Cybersecurity Senior Incident Response Analyst - Remote based in the US
Tenet is seeking a Senior Incident Response Analyst to work for Tenet Healthcare. Below is a brief outline of what Tenet is seeking for this role.
The Senior Cybersecurity Incident Response Analyst reports to the Tenet Incident Response Manager and serves as a key member of the Cybersecurity Incident Response team. In this role, you will lead and support the investigation, containment, eradication, and recovery of cybersecurity incidents across the enterprise while ensuring accurate documentation and reporting throughout the incident response lifecycle.
You will leverage advanced analytical, forensic, and investigative skills to identify, assess, and respond to cyber threats, security events, and complex incidents. Responsibilities include conducting endpoint and network forensics, performing malware triage and analysis, executing proactive threat hunting activities, and collaborating with cross-functional teams to contain and mitigate security risks.
The ideal candidate possesses strong technical expertise, critical thinking, and a passion for cybersecurity investigations. You will apply your knowledge of threat actor tactics, techniques, and procedures (TTPs) to conduct in-depth analyses, determine root cause, assess business impact, and deliver clear, actionable findings to cybersecurity leadership and executive stakeholders. This role also contributes to the continuous improvement of incident response processes, detection capabilities, and organizational cyber resilience.
The functions listed describe the business purpose of this job. Specific duties or tasks may vary and be documented separately. The employee might not be required to perform all functions listed. Additional duties may be assigned, and functions may be modified, according to business necessity.
- Investigate and respond to cybersecurity incidents through all phases of the incident response lifecycle, including identification, containment, eradication, recovery, and lessons learned.
- Perform endpoint, network, and cloud-based forensic investigations to determine scope, root cause, and impact of security events.
- Execute proactive threat hunting activities using threat intelligence, behavioral analytics, and detection engineering techniques.
- Document investigative findings, provide incident reports, and present assessments to technical and non-technical stakeholders.
- Collaborate with Security Operations, Infrastructure, Engineering, Legal, Compliance, and business teams during incident response activities.
- Identify opportunities to enhance detection content, incident response procedures, playbooks, and overall security posture.
- Assist with maturing the automation and AI capabilities utilized within the incident response program.
- Stay current on emerging cyber threats, adversary tactics, and industry best practices to improve organizational readiness and response capabilities.
- Create reports and document incidents.
- High school diploma or equivalent.
- 3+ years of experience in Cyber Incident Response field.
- Experience investigating and responding to high-severity cybersecurity incidents.
- Strong endpoint and cloud forensics experience and skillset.
- Strong experience with EDR solutions.
- Experienced and skilled using Splunk to perform investigations and threat hunts.
- Experience developing and refining incident response playbooks and procedures.
Ability to travel ~ 25%. Selected candidate will be required to pass a Motor Vehicle Records check.
Compensation
- Pay: $103,000 - $140,000 annually. Compensation depends on location, qualifications, and experience
- Management level positions may be eligible for sign-on and relocation bonuses
Benefits
The following benefits are available, subject to employment status:
- Medical, dental, vision, disability, AD&D and life insurance
- Paid time off (vacation & sick leave)
- Discretionary 401k match
- 10 paid holidays per year
- Health savings accounts, healthcare & dependent flexible spending accounts
- Employee Assistance program, Employee discount program
- Voluntary benefits include pet insurance, legal insurance, accident and critical illness insurance, long term care, elder & childcare, auto & home insurance
- For Colorado employees, paid leave in accordance with Colorado’s Healthy Families and Workplaces Act is available
Skills Required
- High school diploma or equivalent
- 3 or more years of experience in cybersecurity incident response
- Experience investigating and responding to high-severity cybersecurity incidents
- Strong endpoint and cloud forensics experience and skills
- Strong experience with Endpoint Detection and Response solutions
- Experience using Splunk for investigations and threat hunting
- Experience developing and refining incident response playbooks and procedures
- Ability to travel approximately 25%
- Ability to pass a Motor Vehicle Records check
What We Do
Tenet Healthcare Corporation (NYSE: THC) is a diversified healthcare services company headquartered in Dallas. Our care delivery network includes United Surgical Partners International, the largest ambulatory platform in the country, which operates ambulatory surgery centers and surgical hospitals. We also operate a national portfolio of acute care and specialty hospitals, other outpatient facilities, a network of leading employed physicians and a global business center in Manila, Philippines. Our Conifer Health Solutions subsidiary provides revenue cycle management and value-based care services to hospitals, health systems, physician practices, employers, and other clients. Across the Tenet enterprise, we are united by our mission to deliver quality, compassionate care in the communities we serve. For more information, please visit www.tenethealth.com.








