Cybersecurity Incident Manager
Rosemont - WTFC - 9701 W Higgins Rd. (0472), United States
USD 130K-160K Mid-level Full Time
Tasks
- Act as escalation point for complex incidents
- Coordinate analysis containment remediation recovery
- Document incident timelines and findings
- Improve incident handling processes from lessons learned
- Investigate incidents using SIEM and EDR XDR
- Lead escalated cybersecurity incidents
- Maintain incident response playbooks SOPs runbooks
- Mentor L1 L2 analysts and refine escalation criteria
- Perform incident forensics and analysis
- Produce post-incident reports
Perks/Benefits
- 401k match
- Dental insurance
- Employee assistance program
- Life insurance
- Medical insurance
- Parental leave
- Tuition reimbursement
- Vision insurance
Skills/Tech-stack
Cause analysis | Containment | CrowdStrike | Digital forensics | EDR | Forensics Analysis | Incident Response | Operating procedures | Playbooks | Recovery | Remediation | Root Cause Analysis | Root cause | Runbooks | SIEM | Standard Operating Procedures | Threat Investigation | Threat hunting | XDR
Education
Related jobs
-
Access Records Analysis | Boot Disk | Computer Software | Computer hardware | Data AnalysisDental, vision, life insurance | Education Development Funds | Flex Time | Medical coverage | Paid HolidaysEntry-level Full TimeUnited States of America-OHIO-Franklin County-Columbus4h ago
-
Manager, Cybersecurity Engineering USD 119K-160KAccess Controls | Change Management | Cloud Security | Cybersecurity | EDRMid-level Full TimeUSA-Texas-Houston4h ago
-
Information Security Systems Analyst USD 84K-131KAccess Control | Authentication | Authorization | Documentation | HIPAA401k matching | Dental insurance | Employee assistance program | Health insurance | Life insuranceMid-level Full Time100% Remote, United States R17h ago
-
Asset Management Analyst - Cybersecurity USD 76K-97KAsset Inventory | Asset Inventory Management | Automation | CSRD | Data MiningMid-level Full TimeLas Vegas, NV, United States17h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KDevOps | Endpoint Management | Event Correlation | Firewall | Incident ResponseMid-level Full TimePewaukee, WI, US17h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KAnalytics rules | Endpoint Management | Event Correlation | Firewall Management | Incident ResponseCustomer facing managed services | Mentoring support | On-call rotationMid-level Full TimeSpringfield, MO, US17h ago
-
Security Operations Center (SOC) Analyst II USD 69K-130KAnalytics rules | Cybersecurity | Detection engineering | DevOps repositories | Endpoint ManagementCustomer facing managed services | On-call rotationMid-level Full TimeLittle Chute, WI, US17h ago
-
Risk Manager- Mining Construction USD 140K-160KARM | Cause analysis | Change Management | Claim Management | Construction contractsFlexible working environment | Healthy productive workplace | Inclusive company culture | Work-life balanceMid-level Full TimeLas Vegas, Nevada, United States18h ago
-
AWS | Access reviews | Audit Readiness | Business Continuity | CCPASenior-level Full TimeRemote, Remote, United States R19h ago
-
Manager - Cyber Security Services USD 99K-150KCIS | Change Control | Data Classification | Governance Risk | Governance Risk and ComplianceDental insurance | Disability insurance | Employee discounts | Holiday pay | Life insuranceMid-level Full TimeCedar Rapids, Iowa, United States; Fort …19h ago
-
Associate Information Security Engineer USD 74K-120KAccess Control | Incident Response | Logical Access | Logical Access Control | Network SecurityContinuing education | Dental insurance | FSA | HSA | Hybrid workMid-level Full TimeRochester, MN, United States20h ago
-
Information Security Operations Lead/Manager USD 135K-195KAWS | Access Management | Active Directory | Azure | CASB401k matching | Dental insurance | Employee referral bonus | Flexible work opportunities | HolidaysSenior-level Full TimeCarmel, Indiana, United States20h ago
-
Mid-level Full TimeBoulder, CO1d ago
-
Bash | Incident Response | JSON | MITRE ATT CK | PowershellFully remoteSenior-level Full TimeColumbia, SC, United States R1d ago
-
Awareness Training | Control Assessment | Excel | Governance | Incident ResponseSenior-level Full TimeColumbia, SC, United States1d ago
-
Security Analyst USD 87K-124KContinuous Monitoring | EMASS | EMASSter | Incident Response | Management FrameworkMid-level Full TimeChina Lake, CA1d ago
-
Authentication | Compliance | Encryption | Firewall | Incident ResponseMid-level ContractPhoenix, United States1d ago
-
Temporary- Cyber Security Analyst USD 40K-40KCIS Controls | Detection Systems | FERPA | Incident Response | Intrusion DetectionBackground check | Flexible work arrangementsEntry-level TemporaryNashville1d ago
-
Incident Response Expert USD 111K-177KAWS | Azure | Cloud platform | CrowdStrike | DNSCareer growth | Mentorship | Travel opportunitiesSenior-level Full TimeNew York, NY, US1d ago
-
Digital Forensics Examiner Team Lead USD 135K-216KAxiom | Cellebrite | Computer forensics | Data Recovery | Digital forensicsSenior-level Full TimeLinthicum, MD, United States1d ago
-
Exploitation Analyst Level 3 USD 210K-230KBash | Computer forensics | Cybersecurity | Data Enrichment | Data pivotingSenior-level Full TimeFort Meade, MD, United States1d ago
-
Computer Network Defense Analyst (CNDA), Advisor USD 135K-216KCloud Security | Cyber incident | Cyber incident response | Data Analysis | Data EnrichmentAnnual leave | Critical Skills Bonus | Health insuranceMid-level Full TimeFort Meade, MD, United States1d ago
-
Arkime | Autopsy | Axiom | Digital forensics | Disk forensicsCritical Skills Bonus | Dental insurance | Health insurance | Paid time off | Vision insuranceMid-level Full TimeChantilly, VA, United States1d ago
-
APNIC | ARIN | ATT&CK Navigator | Address Attribution | CensysEntry-level Full TimeArlington, VA, United States1d ago
-
VP, Cyber Threat Intelligence (Remote) USD 230K-240KAutomation | Cyber Threat | Cyber threat landscape | Cybersecurity | Data EnrichmentExecutive-level Full TimeMaryland-Home Office, United States R1d ago