Senior Incident Response Analyst

Booz Allen Hamilton

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$86,800–$198,000 / yr
Posted
2 days ago
Freshness
Confirmed live today

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $149k
This role $142k
$73k most similar roles pay here $211k

This role pays less than 53% of similar roles. Most pay $122,443–$175,201 — the shaded band above. At the midpoint, this role pays about $142k versus about $149k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 818 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 796 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Senior Incident Response Analyst

As an Incident Response Analyst, Senior, you will join a 24x7x365 Security Operations Center and Incident Response team focused on monitoring, detecting, and responding to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms. You will perform hands-on tasks including alert triage, log and artifact analysis, threat identification, containment support, and incident documentation. Your daily work involves developing response playbooks, conducting proactive threat hunting using behavioral analytics and threat intelligence, and performing risk assessments to strengthen detection capabilities. To succeed, you must utilize tools such as Splunk, SIEM, EDR, IDS, IPS, SOAR, and forensic imaging techniques. You will also manage packet analysis, malware triage, and vulnerability management while communicating technical findings to both technical and non-technical audiences to resolve security risks within the enterprise infrastructure.

What you'll do

  • Monitor and respond to cybersecurity threats across enterprise networks, endpoints, applications, and security platforms.
  • Perform hands-on incident response activities including alert triage, log analysis, and threat identification.
  • Utilize SIEM, EDR, IDS, IPS, and SOAR tools to validate and escalate security events.
  • Conduct proactive threat hunting using behavioral analytics and threat intelligence to identify emerging risks.
  • Develop and update incident response playbooks and standard operating procedures.
  • Perform technical investigations including packet analysis, malware triage, and forensic imaging.
  • Produce high-quality incident reports and briefings for both technical and non-technical audiences.

What we're looking for

  • 5+ years of experience in a SOC performing incident response activities including event triage, log analysis, and threat identification.
  • Experience using Splunk for security monitoring, log analysis, event correlation, and alert investigation.
  • Experience analyzing and responding to security events across enterprise networks, endpoints, applications, and platforms like SIEM, EDR, IDS, IPS, and firewalls.
  • Experience developing or contributing to incident response playbooks, workflows, or standard operating procedures.
  • Experience with investigative techniques such as packet analysis, log correlation, malware triage, and forensic imaging.
  • Ability to communicate clearly with technical and non-technical audiences and produce high-quality reports and documentation.
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements.
  • Bachelor's degree.

More like this

Similar roles

Incident Response Analyst, Mid

Booz Allen Hamilton

Bethesda, MD 10 days ago $62,000$141,000
Splunk SIEM EDR IDS/IPS SOAR Digital Forensics Packet Analysis Malware Triage Threat Hunting Behavioral Analytics Threat Intelligence Identity and Access Management Container Security API Security Vulnerability Management Firewalls Log Analysis
2+ yrs exp

Lead Incident Response Analyst, Detection and Response

MSD

Remote (Rahway, NJ) 4 days ago $117,000$184,200
Incident Response Digital Forensics SIEM EDR AWS Azure CloudTrail CloudWatch MITRE ATT&CK Log Analysis SOAR WAF Proxy Malware Analysis Network Forensics Data Loss Prevention Identity Systems Endpoint Management
7+ yrs exp Remote

Senior Incident Handler

Allstate

Remote (IL) 62 days ago $120,000$193,725
Incident Response EDR XDR SIEM Python PowerShell SOAR Malware Analysis Forensic Analysis Threat Hunting Network Security AI Scripting Cybersecurity Operations
5+ yrs exp Remote

Incident Response Analyst, React

Cloudflare, Inc

Bengaluru, India 82 days ago
Incident Response WAF AWS Azure Google Cloud Python Golang Yara BGP DNS TCP/IP Linux Windows MITRE ATT&CK NIST Cyber Security Framework Malware Analysis Reverse Engineering Bash Regular Expressions
5+ yrs exp

Senior Product Solutions Architect, Autonomous Incident Response

Datadog

Remote 23 days ago $185,000$246,000
Datadog Python JavaScript TypeScript Low-code No-code Observability Distributed Systems SRE DevOps Incident Management Workflow Automation Event Correlation Metrics Logging Tracing Retool PagerDuty Opsgenie ServiceNow Jira Service Management
Remote

Senior Incident Responder, Global CSIRT

Salesforce

Remote (Mclean, VA) 10 days ago $148,500$223,900
Incident Response SOAR CI/CD AWS Azure GCP Windows macOS Linux Malware Analysis Detection Engineering Forensics AI LLM Salesforce Platform SaaS
5+ yrs exp Remote