Incident Analyst / Responder
What Does a Professional in this Career Do?
An Incident Analyst or Responder investigates an IT-related incident: an unplanned interruption to a service, a reduction in the quality of a service, or an event that has not yet impacted the service to the customer. Works to restore a normal service operation as quickly as possible and to minimize the impact on business operations.
Job Outlook
There were 231 Incident Analyst / Responder job postings in North Carolina in the past year and 6658 in the United States.
In combination with other careers in the Cyber / Information Security Engineer / Analyst industry, which includes the Incident Analyst / Responder career, the following graph shows the number of people employed for each year since 2015:
Salary
Many new Incident Analyst / Responder jobs have salaries estimated to be in the following ranges, based on the requirements and responsibilities listed in job postings from the past year.
National
The average estimated salary in the United States for this career, based on job postings in the past year, is $129,374.
State
The average estimated salary in North Carolina for this career, based on job postings in the past year, is $133,535.
Percentiles represent the percentage that is lower than the value. For example, 25% of estimated salaries for Incident Analyst / Responder postings in the United States in the past year were lower than $112,400.
Education and Experience
Posted Incident Analyst / Responder jobs typically require the following level of education. The numbers below are based on job postings in the United States from the past year. Not all job postings list education requirements.
Education Level | Percentage |
---|---|
Associate's Degree | 0% |
Bachelor's Degree | 69.22% |
Master's Degree | 10.78% |
Doctoral Degree | 1.29% |
Other | 7.84% |
Posted Incident Analyst / Responder jobs typically require the following number of years of experience. The numbers below are based on job postings in the United States from the past year. Not all job postings list experience requirements.
Years of Experience | Percentage |
---|---|
0 to 2 years | 10.71% |
3 to 5 years | 54.6% |
6 to 8 years | 24.04% |
9+ years | 10.65% |
Skills
Below are listings of the most common general and specialized skills Incident Analyst / Responder positions expect applicants to have as well as the most common skills that distinguish individuals from their peers. The percentage of job postings that specifically mention each skill is also listed.
Baseline Skills
A skill that is required across a broad range of occupations, including this one.
- Communication (53.3%)
- Operations (34.67%)
- Management (33.13%)
- Leadership (33.13%)
- Investigation (32.17%)
- Problem Solving (28.37%)
- Information Technology (22.93%)
- Coordinating (22.89%)
- Writing (16.64%)
- Research (16.4%)
Defining Skills
A core skill for this occupation, it occurs frequently in job postings.
- Cyber Incident Response (16.22%)
- Cyber Threat Intelligence (36.85%)
- MITRE ATT&CK Framework (13.82%)
- EnCase (Digital Intelligence Software) (6.93%)
- Malware Analysis (19.38%)
- Cyber Threat Hunting (24.05%)
- Computer Science (37.8%)
- Incident Response (72.8%)
- Network Forensics (9.17%)
- Digital Forensics (17.34%)
- Vulnerability (27.66%)
- Splunk (20.32%)
- Information Technology Infrastructure Library (14.11%)
- Cyber Security (49.98%)
- Incident Management (38.08%)
Necessary Skills
A skill that is requested frequently in this occupation but isn’t specific to it.
- Endpoint Detection And Response (19.29%)
- Service Improvement (3.19%)
- Cyber Operations (8.46%)
- Cyber Defense (9.26%)
- Workflow Management (6.52%)
- Data Analysis (9.54%)
- Threat Detection (10.57%)
- Change Management (5.26%)
- Technical Support (6.29%)
- Microsoft Azure (12.94%)
- JIRA (3.21%)
- Computer Networks (7.15%)
- Continuous Improvement Process (11.82%)
- Forensic Sciences (20.07%)
- Operating Systems (15.55%)
- Information Systems (9.63%)
- Linux (22.14%)
- Key Performance Indicators (KPIs) (5.69%)
- Log Analysis (9.63%)
- Crisis Management (4%)
- Automation (13%)
- Amazon Web Services (13%)
- Auditing (10.26%)
- Unix (6.38%)
- Security Controls (13.34%)
- Security Information And Event Management (SIEM) (27.1%)
- Firewall (15.46%)
- Standard Operating Procedure (10.84%)
- Intrusion Detection And Prevention (6.5%)
- Python (Programming Language) (16.9%)
- Network Security (10.18%)
- IT Service Management (11.33%)
- Project Management (9.85%)
- Network Protocols (11.23%)
- Windows PowerShell (10.31%)
- Problem Management (12.59%)
- Triage (21.59%)
- Service Management (4.45%)
- Process Improvement (10.6%)
- Root Cause Analysis (12.19%)
- Tooling (4.37%)
- Scripting (16.91%)
- ServiceNow (11.21%)
- IT Security (11.09%)
Distinguishing Skills
A skill that may distinguish a subset of the occupation.
- Memory Forensics (3.53%)
- Network Traffic Analysis (4.77%)
- Incident Communication (2.44%)
- Snort (Intrusion Detection System) (3.02%)
- Forensics Tools (Digital Forensics Software) (2.94%)
- Forensic Toolkits (6.7%)
Salary Boosting Skills
A professional who wishes to excel in this career path may consider developing the following highly valued skills. The percentage of job postings that specifically mention each skill is listed.
- Cyber Incident Response (20.13%)
- Network Traffic Analysis (5.92%)
- Incident Communication (3.03%)
- Malware Analysis (24.05%)
- Cyber Threat Hunting (29.84%)
- Digital Forensics (21.52%)
- Incident Response (90.33%)
- Log Analysis (11.95%)
- Splunk (25.21%)
Alternative Job Titles
Sometimes employers post jobs with Incident Analyst / Responder skills but a different job title. Some common alternative job titles include:
- Cyber Threat Hunter
- Incident Response Analyst
- Incident Manager
- Cybersecurity Incident Response Analyst
- Major Incident Manager
- Incident Response Manager
- Incident Response Consultant
- Incident Responder
- Incident Response Engineer
- Incident Management Analyst
Similar Occupations
If you are interested in exploring occupations with similar skills, you may want to research the following job titles. Note that we only list occupations that have at least one corresponding NC State Online and Distance Education program.
- Cyber Security Engineer
- Cyber Security Manager / Administrator
- Vulnerability Analyst / Penetration Tester
- Cyber Security Architect
Common Employers
Here are the employers that have posted the most Incident Analyst / Responder jobs in the past year along with how many they have posted.
United States
- GAF Materials Corporation (304)
- Mindpoint Group (200)
- CrowdStrike (176)
- Marriott International (168)
- Dell Technologies (137)
- The College Board (129)
- Accenture (123)
- Amazon (105)
- Red River (105)
- NavitsPartners (95)
North Carolina
- GAF Materials Corporation (10)
- TEKsystems (8)
- Truist Financial (8)
- Mindpoint Group (6)
- NavitsPartners (5)
- Insight Global (5)
- Allegis Group (5)
- Bank of America (5)
- MetLife (5)
- Accenture (5)
NC State Programs Relevant to this Career
If you are interested in preparing for a career in this field, the following NC State Online and Distance Education programs offer a great place to start!
All wages, job posting statistics, employment trend projections, and information about skill desirability on this page represents historical data and does not guarantee future conditions. Data is provided by and downloaded regularly from Lightcast. For more information about how Lightcast gathers data and what it represents, see Lightcast Data: Basic Overview on Lightcast's Knowledge Base website.