This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
This position is an individual contributor role reporting to the Sr. Manager of CSIRT. Responsibility * Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage ...
The role involves managing security incidents, conducting investigations, defining action plans ... The CSIRT analyst defines for each incident an action plan which aims to collect the artifacts ...
The role involves managing security incidents, conducting investigations, defining action plans ... The CSIRT analyst defines for each incident an action plan which aims to collect the artifacts ...
Cybersecurity Analyst - CSIRT
Minneapolis, MN · On-site
$69K - $125K/yr
As a Cybersecurity Analyst - CSIRT, you'll take the lead as you detect and assess cyber security ... Experience managing cases with enterprise SOAR, SIEM and/or Incident Management systems
Cybersecurity Analyst - CSIRT
Minneapolis, MN · On-site
$69K - $125K/yr
As a Cybersecurity Analyst - CSIRT, you'll take the lead as you detect and assess cyber security ... Experience managing cases with enterprise SOAR, SIEM and/or Incident Management systems
Cybersecurity Analyst - CSIRT
Brooklyn Park, MN · On-site
$69K - $125K/yr
As a Cybersecurity Analyst - CSIRT, you'll take the lead as you detect and assess cyber security ... Experience managing cases with enterprise SOAR, SIEM and/or Incident Management systems
Cybersecurity Analyst - CSIRT
Brooklyn Park, MN · On-site
$69K - $125K/yr
As a Cybersecurity Analyst - CSIRT, you'll take the lead as you detect and assess cyber security ... Experience managing cases with enterprise SOAR, SIEM and/or Incident Management systems
CSIRT Analyst
Buffalo, NY · On-site
$111K - $125K/yr
Overview Do you have a passion for Cyber Security, especially advanced Managed Detection & Response ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
Quick apply
CSIRT Analyst
Buffalo, NY · On-site
$111K - $125K/yr
Overview Do you have a passion for Cyber Security, especially advanced Managed Detection & Response ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
$111K - $125K/yr
Overview Do you have a passion for Cyber Security, especially advanced Managed Detection & Response ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
Quick apply
CSIRT Analyst
$111K - $125K/yr
Overview Do you have a passion for Cyber Security, especially advanced Managed Detection & Response ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
• Cyber Incident Management Lead with Security Clearance
Alexandria, VA · On-site
$118K - $160K/yr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
• Cyber Incident Management Lead with Security Clearance
Alexandria, VA · On-site
$118K - $160K/yr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
CSIRT Analyst
Buffalo, NY · On-site
Do you have a passion for Cyber Security, especially advanced Managed Detection & Response (MDR ... If you answered yes to all of these questions, you might be the perfect fit for our CSIRT Analyst ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
This is a hands-on senior technical role, not a people-management position, though it carries ... Because CSIRT operates 24x7x365, on-call rotation, including occasional overnights and weekends, is ...
Cybersecurity Incident Response and Penetration Testing Lead with Security Clearance
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Cybersecurity Incident Response and Penetration Testing Lead with Security Clearance
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Cybersecurity Incident Response and Penetration Testing Lead
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Quick apply
Cybersecurity Incident Response and Penetration Testing Lead
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Senior CERT Analyst (experienced level professional)
Greenville, SC · On-site
$94K - $121K/yr
Minimum 5 years' experience in incident response (CERT/SOC/CSIRT - Manager, Technical Lead, or Forensics Analyst) #LI-hiringmichelin #LI-RG1 Ready to Shape the Future of Innovation? Michelin is ...
Senior CERT Analyst (experienced level professional)
Greenville, SC · On-site
$94K - $121K/yr
Minimum 5 years' experience in incident response (CERT/SOC/CSIRT - Manager, Technical Lead, or Forensics Analyst) #LI-hiringmichelin #LI-RG1 Ready to Shape the Future of Innovation? Michelin is ...
Minimum 5 years' experience in incident response (CERT/SOC/CSIRT - Manager, Technical Lead, or Forensics Analyst) #LI-hiringmichelin #LI-RG1 Ready to Shape the Future of Innovation? Michelin is ...
Minimum 5 years' experience in incident response (CERT/SOC/CSIRT - Manager, Technical Lead, or Forensics Analyst) #LI-hiringmichelin #LI-RG1 Ready to Shape the Future of Innovation? Michelin is ...
Cybersecurity Incident Response and Penetration Testing Lead
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Cybersecurity Incident Response and Penetration Testing Lead
Alexandria, VA · On-site
$75 - $80/hr
The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test incident response plans, and drive continuous improvement through metrics, exercises ...
Csirt Manager information
See salary details
$23K - $30.2K
4% of jobs
$30.2K - $37.5K
10% of jobs
$43.3K is the 25th percentile. Wages below this are outliers.
$37.5K - $44.7K
14% of jobs
$44.7K - $51.9K
16% of jobs
The median wage is $58.1K / yr.
$51.9K - $59.1K
7% of jobs
$59.1K - $66.4K
10% of jobs
$70K is the 75th percentile. Wages above this are outliers.
$66.4K - $73.6K
29% of jobs
$73.6K - $80.8K
4% of jobs
$80.8K - $88K
3% of jobs
$88K - $95.3K
1% of jobs
$95.3K - $102.5K
2% of jobs
$23K
$61.4K
$102.5K
How much do csirt manager jobs pay per year?
What is a CSIRT manager?
What are the key skills and qualifications needed to thrive as a CSIRT manager?
What are some common challenges faced by a CSIRT manager when coordinating incident response across multiple departments?
What states have the most Csirt Manager jobs?
States with the most job openings for Csirt Manager jobs include:
What are popular job titles related to Csirt Manager jobs?
For Csirt Manager jobs, the most frequently searched job titles are:

Sr. Incident Response Analyst
San Francisco, CA • Hybrid
Full-time
Medical, Life, Retirement, PTO
Re-posted yesterday
Key responsibilities
Investigate security incidents involving AI/ML models and analyze alerts from security monitoring tools.
Conduct technical investigations into cybersecurity incidents, including malware analysis, phishing attacks, and web application compromises.
Support incident containment, eradication, and recovery efforts, and document incident findings and lessons learned.
DocuSign rating
9.9
Based on 5 frontline employees who took The Breakroom Quiz
Job description
Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign's Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).
What you'll doWe are looking for highly motivated and skilled CSIRT Investigators to join our dynamic security team in the United States. You will be at the forefront of identifying and investigating security incidents, and contributing to the continuous improvement of our incident response capabilities. This role requires a strong technical background, participation in on-call rotations, excellent analytical skills, and a proactive approach to cybersecurity.
This position is an individual contributor role reporting to the Sr. Manager of CSIRT.
Responsibility
Leverage AI and machine learning tools to enhance the efficiency of log analysis, alert triage, and threat hunting
Monitor for and investigate security incidents involving AI/ML models, such as adversarial attacks, prompt injection, and model evasion
Collaborate with detection engineering to develop and tune AI-based detection logic to improve SOC visibility
Research and adopt emerging AI-driven security technologies to evolve CSIRT's proactive defense capabilities
Perform initial triage and in-depth analysis of security alerts generated from our SIEM and other security monitoring tools
Correlate events from various log sources to identify potential security incidents
Determine the scope, severity, and potential impact of detected threats
Conduct technical investigations into cybersecurity incidents, including malware analysis, phishing attacks, web application compromises, and insider threats
Utilize digital forensics techniques on data and endpoints to gather evidence and understand incident timelines and methods
Support incident containment, eradication, and recovery efforts under the guidance of the CSIRT Manager
Document incident findings, actions taken, and lessons learned
Assist in the development and refinement of threat detection rules to improve SOC visibility
Participate in proactive threat hunting activities to uncover hidden threats within the enterprise environment
Stay informed about the latest threat intelligence and emerging attack techniques
Work with SIEM and SOAR platforms to optimize alert processing and incident workflows
Contribute to the creation and refinement of automated solutions for efficient incident response and reporting
Identify opportunities for automation to streamline security operations
Collaborate effectively with other security teams, IT, and business units during incident response
Provide clear and concise updates on incident status to the CSIRT Manager
Contribute to post-incident reports and analysis
Maintain working relationships with law enforcement when required
Hybrid: Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation)
Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law.
What you bringBasic
8+ years of hands-on experience in cybersecurity, with a focus on Security Operations (SOC) and/or Incident Response
The individual must be a U.S. Citizen, U.S. National or U.S. Person. Individuals outside of these categories are generally barred from having logical access to IL5 data or infrastructure
Experience leading or coordinating responses to critical cybersecurity incidents
Experience with crisis management
Experience with SIEM tools (e.g., Splunk, QRadar, Sentinel) for alert analysis and log correlation
Experience with EDR solutions and their role in incident investigation
Experience with digital forensics principles and techniques and enterprise forensic solutions
Experience with scripting languages (e.g., Python, PowerShell, Bash) for automation and data analysis
Preferred
Bachelor's degree in Computer Science, Information Security, or a related field or equivalent work experience
Industry certifications such as CompTIA Security+, CySA+, GCIH, GCFA, or CEH
Exposure to cloud security concepts (AWS, Azure, GCP)
Strong analytical and problem-solving skills, with a keen eye for detail
Excellent communication skills, both written and verbal, with the ability to explain technical concepts clearly
Ability to work effectively as part of a team and independently under pressure
Pay for this position is based on a number of factors including geographic location and may vary depending on job-related knowledge, skills, and experience.
Based on applicable legislation, the below details pay ranges in the following locations:
California: $146,400.00 - $235,375.00 base salary
Washington: $140,100.00 - $206,775.00 base salary
This role is also eligible for the following:
- Non-Sales roles are eligible for a company bonus plan, which is calculated as a percentage of eligible wages and dependent on company performance.
- This role is eligible to receive Restricted Stock Units (RSUs).
Global benefits provide options for the following:
- Paid Time Off: earned time off, as well as paid company holidays based on region
- Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement
- Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment
- Retirement Plans: select retirement and pension programs with potential for employer contributions
- Learning and Development: options for coaching, online courses and education reimbursements
- Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events
Work Authorization Notice: Please note that we do not provide visa sponsorship or immigration support for this position. Applicants must already be authorized to work in the United States on a full-time, permanent basis without the need for current or future sponsorship.
Life at DocuSignWorking here
Docusign is committed to building trust and making the world more agreeable for our employees, customers and the communities in which we live and work. You can count on us to listen, be honest, and try our best to do what's right, every day. At Docusign, everything is equal.
We each have a responsibility to ensure every team member has an equal opportunity to succeed, to be heard, to exchange ideas openly, to build lasting relationships, and to do the work of their life. Best of all, you will be able to feel deep pride in the work you do, because your contribution helps us make the world better than we found it. And for that, you'll be loved by us, our customers, and the world in which we live.
Accommodation
Docusign is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need such an accommodation, or a religious accommodation, during the application process, please contact us at accommodations@docusign.com.
If you experience any issues, concerns, or technical difficulties during the application process please get in touch with our Talent organization at taops@docusign.com for assistance.
Applicant and Candidate Privacy Notice
States Not Eligible for EmploymentThis position is not eligible for employment in the following states: Alaska, Hawaii, Maine, Mississippi, North Dakota, South Dakota, Vermont, West Virginia and Wyoming.
EEO StatementIt's important to us that we build a talented team that is as diverse as our customers and where all employees feel a deep sense of belonging and thrive. We encourage great talent who bring a range of perspectives to apply for our open positions. Docusign is an Equal Opportunity Employer and makes hiring decisions based on experience, skill, aptitude and a can-do approach. We will not discriminate based on race, ethnicity, color, age, sex, religion, national origin, ancestry, pregnancy, sexual orientation, gender identity, gender expression, genetic information, physical or mental disability, registered domestic partner status, caregiver status, marital status, veteran or military status, or any other legally protected category.
EEO Know Your Rights poster
Employment Type: FULL_TIMEAbout DocuSign
Sourced by ZipRecruiter
Industry
Software development
Company size
5,001 - 10,000 Employees
Headquarters location
San Francisco, CA, US
Year founded
2003