Interactive Resources - iR ยท 1 day ago
Cybersecurity Incident Response Engineer
Interactive Resources - iR is seeking a Cybersecurity Incident Response Engineer to join their team and help protect the organization from evolving cyber threats. This role focuses on detecting, analyzing, and responding to security incidents across a complex enterprise environment.
Human ResourcesInformation Technology
Responsibilities
Investigate and manage alerts escalated by the Security Operations Center (SOC)
Assess SOC escalations and challenge potentially overlooked security events
Respond to security incidents using IDS suite tools and perform thorough investigations
Conduct root cause analysis and recommend actionable mitigation strategies
Perform audits to ensure security compliance and controls
Collaborate closely with SOC analysts, IT teams, and other stakeholders to contain and remediate threats
Maintain up-to-date knowledge of security trends, vulnerabilities, and best practices
Create and refine incident response playbooks and operational procedures
Lead threat hunting initiatives using KQL and Sentinel workbooks
Conduct digital forensics investigations to identify indicators of compromise, trace attack vectors, and preserve evidence according to legal and organizational standards
Provide documentation and evidence for internal and external audits
Contribute to developing and improving security policies, procedures, and operational practices
Participate in red team exercises and adversary simulations to enhance detection and response capabilities
Qualification
Required
Minimum 2 years of relevant experience in cybersecurity incident response or a similar role
Bachelor's degree in Cybersecurity, Information Technology, or related field, or equivalent professional experience
Security+ certification or equivalent (Microsoft security certifications are a plus)
Solid understanding of MITRE ATT&CK framework and the Cyber Kill Chain
Hands-on experience with Microsoft security tools is highly desirable