> Markdown version of [/jobs/ext/3005411-cybersecurity-incident-response-analyst](https://www.wearedevelopers.com/jobs/ext/3005411-cybersecurity-incident-response-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Incident Response Analyst - **Company:** Robert Half - **Location:** Seattle, WA, United States (Remote available) - **Experience:** Experienced - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Macintosh Computers, Audit Trail, Cyber Security, Linux, Linux System Administration, Windows PowerShell, Kusto Query Language, Azure Security Center, Microsoft Sentinel - **Published:** September 19, 2026 - **Apply:** https://www.dice.com/job-detail/aaf56ed4-5974-4339-bb73-fa02461ef1cf ## About the Role * 3-5 years of cybersecurity or incident response experience. * Hands-on experience with Microsoft Defender for Endpoint. * Hands-on experience with Microsoft Sentinel. * Experience writing and running KQL queries. * Experience using PowerShell for querying or security investigations. * Experience investigating Microsoft Purview audit logs. * Experience supporting endpoint security across Windows, Mac, and Linux. * Ability to troubleshoot security incidents and follow them through resolution. * Strong communication skills and the confidence to communicate directly with executives and business partners. * Quick learner with the ability to work effectively in a close-knit, collaborative team environment., All applicants applying for U.S. job openings must be legally authorized to work in the United States. Benefits are available to contract/temporary professionals, including medical, vision, dental, and life and disability insurance. Hired contract/temporary professionals are also eligible to enroll in our company 401(k) plan. Visit roberthalf.gobenefits.net for more information. ## Description Robert Half is seeking a Cybersecurity Incident Response Analyst to join their close-knit security team. This role will focus on Level 2 and Level 3 ticket triage, incident investigation, and troubleshooting security incidents through resolution across Windows, Mac, and Linux environments. Apply today!, * Handle Level 2 and Level 3 security ticket triage, investigating issues and seeing incidents through to resolution. * Investigate and troubleshoot security incidents using Microsoft Defender for Endpoint and Microsoft Sentinel. * Use Kusto Query Language (KQL) to query and investigate security events and data. * Leverage PowerShell to run queries and support investigation and troubleshooting activities. * Perform investigation work within Microsoft Purview, including reviewing audit logs. * Investigate endpoint security issues across Windows, Mac, and Linux environments. * Troubleshoot and support incident response activities from initial investigation through resolution. * Work with third-party vendors as needed to troubleshoot and resolve security-related issues. * Communicate directly with employees at all levels, including executives and business partners, to understand reported issues, explain security concerns, and ask questions to challenge or clarify what they are seeing. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Best Job Search Websites of 2025](https://www.wearedevelopers.com/magazine/368-the-best-job-search-websites-of-2025) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)