3,838 incident response jobs at 1,984 companies in United States
1w
Save
Mark Applied
Hide
1w
Incident Response Lead
Washington, District Of Columbia, United States
$140k-$150k/yrHybridFull Time
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
6+ YOELead incident response and threat hunting, develop detections and playbooks, perform malware triage and live response, and communicate findings to technical teams and executives.
Cyber Kill Chain, MITRE ATT&CK, Diamond Model of Intrusion Analysis, SIEM, IDS/IPS, EDR, AWS, Azure, GCP, Python, PowerShell, Bash, Perl
Global PaymentsNYSE: GPN: Provides payment technology and software solutions for global commerce.
2+ YOE2+ years incident management experience or relevant degree; knowledge of incident response, network/system administration (Unix/Linux/Windows), SIEM, cloud, strong communication; professional security certifications a plus.
Unix, Linux, Windows, Google Workspace, JIRA, NIST CSF, PCI, GDPR, Google Cloud Fundamental, AWS Foundations
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
4+ YOE4 years in security incident response or digital forensics; DoD 8140 compliance; bachelor’s degree or equivalent experience; active TS/SCI clearance.
SIEM, Digital forensics tools, Malware analysis tools, Incident response tools
VMD Corp: Provides airport security screening and federal IT services.
5+ YOEBachelor’s degree, five years of experience, U.S. citizenship, and active Secret clearance required. Supports cybersecurity incident response across classified and unclassified environments.
Security Information and Event Management (SIEM), IDS/IPS, SIPRNet, NIPR
Stamford or Atlanta or Chicago or Boston or Minneapolis or Charlotte or New York City or Philadelphia or Austin or Dallas or McLean
OnsiteFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
5+ YOE5+ years incident response experience, bachelor\u0002s degree or equivalent, hands-on SIEM/EDR/DLP experience, strong stakeholder management, ability to lead investigations and present to executives.
SIEM, EDR, DLP, threat intelligence platforms, NIST, SANS
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
5+ YOEBachelor's in a related field, 5+ years cybersecurity/incident response experience, federal program experience, U.S. citizenship, ability to obtain Public Trust, SIEM/Splunk and EDR experience, strong communication and on-call availability.
3+ YOEBachelor's degree,3+ years in security operations with incident response,forensics,malware analysis and SOC experience; familiarity with OS/network forensics,SIEM,threat intelligence,and rotating 24/7 shifts;must be authorized to work in the U.S.
Ancestry: Provides online genealogy research and consumer DNA testing services.
6+ YOE3+ Mgmt6+ years incident response/DFIR experience, 3+ years managing IR teams, AWS and cloud forensics experience, EDR/XDR, SIEM, SOAR, MITRE ATT&CK knowledge, strong crisis communication and AI/LLM familiarity.
Fluidstack: Provides high-performance cloud GPU infrastructure for AI development.
Proven incident commander experience, built and run 24/7 on-call programs, people management of senior responders, cross-functional incident leadership across cyber/physical/OT, disclosure-grade incident handling.
Sarasota or Tallahassee or Chicago or Denver or The Woodlands
$111k-$226k/yrOnsiteFull Time
Crowe: Global professional services firm providing audit, tax, and consulting.
7+ YOE7+ years cybersecurity experience with 3+ years in incident response, leading complex IR engagements; executive communication, team leadership, forensic and threat-hunting skills; proficiency with SIEM/EDR platforms and scripting (PowerShell, Python, Bash); willing to travel ~15%.
Splunk, Elastic, Microsoft Sentinel, FortiSIEM, CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, Carbon Black, PowerShell, Python, Bash, Microsoft Entra ID, Microsoft 365, AWS, Azure, Google Cloud, MITRE ATT&CK
ASM ResearchNYSE: ACN: Provides IT and healthcare services to government agencies.
5+ YOE5+ years in security operations/incident response, TS/SCI clearance and U.S. citizenship required; experience with SIEM, forensics, log analysis, and incident handling.
CenteneNYSE: CNC: Provides government-sponsored and commercial healthcare insurance programs and services.
6+ YOEExecutes enterprise incident response, conducts access controls testing, develops remediation and automated responses; requires bachelor’s in quantitative/business field and 6–8 years related experience.
Quantum Sky: Engineers mission-critical technology for federal government and defense sectors.
8+ YOEBachelor's or equivalent,8+ years cybersecurity experience,3+ years incident response,3+ years SIEM,2+ years EDR,knowledge of network/endpoint forensics, CISSP and CEH (or equiv), Python and regex proficiency.
SIEM, EDR, Python, regular expressions, Incident Management System (IMS)
Tyto Athene: Provides IT modernization and cybersecurity services to government agencies.
8+ YOEBachelor's or equivalent,8+ years cyber security experience,3+ years incident response,3+ years SIEM,2+ years EDR,knowledge of network/endpoint forensics,CISSP and CEH required,Python and regex proficiency.
Troutman Pepper Locke: A national law firm providing comprehensive legal services.
4+ YOE4+ years incident response and privacy experience; ability to lead incident response, work with forensics and insurers, counsel on privacy compliance; strong analytical and communication skills.