Cybersecurity Incident Response Analyst
Southern Company — Atlanta, GA
Posted: 2026-10-06
Job Description
• Full-time Cybersecurity Incident Response Analyst role with Southern Company in Atlanta, GA; work mode is not specified.
• Lead cybersecurity incident response from triage through containment, eradication, remediation, and recovery, serving as the escalation point for major incidents.
• Require a B.S. in Engineering, Computer Science, Cybersecurity, or equivalent and 7+ years of cybersecurity experience, including at least 5 years in a security operations center investigating endpoint and network events.
• Use SIEM, EDR, NDR, SOAR, endpoint and network forensics, cloud investigations, scripting, and security telemetry across AWS, Azure, Google Cloud, and Oracle Cloud.
• Must be willing and able to obtain a US government security clearance; the role is covered by the Insider Threat Program and requires enhanced personnel screening, including a background review, drug screen, and psychological assessment.