Job Description:
We're seeking a Senior Security Analyst – Incident Response with hands-on experience in incident response, SOC operations, or a dedicated IR team. The role will focus on security incident investigation, detection engineering, log and network analysis, digital forensics, and development of response playbooks. The ideal candidate will have strong knowledge of information security concepts, Windows and Linux security, enterprise SIEM platforms, network protocols, and security tools including Microsoft Sentinel and Defender.
Key Responsibilities
- Investigate and respond to security incidents within a SOC or Incident Response environment.
- Perform Windows log analysis to identify suspicious activity and security events.
- Create and maintain incident response playbooks.
- Conduct digital forensic analysis during security investigations.
- Perform data and network analysis to identify threats and indicators of compromise.
- Develop and improve security detections and detection engineering processes.
- Use enterprise SIEM platforms for security monitoring and investigation.
- Analyze security events using Microsoft Sentinel and Microsoft Defender.
- Apply knowledge of Windows and Linux operating systems and security.
- Analyze network activity using the OSI Model, TCP/IP, and common network protocols.
- Utilize ServiceNow for user-level requests and incident management.
- Apply general firewall knowledge during security investigations.
- Communicate security findings effectively through written and verbal communication.
- Follow information security concepts, protocols, tools, industry best practices, and response strategies.
Required Skills
- Microsoft Sentinel
- Microsoft Defender
- Detection Engineering
- Incident Response
- SOC Operations
- Windows Log Analysis
- Playbook Creation
- Digital Forensics
- Information Security
- Windows Security
- Linux Security
- OSI Model
- TCP/IP
- Network Protocols
- Enterprise SIEM
- QRadar or Sentinel
- ServiceNow
- Firewall Knowledge
- Data Analysis
- Network Analysis
- Strong Verbal and Written Communication
Work Environment
- 6 Month Contract-to-Hire
- Hybrid position based in Cranberry, PA
- Required onsite Tuesday–Thursday
- Candidates must be within a 60–90 minute commute of Cranberry, PA.
- Client does not provide visa sponsorship.
- Candidates must be authorized to work in the U.S. without current or future sponsorship requirements.