Incident Response Analyst
Apply Req ID: Req1474281 Date posted 07/22/2025Your Journey Starts Here:
Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you to explore diverse career opportunities while nurturing your personal growth. We are committed to creating an environment where continuous learning and development are prioritized, enabling you to thrive both professionally and personally. Here, you will find ample opportunities to connect and collaborate with talented colleagues from around the world, sharing insights and driving innovation together. Join us at Santander, where you are supported by a culture of engagement and a commitment to your success.
An exciting journey awaits, if you are interested in exploring the possibilities We Want to Talk to You!
The Difference You Make:
As the Incident Response Analyst, you will serve as a key member of our cybersecurity operations team, responsible for rapidly detecting and containing threats, coordinating response efforts, and driving improvements based on post-incident analysis. You will partner with internal business units, fraud teams, and global stakeholders to protect Santander US’s infrastructure, data, and customers .
- Serve as the primary point of contact during assigned cybersecurity incidents.
- Analyze alerts and event data to assess threat criticality and coordinate appropriate response.
- Lead or support containment, eradication, and recovery efforts in accordance with incident response playbooks.
- Investigate the root cause and impact of incidents and deliver after-action reports (AARs) that clearly outline risks and lessons learned.
- Identify trends and propose enhancements to detection and response capabilities.
- Collaborate with fraud, engineering, and global security teams to strengthen security posture.
- Interpret, analyze, and report on events in accordance with cyber directives and standards.
What You Bring:
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor's Degree or equivalent work experience: Computer Science, Engineering or Information Technology Management, or equivalent field. -
9+ Years Experience in IT Security.
9+ Years Working as a security Architect.
5+ Years Experience with Checkpoint, Palo Alto, FireEye, Imperva, Security Center, Splunk.
5+ Years Strong knowledge of PCI, SOX, ISO and NIST security standards. -
5+ Years Experience with managing enterprise security projects.
5+ Years Experience with penetration testing.
- Experience with malware analysis, threat intelligence, vulnerability management, or security assurance.
- Familiarity with cyber intelligence sharing platforms (e.g., FS-ISAC) is a plus.
- SANS certifications (e.g., GCIH, GCIA, GCFA, GREM) are preferred.
- Must be willing to participate in an on-call rotation as needed.
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field—or equivalent experience.
- Proficiency in Spanish is highly desirable.
- Work at the front line of global cybersecurity operations.
- Access cutting-edge tools and threat intelligence platforms.
- Collaborate across borders with global teams.
- Enjoy a dynamic environment that values innovation, learning, and leadership.
Certifications:
• Vendor security certifications
It Would Be Nice For You To Have:
Established work history or equivalent demonstrated through a combination of work experience, training, military service, or education.
What Else You Need To Know:
The base pay range for this position is posted below and represents the annualized salary range. For hourly positions (non-exempt), the annual range is based on a 40-hour work week. The exact compensation may vary based on skills, experience, training, licensure and certifications and location.
Base Pay Range
Minimum:
Maximum:
Link to Santander Benefits:
Santander Benefits - 2025 Santander OnGoing/NH eGuide (foleon.com)
Risk Culture:
We embrace a strong risk culture and all of our professionals at all levels are expected to take a proactive and responsible approach toward risk management.
EEO Statement:
At Santander, we value and respect differences in our workforce. We actively encourage everyone to apply. Santander is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.
Working Conditions:
Frequent minimal physical effort such as sitting, standing and walking is required for this role. Depending on location, occasional moving and lifting light equipment and/or furniture may be required.
Employer Rights:
This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time. This job description is not a contract for employment and either you or the employer may terminate your employment at any time for any reason.
What To Do Next:
If this sounds like a role you are interested in, then please apply.
We are committed to providing an inclusive and accessible application process for all candidates. If you require any assistance or accommodation due to a disability or any other reason, please contact us at TAOps@santander.us to discuss your needs.
Primary Location: Quincy, MA, 1 Enterprise Drive-Quincy-Corp
Other Locations: Massachusetts-Quincy,Texas-Dallas,Florida-Coconut Grove
Organization: Santander Holdings USA, Inc.