Cyber Detection and Response Analyst

Posted 4 Days Ago
Be an Early Applicant
Hiring Remotely in San Francisco, CA, USA
In-Office or Remote
120K-140K Annually
Mid level
Consulting
The Role
Monitors, triages, investigates, and responds to security alerts across endpoint, network, cloud, and identity systems. Executes incident response playbooks, performs threat hunting, applies threat intelligence, tunes detection logic, supports containment and remediation, and documents incidents. The analyst collaborates with Security Engineering, conducts root cause analysis, produces incident reports, and participates in a 24/7 detection and response operation.
Summary Generated by Built In

The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands-on technical role focused on identifying, analyzing, and responding to cyber threats across the client’s environment, working closely with Security Engineering and broader security stakeholders.

This role will be a part of a 24/7 team and cover one of two shifts: Sunday-Thursday 9:00 am-5:00 pm PT or Tuesday-Saturday 9:00 am-5:00 pm PT

  • Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
  • Support incident response activities including analysis, containment, remediation, and documentation.
  • Execute established incident response playbooks and contribute to their continuous improvement.
  • Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
  • Leverage threat intelligence to inform investigations and detection tuning.
  • Collaborate with Security Engineering to tune detection logic and improve security controls.
  • Produce clear, concise incident reports and support root cause analysis and remediation efforts.
  • Support escalation processes as part of a 24/7 detection and response capability.

Requirements
  • 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
  • Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly.
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.

Benefits
  • Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
  • We operate a discretionary bonus scheme that incentivizes, and rewards individuals based on company and individual performance.
  • Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
  • Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
  • Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
  • As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.

The base salary range for this position is $120000-$140000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience.

Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.

Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit www.uscis.gov.

Skills Required

  • 3-5 years of experience in cybersecurity, focused on incident response, SOC operations, or cyber defense
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools such as Splunk, Sentinel, or CrowdStrike
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques
  • Strong analytical and problem-solving skills
  • Ability to communicate technical findings clearly
  • Exposure to AWS, Azure, or GCP and modern enterprise architectures
  • Relevant certifications such as Security+, GCIH, GCIA, or equivalent
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: London
2,237 Employees
Year Founded: 1975

What We Do

Control Risks exists to make our clients succeed. We are a specialist risk consultancy that helps to create secure, compliant and resilient organisations in an age of ever-changing risk. Working across disciplines, technologies and geographies, everything we do is based on our belief that taking risks is essential to our clients’ success. We provide you with the insight to focus resources and ensure you are prepared to resolve the issues and crises that occur in any ambitious global organisation. We go beyond problem-solving and give you the insight and intelligence you need to realise opportunities and grow. From the boardroom to the remotest location, we have developed an unparalleled ability to bring order to chaos and reassurance to anxiety.

Similar Jobs

Applied Systems Logo Applied Systems

Operations Specialist

Artificial Intelligence • Cloud • Payments • Software • Business Intelligence • Generative AI • Automation
Remote or Hybrid
United States
3116 Employees
80K-100K Annually

Applied Systems Logo Applied Systems

User Experience Designer

Artificial Intelligence • Cloud • Payments • Software • Business Intelligence • Generative AI • Automation
Remote or Hybrid
4 Locations
3116 Employees
100K-140K Annually

General Motors Logo General Motors

Senior Product Manager

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
2 Locations
165000 Employees
107K-193K Annually

DFIN Logo DFIN

Account Executive

Fintech • Software
Remote or Hybrid
United States
1750 Employees

Similar Companies Hiring

Teragonia Thumbnail
Artificial Intelligence • Big Data • Machine Learning • Software • Analytics • Business Intelligence • Consulting
Chicago, IL
50 Employees
Energy CX Thumbnail
Greentech • Professional Services • Business Intelligence • Consulting • Energy • Financial Services • Utilities
Chicago, IL
150 Employees
Northslope Thumbnail
Artificial Intelligence • Information Technology • Software • Analytics • Consulting • Generative AI
London, GB
100 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account