Role Overview
Endava is hiring a senior-level Security Incident Response Analyst. This is a full-time remote role, with the team based in Remote. posted 4 days ago. Full responsibilities, required qualifications, and the apply link are listed in the description below.
Resume Keywords to Include
Make sure these keywords appear in your resume to improve ATS scoring
Sign up free to auto-tailor your resume with all these keywords and get a higher ATS score
Job Description
As an Incident Response Analyst at Endava, you play a vital role in the Cyber Threat Intelligence and Incident Response team. Your responsibilities include: - Acting as a key responder during security incidents, supporting containment, eradication, and recovery activities. - Performing detailed investigation and analysis of security alerts, intrusions, and malware using EDR, SIEM, and forensic tooling. - Supporting post-incident reviews to identify root causes, control gaps, and lessons learned. - Coordinating with SOC, CTI, IT, legal, and third-party providers during incidents to ensure timely and effective response. - Supporting evidence collection and documentation to meet legal, regulatory, and internal reporting requirements. - Actively supporting Cyber Threat Intelligence operations and initiatives during periods without active incident response activity. Qualifications for this role include: - Degree in Cyber Security, Computer Science, Information Technology, or a related discipline, or equivalent practical experience. - Relevant incident response, blue team, or security operations certification (e.g., GCIH, GCED, or equivalent). - Demonstrated experience in responding to security incidents, labs, or realistic tabletop exercises. With 6-10 years of experience in Incident management, including 3+ years in cybersecurity and at least 2 years in SOC/CTI/Incident Response, you should possess hands-on experience in malware analysis, memory forensics, and log analysis. Your strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK) will be beneficial. Additionally, familiarity with SOC tools like SIEM, EDR, Threat Intelligence Platforms, and alerting platforms is required. Your technical skills should include hands-on experience with SIEM and EDR tools, ability to analyze endpoint, network, and log data to identify malicious activity, familiarity with incident response processes, basic malware analysis, and investigation skills. Understanding common attack vectors, vulnerabilities, and exploitation techniques will be essential. In addition to technical skills, you should possess strong problem-solving and analytical skills, ability to remain calm and decisive during high-pressure incidents, excellent communication skills (both technical and non-technical), and a continuous learning mindset with a willingness to explore new tools and methods. Endava offers various global benefits to empower its employees, such as competitive salary packages, career development opportunities, learning opportunities, work-life balance initiatives, health programs, and a supportive community environment. The company is committed to creating an open, inclusive, and respectful workplace where everyone can thrive. As an Incident Response Analyst at Endava, you play a vital role in the Cyber Threat Intelligence and Incident Response team. Your responsibilities include: - Acting as a key responder during security incidents, supporting containment, eradication, and recovery activities. - Performing detailed investigation and analysis of security alerts, intrusions, and malware using EDR, SIEM, and forensic tooling. - Supporting post-incident reviews to identify root causes, control gaps, and lessons learned. - Coordinating with SOC, CTI, IT, legal, and third-party providers during incidents to ensure timely and effective response. - Supporting evidence collection and documentation to meet legal, regulatory, and internal reporting requirements. - Actively supporting Cyber Threat Intelligence operations and initiatives during periods without active incident response activity. Qualifications for this role include: - Degree in Cyber Security, Computer Science, Information Technology, or a related discipline, or equivalent practical experience. - Relevant incident response, blue team, or security operations certification (e.g., GCIH, GCED, or equivalent). - Demonstrated experience in responding to security incidents, labs, or realistic tabletop exercises. With 6-10 years of experience in Incident management, including 3+ years in cybersecurity and at least 2 years in SOC/CTI/Incident Response, you should possess hands-on experience in malware analysis, memory forensics, and log analysis. Your strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK) will be beneficial. Additionally, familiarity with SOC tools like SIEM, EDR, Threat Intelligence Platforms, and alerting platforms is required. Your technical skills should include hands-on experience with SIEM and EDR tools, ability to analyze endpoint, network, and log data to identify malicious activity, familiarity with incident response processes, basic malware analysis, and investigation skills. Understanding common attack vectors, vulnerabilities, and exploitation techniques will be essential. In addition to technical skills, you should possess strong problem-solving and
Frequently Asked Questions
How do I apply for the Security Incident Response Analyst position at Endava?
Use the Apply button above to submit your application directly to Endava. Most applications take less than 5 minutes if your resume and contact details are ready, and you'll be routed to the employer's official application system to finish.
Is the Security Incident Response Analyst role at Endava remote?
Yes. This is a remote role. The team is based in Remote, but the position itself does not require relocating to that office.
What does a Security Incident Response Analyst at Endava earn?
Endava has not disclosed a salary range in this posting. Many employers share specifics later in the interview process; you can also ask during a recruiter screen if compensation transparency is important to you.
When was the Security Incident Response Analyst role at Endava posted?
This role was posted on June 9, 2026 (4 days ago). It's still listed as actively hiring; we re-confirm openings against the source system multiple times per day and remove closed roles.
How much experience does the Security Incident Response Analyst role at Endava require?
This is a senior-level position. Most senior roles call for 5+ years of directly relevant experience. Endava lists their specific requirements in the description below, so review the must-have qualifications closely before applying.
AI-powered job search
Get every job scored to your resume
Upload your resume and get jobs ranked, your resume tailored, and employee contacts found automatically.
Get Started FreeNo credit card to start