Sony Pictures Entertainment Logo

Sony Pictures Entertainment

Sr. Incident Response Analyst

Reposted 2 Days Ago
Be an Early Applicant
In-Office
Culver City, CA, USA
121K-151K Annually
Senior level
In-Office
Culver City, CA, USA
121K-151K Annually
Senior level
The role leads advanced cyber incident response and forensic investigations, coordinates with SOC for alerts, and develops incident response processes.
The summary above was generated by AI

This role provides leadership and expertise in advanced cyber incident response, forensic investigations, and security operations automation. The position is responsible for investigating and coordinating responses to cybersecurity incidents, including malware infections, data exfiltration, denial-of-service attacks, insider threats, and other security breaches.

The role works closely with the Security Operations Center (SOC) to triage, investigate, and respond to security alerts, leveraging automation and orchestration to improve response speed and consistency. This individual collaborates with cross-functional teams across IT, network engineering, vulnerability management, and threat intelligence to identify root causes, implement remediation actions, and strengthen the organization's overall security posture.

Additionally, the role supports the development and continuous improvement of incident response processes, detection capabilities, and SOAR playbooks to enhance operational efficiency and reduce response times.

Responsibilities

  • Develop, maintain, and improve enterprise incident response plans, procedures, and playbooks aligned with industry frameworks (NIST, MITRE ATT&CK, etc.).
  • Lead and coordinate investigation and response activities for cybersecurity incidents including malware, phishing, ransomware, insider threats, and data breaches.
  • Work closely with the SOC to triage and investigate alerts, determine incident severity, and drive appropriate response actions.
  • Design, develop, and maintain SOAR playbooks and automation workflows to streamline security operations and improve incident response efficiency.
  • Conduct in-depth forensic investigations across endpoints, networks, cloud environments, and logs to determine root cause, scope, and impact of incidents.
  • Partner with threat intelligence teams to incorporate indicators of compromise (IOCs), threat actor tactics, techniques, and procedures (TTPs), and emerging threats into detection and response workflows.
  • Collaborate with engineering, infrastructure, and application teams to implement remediation strategies and preventive controls to reduce future risk.
  • Support detection engineering efforts by identifying gaps in security monitoring and helping develop improved alerting and detection capabilities.
  • Assist with containment, eradication, and recovery activities following security incidents, ensuring systems and services are restored securely.
  • Lead post-incident reviews and root cause analysis to identify lessons learned and drive improvements to detection, response processes, and security architecture.
  • Produce clear incident reports and executive summaries for leadership and stakeholders, including recommended improvements.
  • Act as a primary point of coordination with internal stakeholders, third-party partners, legal teams, and external agencies when required.
  • Monitor emerging threats, vulnerabilities, and attacker techniques to proactively improve detection and response capabilities.
  • Partner with vulnerability management and security engineering teams to proactively address security gaps identified during investigations.
  • Continuously improve SOC and incident response operations through metrics, automation, and operational maturity initiatives.

Qualifications/ preferred skills

  • Experience with SIEM platforms (Splunk, Sentinel, QRadar, etc.)
  • Experience with SOAR platforms (XSOAR, Tines, Swimlane, etc.)
  • Endpoint detection and response (EDR/XDR) technologies
  • Digital forensics and incident response (DFIR) methodologies
  • MITRE ATT&CK framework familiarity
  • Threat hunting and detection engineering experience
  • Scripting or automation experience (Python, PowerShell, APIs)

The anticipated base salary for this position is $120,800-$151,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.

Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.

SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.

Sony Pictures does not allow audio recording, video recording or use of AI note-taking tools during interviews. Please be aware these tools may be enabled as a default and can be difficult to disable once the interview has started, so we recommend you check your device and disable these tools prior to the start of your interview. If recording or the use of the tools occurs during the interview and cannot be promptly turned off or disabled, the interviewer may end the interview.

To request an accommodation for purposes of participating in the hiring process, you may contact us at [email protected].

HQ

Sony Pictures Entertainment Culver City, California, USA Office

10202 W Washington Blvd, Culver City, CA, United States, 90232

Similar Jobs

19 Hours Ago
Remote or Hybrid
US
130K-150K Annually
Senior level
130K-150K Annually
Senior level
Information Technology • Insurance • Professional Services • Software • Cybersecurity
Join At-Bay's DFIR team to handle incident investigations, recovery, and threat response while developing evidence and training for clients.
Top Skills: AWSAzureCloud EnvironmentsDigital ForensicsEdrEppGoogleIncident ResponseUnix/LinuxWindows
30 Minutes Ago
Easy Apply
Remote or Hybrid
Easy Apply
119K-170K Annually
Senior level
119K-170K Annually
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Staff Site Reliability Engineer, you'll oversee Zscaler production data center services, optimize code, and ensure cloud service availability and performance. Collaborate with cross-functional teams to improve processes and resolve escalated issues.
Top Skills: BashDnsFirewallsGrafanaHTTPIcmpLoad BalancingNagiosOsi ModelPrometheusPythonTcp/Ip
30 Minutes Ago
In-Office
207K-275K Annually
Expert/Leader
207K-275K Annually
Expert/Leader
Cloud • Information Technology • Machine Learning
Architect, implement, and optimize scalable hybrid (cloud and on‑prem) infrastructure. Lead automation, CI/CD, deployment, and IaC practices; mentor engineers; improve developer experience; collaborate with Solutions Architects, Field Engineers, and product teams to deliver integrated solutions.
Top Skills: AnsibleAWSAzureBashCi/CdCloudFormationDatadogDockerGCPGithub ActionsGoInfrastructure-As-CodeJenkinsKubernetesPrometheusPythonTerraform

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account