Description
Job Summary:
The Senior Incident Response Analyst conducts advanced information security investigations and technically leads containment and recovery actions to minimize impact.
Key Highlights:
1. Conduct advanced security incident investigations.
2. Technically lead containment, eradication, and recovery actions.
3. Serve as a technical reference in critical scenarios.
The Senior Incident Response Analyst is responsible for conducting advanced information security incident investigations and technically leading containment, eradication, and recovery actions to minimize operational and institutional impacts. Acts as a technical reference in critical scenarios, ensuring evidence preservation, governance compliance, and strategic decision support during crises.
**Key Responsibilities**
* Conduct advanced technical investigations of security incidents (e.g., malware, ransomware, APTs, data breaches, unauthorized access).
* Technically lead containment, eradication, and recovery actions for affected environments.
* Perform in-depth analysis of logs, systems, endpoints, networks, and digital evidence.
* Coordinate evidence collection and preservation with integrity and traceability.
* Provide technical support for strategic decision-making during critical incidents and institutional crises.
* Prepare detailed technical reports, expert opinions, and post\-incident lessons learned.
* Support the development and enhancement of incident response playbooks and processes.
* Serve as a technical reference for junior and mid-level analysts.
* Collaborate with SOC, Threat Intelligence, Service Delivery, Quality, and GRC teams.
* Ensure adherence to governance, compliance, and confidentiality requirements.
**Requirements**
Education:
Bachelor's degree completed in Information Technology, Information Security, or related fields.
Experience:
Solid experience in incident response, CSIRT, forensic investigation, or offensive/defensive security.
Knowledge:
Advanced incident analysis, networking, operating systems, security tools, and fundamentals of digital forensics.
Familiarity with incident response frameworks and best practices.
Competencies:
Strong analytical ability, technical leadership, decision-making under pressure, organizational skills, clear communication, and strategic mindset.