> Markdown version of [/jobs/ext/2697154-senior-incident-response-analyst](https://www.wearedevelopers.com/jobs/ext/2697154-senior-incident-response-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Incident Response Analyst - **Company:** Rutgers University - **Location:** New Brunswick, NJ, United States - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Software Applications, Software System Penetration Testing, Botnet, Software as a Service, Cyber Security, Linux, Digital Forensics, Domain Name System (DNS), Perl (Programming Language), Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), NetFlow, Routing, Packet Analyzer, Network Protocols, Windows PowerShell, Regular Expressions, Phishing, Security Software, Security Information and Event Management, Syslog, Scripting, Computer Networking Systems, Mitre Att&ck, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Computer Equipment, People Soft, Cybercrime, Vulnerability Analysis - **Published:** September 3, 2026 - **Apply:** https://jobs.rutgers.edu/postings/280323/pre_apply ## About the Role * Bachelor's degree or equivalent education and experience plus five years relevant experience in specialty area * 5+ years of information security experience; vulnerability scanning, penetration testing and/or security operations * 5+ years of experience working in an enterprise technical environment, preferably in a customer-service based organization Certifications/Licenses Required Knowledge, Skills, and Abilities * Knowledge in a wide array of cybersecurity tools and their capabilities as they pertain to the detection and mitigation of Cyber Threats (SIEM, EDR, NGFW, DLP, IPS/IDS, etc.) * Knowledge of industry standard cybersecurity frameworks (Mitre ATT&CK, NIST Incident Response, etc.) * Understanding of complex enterprise networks to include routing, switching, firewalls and common networking protocols (HTTP, DNS, SMB, etc.) * Experience with Regex and at least one common scripting language (PERL, Python, PowerShell) * Experience with an enterprise SIEM platform * Excellent verbal and written communication skills * Ability to communicate technical problems succinctly and accurately * Ability to handle multiple, shifting priorities and a large volume of technical problem resolution * Ability to apply and document new technical knowledge and procedures * Ability to work well with peers and junior staff in a team oriented, cooperative spirit, * Degree in a related field such as Information Security. * 3+ years of experience in incident response, threat hunting, SOC operations, digital forensics, or detection engineering. * Relevant certifications such as GCFA, GCIH (or other SANS certifications), CISSP, CySA+ * Experience as a key member of a cybersecurity team (SOC, Incident Response, Threat Intel, Malware Analysis, Live Forensics, IDS/IPS Analysis) * Experience investigating identity-centric attacks, cloud compromise, phishing, business email compromise, and SaaS-based incidents. * Knowledge of TTPs related to cyber-crime, malware, botnets, social engineering, APTs and other threats. * Experience developing, tuning, and maintaining detection content including SIEM correlation rules, behavioral analytics, dashboards, and automation workflows. * Expertise in network and host-based analysis and investigation Equipment Utilized * Vulnerability analysis/Penetration testing * Packet capture and Netflow * Firewalls/IPS/IDS/EDR * Syslog/SIEM/Dashboards & Alerting/SOAR * Threat hunting/Malware Analysis * Windows/Linux/macOS Physical Demands and Work Environment * Must be able to lift up to 50 pounds for the purpose of moving computer equipment. ## Description Among the key duties of this position are the following: * Performs daily operations of the incident detection and response program, which includes finding evidence of threats or suspicious behavior and leveraging data to improve controls and processes. * Monitors information security incidents throughout Rutgers' computing environment. * Serves as an escalation point for Incident Response Analysts. * Provides expert-level analytic, investigative and forensic support of complex security incidents to detect and remediate security threats on networks, workstations, servers, and other connected devices. * Provides expert level advice and services to business units throughout the University while participating in all phases of Rutgers' Integrated Incident Response Program (Prepare, Detect & Analyze, Contain, Eradicate, Recovery, Report, Remediate)., Working Hours Standard Hours 37.50 Daily Work Shift Work Arrangement Consistent with the current application of Rutgers Policy 60.3.22 or the applicable provisions of relevant collective negotiations agreements, this position may be eligible for a hybrid work arrangement. Flexible work arrangements are not permanent, subject to change or discontinuation, and contingent on the employee receiving approval in the FlexWork@RU Application System. Union Description Admin Assembly (MPSC) Payroll Designation PeopleSoft Seniority Unit Terms of Appointment Staff - 12 month Position Pension Eligibility ABP ## Related Videos - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany)