About The Position

NTT DATA is seeking an Incident Response Security Analysis Specialist Advisor-Night Shift to join their team. This role involves conducting artifact analysis to determine intrusion methods and resolutions, driving security improvements, and investigating potential cybersecurity events across multiple environments. The position requires theoretical and practical knowledge of various operating systems and cloud environments, experience with security data collection and analysis, and strong analytical and problem-solving skills. Responsibilities include security event monitoring, investigation, developing security policies, and supporting junior analysts. A deep understanding of offensive security, the ability to correlate artifacts across datasets, and knowledge of security and regulatory frameworks are essential. The role also involves supporting compliance inquiries, creating reports on activities and trends, developing security operations detections and automations, reviewing internal logs, monitoring external service provider activity, analyzing security data in real-time, remediating compromised systems, performing breach indicator assessments, assisting with investigations, and researching evolving threats. The position requires staying current with information security program developments and industry trends.

Requirements

  • Bachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline
  • 5 + years of experience working in the Cybersecurity Operations or Information Security
  • Strong Incident Response knowledge and experience
  • Theoretical and practical knowledge with Mac OS, Linux, Windows operating systems and clouds
  • Experience with security data collection, analysis and correlation
  • Well-developed analytic, qualitative, and quantitative reasoning skills
  • Demonstrated creative problem-solving abilities
  • Experience in one or more security domains including Incident Response and Forensics, Security Governance and Oversight, Security Risk Management, Network Security, or Threat and Vulnerability Management preferred
  • Experience with information security risk management, including information security audits, reviews, and risk assessments

Nice To Haves

  • Relevant technical and industry certifications, such as CISSP, ISSMP, SANS, GIAC, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferred

Responsibilities

  • Conduct analysis of artifacts to determine methods of intrusion and best course of resolution while driving security improvement
  • Security event monitoring, investigation, and overall incident response process
  • Investigate potential cybersecurity events across multiple environments using various tools and techniques
  • Development of information security policies, standards, and procedures
  • Strong time management skills to balance multiple activities and lead junior analysts as needed
  • Understanding of offensive security to include common attack methods
  • Understanding of how to pivot across multiple datasets to correlate artifacts for a single security event
  • A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.
  • Detailed knowledge and experience in security and regulatory frameworks (CRI, ISO 27001, NIST 800 series, FFIEC, SOC2, STAR, etc.)
  • Support inquiries from compliance teams such as IT risk management and internal and external auditors to ensure documentation is complete and processes are in compliance with information security policies
  • Create reports analyzing activities or trends both within and outside of the organization
  • Support the development of security operations detections, playbooks, and automations to ensure threat detection, monitoring, response, and forensics activities align with best practices, minimize gaps in detection and response, and provide comprehensive mitigation of threats
  • Reviews internal logs and alerts to identify potential cybersecurity events. Triage cases based on output from automated alerts, and determine when to escalate to other teams
  • Monitors external service provider activity to detect potential cybersecurity events
  • Analyzes security data from all systems in real time to spot and thwart potential threats, attacks, and other violations
  • Analyzes compromised systems and remediates to a clean state
  • Performs breach indicator assessments to investigate network traffic for malicious activity
  • Assists with internal or third-party employee investigations
  • Assists in the production of various reports which identify and analyze relevant upcoming and ongoing threats to the enterprise
  • Research evolving threats, techniques, tools, and vulnerabilities in support of information security efforts
  • Stays current with information security program developments, industry frameworks, changes in the company, industry trends, and current security practices

Benefits

  • In-office attendance is preferred three days per week. However, given the working hours, after the initial training period, full remote work is acceptable.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service