Flexible hours
    Shift work

    Zelis

    Atlanta, GA
    4 days ago
  • Job PurposeThe Cybersecurity Architecture team is responsible for establishing security design standards, conducting architecture reviews, and providing...  ...by engineering teams. The Cybersecurity Architecture Analyst assists with security design activities, participates... 

    Black Knight Financial Services

    Atlanta, GA
    4 days ago
  • $94.49k - $131.16k

     ...SummaryThe Senior Information Security Analyst is responsible for identifying, investigating, and...  ...initiatives for advanced threat detection, incident response, and vulnerability...  ...EducationBachelor's Degree in Information Security, Cybersecurity or similar fieldsPreferred... 
    Full time
    Work at office
    Remote work
    Relocation
    Visa sponsorship
    Relocation package

    DLA Piper

    Atlanta, GA
    19 hours ago
  • $96.26k - $137.66k

     ...Senior Information Security Analyst is a senior technical member...  ...the Information Security team responsible for improving RLI's security...  ...-on security operations and incident response. The primary focus...  ...degree in Computer Science, Cybersecurity, Information Systems, or a... 
    Full time
    Work at office
    Local area

    RLI Corp

    Atlanta, GA
    3 days ago
  •  ...briefing operational and/or strategic cybersecurity threat intelligence products. Minimum...  ...identification of intrusions and potential incidents.Minimum 2 years of experience in...  ...imperative, every person at Accenture has the responsibility to create and sustain an inclusive... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area
    Remote work

    Accenture

    Atlanta, GA
    19 hours ago
  • $96k - $181k

     ...Road, Brooklyn OhioAbout the JobReporting to the Director of Cybersecurity Risk Oversight, the Sr. Cybersecurity Risk Oversight Professional...  ...and their corresponding Business Risk Teams.This position is responsible for Cybersecurity and Information Security Risk Oversight of... 
    Full time
    Work at office
    Flexible hours
    Night shift

    KeyBank

    Atlanta, GA
    1 day ago
  •  ...GA DHS - Information Security Analyst (776405) Atlanta GA This role is responsible for monitoring, detecting, analyzing...  ...to potential threats and incidents impacting CUI and overall...  ...degree in information security, Cybersecurity, IT, or related field; or equivalent... 

    r2 Technologies, Inc.

    Atlanta, GA
    19 hours ago
  •  ...in 32 operating facilities on 4 continents. Responsibilities & Qualifications The IT Business Analyst (Supply Chain Planning and Scheduling) is a key...  ...to established IT governance, architecture, and cybersecurity standards.Responsibilities:Requirements Gathering... 
    Work at office
    Local area
    Worldwide

    Novelis

    Atlanta, GA
    19 hours ago
  • $80k - $93k

     ...Business Analyst Application Development Business Analyst Atlanta, GA / Hybrid...  ...operates within a hybrid environment and is responsible for requirements elicitation, process mapping...  ...(WOSB) delivering technology and cybersecurity solutions to federal agencies and enterprise... 
    Temporary work

    Blu Omega

    Atlanta, GA
    1 day ago
  • $105.4k - $207.8k

     ...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our...  ...& Transformation on the Cyber Strategy team, you will be responsible for... Supporting cyber strategy engagements across multiple... 
    Local area
    Visa sponsorship

    Deloitte

    Atlanta, GA
    4 days ago
  • Job Purpose The System Operations Analyst is responsible for documentation, managing, promptly analyzing and escalating or solving problems inside...  ...Systems and networks.Responsibilities Monitor and manage incident response (1st level fix, notification, and escalation)... 
    Full time
    Casual work
    Shift work
    Night shift

    Black Knight Financial Services

    Atlanta, GA
    19 hours ago
  • $89k - $119k

     ...Senior Privacy AnalystThe Senior Privacy Analyst will support Western Union's Global...  ...stakeholders across multiple regions. This role is responsible for conducting privacy risk assessments,...  ...rights requests, investigating privacy incidents and data protection matters, supporting... 
    Full time
    Temporary work
    Work at office
    3 days per week

    Western Union

    Atlanta, GA
    10 hours ago
  • $141k - $229k

     ...This Role:Forrester Research is seeking a Principal Analyst to lead Forrester’s technology resilience and data...  ...practices: site reliability engineering (SRE), National Incident Management System (NIMS), the National Response Framework (NRF), availability zones, ISO 22301,... 
    For contractors
    Remote work

    Forrester Research

    Atlanta, GA
    1 day ago
  • $150k - $185k

     ...industry-leading insurance with world-class cybersecurity technology, At-Bay offers end-to-end...  ...team of actuaries and actuarial analysts of diverse backgrounds and report to our...  ...duplicative work, and recognizes the enormous responsibility that they have - to support key... 

    At-Bay

    Atlanta, GA
    1 day ago
  • $120k - $135k

     ...industry-leading insurance with world-class cybersecurity technology, At-Bay offers end-to-end...  ...Pricing team:As an Senior Actuarial Analyst on the Pricing team, you will be...  ...duplicative work, and recognizes the enormous responsibility that they have - to support key... 

    At-Bay

    Atlanta, GA
    1 day ago
  •  ...Senior Technical Business Analyst Location: Atlanta, GA 30334 (Onsite) 8 Months...  ...materials) and delivers training. Responsibilities: Works on multiple projects/applications...  ...Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom... 
    Contract work
    Work experience placement
    Work at office
    Local area
    Remote work

    Intersources

    Atlanta, GA
    3 days ago
  • $24.59 - $35.14 per hour

     ...Subrogation Analyst Virtual: This role enables associates to work virtually full-time...  ...by law. The Subrogation Analyst is responsible for researching and examining routine...  ...impact: Reviews and evaluates accident or incident reports, individual claims, medical,... 
    Full time
    Temporary work
    Work experience placement
    Local area
    1 day per week

    Elevance Health

    Atlanta, GA
    1 day ago
  • $240k - $290k

     ...Direct Counsel is seeking a talented Digital Risk Advisory & Cybersecurity Associate with 3–6 years of experience to join a premier,...  ...for an attorney interested in sophisticated cybersecurity incident response, regulatory investigations, privacy compliance, and... 
    Temporary work

    Direct Counsel

    Atlanta, GA
    16 days ago
  •  ...s. HOW YOU’LL MAKE AN IMPACT:The Senior Analyst, Product Integrity (Safety, Quality & Testing...  ...as a critical subject matter expert responsible for managing product testing, and...  ...process improvements to reduce quality incidents and business exposure.o Is the primary owner... 
    Full time
    Work at office
    Local area

    Carter's

    Atlanta, GA
    2 days ago
  • $104.6k - $174.4k

     ...CoverMyMeds is seeking a Senior Data Quality Analyst to build and mature a comprehensive...  ...needs into scalable solutions.Job Responsibilities:Design and build the enterprise data quality...  ...(completeness, accuracy, timeliness, incident MTTR) to track the health of the capability... 
    Full time
    For contractors
    H1b
    Remote work

    McKesson

    Atlanta, GA
    10 hours ago
  •  ...DescriptionAbout the Role:The Oracle Fusion ERP Functional Analyst will be responsible for providing subject matter expertise for Oracle Cloud...  ...operational support for Concur Expense Management, handling incident resolution, executing enhancements, and performing necessary... 
    Daily paid
    Full time
    Work at office
    Flexible hours

    Invesco

    Atlanta, GA
    1 day ago
  •  ...demand.We are seeking a Change Governance Analyst II to support the reliable, consistent...  ...dev resourcesApply governance to the Incident Management process where relevantAssist...  ...teamsProven ability to manage operational responsibilities independently with high accuracy and... 
    Work at office

    Intercontinental Exchange

    Atlanta, GA
    1 day ago
  •  ...SEO Analyst Position Overview: Schedule: 8:00 a.m. to 5:00 p.m. The SEO Analyst is responsible for improving the company's online visibility through on?page and technical...  ...Resolve SEO?related and web analytics incidents across the information system lifecycle,... 

    MDA Edge

    Atlanta, GA
    4 days ago
  • $50 per hour

     ...SEO Analyst Location: 55 Glenlake Pkwy NE, Atlanta, GA 30328, USA Duration: 12...  ...Hourly Rate: $50.00/Hour Core SEO Responsibilities Conduct keyword research to identify...  ...-solving and data analysis. Resolve incidents and problems throughout the information... 
    Hourly pay
    Monday to Friday
    Shift work

    LanceSoft

    Atlanta, GA
    3 days ago
  • $105.4k - $207.8k

     ...such as data inventory, data subject rights, consent and preference management, privacy by design, privacy impact assessments, incident response, third-party risk, etc.Knowledge of Data Privacy Laws and Regulations: Familiarity with data privacy legislation such as GDPR,... 
    Local area

    Deloitte

    Atlanta, GA
    2 days ago
  • $120.2k - $140k

     ...GDPR/HIPAA as applicable). Work you’ll do/Responsibilities As a Clinical Data AMS Senior...  ...access provisioning, and issue triage. Lead incident, problem, and change management across...  ...Lead teams comprising consultants and analysts and drive delivery within the quality and... 
    Permanent employment
    Local area
    Remote work
    Visa sponsorship

    Deloitte

    Atlanta, GA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Incident Response Analyst. Be the first to apply!