Cyber Incident Response Team (CIRT) Lead (SME)
Tasks
- Advise leadership during high severity incidents
- Conduct forensic methodologies
- Coordinate cross organizational response and remediation
- Develop validate incident response playbooks
- Integrate threat intelligence and threat hunting insights
- Lead after action analysis and corrective action planning
- Manage chain of custody procedures
- Mentor CIRT leadership and establish response metrics
- Optimize SOC and CIRT tooling architecture
- Perform adversary mapping and TTP mapping
- Provide enterprise incident response technical authority
- Run readiness exercises and purple blue red team activities
Perks/Benefits
- N/A
Skills/Tech-stack
ATO | Advanced Cyber Investigations | Adversary TTP | Adversary TTP Mapping | Blue Teaming | Cyber Investigations | Cybersecurity | Cybersecurity operations | EDR | Evidence handling | Executive reporting | Forensics | Incident Response | MTTD | MTTR | Malware analysis | Management Framework | Network Forensics | Packet Capture | Purple Teaming | RMF | Red Teaming | Risk Management | Risk Management Framework | SOAR | TTP mapping | Threat Intelligence | Threat hunting | XDR
Education
Bachelor of Arts | Bachelor of Science | Master of Arts | Master of Science | PhD
Related jobs
-
Lead IT Systems Analyst USD 110K-140KAzure AD | Bash | Conditional Access | DHCP | DNSFlexible work schedule | Remote-first work environment | Retirement plan match | Stock options | Unlimited PTOSenior-level Full TimeUnited States R17h ago
-
Team Lead, Data Security - Northeast region (Remote) USD 102K-160KAPI Integration | Access Control | Ansible | CASB | CCPACorporate holidays | Flexible time off | Group dental insurance | Group medical insurance | Pet benefit optionSenior-level Full TimeRemote R1d ago
-
Validator/Vulnerability Management Lead (5165) USD 93K-156KAuthorization to Operate | Continuous Monitoring | Cyber directives | EMASS | Interim Authorization to TestSenior-level Full TimePatuxent River, MD1d ago
-
Cyber Intelligence Lead USD 116K-194KAI ML Risk Mitigation | AI/ML | AI/ML risk | Cybersecurity engineering | D3FENDSenior-level Full TimeUSA-VA-Chantilly, USA-AZ-Chandler1d ago
-
Cyber Incident Response Team (CIRT) Lead USD 104K-166KATO | Blue Teaming | Chain of Custody | Detection engineering | Detection validationSenior-level Full TimeHerndon, VA, United States1d ago
-
Security Operations Center (SOC) Lead USD 86K-138KAutomation and response | COOP | Detection and Response | Detection engineering | Detection tuningSenior-level Full TimeHerndon, VA, United States1d ago
-
Deputy Operations Lead USD 155K-190KAgile | Confluence | Incident Response | Jira | Linux401k matching | Disability coverage | Education and Training | Employee assistance program | Generous leave policySenior-level Full TimeFort Meade, MD, United States1d ago
-
Systems Architect and Information System Lead USD 174K-291KCDI | Cybersecurity | Dynamics 365 | Information System | Information system management401k match | Dental insurance | Health insurance | Life insurance | Paid HolidaysSenior-level Full TimeColorado Springs, CO, United States1d ago
-
VP, Technology & Cybersecurity Governance USD 147K-245KArcher | Automation | CIS | Control monitoring | Cybersecurity401k matching | Employee stock options | Health benefits | Paid time off | Volunteer time offExecutive-level Full TimeFort Mill/Charlotte, United States1d ago
-
Cyber Threat Intelligence Lead USD 163K-224KDetection Development | Incident Response | Intelligence lifecycle | Intelligence platforms | Log AnalysisSenior-level Full TimeRemote - Utah, United States R1d ago
-
VP, Workday Security and Compliance Lead USD 110K-188KAccess Control | Audit management | Cybersecurity compliance | Data Privacy | GDPR401k match | Dental insurance | Educational support | Employee assistance program | Employee networksSenior-level Full TimeBOSTON, United States1d ago
-
Lead Technical Program Manager - IAM - Controls USD 180K-215KAccess Management | Agile | Budget Management | By Design | Change ManagementBackup childcare | Financial coaching | Health care coverage | Mental health support | On-site health and wellness centersSenior-level Full TimePlano, TX, United States1d ago
-
Lead Penetration Tester USD 126K-190KApplication Testing | Burp Suite | C# | Cyber Kill Chain | Detection SystemsSenior-level Full TimeAnnapolis Junction, MD1d ago
-
Cybersecurity Team Lead (ISSM) USD 80K-120KApplication troubleshooting | Cybersecurity | Cybersecurity compliance | Information Assurance | Project Management401k matching | Dental insurance | Life insurance | Long-term disability | Medical insuranceSenior-level Full TimeFt Huachuca, AZ, US2d ago
-
Lead Cybersecurity / Information Assurance Engineer USD 135K-216K800-53 | Agile Framework | Application Layer Protocols | Application-layer | Assessment and AuthorizationSenior-level Full TimeHome, DC, United States2d ago
-
Lead Engineer, Information Security USD 95K-164KAccess Management | CRISC | Cloud technologies | Container Security | Continuous DeploymentSenior-level Full TimeLowe's Charlotte Technology Hub 3505, United …2d ago
-
Access Control | CASB | Cloud Access Security Broker | Cloud Secure | Cloud Secure Web Gateway401k plan | Commuter benefits | Disability benefits | Discounts and savings | Hybrid work scheduleSenior-level Full Time112265-NJ-MetroPark, Iselin, United States2d ago
-
800-53 | Application Security | Asset discovery | Brinqa | CI/CDSenior-level Full TimeVirtual - Ohio, United States R2d ago
-
Cybersecurity Compliance Lead - Remote - FS437 USD 120K-169K800-53 | Active Directory | Audit management | Backup and Recovery | Business Impact AnalysisFlexible hours | Remote work flexibility | Travel as required | Work-life balanceSenior-level Full TimeRemote - Franklin, Massachusetts, United States R2d ago
-
Sr. Principal, AI Delivery Lead, Tech Program Manager USD 137K-240KABAC | AI RMF | API Key | API key management | Access LoggingSenior-level Full TimeChicago, IL, United States2d ago
-
Cyber Enabled Fraud Lead USD 123K-204KAlerting | Case management | Data Analysis | Data Quality | Data Visualization401k matching | Dental insurance | Disability insurance | Education benefit | Employee stock purchase planSenior-level Full TimeWash, 213 Washington St., Newark, NJ, …2d ago
-
Access Control | Application Security | Authentication and access control | Cloud Security | Cloud platformSenior-level Full TimeSeattle, WA, USA; Boulder, CO, USA3d ago
-
Acquisition support | Authorization to Operate | Coalition Data Sharing | Cross domain | Cross domain integration25 Percent Travel | Disability insurance | Financial benefits | Health insurance | Life insuranceSenior-level Full TimeAberdeen Proving Ground, MD, United States3d ago
-
Lead System Engineer USD 125K-140KAccreditation artifacts | CSFC | Cybersecurity | Data-At-Rest | EncryptionOn-site work | Telework option | Travel up to 45 days per yearSenior-level Full TimeStafford, VA, United States3d ago
-
Agile Practice Lead - Senior USD 114K-133KAgile | Agile metrics | Backlog Management | CI/CD | Cloud ComputingSenior-level Full TimeClarksburg, WV, United States3d ago