Talent.com
Information Security Operations Analyst / Incident Response & Forensics Speci
Information Security Operations Analyst / Incident Response & Forensics SpeciKnowHireMatch • Madison, WI, US
serp_jobs.error_messages.no_longer_accepting
Information Security Operations Analyst / Incident Response & Forensics Speci

Information Security Operations Analyst / Incident Response & Forensics Speci

KnowHireMatch • Madison, WI, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Information Security Operations Analyst / Incident Response & Forensics Specialist

Madison, Wisconsin, HYBRID REMOTE (Flexible work from home days available)

$110,000 to $140,000

Experience 5+ Years Required

The Information Security Operations Analyst / Incident Response & Forensics Specialist is a critical, hands-on role responsible for operating and maturing the organization's cybersecurity defense, detection, and response capabilities. This specialist serves as a high-level escalation point, bridging the gap between proactive threat intelligence and reactive incident management.

The primary focus is two-fold : leading the execution of the full incident response lifecycle (detection, containment, eradication, and post-incident analysis) and conducting comprehensive digital forensic investigations for security breaches, eDiscovery requests, and internal investigations (HR / Legal). The role requires deep technical proficiency, a strong analytical mindset, and the ability to operate under pressure while maintaining strict standards for evidence integrity and regulatory compliance.

Key Responsibilities

I. Incident Response & Threat Hunting (The Core Focus)

  • Lead Incident Response : Serve as the primary technical lead in responding to escalated and complex security incidents (e.g., advanced persistent threats, nation-state attacks, significant data breaches, and sophisticated phishing campaigns)
  • 24 / 7 Coordination : Coordinate and ensure the timely prioritization, triage, and response to cybersecurity alerts and incidents across a 24 / 7 operations environment
  • Containment and Eradication : Execute highly technical containment strategies to limit the scope of an attack and lead the root cause analysis and eradication phase to ensure complete removal of adversary presence
  • Threat Intelligence Integration : Continuously ingest, review, and analyze incoming threat intelligence feeds, applying best practices to inform proactive threat hunting campaigns using the MITRE ATT&CK framework
  • Post-Incident Analysis : Create detailed, high-quality incident reports and after-action reviews to document findings, articulate technical concepts to non-technical stakeholders (including leadership), and identify opportunities for control enhancement

II. Digital Forensics & Investigations

  • Forensic Investigations : Conduct advanced, forensically sound data collections, imaging, and analysis of compromised systems, volatile memory, cloud environments, and network data in support of active security incidents
  • eDiscovery & Legal Support : Execute eDiscovery requests and support complex internal investigations led by Legal and Human Resources, ensuring strict maintenance of the chain of custody and evidence integrity in alignment with regulatory and organizational standards
  • Tool Expertise : Utilize and maintain state-of-the-art forensic tools, such as Magnet Forensics Axiom Cyber, for deep-div-investigations
  • III. Security Operations & Program Management

  • Tool Optimization : Maintain and optimize core security technologies, including SIEM (Splunk), Extended Detection and Response (XDR) solutions (e.g., Microsoft Defender), and vulnerability scanners, specifically focusing on alert tuning and detection engineering
  • Risk Remediation : Review findings from penetration tests, vulnerability scans, and security control assessments to identify weaknesses and provide pragmatic recommendations for remediation and control gap closure
  • Governance and Awareness : Contribute to the development and ongoing maintenance of security policies, standards, processes, and Incident Response Plans (IRPs). Develop and deliver targeted, high-impact security awareness content for the organization
  • Requirements

    Required Experience and Qualifications

    Education & Experience

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or equivalent combination of education and / or 5 or more years of progressively responsible professional work experience in security operations, incident response, or digital forensics
  • Experience in a highly regulated industry is strongly preferred (e.g., Financial Services, Insurance)
  • Experience supporting law enforcement or external regulatory body investigations is preferred
  • Technical Expertise

  • Deep, hands-on experience executing the full Incident Response lifecycle (preparation, identification, containment, eradication, recovery, and lessons learned)
  • Demonstrated proficiency with Security Information and Event Management (SIEM) tools like Splunk for advanced log analysis and correlation rule creation
  • Expertise utilizing Endpoint Detection and Response (EDR) / XDR platforms (e.g., Microsoft Defender) for threat hunting and incident containment
  • Proven experience with digital forensic tools and methodologies, specifically including Magnet Forensics Axiom Cyber or equivalent platforms
  • In-depth knowledge of attacker Tactics, Techniques, and Procedures (TTPs) and the MITRE ATT&CK framework
  • Proficiency with scripting languages (e.g., Python, PowerShell) for automation of investigative tasks and data analysis is a plus
  • Professional Skills

  • Exceptional verbal and written communication skills with a proven ability to translate complex technical findings into clear, concise reports for both technical and non-technical executive audiences
  • Demonstrated analytical and critical thinking skills with the ability to manage high-stress, high-impact security incidents
  • Proven ability to work collaboratively across diverse teams (IT, Legal, HR, Business Units) and provide consulting and mentorship to junior team members
  • J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Incident Response Analyst • Madison, WI, US

    Job_description.internal_linking.related_jobs
    Remote Investment Analyst – AI Trainer ($50-$60 / hour)

    Remote Investment Analyst – AI Trainer ($50-$60 / hour)

    Data Annotation • Beloit, Wisconsin
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Professional - Unarmed Patrol - Part Time

    Security Professional - Unarmed Patrol - Part Time

    Allied Universal • Janesville, WI, United States
    serp_jobs.job_card.full_time +1
    Security Professional - Unarmed Patrol - Part Time.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.Whi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Knowledge and Request Analyst

    Lead Knowledge and Request Analyst

    American Family Insurance • Madison, Wisconsin, United States
    serp_jobs.job_card.full_time
    The Team Lead for Knowledge and Request Management plays a crucial role in overseeing and guiding the team responsible for managing the organization's knowledge base and handling service requests e...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Remote Equity Research Analyst – AI Trainer ($50-$60 / hour)

    Remote Equity Research Analyst – AI Trainer ($50-$60 / hour)

    Data Annotation • Beloit, Wisconsin
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security & Risk Analyst

    Security & Risk Analyst

    American Family Insurance • Madison, WI, United States
    serp_jobs.job_card.full_time
    This position analyzes security, threats, risks and exposures, determines the causes of security deviations and suggests procedures to halt future incidents and improve security.Collaborates cross ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Specialist, Functional Screening (Dane / Dodge County, WI)

    Specialist, Functional Screening (Dane / Dodge County, WI)

    Molina Healthcare • Lake Mills, WI, US
    serp_jobs.job_card.full_time
    JOB DESCRIPTION Job SummaryProvides support for long-term care screening processes and coordination for older adults and adults with physical or intellectual disabilities.Contributes to overarching...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Security Analyst

    Information Security Analyst

    CapSpecialty • Middleton, WI, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    This is a hybrid position requiring 3 days in office at our Middleton, WI.At CapSpecialty, we are a specialty underwriting company being driven by well-informed, entrepreneurial and proactive emplo...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days
    Revenue Cycle Analyst I

    Revenue Cycle Analyst I

    UW Health • Middleton, WI, United States
    serp_jobs.job_card.full_time
    Shifts will be scheduled Monday-Friday between the hours of 8 : 00 AM - 4 : 30 PM.Applicants hired into this position can work remotely from most states. This will be discussed during the interview proc...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Remote Financial Analyst - AI Trainer ($50-$60 / hour)

    Remote Financial Analyst - AI Trainer ($50-$60 / hour)

    Data Annotation • Janesville, Wisconsin
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr Safety Administrator (Underground)

    Sr Safety Administrator (Underground)

    TDS Telecom • Monroe, WI, US
    serp_jobs.job_card.full_time
    At TDS Telecom, connecting people is at the heart of everything we do.We are forward thinkers who leverage cutting-edge fiber internet technology to strengthen communities.We are dedicated to excel...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr Safety Administrator (Aerial)

    Sr Safety Administrator (Aerial)

    TDS Telecom • Monroe, WI, US
    serp_jobs.job_card.full_time
    At TDS Telecom, connecting people is at the heart of everything we do.We are forward thinkers who leverage cutting-edge fiber internet technology to strengthen communities.We are dedicated to excel...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Security Awareness & Education Analyst (Hybrid)

    Senior Security Awareness & Education Analyst (Hybrid)

    American Family Insurance • Madison, WI, United States
    serp_jobs.job_card.full_time
    This position leads the development and execution of security awareness initiatives to reduce organizational risk by educating employees on cybersecurity threats, risks, and best practices.Proactiv...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Border Patrol Agent – Law Enforcement Career, $30,000 Recruitment Incentive

    Border Patrol Agent – Law Enforcement Career, $30,000 Recruitment Incentive

    United States Customs and Border Protection • Columbus, WI, United States
    serp_jobs.job_card.full_time
    IMPORTANT NOTICE : Duty assignments available at time of offer may include the Southwest Border including prioritized locations. Border Patrol determines duty assignments at time of offer based on op...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Operations Manager

    Operations Manager

    Amazon • Beloit, WI, US
    serp_jobs.job_card.full_time
    Our WW Operations network delivers millions of packages and smiles to Amazon customers every day.We are looking for motivated, customer-focused individuals who want to join our team.In this role, y...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security Operations Analyst / Incident Response & Forensics Specialist

    Information Security Operations Analyst / Incident Response & Forensics Specialist

    Butler Recruitment Group • McFarland, WI, US
    serp_jobs.job_card.full_time
    Information Security Operations Analyst / Incident Response & Forensics Specialist.Madison, Wisconsin, HYBRID REMOTE (Flexible work from home days available). Information Security Operations Ana...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Professional - Industrial Institution Patrol - Part Time

    Security Professional - Industrial Institution Patrol - Part Time

    Allied Universal • Janesville, WI, United States
    serp_jobs.job_card.full_time +1
    Security Professional - Industrial Institution Patrol - Part Time.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Officer - Distribution Center - Afternoon Shifts

    Security Officer - Distribution Center - Afternoon Shifts

    Allied Universal • Beloit, WI, United States
    serp_jobs.job_card.full_time +1
    Security Officer - Distribution Center - Afternoon Shifts.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purp...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    IT Security Engineer Internship

    IT Security Engineer Internship

    Colony Brands, Inc. • Monroe, WI, US
    serp_jobs.job_card.internship
    The IT Security Engineer Internship will begin in January and end in August 2026.You’ll join the IT Security team and work closely with the other members of the team to maintain a comprehensive inf...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    U.S. Border Patrol Agent

    U.S. Border Patrol Agent

    U.S. Customs and Border Protection • Orfordville, Wisconsin, US
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Border Patrol Agent

    Border Patrol Agent

    United States Customs and Border Protection • Browntown, WI, United States
    serp_jobs.job_card.full_time
    IMPORTANT NOTICE : Duty assignments available at time of offer may include the Southwest Border including prioritized locations. Border Patrol determines duty assignments at time of offer based on op...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted