Incident Response Analyst:
HybridTel Aviv, Tel Aviv, Israel
Tel Aviv, Tel Aviv, IsraelHybridPart TimeTECHEnterprise
Part TimeEnterpriseTECH
Job Summary
Investigate and respond to workspace security incidents across email, browser security, and perimeter domains while handling customer investigation requests. Perform targeted phishing analysis, conduct threat hunting based on attack patterns, and build detections for new attack types. Collaborate with development teams to develop detection engines and write professional blog posts on incident trends. Work in rotating shifts as part of a 24/7 operation including nights, weekends, and holidays.
Required Qualifications
- At least 3 years of experience in an Incident Response or Security Operation roles
- Strong understanding of attack vectors, including Phishing, BEC, Email spoofing and impersonation techniques, Malware, ATO and more
- Knowledge of email protocols and security concepts: SMTP, SPF/DKIM/DMARC, headers, authentication methods
- Strong querying skills using SQL, SPL, KQL or AQL
- Good knowledge with Static & Dynamic techniques
- Familiarity with and understanding of code and scripting languages such as Python, JavaScript, Visual Basic, or similar - with the ability to read, interpret, and analyze potentially malicious scripts
- Excellent written and verbal communication in English
- Team player with a proactive, ownership-driven approach
- Work in rotating shifts as part of a 24/7 operation (including nights, weekends, and holidays)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.