Job Description
Job Title:  Incident Response Specialist
Posting Start Date:  9/7/26
Job Description: 

JOB PURPOSE

The Incident Response Specialist handles complex investigations within the Security Operations Center (SOC), ensuring timely and effective resolution of security incidents. This role provides technical guidance to the team, leads threat hunting activities, refines response processes, and maintains clear communication and thorough documentation to support proactive security and threat intelligence efforts.

ROLES AND RESPONSIBILITIES

Key Accountability Areas

Key Activities

Policies, Processes and Procedures

  • Follow all relevant policies, processes and standard operating procedures so that work is carried out in a controlled and consistent manner
  • Help in solving escalated problems and provide needed support for junior team to ensure work is carried out in an efficient manner
  • Escalate complex problems to the relevant person to ensure cases/issues are closed properly
  • Perform other duties as requested

Project Management

  • Perform incident response projects and investigations throughout their lifecycle, from initiation and planning to execution, monitoring, closure, and post-incident review, ensuring successful outcomes and alignment with client objectives.
  • Monitor the progress of incident response investigations against established timelines and key performance indicators (KPIs), identifying any deviations, and implementing corrective actions to ensure timely and effective resolution.
  • established quality standards, client expectations, and industry best practices.
  • Assess and mitigate potential risks and issues throughout the incident response lifecycle, developing and implementing appropriate risk mitigation strategies to minimize impact on incident resolution and client operations.

Incident Response

  • effective, and coordinated response to cybersecurity incidents.
  • Support in the investigation of complex, high-priority, and high-impact security incidents, collaborating effectively with internal teams, external partners, forensic experts, legal counsel, and clients as needed.
  • Evaluate post-incident reviews (PIRs) to assess the effectiveness of the incident response process and implement corrective actions.
  • Participate digital forensic investigations, including evidence acquisition, preservation, analysis, and reporting, in accordance with industry best practices and legal requirements.

 

ROLES AND RESPONSIBILITIES

 

Security Operations

  • Support in Security Operations Center (SOC) on security operations initiatives, ensuring the implementation of best practices, advanced threat detection techniques, and robust security protocols to protect client environments from cyber threats and vulnerabilities.
  • Assist in the development, implementation, and regular review of security policies, procedures, and standards, ensuring alignment with industry best practices, regulatory requirements, and client-specific needs.

Reporting and Documentation

  • Monitor that all incident response activities, investigations, findings, actions taken, and communications are accurately and thoroughly documented in real-time, providing a clear and comprehensive historical record that supports accountability, transparency, and compliance.
  • Support in the incident response team utilizing and maintaining a centralized repository for all incident-related documentation, including investigation reports, forensic analyses, communication logs, and lessons learned, promoting knowledge sharing, collaboration, and efficient access to information.

 

ROLES AND RESPONSIBILITIES

ROLES AND RESPONSIBILITIES

ROLES AND RESPONSIBILITIES

JOB QUALIFICATIONS AND REQUIREMENTS

Knowledge and Experience 
0 to 2 years of experience 

Education and Certifications 
Bachelor’s degree in computer science or related field
OSWE, OSEP

Competencies