Verified current Job

Security Incident Response Analyst

Know where you belong!

Job Full source details
Matchgroup Vancouver, Vancouver, British Columbia Source published Sep 20, 2026 Verified 7 hours ago
✓ 100% verification score · Source: matchgroup (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull-time

Overview

Know where you belong!

Full job description

Know where you belong!

Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Hinge, Match, Meetic, PlentyOfFish, OkCupid, The League, HER, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn’t stop at our products - it’s the foundation of every team we hire.

When it comes to dating, the connection starts online, but the real magic happens once you meet in real life (IRL). We think the same is true for creating the best platforms, so we work together IRL 3 days/week.

About Match Group Match Group (NASDAQ: MTCH) is a leading provider of dating products across the globe, operating a portfolio of brands including Tinder, Hinge, Match, OkCupid, Pairs, Meetic, and more. With hundreds of millions of users worldwide generating billions of interactions daily, our scale demands world-class security operations. About the Team The MG Security Engineering organization provides unified security services across all Match Group brands. The Monitoring, Incident Response & SOC team is responsible for real-time threat detection, investigation, and response across the full portfolio — operating 24/7 to ensure security alerts are effectively triaged and responded to, minimizing the impact of potential threats.

We're looking for a senior individual contributor to join our Detection & Response team as a Security Incident Response Analyst. In this role, you'll serve as a senior-level investigator responsible for detecting, analyzing, and responding to advanced security threats across on-prem and cloud infrastructure in a multi-vendor environment. You'll lead investigations spanning phishing, malware, insider threats, and other complex security incidents — driving them from initial detection through containment, eradication, and recovery.

Lead end-to-end investigations into phishing, malware, insider threats, and other advanced security incidents

Triage and analyze security alerts, distinguishing true threats from noise, and prioritize response based on risk and business impact.

Perform technical malware analysis, including static and dynamic examination of suspicious files, to determine behavior, capability, and intent.

Conduct host and network-based analysis — analyzing system logs, processes, registry/configuration artifacts, memory, traffic patterns, DNS activity, and connection logs — to reconstruct attacker activity and identify persistence, command-and-control, lateral movement, and data exfiltration.

Investigate cloud-native incidents by analyzing audit logs, IAM and access activity, and network flow data to detect unauthorized access, privilege misuse, and malicious file activities across cloud environments.

Drive incidents through containment, eradication, and recovery, coordinating with cross-functional teams as needed.

Develop and refine detection logic, playbooks, and response procedures to improve the team's ability to identify and act on emerging threats.

Act as an escalation point for the most technically complex cases, mentoring junior analysts.

Document findings and communicate clearly with both technical and non-technical stakeholders, including post-incident reports and executive summaries.

5+ years of experience in Incident Response, DFIR, or Security Operations

Experience leading significant security investigations

Strong familiarity with cloud environments (AWS and/or GCP)

Hands-on experience with SIEM, EDR, and log analysis

Solid understanding of identity systems and distributed architectures

Ability to stay composed and structured during high-pressure situations

Clear written and verbal communication skills

Experience in large-scale consumer or SaaS environments

Experience working across global teams

Familiarity with privacy-related incident handling (e.g., GDPR)

Scripting or automation experience (Python, etc.)

We operate global consumer platforms that handle sensitive user data. When incidents happen, the way we respond matters.

This role plays a key part in containing impact, protecting user trust, and improving our overall response maturity.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v2

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

matchgroup (lever) ↗

Browse current Job and Scholarship listings from matchgroup (lever) →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books