
Cybersecurity Incident Response Specialist
The Brattle Group, a privately held, global economics consulting firm, is looking for a Cybersecurity Incident Response Specialist to join our Boston, MA office. The Cyber Security Incident Response Specialist (IRS) is responsible for identifying, containing, and mitigating cybersecurity incidents that impact the firm’s infrastructure, systems, or data. Reporting to the Manager of Cybersecurity., the IRS plays a key role in defending the enterprise against malicious activity by leading real-time response efforts and proactively improving detection and containment capabilities.
Some of the day-to-day responsibilities of this role include:
- Monitor SIEM and other security tools for abnormal activity and triage alerts in real time.
- Lead investigation and containment of security incidents involving malware, phishing, data leakage, unauthorized access, and system compromise.
- Perform forensic analysis on compromised endpoints and servers to identify root causes and indicators of compromise (IOCs).
- Develop, refine, and implement incident response playbooks for different threat scenarios.
- Provide detailed documentation and post-incident reporting, including lessons learned and remediation strategies.
- Coordinate with IT and Legal teams on incident disclosure and evidence preservation.
- Continuously evaluate incident response tools and techniques for improvement.
- Participate in threat-hunting activities and red/blue team exercises.
- Perform regular Tabletop exercises (TTX) for simulations to test the firm’s ability to respond to cyber security incidents
- Maintain thorough documentation of incident response procedures and timelines.
- Assist with updates to business continuity and disaster recovery plans as they relate to cybersecurity events.
- Support audit and compliance requirements by maintaining evidence of security incidents and actions taken.
THE CANDIDATE
- BSc in Cybersecurity, Information Systems, Computer Science, or equivalent experience
- 3–5 years of experience in cybersecurity operations with a strong focus on incident response
- Familiarity with tools like CrowdStrike, SentinelOne, Splunk, Wireshark, or equivalent
- Understanding of MITRE ATT&CK framework, malware analysis, and digital forensics
- Familiar with Windows and Linux operating systems, PowerShell scripting, and packet analysis
- Relevant certifications such as GCIH, GCFA, CEH, or CISSP
- Experience in regulated industries (e.g., finance, healthcare, legal)
- Familiarity with ISO 27001, NIST SP800-53, and SOC 2 incident handling
Brattle offers a competitive benefits package, base salary, and bonus program for eligible roles based on individual and firm performance. The anticipated base gross salary range for this position in Boston, MA is $105,000–$115,000 annually. Actual salary will depend on a variety of factors, including experience and training.
This position is not eligible for immigration sponsorship.
THE EMPLOYER
The Brattle Group answers complex economic, finance, and regulatory questions for corporations, law firms, and governments around the world. We are distinguished by the clarity of our insights and the credibility of our experts, which include leading international academics and industry specialists. Brattle has 500 talented professionals across North America, Europe, and Asia-Pacific. For more information, please visit brattle.com.
EQUAL OPPORTUNITY
The Brattle Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, citizenship status, national origin, ancestry, sex, gender identity and expression, age, height, weight, domestic partner status, Acquired Immune Deficiency Syndrome or HIV status (AIDS/HIV status), genetic information, sexual orientation, disability (where the applicant or employee is qualified to perform the essential functions of the job with or without reasonable accommodation), marital status, veteran status, political affiliation, drug or alcohol abuse or alcoholism, or any other characteristic protected under applicable law.
We encourage all applicants to click here to review our full Equal Employer Opportunity Statement.
Create a Job Alert
Interested in building your career at The Brattle Group? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field