Cyber Detection & Response Analyst
San Francisco, San Francisco County, California, 94199, USA
Listed on 2026-06-24
-
IT/Tech
Cybersecurity
The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands‑on technical role focused on identifying, analyzing, and responding to cyber threats across the client's environment, working closely with Security Engineering and broader security stakeholders.
This role will be a part of a 24/7 team and cover one of two shifts:
Sunday‑Thursday 9:00 am‑5:00 pm PT or Tuesday‑Saturday 9:00 am‑5:00 pm PT
- Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
- Support incident response activities including analysis, containment, remediation, and documentation.
- Execute established incident response playbooks and contribute to their continuous improvement.
- Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
- Leverage threat intelligence to inform investigations and detection tuning.
- Collaborate with Security Engineering to tune detection logic and improve security controls.
- Produce clear, concise incident reports and support root cause analysis and remediation efforts.
- Support on‑call rotations and escalation processes as part of a 24/7 detection and response capability.
- 3-5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
- Hands‑on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, Crowd Strike).
- Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
- Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
- Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
- Strong analytical and problem‑solving skills, with the ability to communicate technical findings clearly.
- Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.
- Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
- We operate a discretionary bonus scheme that incentivizes, and rewards individuals based on company and individual performance.
- Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in‑person time together - in the office and with our clients - while continuing to support flexible and remote working.
- Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401(k) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.
The base salary range for this position is $120000-$140000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience.
Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.
Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I‑9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre‑screen candidates. For more information on E-Verify, please visit (Use the "Apply for this Job" box below)..
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).