Director, Cyber Security Incident Response Team (CSIRT)
USD 169K-253K Executive-level Full Time
Tasks
- Coordinate digital forensics evidence handling and chain of custody
- Define and maintain incident governance and severity model
- Deliver incident response metrics and executive reporting
- Drive post incident control improvements and detection hardening
- Lead CSIRT strategy planning and operational readiness
- Lead incident command and execute incident response plan
- Lead recruitment mentoring and DFIR and automation upskilling
- Manage 24x7 on call rotations and cross regional handoffs
- Operationalize SIEM XDR and SOAR playbooks
- Orchestrate incident response stakeholder notifications and communications
- Run tabletop exercises and purple team exercises
- Use LLM assisted runbooks for triage and investigation
Perks/Benefits
Skills/Tech-stack
Access Management | Automation | Automation Playbooks | Chain of Custody | Cloud logging | Crisis Communications | Digital forensics | Endpoint Monitoring | ICS Security | Identity and Access Management | Identity and access | Incident Command | Incident Response | LLM | MITRE ATT&CK | OT/ICS | OT/ICS security | Offensive security | SIEM | SOAR | Threat Intelligence | Vulnerability Management | XDR
Education
Bachelor of Engineering | Bachelor of Science | Master of Science
Related jobs
-
CMMC | Compliance | Control Assessment | Cybersecurity | Cybersecurity AwarenessExecutive-level Full TimeDallas, TX, United States1d ago
-
Expert cyber security engineer(1/261/25) USD 146K-234KArtificial Intelligence | Automation | Big Data | Cloud Computing | Cloud SecuritySenior-level Full TimeSpringfield, United States1d ago
-
Security Engineer II, DCO Engineer (TS/SCI, Onsite) USD 88K-147KAWS | Ceph | Cyber Defense | Cyber Operations | CybersecurityMid-level Full TimeDenver, Colorado, United States1d ago
-
Consultant - AI SOC USD 102K-188KAPI Integration | Automation and response | Case management | Data Enrichment | Data IngestionMid-level Full TimeChicago, Illinois, United States1d ago
-
Director, Security Engineering USD 209K-246KCloud Security | Cybersecurity | Detection and Response | Extended Detection and Response | Identity Threat DetectionBehavioral wellness services | Employee equity plan | Employee recognition program | Generous time away from work | Health care insuranceExecutive-level Full TimeAustin, TX, United States,2d ago
-
Director, Security Engineering USD 209K-246KCloud Security | Cybersecurity | Detection and Response | Extended Detection and Response | Identity Threat DetectionBehavioral and Emotional Wellness Services | Employee equity plan | Employee recognition program | Generous time away from work | Health care insuranceExecutive-level Full TimeUS - California2d ago
-
Agile Framework | Cybersecurity frameworks | Data Visualization | Databricks | IDSTeleworkSenior-level Full TimeVirginia Client Office (VA88), United States2d ago
-
Director, Cyber Security Detection Engineering USD 169K-253KAdversary Emulation | Artificial Intelligence | Automation | Cloud Security | Control SystemsDental insurance | Health insurance | Paid Holidays | Paid leave | Paid vacationExecutive-level Full TimeUS - Gaithersburg - MD, United …2d ago
-
Cyber Operations Senior Detection Engineer USD 136K-204KBehavioral analytics | Detection logic | Detection tuning | Detection-as-code | EDRSenior-level Full TimeUS - Gaithersburg - MD, United …2d ago
-
Director Cybersecurity - Cyber Threat Remediation USD 144K-256KCause analysis | Control Assurance | Cyber Risk | Cyber Risk Management | Cyber ThreatExecutive-level Full TimeCharlotte, NC, United States2d ago
-
Senior Cyber Security Engineer (Job 1356) USD 157K-171K800-137 | 800-53 | AWS | Access Management | Automation401k retirement plan | Dental insurance | E Learning Suite | Education assistance | Flexible spending accountsSenior-level Full TimeBethesda, Maryland2d ago
-
800-53 | Access Management | Application Security | Awareness Training | Business ContinuityExecutive-level Full TimeUnited States2d ago
-
Mid-level Full TimeNew York, New York, United States2d ago
-
Sr Cyber Security Analyst/CIRT Analyst USD 122K-184KCause analysis | Cyber Defense | DLP | Endpoint Security | Event MonitoringDental insurance | Health care | Paid time off | Retirement plan | Sick leaveSenior-level Full TimeCreve Coeur, Missouri, US3d ago
-
AWS | Agile | Ansible | Availability Monitoring | CI/CDExecutive-level Full TimeMillersville, MD, US3d ago
-
Incident Responder CSIRT - Multiple Levels USD 96K-176KAWS | Antivirus | Application Firewall | Azure | Cloud Security24x7 shift work | 401k | Employee stock purchase program | Medical, dental, and vision coverage | Mental health supportMid-level Full TimeVirginia - Mclean, United States3d ago
-
Trellix Security Engineer USD 98K-163K800-53 | API Integration | CVSS V3 | Cause analysis | EPSS401k retirement plan | Employee assistance program | Health savings account | Parental leave | Transit and Parking Commuter BenefitsMid-level Full TimeGH Office: Tysons Corner, VA (Headquarters), …3d ago
-
Cyber Security Technical Advisor (GRC), AVP USD 110K-135KAccess Management | Cloud Security | Configuration Management | Control Assessment | Control DesignEducational assistance | Health and wellness benefits | Income replacement for qualified employees with disabilities | Paid Holidays | Paid maternity and parental bonding leaveExecutive-level Full TimeTampa - 4050 West Boy Scout … R3d ago
-
Product Champion (Data Scientist 4) - 28728 USD 125K-175KAutomated reporting | Continuous Monitoring | Cyber Operations | Cyber data | Cyber data analysis401k match | Dental insurance | Education/training allowances | Health insurance | Paid HolidaysSenior-level Full TimeSan Antonio, TX, Texas, United States3d ago
-
Cyber Security Specialist USD 95K-181K800-53 | ATO | AWS | AWS Cloud | AWS Cloud Security401k retirement plan | Bereavement leave | Company-Paid Holidays | Flexible remote work schedules | Life insuranceMid-level Full TimeUnited States - Remote R3d ago
-
Cyber Security Project Engineer - TS/SCI w/Polygraph USD 152K-205KCloud Security | Cybersecurity Risk Management | Cybersecurity risk | DHCP | DNS401k match | Dental insurance | Flex work weeks | Health and wellness packages | Paid HolidaysSenior-level Full TimeUSA VA McLean - Customer Proprietary …3d ago
-
CCPA | Crisis management | Data Breach | Data Classification | Data Governance401k matching | Dental insurance | Medical insurance | Paid time off | Parental leaveSenior-level Full TimeWaltham, MA, United States3d ago
-
Chief Information Security Officer USD 194K-225KAccess Management | Active Directory | Business Continuity | Cloud Security | CybersecurityTravel requiredExecutive-level Full TimePhoenix, Arizona, United States3d ago
-
Access Control | Access Management | Application Security | DAST | Data Loss PreventionMid-level Full TimeNew York, NY, United States3d ago
-
Cyber Security Engineer (Job 1354) USD 132K-140K800-171 | 800-37 | 800-53 | AI Security | AWS401k matching | Education assistance | Learning and development | Medical/Dental/Vision | PTOMid-level Full TimeBethesda, Maryland3d ago