Response Analyst

Cloudflare Cloudflare · Enterprise · Austin, TX · Security

Cloudflare is seeking a Response Analyst for their Security Operations Center (SOC). This role involves providing premium-level support for Cloudflare's security products and features, analyzing threats, and implementing mitigation strategies for large and technically sophisticated customers. The analyst will monitor alerts, work with engineering teams, communicate with customers, and configure security monitoring rules. The role requires a strong understanding of internet protocols, networking fundamentals, and experience with attack mitigation. While the company mentions "AI-native curiosity" and "leveraging AI to ship faster," the core responsibilities of this role are focused on traditional security operations and threat analysis, not direct AI/ML model development or deployment.

What you'd actually do

  1. Monitor and investigate proactive alerts to identify attacks
  2. Work with Engineering and Operations teams to mitigate attacks, suggest steps to mitigate, and apply the appropriate mitigation when applicable
  3. Work with Engineering and Product teams to improve products and tools
  4. Communicate with customers via chat, email, and phone
  5. Review alerts to determine relevancy and urgency; create tracking tickets for incidents requiring review or escalation

Skills

Required

  • Strong understanding of internet protocols (TCP, UDP, ICMP, GRE, BGP)
  • Networking fundamentals are crucial for success
  • Analysis of traffic for attack anomaly detection and creation of mitigation rules
  • Experience handling attack mitigation with knowledge of L3/4 and L7 attacks
  • Command line / Bash shell proficiency
  • Customer Facing or Technical support experience is mandatory
  • Strong communication skills, including with VIP customers during active attacks
  • Ability to remain calm under pressure
  • Ability to work 24x7 rotating shifts

Nice to have

  • Sysadmin skills - Linux, Mac, or Windows (Preferred)
  • Knowledge of Cloudflare Security Products & Features (Preferred)
  • Scripting skills, Python preferred (Preferred)
  • Prometheus/Grafana monitoring experience (Preferred)
  • Packet capture tools such as tcpdump or Wireshark (Preferred)
  • API/GraphQL experience (Nice to have)
  • Security certifications: GCIA, GCIH, GCFA, GCFE, CISSP equivalent (Strongly preferred)
  • Network certifications: CCNA, CCNP (Nice to have)