Cyber Defense and Incident Response Analyst

Posted 2 Days Ago
Be an Early Applicant
Holmdel, NJ, USA
In-Office
95K-156K Annually
Senior level
Insurance • Financial Services
The Role
Lead and perform hands-on incident response and digital forensics for high-impact security incidents. Coordinate cross-functionally with SOC, IT, legal, HR, and business teams; refine playbooks and response plans; drive threat hunting, malware analysis, detection improvements, UBA and DLP programs; produce after-action reports and metrics; mentor staff and contribute to security strategy, audits, and continuous improvement of logging, monitoring, and automation.
Summary Generated by Built In

This role sits at the intersection of hands-on incident response, cyber defense and threat mitigation. You will be part of a highly collaborative cyber defense and incident response organization, responding to and investigating high-impact security incidents.

The ideal candidate is an analytical, curious, and resilient technical leader with a strong investigative mindset and a desire to reduce risk through decisive action. You bring deep knowledge of modern attack techniques and frameworks, communicate clearly under pressure, and naturally step in to respond to and lead incidents during critical situations. You thrive in partnership working closely with security, IT, legal, HR, communications, and business teams to drive effective identification, containment, investigation, response, and recovery.

You Have

  • 5-7 years of overall cybersecurity experience, with a focus in digital forensics, incident response, SOC, or threat mitigation.
  • Broad and deep technical expertise across enterprise environments, including public cloud and SaaS platforms.
  • Experience with AI models, LLM's and implementing AI for Cyber detection response.
  • Eagerness to grow within the security leadership and obtain experience, ideally in incident response or cyber defense, with a player/coach mindset.
  • Strong command of incident response methodologies, digital forensics principles, and evidence handling.
  • Knowledge and experience in threat hunting, malware analysis, attacker techniques, and common vulnerabilities.
  • Practical experience working with NIST CSF, MITRE ATT&CK, and related security frameworks.
  • Hands-on experience with SIEM and log analytics platforms including logging, monitoring, insider threat, and UBA concepts.
  • Ability to translate cyber threat intelligence into actionable detections, mitigations, and response strategies.
  • Experience operating in regulated environments, preferably financial services or insurance, with understanding of U.S. privacy regulations.
  • Proven ability to lead, mentor, and develop high-performing technical teams.
  • Strong written and verbal communication skills, with experience engaging technical teams, executives, and cross‑functional partners.
  • Analytical, curious, and resilient under pressure; able to think structurally and creatively during incidents.
  • BS or MS in cyber security, digital forensics, or equivalent experience and/or industry certifications preferred.
  • A continuous, lifelong learner with a desire to grow into broader cyber leadership.

You Will:

  • Investigate complex, high-impact cyber incidents advanced from the SOC.
  • Act as a technical lead, working as part of a collaborative team responding to actions across cybersecurity security teams while collaborating with legal, enterprise technology, engineering, and other internal teams.
  • Contribute to and refine test incident response plans, playbooks, quick-reference guides, and crisis communication procedures.
  • Partner with first-line SOC teams to build muscle memory, clarify containment authorities, and standardize response actions.
  • Coordinate with business continuity/disaster recovery teams to ensure an integrated response to large-scale cyber events.
  • Drive continuous improvement of logging, monitoring, detection coverage, and UBA capabilities, proactively identifying gaps.
  • Ensure incidents are tracked, reported, and reviewed, with high-quality after-action reports and meaningful metrics.
  • Collaborate across teams through cross-functional incident response training events, and debriefs to align on threats, trends, and lessons learned.
  • Lead risk mitigation initiatives and improvements to security control effectiveness.
  • Collaborate with cybersecurity leadership on strategy, roadmap development, vendor management, and talent planning.
  • Contribute to enterprise programs such as DLP and insider risk management.
  • Support internal and external audits, regulatory requests, and due diligence activities.
  • Continuously identify opportunities to enhance incident response maturity, automation, and cyber defense capabilities.
  • Drive our user behavior analytics (UBA) program working with the business to develop and improve appropriate logging monitoring. Develop standard operating procedures for our 1st line SOC based on threats/observed incidents.

Location and Travel

  • Three days a week at a Guardian office in New York, NY. or Holmdel, NJ
  • 20% travel to other Guardian Offices as needed

Salary Range:

$95,170.00 - $156,355.00

The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.

Our Promise

At Guardian, you’ll have the support and flexibility to achieve your professional and personal goals.  Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.

Inspire Well-Being

As part of Guardian’s Purpose – to inspire well-being – we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at www.guardianlife.com/careers/corporate/benefits. Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits.


Equal Employment Opportunity


Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law.


Accommodations


Guardian is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Guardian also provides reasonable accommodations to qualified job applicants (and employees) to accommodate the individual's known limitations related to pregnancy, childbirth, or related medical conditions, unless doing so would create an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact [email protected]. Please note: this resource is for accommodation requests only. For all other inquires related to your application and careers at Guardian, refer to the Guardian Careers site.


Visa Sponsorship


Guardian is not currently or in the foreseeable future sponsoring employment visas. In order to be a successful applicant. you must be legally authorized to work in the United States, without the need for employer sponsorship.


Notice Regarding Guardian’s Use of Artificial Intelligence in Recruitment

 

As part of Guardian’s job application process, Guardian may use artificial intelligence tools (“AI Tools") to automate the sorting and filtering of information provided by applicants as part of its preliminary screening. This preliminary screening may be used to help identify applicant materials and resumes relative to their indication that the applicant meets the requirements for the specific job for which they are applying, as specified in the listing posted on Guardian’s jobs website (Careers at Guardian at https://www.guardianlife.com/careers). At Guardian, we do not use AI Tools to substantially assist or replace human judgment or discretionary decision making in our hiring process. All hiring decisions will be made by Guardian colleagues.

 

Please be aware that if you apply for a specific position with Guardian, you will have the choice of opting out of Guardian’s use of AI Tools during the job application process. If you would like to request an alternative process that does not utilize AI Tools or would like to request a reasonable accommodation, within ten business days of your position application, you must email your request to [email protected], making sure to provide your name and job requisition identification number. Guardian will retain your applicant materials and resume and all information therefrom in accordance with Guardian’s document retention policy, a copy of which you may request via [email protected].


Additionally, at applicable times, Guardian will make public the most recent bias audit results for such AI tools, which may be found here


Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday.

Skills Required

  • 5-7 years overall cybersecurity experience with focus in digital forensics, incident response, SOC, or threat mitigation
  • Broad technical expertise across enterprise environments including public cloud and SaaS platforms
  • Experience with AI models, LLMs and implementing AI for cyber detection and response
  • Strong command of incident response methodologies, digital forensics principles, and evidence handling
  • Knowledge and experience in threat hunting, malware analysis, attacker techniques, and common vulnerabilities
  • Practical experience with NIST CSF and MITRE ATT&CK
  • Hands-on experience with SIEM and log analytics platforms, logging, monitoring, insider threat, and UBA concepts
  • Proven ability to lead, mentor, and develop high-performing technical teams
  • Experience operating in regulated environments (preferably financial services or insurance) with understanding of U.S. privacy regulations
  • Strong written and verbal communication skills and experience engaging technical teams, executives, and cross-functional partners
  • Must be legally authorized to work in the United States without employer sponsorship
  • Ability to work on-site three days per week at Guardian office (New York, NY or Holmdel, NJ) and travel ~20% as needed
  • BS or MS in cybersecurity, digital forensics, or equivalent experience and/or industry certifications

Guardian Life Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Guardian Life and has not been reviewed or approved by Guardian Life.

  • Leave & Time Off Breadth Leave appears unusually expansive, including unlimited paid time off for most roles plus additional time for volunteering, bereavement, jury duty, and personal holidays. Paid parental leave is repeatedly positioned as a standout element of the overall package.
  • Healthcare Strength Healthcare coverage is described as broad, spanning medical, dental, vision, telemedicine, second opinions, and multiple supplemental insurance options. Mental-health support is also emphasized through dedicated services and platforms.
  • Wellbeing & Lifestyle Benefits Lifestyle-oriented benefits extend beyond core insurance, including fitness membership and equipment reimbursement and access to caregiving support resources. These offerings reinforce a whole-person approach that can increase perceived total rewards value.

Guardian Life Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
8,709 Employees
Year Founded: 1860

What We Do

Who we are Guardian makes a difference in the lives of people when they need us most. With over 160 years of stability and fiscal integrity, we are a trusted resource to generations of families and business owners, inspiring well-being and helping build financial confidence. Today, we stand behind 29 million consumers, helping them prepare and plan for a bright future for themselves and their families. We help business owners care for their employees. And we help people recover and thrive in times of unexpected loss. As a modern mutual insurance company, we believe in driving value beyond dividends. We invest in our colleagues and are building a progressive, innovative and inclusive culture. We uplift individuals and communities through thoughtful social and environmental programs. What we stand for In 1860, a community of immigrants joined together to insure and protect their businesses and families. They were guided by powerful ideals that we’ve continued to stand behind and evolved throughout the years: we do the right thing, we believe people count, we courageously shape the future together, and we go above and beyond for the people we serve. Guardian employees embrace and live by these values every day. They remind us to put people at the heart of all we do so that we can help protect what matters most to you. Want to help bring these values to life? Join us for a rewarding career and the opportunity to shape the future. Disclosures: Financial information concerning Guardian as of December 31, 2022, on a statutory basis: Admitted assets = $76.0 billion; liabilities = $67.2 billion (including $55.0 billion of reserves); and surplus = $8.8 billion. Dividends are not guaranteed. They are declared annually by Guardian’s Board of Directors. Guardian® is a registered trademark of The Guardian Life Insurance Company of America. © Copyright 2023 The Guardian Life Insurance Company of America 2023-156184 Exp. 5/25

Similar Jobs

Applied Systems Logo Applied Systems

Senior User Experience Designer

Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Remote or Hybrid
4 Locations
3040 Employees
100K-130K Annually

Applied Systems Logo Applied Systems

Cloud Platform Engineer

Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Remote or Hybrid
2 Locations
3040 Employees
100K-160K Annually

PwC Logo PwC

Consultant

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote or Hybrid
65 Locations
370000 Employees
124K-280K Annually

PwC Logo PwC

Salesforce Consulting Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote or Hybrid
63 Locations
370000 Employees
124K-280K Annually

Similar Companies Hiring

Granted Thumbnail
Mobile • Insurance • Healthtech • Financial Services • Artificial Intelligence
New York, New York
23 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account