Verified current Job

Staff CSIRT Analyst

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff CSIRT Analyst based in United States.

Job Remote Full source details
Jobgether Source published Sep 17, 2026 Verified 7 hours ago
✓ 100% verification score · Source: jobgether (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull-time
Work modeRemote / location-flexible

Overview

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff CSIRT Analyst based in United States.

Full job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff CSIRT Analyst based in United States. This is a senior cybersecurity role focused on strengthening internal security resilience and incident response capabilities. You will serve as a key escalation point for the SOC, leading the identification, triage, and investigation of complex security incidents. The role combines hands-on incident response with strategic preparedness, telemetry optimization, and cross-functional security leadership. You will work closely with engineering, product security, detection engineering, and offensive security teams to improve visibility and threat coverage. You will also lead exercises, post-incident reviews, and remediation initiatives that strengthen organizational defenses over time. Success in this role requires strong technical depth, clear executive communication, and the ability to turn complex security findings into actionable improvements. The position is fully remote and offers an opportunity to influence security practices across a growing, globally distributed organization.

Lead the identification, triage, validation, and investigation of security incidents across multiple telemetry sources, serving as the highest-level escalation point for the SOC. Drive organizational incident preparedness by designing and conducting practical response exercises, including tabletop scenarios and purple-team activities, to ensure teams are equipped to respond effectively. Partner with engineering, product security, and detection engineering teams to optimize telemetry sources, improve true-positive rates, reduce alert noise, and strengthen detection effectiveness. Collaborate with offensive security specialists to identify visibility gaps and improve defensive coverage against modern threat actor tactics, techniques, and procedures (TTPs). Work cross-functionally to address identified security gaps, coordinating with relevant teams to implement practical solutions rather than allowing visibility limitations to become persistent blockers. Lead post-incident reviews and translate lessons learned into clearly defined remediation initiatives, owning the resulting actions through completion and driving improvements in tooling, processes, and response capabilities. Develop and present detailed incident reports, exercise findings, and lessons learned to technical stakeholders, business leaders, and executive audiences. Create, maintain, and continuously improve incident response playbooks, system configurations, operational standards, and supporting documentation to promote scalable and consistent security practices. Requirements: Bring 8+ years of professional experience in incident response, SOC operations, digital forensics, or related DFIR disciplines, with demonstrated experience handling complex security events. Have advanced knowledge of EDR/MDR platforms, centralized logging and SIEM technologies such as ELK, and cloud security environments including AWS, Azure, and Microsoft 365. Demonstrate strong analytical and problem-solving capabilities, with the ability to identify root causes using first-principles thinking and translate findings into practical technical solutions. Have experience leading small project teams, coordinating initiatives across functions, and aligning security technologies and processes across different organizational areas. Communicate exceptionally well, with the ability to explain complex technical incidents and security findings clearly to both technical specialists and executive leadership. Be familiar with automation and SOAR platforms, as well as collaboration and documentation tools such as Confluence, Jira, and Lucidchart. Bring a proactive and forward-looking security mindset, with a commitment to building inclusive, practical, and actionable security behaviors across the organization. Benefits: $200,000–$210,000 USD compensation range, plus bonus and equity. 100% remote work environment. Generous paid time off, including vacation, sick time, and paid holidays. 12 weeks of paid parental leave. Comprehensive medical, dental, and vision benefits. 401(k) plan with a 5% employer contribution regardless of employee contribution. Life and disability insurance coverage. Stock options for all full-time employees. One-time $500 reimbursement for building or upgrading a home office. Annual education and professional development assistance. $75 USD monthly digital reimbursement. Access to BetterUp for coaching and personal and professional development.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v3

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

jobgether (lever) ↗

Browse current Job and Scholarship listings from jobgether (lever) →

Related opportunities

Other current verified records you may want to review.

Job

Onsite Medical Representative

Amazon.com Services LLC · United States

Join Amazon’s mission to become Earth’s safest place to work! At Amazon, we’ve set the ambitious goal to become the benchmark of safety excellenc...

Job

Sr. Technical Account Manager, ES - WWPS

Amazon Web Services, Inc. · United States

As part of the AWS Applied AI Solutions organization, we have a vision to provide business applications, leveraging Amazon’s unique experience an...

Job

Principal Business Developer, Strategic Vendor Acceleration

Amazon.com Services LLC - A57 · United States

We are looking for a Principal Business Developer (External Business Developer / EBD) to serve as the face of Amazon's global relationship with a...

Job

Senior Partner Solutions Architect, Global Strategic Partners (GSP)

AWS EMEA SARL (UK Branch) · United Kingdom

This is an ideal role for someone who has experience working for a global systems integrator, a large IT consulting firm, or a Fortune 1000 compa...

Job

Associate Director, Delivery Lead - Content Innovation

Audible Limited (UK) - B14 · United Kingdom

At Audible, we believe stories have the power to transform lives. It’s why we work with some of the world’s leading creators to produce and share...

Job

Front End Engineer, Amazon Security Experiences

Amazon.com Services LLC · United States

Amazon Security Experiences is building the unified security platform for every builder at Amazon. Our product brings together security reviews,...

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books