Incident Response Analyst

Cloudflare, Inc

Quick summary

Work type
On-site
Location
Bengaluru, India
Posted
3 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $155k
$105k most similar roles pay here $197k

This listing doesn't post a salary. Most similar roles pay $123,212–$186,200.

Based on 239 similar postings.

Employer

About Cloudflare, Inc

Cloudflare is a prominent cloud services and security company that provides content delivery network (CDN), DDoS mitigation, and Zero Trust security services to millions of internet properties.

Cloudflare, Inc currently has 127 open roles on FindRole.

Listed pay typically runs $234,000–$292,000 across 47 roles with salary data.

Most-posted roles

View all roles at Cloudflare, Inc

At a glance

TL;DR · Incident Response Analyst

As a Senior Incident Response Analyst at Cloudflare’s REACT team in Bengaluru, you will play a critical role in safeguarding the company and its customers against sophisticated cyber threats. Your day-to-day responsibilities include executing immediate defensive measures such as deploying custom WAF rules and real-time traffic filtering to mitigate attacks, managing the full lifecycle of incident response from investigation to recovery, and collaborating with forensic analysts and threat researchers to develop strategic remediation plans. The ideal candidate possesses extensive experience in cybersecurity, particularly in cloud environments like AWS and Azure, and is proficient in analyzing network and web attack patterns. Strong skills in Python or Golang, Yara rule writing, and malware analysis are highly desirable, as is a deep understanding of MITRE ATT&CK and NIST Cyber Security Frameworks. This role demands an innovative problem solver with excellent communication skills to engage effectively at all levels, from technical teams to executive stakeholders.

What you'll do

  • Execute immediate defensive maneuvers at the Cloudflare edge to protect customer availability.
  • Support and execute end-to-end incident response processes for clients, including investigation and remediation.
  • Build customized tactical and strategic remediation plans for compromised organizations.
  • Engage with customers at all levels during security incidents and provide high-quality service.
  • Coordinate sessions with customer stakeholders to ensure effective resolution of security issues.

What we're looking for

  • 5+ years of experience in cybersecurity, including dedicated Incident Response
  • In-depth knowledge of Windows OS and general understanding of Unix/Linux/Mac environments
  • Strong understanding of common L3/L4/L7 attack patterns and mitigation techniques
  • Experience with JA3/JA4 fingerprinting, bot detection, and API abuse investigations
  • Solid understanding of MITRE ATT&CK and NIST Cyber Security Frameworks
  • Excellent verbal and written communication skills in English

More like this

Similar roles

Cybersecurity Incident Response Analyst II

Avnet

Remote (Chandler, Arizona) 9 days ago
CrowdStrike EDR SIEM Falcon Query Language LogScale Mitre ATT&CK NIST 800-61 Rev. 3 CI/CD Docker Kubernetes AWS Python Go PostgreSQL
Remote

Cyber Incident Responder

Booz Allen Hamilton

Falls Church, VA +1 17 days ago $86,800$198,000
AWS IAM CloudTrail CloudWatch GuardDuty SecurityHub Inspector Config EC2 S3 VPC Lambda EKS RDS Route53 NIST incident response life cycle Python Bash Intrusion detection technologies

Security Incident Manager

Salesforce

Seattle, Washington 2 days ago $148,500$223,900
AWS GCP Azure NIST PCI-DSS GDPR ISO 27001 CI/CD Project Management

Sr. Incident Commander

Microsoft

16 days ago $119,800$234,700
SIEM SOC CISSP CISA CISM SANS GCIA GCIH OSCP Security+ Python Go R Java SQL Linux Windows Azure AWS Kubernetes Docker Terraform Git Jira Confluence

Incident Response Coordinator

Carnegie Mellon University

Pittsburgh, PA 9 days ago
Python Linux Kubernetes Terraform AWS Azure Google Cloud Platform CI/CD Docker PostgreSQL Splunk SIEM Cybersecurity Incident Response ITIL NIST PCI DSS ISO 27001 SOC 2