✦ Luna Orbit — Cybersecurity

Cyber Security Incident Response Analyst @DARWIN

at Marsh & McLennan

Hybrid Posted March 30, 2026
Type Not Specified
Experience mid
Exp. Years 2+ years
Education Undergraduate degree in Computer Science (CS), Computer Information Systems (CIS), or related field, or equivalent experience
Category Cybersecurity

Cybersecurity Incident Response Analyst role in Marsh's Cluj Tech Hub, focusing on analyzing security events, triage, and incident response across global teams with hybrid work arrangements.

  • Analyzing security event data, assessing impact, and making mitigation recommendations
  • Following triage and response lifecycle and documenting processes
  • Collaborating across teams to strengthen security posture
  • Developing playbooks and detection content
  • Monitoring global threat trends

Role requires hands-on security tooling knowledge (IPS/IDS, SIEM, SOAR, EDR, firewalls, scanners) and familiarity with widely used security frameworks (MITRE ATT&CK, NIST CSF).

The ideal candidate is a cybersecurity analyst with 2+ years of incident response experience, strong familiarity with SIEM/SOAR/EDR and MITRE ATT&CK/NIST CSF, and capable of operating in a hybrid Cluj-based SOC.

Undergraduate degree in Computer Science (CS)Computer Information Systems (CIS)or related fieldor equivalent experience2+ years of information security experience and/or 2-4 years in security analysisExperience with security technologies (IPS/IDSweb proxiesSIEMSOAREDRfirewallsscannersforensics tools)Knowledge of MITRE ATT&CKLockheed Martin Cyber Kill ChainThe Diamond Modeland NIST CSF
Professional certifications such as Security+GCIHCEHAbility to lead SOC initiativesdevelop playbooksand drive detectionsThreat intelligence and fraud/financial services knowledge
SIEMSOAREDRFirewallsWeb application scannersVulnerability scanners
Intrusion prevention and detectionWeb proxiesSIEMSOAREDRFirewallsWeb application scannersVulnerability scannersForensics toolsMITRE ATT&CKNIST CSF
Intrusion prevention and detection systemsWeb proxiesSIEMSOAREDRFirewallsWeb application scannersVulnerability scannersForensics toolsMITRE ATT&CKNIST Cybersecurity Framework
critical thinkingverbal and written communicationinterpersonal skillsability to work in a global team

Preferred

Security+GIAC Certified Incident Handler (GCIH)Certified Ethical Hacker (CEH)
Industry Consulting
Job Function Cybersecurity incident response and SOC operations in Marsh's global security program
Role Subtype Incident Responder
Tech Domains Cybersecurity, Networking / TCP-IP, Linux
cyber security incident responsesiemsoaredrintrusion preventionfirewallsweb application scannersvulnerability scannersforensics toolsmitre ATT&CKnist cybersecurity frameworksecurity+gcihcehSOCincident responsehybridclujromaniacyber securitymitre att&cknist csf

Lack of 2+ years in information security or security analysis, No experience with SIEM/SOAR/EDR, Inability to work in Cluj hybrid setting

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile