Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Softswiss logo

Incident Response Analyst - L2

Softswiss
Posted 2 weeks ago
🇺🇸United States🏠Remote📁Other
Is this job info correct?

Incident Response Analyst - L2 Join our Security Operations team to investigate real-world cyber threats, uncover attack chains, and improve the technologies and processes that keep our infrastructure secure. Overview: SOFTSWISS is looking for an Incident Response Analyst (L2) to join our Security Operations team. In this role, you will investigate complex security incidents, handle L1 escalations, and help improve our detection and incident response capabilities. Purpose of the role: You will be responsible for investigating complex cybersecurity incidents, handling escalations from L1, and enhancing our SOC detection and incident response capabilities. We're looking for someone with an incident-driven mindset who can analyze attack chains, validate hypotheses, and make evidence-based decisions to effectively identify, investigate, and contain security threats. Key responsibilities: Investigate and respond to complex security incidents throughout the entire incident lifecycle Perform digital forensic investigations, malware analysis, and evidence collection to determine the scope and root cause of security incidents Analyze attack techniques, correlate security events, and reconstruct attack timelines Develop and improve SIEM detections, correlation rules, and incident response playbooks Conduct threat hunting activities and reduce false positives through detection tuning Automate repetitive SOC activities using scripting where appropriate Collaborate with Infrastructure, Development, IT, and Security teams during incident response Mentor L1 analysts by providing technical guidance and feedback Required Experience: 3+ years of experience in SOC, Incident Response, DFIR, or MSSP environments Strong understanding of modern cyber threats, attack techniques, and frameworks such as MITRE ATT&CK and the Cyber Kill Chain Hands-on experience investigating security incidents, performing digital forensics, and malware analysis Hands-on experience with SIEM platforms (e.g. Splunk, Wazuh, ClickHouse, Redash), including writing complex search queries, correlating events, and investigating large volumes of security data Good understanding of enterprise infrastructure, including Windows, Linux, macOS, Active Directory, email systems, Kubernetes, Docker, and databases Experience with automation using Python, PowerShell, or Bash Knowledge of Kubernetes and Docker security concepts Strong analytical mindset, problem-solving skills, and effective communication in cross-functional environments Intermediate or higher English level Nice to have: Experience with Threat Hunting, Network Traffic Analysis (NTA), or cloud security (AWS) Familiarity with CI/CD and Infrastructure as Code (e.g. Terraform, Ansible) Participation in Red Team or Purple Team exercises Industry certifications such as GCIA, GCIH, GCED, OSCP, CEH, or Splunk certifications Familiarity with security frameworks such as NIST Our Benefits: Private health insurance Sports benefits Comprehensive Mental Health Program Free English lessons (online) Local language courses Paid time off Maternity leave support Referral program rewards Upskilling, internal workshops, and participation in professional conferences and corporate events Department Security Role Security Operations Center Analyst Locations T'bilisi, Georgia Remote status Fully Remote Employment type Full-time

Similar jobs

Similar jobs

Flexential Corp. logo

Incident Response Analyst I

Flexential Corp.

🇺🇸United States16 hours ago
D&

Senior Incident Response Analyst (R-19347)

Dun & Bradstreet

🇺🇸United States16 hours ago
Aerospace logo

Principal Incident Response Analyst

Aerospace

🇺🇸United StatesYesterday
SkyePoint Decisions logo

Incident Response Analyst

SkyePoint Decisions

🇺🇸United StatesYesterday
SkyePoint Decisions logo

Threat Detection & Response Analyst

SkyePoint Decisions

🇺🇸United StatesYesterday
BI

Senior SOC Analyst — Advanced Incident Response & CrowdStrike Engineering

Biibhr

🇺🇸United States3 days ago