Principal Incident Response Analyst

Blackbaud, Inc.
United States
16 days ago
Apply on blackbaud.wd1.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$101,900.0 - $132,800.0
Working hours
Regular working hours

Tech stack

Data Analysis Computer Forensics Digital Forensics Intrusion Detection and Prevention Intrusion Detection Systems Network Monitoring Security Information and Event Management Forensic Toolkit In-Plane Switching (IPS) Cybercrime Encase

Job description

  • Conduct in-depth analysis of security events and indicators to determine the nature and severity of incidents.
  • Respond promptly to security incidents, following established incident response procedures.
  • Coordinate and collaborate with cross-functional teams to contain and mitigate cyber threats effectively.
  • Perform forensic investigations to determine the root cause of incidents and develop appropriate remediation strategies.
  • Lead regular threat hunt activities to identify and investigate gaps in detection.
  • Utilize threat intelligence and industry best practices to enhance incident detection capabilities.

Requirements

We are looking for an accomplished, high-performing Principal Incident Response Analyst for our Threat Detection & Response team with experience performing digital forensics, incident response, and threat hunting. The Principal Incident Response Analyst is responsible for ensuring the confidentiality, integrity, and availability of critical information and IT assets. This role requires a deep understanding of cybersecurity principles, incident response methodologies, digital forensics, and the ability to work efficiently under pressure., * 8+ years of cyber incident response experience in a large and complex environment. Relevant industry certifications are highly desirable (CISSP, GCIH, GFCA, GREM, ECIH).

  • Subject matter expertise with security tools and technologies, such as SIEM, IDS/IPS, EDR, and network monitoring solutions.
  • Strong knowledge of incident response methodologies, including containment, eradication, recovery, and common security frameworks (NIST, SANS, CSA).
  • Ability to acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts.
  • Experience with forensic tools, such as Encase, FTK, Axiom, and Cellebrite to carry out digital forensic investigations.
  • Collaborate with other forensic analysts, law enforcement officers, and legal experts to identify methods and procedures for recovery, preservation, and presentation of computer evidence, ensuring proper precautions are taken in the preservation and prevention of spoliation of electronic evidence.

Stay up to date on everything Blackbaud, follow us on Linkedin, Twitter, Instagram, Facebook and YouTube

Benefits & conditions

The starting base pay is $101,900.00 to $132,800.00. Blackbaud may pay more or less based on employee qualifications, market value, Company finances, and other operational considerations.

Benefits Include:

  • Medical, dental, and vision insurance
  • Remote-flexible workforce
  • Wellness Programs
  • 401(k) program with employer match
  • Flexible paid time off
  • Generous Parental Leave
  • Donations for Doers
  • Pet insurance, legal and identity protection
  • Tuition reimbursement program

About the company

Blackbaud powers social impact through purpose-driven technology and responsible AI. Guided by our Intelligence for Good® vision, we’re building a culture where innovation, trust, and human expertise come together to help organizations make a greater difference in the world.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on blackbaud.wd1.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · World Congress 2023

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

Videos

See all

Related articles

See all