Skip to content

Open nowPosted 102 days ago

Incident Response Analyst

Workable (global search)108,016 open roles

Where
Amman, Amman Governorate, Jordan
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowIncident Response AnalystWorkable (global search) · Amman, Amman Governorate, Jordan
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 102 days ago

Workable (global search) median: 7 days open

The posting

The Incident Response Analyst is responsible for investigating, containing, eradicating, and supporting the recovery of cybersecurity incidents across customer and enterprise environments. The role plays a critical part in minimizing business impact from cyber threats by coordinating response activities, performing technical investigations, and supporting the continuous improvement of incident response capabilities.

The role collaborates closely with Security Operations, Threat Intelligence, Digital Forensics, and customer IT teams to identify attack vectors, contain threats, and strengthen organizational resilience against future incidents.

Responsibilities:

Incident Investigation & Response

  • Respond to security incidents within defined SLAs and escalation procedures.
  • Perform detailed investigations to determine Nature of the attack, Scope of compromise, Impacted systems, Attack vectors and Potential business impact
  • Analyze indicators of compromise (IOCs) and attacker activity.
  • Identify containment, eradication, and recovery actions required to mitigate incidents.
  • Coordinate incident response activities with internal and customer stakeholders.

Threat Analysis & Root Cause Investigation

  • Conduct in-depth analysis of security incidents and suspicious activities.
  • Identify vulnerabilities, attack techniques, and security gaps contributing to incidents.
  • Perform root cause analysis to determine how incidents occurred and identify preventive controls.
  • Analyze attacker tactics, techniques, and procedures (TTPs) using industry frameworks such as MITRE ATT&CK.

Incident Coordination & Escalation

  • Manage incident response activities across multiple technical teams.
  • Escalate incidents requiring Digital Forensics support, Specialized technical expertise and Malware analysis
  • Coordinate communication between technical teams, management, and customer stakeholders.
  • Support crisis management activities during major incidents.

Documentation & Reporting

  • Prepare detailed incident reports documenting Findings, Impact assessments, Root cause analysis and Remediation recommendations
  • Maintain investigation records and evidence documentation.
  • Support development of executive-level incident summaries and post-incident reviews.

Process Improvement & Readiness

  • Support the development and enhancement of Incident response playbooks, Response procedures and Investigation methodologies
  • Participate in tabletop exercises and incident simulations.
  • Identify opportunities to improve response effectiveness and operational readiness.

Our Culture & Code of Conduct:

At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behaviour across everything we do — from how we work with each other to how we engage with clients and partners globally.

Requirements

  • Bachelor's degree or intermediate diploma (minimum) from a recognised institution.
  • Minimum 3 years experience in cybersecurity / information security, including 1 or more years in incident response.
  • At least one valid NCSC-approved IR certification like (ECIH, CCIM, Blue Team Level 2) or another equivalent certification in the same field that is approved by the NCSC.
  • Practical skills in log analysis, endpoint and network investigation, malware triage, and use of IR tooling.
  • Exposure to SIEM/SOAR and EDR platforms is preferable.
  • Experience in an MSSP or SOC environment is preferable.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.