Incident Response Intern

CroweSarasota, FL
$27 - $42

About The Position

The Incident Response role in Crowe’s Consulting Practice is a position designed for individuals eager to broaden their career in cybersecurity, specifically within the realm of incident response (IR). This role offers a unique opportunity to grow by engaging in the repeatable aspects of incident response, such as forensic collection, console/log review, and basic threat hunting. The successful candidate will work on an IR team to support and enhance our client’s cybersecurity posture, ensuring the protection of client data and systems under fire. This position is ideal for those who are passionate about cybersecurity and are looking to develop their skills in a dynamic and supportive environment. As part of the Incident Response (IR) team, your responsibilities will include coordinating with team members to effectively execute and collaborate on incident response engagements. You will review and analyze security events and incidents to identify potential threats and vulnerabilities, as well as assist in the collection of digital forensic evidence to support ongoing investigations. Your role will involve conducting proactive threat hunting activities using Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) tools. Additionally, you will be responsible for reviewing and generating detailed reports based on client-provided metrics and investigation findings. When necessary, you will also participate in on-site incident response engagements, working closely with other on-site personnel to address and mitigate security incidents in real-time.

Requirements

  • Excellent problem-solving and analytical skills, with keen attention to detail.
  • Strong communication and interpersonal skills to effectively collaborate with team members and clients.
  • Proven adaptability and a strong drive to learn and master new technologies.
  • Ability to maintain focus and composure in high-stress situations.
  • Willingness to travel up to 5% of the time or more, as required.
  • Commitment to continually expanding skillsets and knowledge, with a proven track record of doing so.
  • Experience in troubleshooting technical issues or investigating security incidents.
  • Understanding of networking, cybersecurity, and IT concepts.

Nice To Haves

  • Experience responding to security incidents in a professional setting.
  • Relevant certifications such as CompTIA Network+, Linux+, Security+, CySA+, GIAC Security Essentials, Microsoft Security Operations Analyst, or AWS Certified Security – Specialty.
  • Experience working in a Security Operations Center (SOC) environment.
  • Familiarity with major cloud platforms such as AWS, O365, and Google Workspace.
  • Experience with EDR tools like SentinelOne, CrowdStrike, Carbon Black, or Microsoft Defender for Endpoint.
  • Proficiency in utilizing SIEM or log aggregation tools such as Splunk, Elastic, or Microsoft Sentinel.
  • Understanding of basic scripting and command interpreter usage (e.g., Bash, PowerShell, Python).

Responsibilities

  • Coordinate with team members to effectively execute and collaborate on incident response engagements.
  • Review and analyze security events and incidents to identify potential threats and vulnerabilities.
  • Assist in the collection of digital forensic evidence to support ongoing investigations.
  • Conduct proactive threat hunting activities using Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) tools.
  • Review and generate detailed reports based on client-provided metrics and investigation findings.
  • Participate in on-site incident response engagements, working closely with other on-site personnel to address and mitigate security incidents in real-time.

Benefits

  • Comprehensive total rewards package
  • Career Coach guidance for career goals and aspirations
  • Inclusive culture that values diversity
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service