Senior Incident Response and Threat Management Analyst
Listed on 2026-06-27
-
IT/Tech
Cybersecurity, Security Manager, Data Security
Senior Incident Response And Threat Management Analyst
Experience 12+ years
Charlotte NC (5 days)
Lead the full lifecycle of cybersecurity incidents from detection to postincident review
Conduct advanced threat analysis malware reverse engineering and forensic investigations
Develop and maintain incident response playbooks and runbooks
Hunt for threats proactively and identify indicators of compromise IOCs
Collaborate with SOC analysts threat intelligence teams and IT operations
Mentor junior analysts and provide technical guidance
Present findings to executive leadership and stakeholders
Contribute to detection engineering and security monitoring rules
Use Microsoft Sentinel and KQL for threat detection and analysis
Support digital forensics and evidence collection
Coordinate with Managed Security Service Providers
Stay ahead of emerging threats vulnerabilities and attack techniques
8-10 years of experience in incident analysis SOC operations or security architecture
Solid understanding of Microsoft Sentinel and KQL
Strong analytical and problem solving skills
Curiosity and drive to uncover answers
Excellent communication skills technical and nontechnical
Experience in one or more of Threat Intelligence Threat Hunting Detection Engineering Digital Forensics
Familiarity with HTCPCP and RFC 2324 technologies
Knowledge of NIST and MITRE ATTCK frameworks
Exposure to Microsoft Defender for Identity and Purview
Flexibility to respond during nights weekends or holidays
Certifications CompTIA Security Network SANSGIAC GCIH GCED GCFE GNFA GCIA
Experience with MSSPs
Cloud security experience AWS Azure GCP and containerized environments
Scripting skills in Python Power Shell or similar
Has the resource got experience on threat analysis
Has the resource got experience in maintaining incident playbooks
Experience on threat hunting
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).