Sr. Incident Response Analyst

DocuSign
San Francisco
Workplace: HybridFull timeUSD 146,400 - 235,375 annuallyFunction: Solutions Engineering & Sales EngineeringExperience: 8+ yearsSkills: ["Analytical","Problem-solving","Communication","Teamwork","Independent work"]

Investigate and respond to security incidents as part of a CSIRT team, performing alert triage, log correlation, and threat hunting. Leverage AI/ML tools to improve log analysis and SOC visibility, and collaborate with detection engineering to tune AI-based detection logic. Conduct malware, phishing, and incident investigations using digital forensics, support containment and recovery, and document findings and post-incident learnings while participating in on-call rotations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
DocuSign
DocuSign
1 day ago

Sr. Incident Response Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 12 hours agoStatus: Live
Reposted: similar role first listed 1 week ago

Job Summary

Investigate and respond to security incidents as part of a CSIRT team, performing alert triage, log correlation, and threat hunting. Leverage AI/ML tools to improve log analysis and SOC visibility, and collaborate with detection engineering to tune AI-based detection logic. Conduct malware, phishing, and incident investigations using digital forensics, support containment and recovery, and document findings and post-incident learnings while participating in on-call rotations.
Location: San Francisco
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Monitor for and investigate security incidents, including those involving AI/ML models (adversarial attacks, prompt injection, model evasion).
  • •Leverage AI and machine learning tools to enhance log analysis, alert triage, and threat hunting efficiency.
  • •Perform initial triage and in-depth analysis of security alerts from SIEM and other security monitoring tools, correlating events across log sources.
  • •Conduct technical investigations (malware analysis, phishing attacks, web application compromises, insider threats) using digital forensics on data and endpoints.
  • •Support incident containment, eradication, and recovery efforts; document findings, actions, and lessons learned; refine threat detection rules and assist with automated incident response.

Pay and Benefits

Salary: USD 146,400 - 235,375 annually
Equity and Bonus:Equity
Perks:Paid LeaveParental LeaveHealth InsuranceRetirementLearning Budget

Key Requirements

  • •8+ years of hands-on cybersecurity experience focused on Security Operations (SOC) and/or Incident Response.
  • •Experience leading or coordinating responses to critical cybersecurity incidents, including crisis management.
  • •Hands-on experience with SIEM tools (e.g., Splunk, QRadar, Sentinel) for alert analysis and log correlation.
  • •Experience with EDR solutions, digital forensics principles/techniques, and enterprise forensic solutions.
  • •Proficiency with scripting languages (e.g., Python, PowerShell, Bash) for automation and data analysis.
Experience:8+ yearsSecurity operationsIncident response
Skills:AnalyticalProblem-solvingCommunicationTeamworkIndependent work
Certifications:CompTIA Security+CompTIA CySA+GCIHGCFACEH
Languages:En-us
Tech Stack:AIMachine learningLog analysisThreat huntingSIEMSOARSplunkQRadarSentinelEDRDigital forensicsPythonPowerShellBashAWSAzureGCP

Eligibility

Nationality:US National
Work Authorization:Authorization required. Sponsorship not provided.

Company Brief

DocuSign
Provides a cloud-based electronic signature and intelligent agreement management platform that automates document workflows, identity verification, contract lifecycle management, and agreement analytics for enterprises and individuals worldwide.
Industry: LegalTech
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Francisco, United States
Founded: 2003
Glassdoor
Glassdoor: 3.6
WebsiteLinkedInGlassdoor