Neural AI

All job descriptions

Incident Response Engineer

Cybersecurity Mid-level (L4 equivalent) 2-5 years
✓ Which company are you aiming at?
To generate precise rejection-prevention feedback and application strategy, tell us where you're targeting.
2 Send your application
You need an account so we know where to send the feedback.

The job description

Tech stack. SIEM platforms, EDR telemetry, Volatility and memory forensics, Wireshark, Autopsy or EnCase, SOAR playbooks, Python, MITRE ATT&CK, timeline analysis tools

About the role

You will be the calm in the storm for a technology company's security operations team, owning breaches from the first alert through complete recovery and verified eradication. The incident response function handles everything from commodity malware outbreaks to targeted intrusions by determined adversaries, and you will be the engineer responders call when scoping gets genuinely hard. You will develop playbooks, run realistic exercises, and make the consequential calls during live incidents. This role matters because the difference between a contained incident and a headline breach is measured in the quality of the first responder's decisions, and your forensic work determines what leadership, legal, and customers are ultimately told. You will also lead the post-incident reviews that turn each breach into detection improvements, ensuring the same attacker technique never works twice against this environment.

What you will achieve

What you will bring

Must-haves

Nice-to-haves