# Incident Response Analyst

**Company**: Cloudflare
**Location**: In-Office
**Work arrangement**: onsite
**Experience**: senior
**Job type**: full-time
**Category**: IT
**Industry**: Technology

**Apply**: https://job-boards.greenhouse.io/cloudflare/jobs/8025650?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply
**Canonical**: https://yubhub.co/jobs/job_6a284838-333

## Description

At Cloudflare, we're on a mission to help build a better Internet. We're seeking a talented Incident Response Analyst to join our Cloudforce One REACT organization. As a REACT Consultant, you will respond to customer security incidents across on-premises, cloud, and hybrid environments.

Key Responsibilities:

- Execute immediate defensive maneuvers at the Cloudflare edge to protect customer availability.

- Support and execute the end-to-end incident response process for clients.

- Build a strong understanding of targeted attacks to create and execute customized tactical and strategic remediation plans for compromised organizations.

Desirable Skills, Knowledge, and Experience:

- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent training/practical experience.

- 5+ years of overall experience in cybersecurity, including 2+ years of dedicated Incident Response.

- In-depth understanding of Windows operating systems and general knowledge of Unix, Linux, and Mac environments.

- Familiarity with cloud environments (AWS, Azure, O365, Google Cloud, Cloudflare) and cloud IR methodologies.

- Strong understanding of common L3/L4/L7 attack patterns.

- Experience with JA3/JA4 fingerprinting, bot detection, behavioral traffic analysis, or API abuse investigations.

- Solid understanding of MITRE ATT&CK and NIST Cyber Security Frameworks.

- English Fluency, Excellent verbal and written communication skills.

Bonus Points:

- Strong understanding of internet routing fundamentals, including BGP, Anycast, DNS, TCP/IP, GRE/IPsec tunneling.

- Proficient in Python or Golang, capable of writing modular code or simple scripts.

- Proficient with Yara and writing rules to detect similar malware samples.

- Practical malware analysis experience with static, dynamic, and automated techniques.

## Skills

### Required
- Incident Response
- Cybersecurity
- Cloud Security
- Threat Intelligence
- MITRE ATT&CK
- NIST Cyber Security Frameworks

### Nice to have
- Python
- Golang
- Yara
- Malware Analysis
- BGP
- Anycast
- DNS
- TCP/IP

---

Source: [Apply at job-boards.greenhouse.io](https://job-boards.greenhouse.io/cloudflare/jobs/8025650?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply)
