CrawlJobs Logo

Principal Cybersecurity Incident Analyst

nttdata.com Logo

NTT DATA

Location Icon

Location:
Australia , Melbourne

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Principal Analyst Cybersecurity Incident is a key role responsible for managing and responding to security incidents within the organization. The NTT Cyber Security Incident Response (CSIR) team is essential in providing an orchestrated and rapid security incident response capability with an oversight of security incident response across wider NTT Managed Security Services clients. The CSIR team utilises various security technologies to identify alerts and prioritize and investigate security issues in a fast-paced environment to maintain the level of communication with internal and client stakeholders.

Job Responsibility:

  • Act like a SIEM consultant who provides expertise and guidance to organizations in setting up, managing, and improving their SOC capabilities
  • Look over dashboards, and reports from the previous day or shift, including checking for any new threats and identifying malware
  • Prepare for and respond to system breaches or attacks
  • Respond to hacks or network insecurities and working to prevent new ones
  • Participate in a shift roster which may comprise of shifts business hours and after hours
  • Assessing SIEM maturity: Evaluating the existing SIEM setup and capabilities of an organization
  • Developing or refining the SIEM infrastructure, the architecture, tools, processes, and workflows of a SOC
  • Implementing security technologies when necessary: Assessing, selecting, and implementing various security technologies such as SIEM, SOAR systems, intrusion detection systems, threat intelligence platforms, and incident response tools
  • Support the Security Management Lifecycle including: monitoring, investigation, research, correlation, trend analysis, remediation and siem configuration
  • Developing security policies and procedures: Assisting in developing, documenting, maintaining SOC standard operating procedures (SOPs), incident response plans, playbooks, and other security policies
  • Actively participate in process improvement with other team members and Wider team
  • Incident analysis and response: Assisting SOC analysts by providing guidance and support in analyzing security events, investigating incidents, and responding to cyber threats and attacks
  • Process improvement and optimization: Continuously improving and optimizing SOC processes, workflows, and tools
  • Threat intelligence analysis: Collaborating with other teams or external threat intelligence providers to gather, analyze, and interpret threat intelligence
  • Research and recommend mitigation strategies for current and future threats relevant to the Clients environment
  • Compliance and regulatory requirements: Ensuring that SOC operations align with applicable standards, regulations, and best practices
  • Incident reporting and communication: Preparing reports and communicating security incidents, vulnerabilities, and findings to stakeholders, management, and internal or external auditors
  • Collaborating with internal teams
  • Managing stakeholder expectations and assisting in the reduction of the impact of a cybersecurity event or incident
  • Provide proactive, constant, and clear communication on the status of incident/problem resolution between the client, NTT, and any other third-party supplier and vendors
  • Provide remote technical support and Escalations within Managed Services’ ITIL aligned service delivery processes
  • Manage, own and co-ordinate the technical resolution of incidents either remotely or onsite utilizing Field Engineering resources
  • Action P1 or Major incident escalation right away
  • Plan, coordinate and implement complex network changes within customer specified change windows, adhering to a predefined ITIL change management framework
  • Maintain detailed knowledge of the clients’ environment(s), where applicable, by maintaining and updating relevant documentation
  • Escalate issues affecting delivery of service to management and mentor the team members and guide them to grow in their roles and provide technical escalation support

Requirements:

  • Bachelor's degree in Information Technology or Computer Science preferred
  • Relevant certifications such as SANS GIAC Security Essentials (GSEC)
  • At least 5 years of experience in the technology information security industry
  • Hands-on experience in administering & managing SIEM platforms Palo Alto XSIAM, Splunk, Microsoft Sentinel etc.
  • Hands-on experience to Analyse logs/events from SIEM solution, wireshark and other infrastructure
  • Deep knowledge of cybersecurity concepts, technologies, and best practices
  • Experience in working in Security Operation Centre and Network Security operations
  • Hands-on experience in administering & managing Vulnerability Management solutions like Qualys, Tenable etc.
  • Hands-on experience in administering & managing SOAR Palo Alto Cortex XSOAR or other SOAR solutions
  • Expertise in writing new and interpreting query language SPL, KQL, XQL
  • Creating custom dashboards based on the client's security landscape on clients SIEM, Cyber Security Intel products
  • Experience in managing Security Incidents detection and response, Threat hunt capability with knowledge of Mitre Attack, NIST, FAIR, Cyber Kill chain security framework
  • Experience in triaging Threat feeds and working towards mitigation exercises
  • Experience in reviewing the vulnerability, and product bug reports and relating their impact to Clients’ environment
  • Ability to filter through false positives quickly and focus on true positives
  • Risk assessment and management: Understanding of risk assessment methodologies and frameworks
  • Experience with various security monitoring and analysis tools like SIEM, IDS/IPS, EDR, and network traffic analysis tools
  • Extensive 10 + years of overall experience in a Technology Information Security Industry
  • Prior experience working in a SOC/CSIRT for at least 8+ years
  • Good Hands-on experience on Splunk solution creating search rules and dashboards
  • Tertiary qualifications or a passionate ethical hacker
  • Experience using End Point Protection products and tools
  • Experience with Enterprise Detection & Response software
  • Experience in managing large customers with multiple sites
  • Strong team player
  • Ability to work in a challenging and constantly changing environment
  • Display a willingness to persevere with difficult tasks
  • Demonstrate resourcefulness and sound judgment
  • Strong customer service focus with an understanding of client expectations
  • Strong verbal and written communication, along with good interpersonal skills
  • High level of initiative, accountability, attention to detail and ability to follow process

Nice to have:

  • Demonstrated genuine interests and passion for cybersecurity
  • Working knowledge of security operations environments and security incident management & response handling
  • Certification - Splunk Core Certified Power User (SCCPU), Qualys
  • Relevant certifications such as CISSP, GSEC, GCIH, GCIA, or other industry-recognized certifications
  • Exposure to Cyber Security Governance and Risk Compliance (GRC) and experience in providing innovative solutions to complex cybersecurity problems
  • Strong organisational skills & the ability to prioritise multiple complex tasks
  • Ability to work effectively under pressure
  • Excellent verbal and written communication skills are essential to influence both technical and non-technical audiences

Additional Information:

Job Posted:
March 20, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Principal Cybersecurity Incident Analyst

Principal Cybersecurity Incident Response Analyst

Principal Cybersecurity Incident Response Analyst role at HPE's Cyber Defense Ce...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree (or equivalent work experience) required, preferably in computer science, engineering or related area of study
  • Typically 8+ years of relevant experience
  • SOC team/Incident response/Advanced threat analyst experience is required
  • Proven track record of leading complex cybersecurity initiatives and managing ambiguous incidents
  • Extensive understanding of adversary tactics, techniques, and procedures (TTPs)
  • Extensive Cyber and IT security knowledge
  • Extensive understanding of Cyber and IT security risks, best practices, threats and prevention measures
  • Extensive understanding of SQL and relevant scripting languages
  • Extensive data security system analysis skills
  • Extensive risk assessment and management skills
Job Responsibility
Job Responsibility
  • Lead and coordinate responses to the most severe and complex cybersecurity incidents
  • Guide cross-functional teams through containment, eradication, and recovery
  • Provide executive-level oversight and decision-making during critical incidents
  • Effectively analyze associated logs and respond to high severity incidents
  • Contribute to the company's security response methods
  • Mentor and provide technical guidance to less experienced cybersecurity professionals
  • Stay at the forefront of cybersecurity trends, threats, and technologies
  • Foster a culture of continuous improvement and innovation
  • Provide insight and guidance through after action reviews
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive benefits suite supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Principal Cybersecurity / Threat Hunter Analyst

Berkshire Hathaway Specialty Insurance (BHSI) has an exciting opportunity for a ...
Location
Location
United States , Boston
Salary
Salary:
135000.00 - 170000.00 USD / Year
bhspecialty.com Logo
Berkshire Hathaway Specialty Insurance
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of hands-on cybersecurity experience across incident response, forensics, vulnerability management, and cloud security
  • Expertise in threat intelligence tools, network analysis, and attack simulation
  • Strong knowledge of IAM, PIM/PAM, and regulatory frameworks (NIST, GDPR, ISO, SOC2)
  • Proven leadership in managing security incidents and driving remediation
  • Certifications like CISSP, CISM, OSCP, or similar are a plus
Job Responsibility
Job Responsibility
  • Drive threat hunting activities, simulating red team/blue team exercises
  • Lead the charge in threat hunting and digital forensics, identifying and neutralizing risks before they escalate
  • Perform deep-dive analysis of critical security events to assess immediate and long-term impact
  • Advance our SOAR capabilities, making incident response faster and smarter
  • Spearhead our threat intelligence program, aggregating and analyzing global threat data
  • Collaborate across teams to elevate cybersecurity maturity and embed best practices
  • Act as a trusted advisor and thought leader, shaping security strategy and awareness
What we offer
What we offer
  • Comprehensive Health, Dental and Vision benefits
  • Disability Insurance (both short-term and long-term)
  • Life Insurance (for you and your family)
  • Accidental Death & Dismemberment Insurance (for you and your family)
  • Flexible Spending Accounts
  • Health Reimbursement Account
  • Employee Assistance Program
  • Retirement Savings 401(k) Plan with Company Match
  • Generous holiday and Paid Time Off
  • Tuition Reimbursement
Read More
Arrow Right

Engineer II - Cyber Incident Response

The Engineer II, Cyber Incident Response, is a mid-level technical role within t...
Location
Location
United States , Conshohocken; Frisco
Salary
Salary:
Not provided
cencora.com Logo
Cencora
Expiration Date
March 23, 2026
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience
  • Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics
  • Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035
  • 2–5 years of progressive experience in cybersecurity, with at least 2 years in SOC operations or incident response
  • Hands-on experience with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark)
  • Demonstrated ability to analyze logs, alerts, and artifacts to support incident investigations
  • Strong written and verbal communication skills for documenting findings and briefing stakeholders
Job Responsibility
Job Responsibility
  • Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts
  • Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents
  • Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff, providing clear documentation and evidence
  • Assist in containment, eradication, and recovery activities during incident response
  • Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures
  • Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies
  • Participate in lessons-learned sessions and recommend improvements to SOC processes and tooling
  • Support junior analysts (Engineer I) by sharing knowledge and providing guidance on investigative techniques
What we offer
What we offer
  • medical
  • dental
  • vision care
  • comprehensive suite of benefits focusing on physical, emotional, financial, and social wellness
  • support for working families
  • backup dependent care
  • adoption assistance
  • infertility coverage
  • family building support
  • behavioral health solutions
  • Fulltime
!
Read More
Arrow Right

Enterprise Security Architect

The leading technical authority of design, implementation, and validation of Cyb...
Location
Location
United States , Broomfield
Salary
Salary:
140000.00 - 190000.00 USD / Year
hunterdouglas.com Logo
Hunter Douglas
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert knowledge of security best practices (encryption, data protection, design, privilege access, etc.)
  • Expert knowledge and experience with managing and implementing standard security technologies (DLP, MDM, SIEM, AV, IDS)
  • Solid knowledge in compliance management and certification (PCI, GDPR, CCPA)
  • Solid knowledge of network technologies (protocols, design concepts, access control)
  • Solid knowledge of identity technologies (protocols, design concepts, access control)
  • Solid knowledge of application technologies (protocols, design concepts, access control)
  • Expert knowledge to demonstrate excellent written and verbal communication
  • Expert knowledge and proficiency in planning, reporting, establishing goals and objectives, standards, priorities, and schedules
  • Bachelor’s degree or equivalent in related field
  • Minimum of 5 years’ experience in a principal Security Engineer or Architect role
Job Responsibility
Job Responsibility
  • Threat intelligence and threat landscape: Continuously obtain updated, accurate threat intelligence to update the company’s threat landscape
  • Control design: Ideate, suggest, and design solutions to identified risks, including process modifications, improved configurations, and technology selection
  • Process improvements: Build, align, and update Cybersecurity standards, operating procedures, and other documentation to ensure effective Cybersecurity adherence across the company
  • Procurement: Develop requirements for InfoSec vendor selection for new and replacement technologies and services
  • Implementation: Lead the onboarding of technology-related projects to ensure alignment with the company’s security policies, guidelines, and processes. The candidate will also need to lead other Security Engineers and analysts in project deployment, driving the execution and completion of initiatives
  • Technical authority: Assist Security Engineers and Analysts with the management and operation of Cybersecurity tools as needed, including EDR, firewall, email security, vulnerability management, application security, and identity systems
  • Bake security into the business: Interfaces with management and the user community to understand business needs, implement security best practices, and identify opportunities for improving security and compliance
  • Improve security awareness: Partners with the training and professional development staff to promote security awareness among the user community with lessons from the field. Champions the continuous improvement of Cybersecurity across all entities
  • Planning: Review and develop the company’s overall security program and manage multiple security projects in each period
  • Incident response: Support incident response processes to ensure thoroughness and effectiveness
What we offer
What we offer
  • Bonus target range: 35-40%
  • Generous benefits package including medical, dental, vision, life, disability
  • A company culture that prioritizes internal development and professional growth
  • Time off with pay
  • 401(k) plan with a degree of employer matching
  • Paid parental leave
  • Wellness programs and product discounts
  • Fulltime
Read More
Arrow Right

Enterprise Security Architect

The leading technical authority of design, implementation, and validation of Cyb...
Location
Location
United States , Broomfield
Salary
Salary:
140000.00 - 190000.00 USD / Year
hunterdouglas.com Logo
Hunter Douglas
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert knowledge of security best practices (encryption, data protection, design, privilege access, etc.)
  • Expert knowledge and experience with managing and implementing standard security technologies (DLP, MDM, SIEM, AV, IDS)
  • Solid knowledge in compliance management and certification (PCI, GDPR, CCPA)
  • Solid knowledge of network technologies (protocols, design concepts, access control)
  • Solid knowledge of identity technologies (protocols, design concepts, access control)
  • Solid knowledge of application technologies (protocols, design concepts, access control)
  • Expert knowledge to demonstrate excellent written and verbal communication
  • Expert knowledge and proficiency in planning, reporting, establishing goals and objectives, standards, priorities, and schedules
  • Bachelor’s degree or equivalent in related field
  • Minimum of 5 years’ experience in a principal Security Engineer or Architect role
Job Responsibility
Job Responsibility
  • Threat intelligence and threat landscape: Continuously obtain updated, accurate threat intelligence to update the company’s threat landscape
  • Control design: Ideate, suggest, and design solutions to identified risks, including process modifications, improved configurations, and technology selection
  • Process improvements: Build, align, and update Cybersecurity standards, operating procedures, and other documentation to ensure effective Cybersecurity adherence across the company
  • Procurement: Develop requirements for InfoSec vendor selection for new and replacement technologies and services
  • Implementation: Lead the onboarding of technology-related projects to ensure alignment with the company’s security policies, guidelines, and processes. The candidate will also need to lead other Security Engineers and analysts in project deployment, driving the execution and completion of initiatives
  • Technical authority: Assist Security Engineers and Analysts with the management and operation of Cybersecurity tools as needed, including EDR, firewall, email security, vulnerability management, application security, and identity systems
  • Bake security into the business: Interfaces with management and the user community to understand business needs, implement security best practices, and identify opportunities for improving security and compliance
  • Improve security awareness: Partners with the training and professional development staff to promote security awareness among the user community with lessons from the field. Champions the continuous improvement of Cybersecurity across all entities
  • Planning: Review and develop the company’s overall security program and manage multiple security projects in each period
  • Incident response: Support incident response processes to ensure thoroughness and effectiveness
What we offer
What we offer
  • Bonus target range: 35-40%
  • Generous benefits package including medical, dental, vision, life, disability
  • A company culture that prioritizes internal development and professional growth
  • Time off with pay
  • 401(k) plan with a degree of employer matching
  • Paid parental leave
  • Wellness programs and product discounts
  • Fulltime
Read More
Arrow Right

Principal Product Manager

As the Principal Product Manager for Threat Prevention, you will define and exec...
Location
Location
United States , Santa Clara
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BS or MS in a technical field (e.g., Computer Science, Electrical Engineering), or equivalent military experience
  • 7+ years of experience in a technical product management role, with a focus on cybersecurity technologies
  • Proven ability to define and execute complex product strategies that result in substantial business impact and market disruption
  • MBA is highly desirable
  • Demonstrated track record of successfully launching and scaling new products or offerings at a portfolio level
  • Superior written and verbal communication skills with the ability to influence and align stakeholders from individual contributors to executive leadership
  • Experience with cloud-based security solutions covering threat analysis, incident response, intrusion prevention (IPS), or antivirus (AV) technologies
  • Exceptional analytical skills to make complex, data-driven decisions that influence long-term product strategy
Job Responsibility
Job Responsibility
  • Own and articulate the long-term strategic vision and roadmap for the Advanced Threat Prevention product, ensuring alignment with company objectives
  • Drive the growth and innovation of the security product portfolio, creating a differentiated roadmap that disrupts the market
  • Collaborate extensively with engineering, sales, and marketing leadership to ensure cohesive strategy and execution for best-in-class security solutions
  • Analyze complex business data to identify and execute on significant growth opportunities and successfully enter new, high-growth markets
  • Serve as a key subject matter expert and evangelist for threat prevention, engaging with customers, partners, and industry analysts
  • Mentor and guide other product managers, fostering a culture of innovation, accountability, and continuous improvement within the team
  • Challenge the status quo by identifying problems, critically reviewing data, and providing practical solutions to enhance product capabilities
  • Fulltime
Read More
Arrow Right
New

Project Manager (Technical)

Due to an expanding order book, Bristol based client have an opening for a posit...
Location
Location
United Kingdom , Bristol
Salary
Salary:
35000.00 - 50000.00 GBP / Year
morson.com Logo
Morson Talent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience within the residential housing sector, working with national house builders advantageous
  • Have an eye for detail
  • Prepare accurate, error free drawing information
  • Strong knowledge of Building Regulations and NHBC standards
  • Experience designing in traditional masonry and timber frame is essential, concrete framing and SFS experience desirable
  • Competent knowledge of building materials, specifications and construction techniques
  • Ability to work within a team and offer experience to the team when required
  • Excellent time management skills with the ability to organise & prioritise workload effectively
  • Possess good communication skills
  • Proficient with AutoCAD and Revit
Job Responsibility
Job Responsibility
  • Preparation of technically accurate working drawings, to include substructure plans, floor plans, joist layouts, truss layouts, sections, large scale construction details, external works and conveyance plans
  • Liaising with clients to ensure drawings meet their brief
  • Running multiple projects at once with the ability to delegate effectively
  • Manage a team to prepare all drawings and documents required for use on site and for the submission of Building Regulation applications
  • Liaising with Building Control bodies to discharge conditions and resolve any queries
  • Co-ordinating information between consultants and incorporating into designs where necessary
  • Reviewing and incorporating specialist supplier designs
  • Attending design team meetings at client offices and on site when necessary
  • Fulltime
Read More
Arrow Right
New

Laundry Assistant

The primary purpose of your job position is to perform a variety of tasks usuall...
Location
Location
United States , Daytona Beach
Salary
Salary:
15.00 USD / Hour
solarishealthcare.org Logo
Solaris Healthcare
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • High School diploma or equivalent required
  • Experience in the Healthcare Industry a plus
  • This role requires Florida AHCA Clearinghouse background screening.
Job Responsibility
Job Responsibility
  • Perform a variety of tasks usually requiring cleaning, trash removal, laundry, etc, to residents and staff in the nursing center and other special events
  • Ensure the cleanliness and orderly manner in which resident laundry is handled
  • Pick up, launder, dry and fold facility laundry (sheets, blankets, pillowcases, towels, washcloths, etc.)
  • Pick up, launder, dry, fold and hang residents personal clothing. Return to room, put away folded belongings, hang clothes that are on hangers in a neat an orderly manner
  • Ensure equipment is cleaned and maintained according to facility maintenance programs and procedures. Clean lint baskets frequently, wipe down washers and dryers after each shift. Report and maintenance issues to the Maintenance department for repair(s)
  • Maintain a clean, orderly and safe work area. Pay attention to your surroundings and others while moving heavy laundry containers and Personal Clothing Carts
  • Keep tract of soiled, stained and tattered items due to use or age to Supervisor. Remove items that are not approved for further use and replace. Make your supervisor aware of depleting counts of stock items when running low
  • Use PPE’s while changing out chemicals once the are empty. Dispose in a proper manner
  • Other duties which may be assigned from time to time (Housekeeping, floor tech)
  • Adhere to dress codes
What we offer
What we offer
  • Affordable Health, Dental & Vision Insurance (family options included)
  • Advanced Pay -get paid when YOU want
  • 401k with Company Match -plan for your future
  • Generous ETO, Holidays & Sick Time -we value work life balance
  • Tuition Reimbursement -invest in your growth
  • Life Insurance & Disability Coverage -peace of mind for you & your family
  • Uniforms Provided & Perks Programs -we've got your covered
  • Shift Differentials depending on location, position & shift
  • Fulltime
Read More
Arrow Right