Principal Lead Analyst overseeing incident response and cyber defense for Corebridge Financial. Leading technical and strategic initiatives while providing mentorship to DART team.
Responsibilities
Serve as the primary Incident Commander for all Tier 3/Critical-level events.
Direct the technical response across all workstreams (Forensics, Network, Cloud, Legal, and PR).
Act as the technical voice for executive leadership, translating complex exploit chains and technical risks into business-impact narratives for the C-Suite and Board of Directors.
Lead "Purple Team" exercises to test DART’s readiness against specific APT groups and real-world attack scenarios.
Design and oversee the organization’s long-term threat-hunting roadmap, ensuring coverage across the MITRE ATT&CK framework for Cloud (Azure/AWS), Identity, and On-Prem infrastructure.
Collaborate with engineering teams to ensure that hunt findings are converted into high-fidelity, automated detections and SOAR workflows.
Direct the consumption of tactical and strategic Threat Intelligence to proactively harden the environment before a known threat actor targets the industry.
Elevate the entire SOC/DART capability by providing technical mentorship to L1 and L2 analysts.
Requirements
8+ years in Cybersecurity, with at least 5 years in a dedicated Incident Response or DFIR role.
Proven experience leading response efforts for a large-scale enterprise or a top-tier IR firm (e.g., Mandiant, CrowdStrike).
Solid understanding of deep-system forensics (Memory, Disk, Network) and specialized experience in Cloud IR (Azure/AWS/O365).
Deep familiarity with enterprise forensic platforms (Nuix, Magnet AXIOM, EnCase) and the ability to guide L2 analysts in their usage.
Expert-level understanding of TTPs (Tactics, Techniques, and Procedures) used by both state-sponsored and financially motivated (Ransomware) threat actors.
High proficiency in automation (Python, PowerShell) to build custom response scripts or API integrations between security tools.
Leadership: CISSP-ISSMP (Management) or GCIH (Incident Handler).
Benefits
Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
Employee Assistance Program: Confidential counseling services and resources are available to all employees.
Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.
Job title
Principal Lead Analyst, Detection & Response Team – DART
Application Analyst providing technical support for healthcare applications at Intermountain Health. Configuring, optimizing, and maintaining application solutions to support operations and user satisfaction.
Analyste Support Applicatif chez Consort Group, responsable du bon fonctionnement des applications de distribution de services. Interaction avec équipes techniques et gestion des incidents critiques.
Credit Analyst responsible for underwriting Hedge Funds within Bank of America’s Global Markets. Managing credit lines, trade approvals, and relationship management in a fast - paced environment.
Category Development Analyst responsible for market insights and sales performance analysis for Tayto Snacks. Collaborating with teams and supporting brand profitability in the Irish savoury snacks market.
Senior Technical Functional Analyst at Deutsche Bank, owning technical design for mainframe payment systems. Analyzing requirements, designing solutions, and supporting developers in a pressured environment.
Travel Modeling Analyst developing forecasting tools and data products for US transportation agencies. Involves data management, analysis, and modeling activities using advanced software and statistical methods.
Jr. Statistical Analyst supporting statewide reporting through data collection and analysis for the Arizona Supreme Court. Involves collaborating with courts and stakeholders on statistical data processing.
BCBA responsible for evaluation and implementation of ABA Therapy plans for autism clients at BY YOUR SIDE. Collaborating with multidisciplinary teams to maintain therapy plans.
Board Certified Behavior Analyst delivering evidence - based behavioral health services for children at River Rock Behavioral Therapy. Collaborating with interdisciplinary teams and providing individual support to clients.
Lead Analyst developing and delivering customer engagement, credit, and pricing strategies for a finance business. Utilizing analytical techniques and collaborating with cross - functional teams to optimize portfolio management.