379 incident response jobs at 246 companies in New York
3d
Save
Mark Applied
Hide
3d
Incident Response Lead
New York City, New York, United States
$135k-$169k/yrOnsiteFull Time
B&H Photo Video: Sells photography, video, and professional electronics equipment.
5+ YOERequires 5+ years in IT or cybersecurity, including 3+ in incident response, with threat hunting, malware analysis, major incident leadership, security monitoring, reporting, and strong analytical and communication skills.
SIEM, EDR, DLP, FW, WAF, TCP/IP, syslog, auditd, Windows Event Log, JIRA, HP ServiceNow, Remedy, CIS Top 18, NIST
Stamford or Atlanta or Chicago or Boston or Minneapolis or Charlotte or New York City or Philadelphia or Austin or Dallas or McLean
OnsiteFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
5+ YOE5+ years incident response experience, bachelor\u0002s degree or equivalent, hands-on SIEM/EDR/DLP experience, strong stakeholder management, ability to lead investigations and present to executives.
SIEM, EDR, DLP, threat intelligence platforms, NIST, SANS
Fluidstack: Provides high-performance cloud GPU infrastructure for AI development.
Proven incident commander experience, built and run 24/7 on-call programs, people management of senior responders, cross-functional incident leadership across cyber/physical/OT, disclosure-grade incident handling.
Senior Director, Digital Forensics and Incident Response
New York City or Maryland or Tel Aviv or San Francisco or London or Budapest or United States or South America
RemoteFull Time
BlueVoyant: Managed detection, response, and threat intelligence security services.
3+ YOEExperience leading DFIR incidents as incident commander, 3+ years hands-on DFIR, 6+ years client-facing cyber/incident response experience, executive communication, mentoring, familiarity with endpoint/cloud/identity forensics and related tools, US citizenship required.
EnCase, FTK, Magnet AXIOM, Velociraptor, Splunk, Microsoft Sentinel, CrowdStrike, Microsoft 365, Microsoft Entra ID, Azure, AWS, Okta, Google Workspace, KQL, SPL, SQL, PowerShell, Python, Bash
Senior Investigator Digital Forensics, Incident Response (DFIR)
Chicago or Milwaukee or Dallas or Columbus or Kirkland or Cincinnati or New York or Cleveland or Oklahoma City or Austin or Albany or St. Petersburg or Hartford or Pittsburgh or St. Louis or Miami or Sacramento or Raleigh or Minneapolis or Mountain View or Scottsdale or San Francisco or Morristown or Denver or Boston or Philadelphia or Des Moines or Overland Park or Los Angeles or Charlotte or Walnut Creek or Carmel or Seattle or Houston or Arlington or Atlanta or Redmond or Bentonville or Beaverton or Nashville or Detroit or San Diego
$54k-$206k/yrHybridFull Time
AccentureNYSE: ACN: Global provider of management consulting and technology services.
4+ YOEBachelor's degree or equivalent, minimum 4 years DFIR experience, 3+ years with enterprise incident response and common DFIR toolsets; ability to obtain US security clearances; strong analytic and client-facing skills.
Volatility, X-Ways, FTK, EnCase, Autopsy, EDR, AWS, Azure, GCP, Microsoft Windows, GNU/Linux, MacOS, Active Directory, Python, PowerShell, Bash
1440 Foods: Produces and sells protein-rich sports nutrition and snacks.
Hands-on OT and industrial security expertise, incident response leadership, endpoint and vulnerability management, cloud and identity security, and communication across technical, plant, and executive audiences.
CrowdStrike Falcon, Microsoft 365, Microsoft Entra ID, Conditional Access, MFA, VPN, PLC, HMI, SCADA, ISA/IEC 62443, NIST CSF, EDR
Disaster Recovery and Major Incident Response Manager
New York, New York, United States
$129k-$196k/yrHybridFull Time
Hospital for Special Surgery: Provides specialized orthopedic, rheumatologic healthcare and medical research.
8+ YOEBachelor's degree in CS/IT/Business, 8+ years in IT operations/incident management/disaster recovery, incident command experience, strong DR/BC and application tiering knowledge, executive communication, and afterhours availability.
Long Island City or Salt Lake City or Washington or Orlando
$91k-$129k/yrHybridFull Time
JetBlueNASDAQ: JBLU: Low-cost airline providing air travel and integrated vacation services.
3+ YOERequires a bachelor's degree or high school diploma/GED with 4 years of relevant experience, plus 3 years in security operations, incident response, or alert investigations. Requires scripting, analytical, communication, on-call, and US work authorization.
Software as a Service (SaaS), SIEM, PowerShell, Python, KQL, SPL, Splunk, SentinelOne, CrowdStrike, Microsoft Defender, SOAR, AWS, Microsoft Azure, Google Cloud, MITRE ATT&CK, Microsoft ChatGPT
PelotonNASDAQ: PTON: Sells connected fitness equipment and streaming exercise classes.
3+ YOE3+ years in information security with incident response or threat detection experience; knowledge of cloud platforms, SIEM/EDR, automation for triage, and strong analytical skills.
AWS, GCP, Azure, Kubernetes, O365, Google Workspace, SIEM, EDR, LLM
The Estée Lauder CompaniesNYSE: EL: Manufactures and markets prestige skincare, makeup, and fragrance products.
3+ YOE3–5 years in threat management/incident response, working knowledge of incident response and cybersecurity frameworks, ability to assess impact and communicate findings, bachelor's degree preferred.
Boston or New York City or Los Angeles or San Francisco
$230k-$330k/yrOnsiteFull Time
Suno: AI platform for creating full songs from text prompts.
6+ YOE6+ years in detection and response, strong AWS-native detection experience, detection-as-code mindset, incident response ownership, and interest in detecting AI/ML abuse.
Incident Management Team (IMT) Member: Response Cadre
New York, United States
$88k-$150k/yrFieldContract
Hagerty Consulting: Providing emergency management and disaster recovery consulting services
7+ YOE7+ years emergency management experience, EOC/IMT experience, NIMS/ICS position-specific training and task books preferred, ability to work 12-hour shifts, be on-call 24–72 hours for US deployments of 30+ days.
Estée Lauder CompaniesNYSE: EL: Manufacturer and marketer of prestige beauty and skincare products.
3+ YOE3–5 years in incident response/security operations, bachelor’s degree or equivalent, knowledge of SIEM/EDR/SOAR and frameworks, ability to lead incident coordination and communicate with stakeholders.
Harvey: AI platform for legal research and document analysis.
5+ YOE5+ years in incident management or technical program management within software/security; strong cross-functional leadership, technical understanding of distributed systems and cloud, program design experience, and excellent communication.
Modal: Serverless cloud platform for running AI and data workloads
Experience in detection, incident response, security, or software engineering; production systems development; cloud-native investigations; Kubernetes, Linux, networking, and SQL skills; strong communication.
Security Officer Full Time Unarmed Incident Response
Syracuse, New York, United States
$18/hrOnsiteFull Time
Allied Universal: Global provider of security guard and facility management services.
Requires age 18+, high school diploma or equivalent, background investigation, drug screening, and any required New York licensing. Clear communication and incident response skills required.
Phoenix or Atlanta or Palo Alto or Salt Lake City or Sunrise or Charlotte or New York
$123k-$215k/yrHybridFull Time
American ExpressNYSE: AXP: Global financial services and credit card payment network.
3+ YOE1+ MgmtRequires 3+ years in information security or incident response, forensics, security tools, Python, PowerShell or Go, and technical team leadership. Preferred: 1+ year people leadership and relevant cybersecurity certifications.
San Francisco or New York City or Los Angeles or Seattle or United Kingdom or Ireland or Poland or Germany or Australia
$175k-$260k/yrRemoteFull Time
Whatnot: Social marketplace for buying and selling via live streams
5+ YOE5+ years in cyber incident response or a related security field; bachelor's degree or equivalent; experience with SOAR, EDR, NDR, SIEM, AWS, and GCP; strong incident documentation and communication skills.