Job Summary The Director of Cybersecurity Incident Response & Insider Threat leads MACU's enterprise-wide cyber incident response, digital forensics, threat intelligence, and insider threat program.
Job Summary The Director of Cybersecurity Incident Response & Insider Threat leads MACU's enterprise-wide cyber incident response, digital forensics, threat intelligence, and insider threat program.
Cybersecurity Incident Response Lead
Alexandria, VA ยท On-site
$75 - $80/hr
Medical
Dental
Vision
Life
Retirement
Manage incident response operations for cybersecurity events affecting enterprise infrastructure, applications, systems, and cloud environments. * Review, maintain, and update the Enterprise Incident ...
Posted today
Quick apply
Cybersecurity Incident Response Lead
Alexandria, VA ยท On-site
$75 - $80/hr
Medical
Dental
Vision
Life
Retirement
Manage incident response operations for cybersecurity events affecting enterprise infrastructure, applications, systems, and cloud environments. * Review, maintain, and update the Enterprise Incident ...
Posted today
Job Summary The Director of Cybersecurity Incident Response & Insider Threat leads MACU's enterprise-wide cyber incident response, digital forensics, threat intelligence, and insider threat program.
Job Summary The Director of Cybersecurity Incident Response & Insider Threat leads MACU's enterprise-wide cyber incident response, digital forensics, threat intelligence, and insider threat program.
Merit321 is a company focused on launching careers, and they are seeking a Tier 2 Cybersecurity Incident Response Analyst. This role provides advanced incident response support for NIH enterprise and ...
Merit321 is a company focused on launching careers, and they are seeking a Tier 2 Cybersecurity Incident Response Analyst. This role provides advanced incident response support for NIH enterprise and ...
The Cyber Security Incident Response Assistant Manager will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security ...
The Cyber Security Incident Response Assistant Manager will play a pivotal role within WTW's Global Information and Cyber Security Defence (ICSD) function, leading the response to complex security ...
The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the analysis and triage team ...
Posted today
The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the analysis and triage team ...
Posted today
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$91K - $153K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$91K - $153K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$114K - $190K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$114K - $190K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
$114K - $190K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
$114K - $190K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$91K - $153K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Analyst
Mclean, VA ยท On-site
$91K - $153K/yr
Medical
Life
Retirement
PTO
MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most ...
Cybersecurity Incident Response Specialist
Atlanta, GA ยท On-site
Medical
Dental
Retirement
Geotab is seeking a Cybersecurity Incident Response Specialist who will be responsible for protecting Geotab's software, hardware, and supply chain by leading incident response efforts across ...
Cybersecurity Incident Response Specialist
Atlanta, GA ยท On-site
Medical
Dental
Retirement
Geotab is seeking a Cybersecurity Incident Response Specialist who will be responsible for protecting Geotab's software, hardware, and supply chain by leading incident response efforts across ...
Cybersecurity Incident Response Lead with Security Clearance
Alexandria, VA ยท On-site
$75 - $80/hr
Medical
Dental
Vision
Life
Retirement
Manage incident response operations for cybersecurity events affecting enterprise infrastructure, applications, systems, and cloud environments. * Review, maintain, and update the Enterprise Incident ...
New
Cybersecurity Incident Response Lead with Security Clearance
Alexandria, VA ยท On-site
$75 - $80/hr
Medical
Dental
Vision
Life
Retirement
Manage incident response operations for cybersecurity events affecting enterprise infrastructure, applications, systems, and cloud environments. * Review, maintain, and update the Enterprise Incident ...
New
Cybersecurity Incident Response Specialist
Medical
Dental
Retirement
Geotab is seeking a Cybersecurity Incident Response Specialist who will be responsible for protecting Geotab's software, hardware, and supply chain by leading incident response efforts across ...
Cybersecurity Incident Response Specialist
Medical
Dental
Retirement
Geotab is seeking a Cybersecurity Incident Response Specialist who will be responsible for protecting Geotab's software, hardware, and supply chain by leading incident response efforts across ...
Cybersecurity Incident Management Commander
Plano, TX ยท On-site
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization, coordinating and influencing stakeholders across multiple functions to drive timely decision-making and ...
Cybersecurity Incident Management Commander
Plano, TX ยท On-site
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization, coordinating and influencing stakeholders across multiple functions to drive timely decision-making and ...
Cybersecurity Incident Response Triage Analyst
$57K - $109K/yr
The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the analysis and triage team ...
Posted today
Cybersecurity Incident Response Triage Analyst
$57K - $109K/yr
The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the analysis and triage team ...
Posted today
Cybersecurity Incident Management Commander
Plano, TX ยท On-site
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization ... coordinating and influencing stakeholders across multiple functions to drive timely decision-making ...
Cybersecurity Incident Management Commander
Plano, TX ยท On-site
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization ... coordinating and influencing stakeholders across multiple functions to drive timely decision-making ...
Cybersecurity Incident Management Commander
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization ... coordinating and influencing stakeholders across multiple functions to drive timely decision-making ...
Cybersecurity Incident Management Commander
$110K - $185K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Manage cybersecurity incident response activities within a highly matrixed global organization ... coordinating and influencing stakeholders across multiple functions to drive timely decision-making ...
R Responsibilities Conducting thorough investigations, performing digital forensics and malware analysis, preserving digital evidence, and managing cybersecurity incident and spillage response ...
R Responsibilities Conducting thorough investigations, performing digital forensics and malware analysis, preserving digital evidence, and managing cybersecurity incident and spillage response ...
Lead Incident Response Analyst
Houston, TX ยท On-site
Job Summary Serves as the dedicated lead responder for Transocean's Cyber Security Incident Response Team (CSIRT), responsible for leading major investigation, coordination, containment, eradication ...
Lead Incident Response Analyst
Houston, TX ยท On-site
Job Summary Serves as the dedicated lead responder for Transocean's Cyber Security Incident Response Team (CSIRT), responsible for leading major investigation, coordination, containment, eradication ...
Cybersecurity Incident Response Manager
Austin, TX ยท Hybrid
$164K - $223K/yr
Proven track record in Information Security with a focus on Incident Response. * In-depth knowledge of the cyber security threat landscape and experience in bring it to bear in a tailored response to ...
Cybersecurity Incident Response Manager
Austin, TX ยท Hybrid
$164K - $223K/yr
Proven track record in Information Security with a focus on Incident Response. * In-depth knowledge of the cyber security threat landscape and experience in bring it to bear in a tailored response to ...
Cyber Security Incident Response information
See salary details
$57K - $68.7K
1% of jobs
$68.7K - $80.5K
4% of jobs
$80.5K - $92.2K
5% of jobs
$92.2K - $103.9K
9% of jobs
$110.4K is the 25th percentile. Wages below this are outliers.
$103.9K - $115.6K
11% of jobs
$115.6K - $127.4K
10% of jobs
The median wage is $131.9K / yr.
$127.4K - $139.1K
28% of jobs
$145.9K is the 75th percentile. Wages above this are outliers.
$139.1K - $150.8K
14% of jobs
$150.8K - $162.5K
11% of jobs
$162.5K - $174.3K
4% of jobs
$174.3K - $186K
4% of jobs
$57K
$133K
$186K
How much do cyber security incident response jobs pay per year?
How to become a cyber security incident response specialist?
What is the difference between Cyber Security Incident Response vs Cyber Security Analyst?
| Aspect | Cyber Security Incident Response | Cyber Security Analyst |
|---|---|---|
| Certifications | GCIH, CISSP, CEH | CISSP, Security+, CEH |
| Work Environment | Responds to security incidents, investigates breaches | Monitors networks, analyzes security data |
| Employer & Industry Usage | Incident response teams in various sectors | Security teams across industries |
Cyber Security Incident Responders focus on managing and mitigating security incidents, while Cyber Security Analysts monitor systems and analyze threats. Both roles require similar certifications and often work within the same security teams, but their core responsibilities differ: incident responders act during and after breaches, whereas analysts proactively identify vulnerabilities.
What are the key skills and qualifications needed to thrive as a cyber security incident response specialist?
How much does a cyber security incident response make?
What is cyber security incident response?
What are some common challenges faced by professionals in cyber security incident response roles?
What does a cyber security incident response do?

Full-time
Posted 11 days ago
Job description
If you need assistance with filling out our application form or during any phase of the application, interview, or employment process, please notify our Human Resources Team at 801-366-6947 option 1 or email macurecruiting@macu.com and every reasonable effort will be made to accommodate your needs in a timely manner.
Job SummaryThe Director of Cybersecurity Incident Response & Insider Threat leads MACU's enterprise-wide cyber incident response, digital forensics, threat intelligence, and insider threat program. This role is responsible for preparing the organization to detect, respond to, and recover from cybersecurity incidents while protecting member data, intellectual property, and critical systems.In this highly visible leadership role, you will partner closely with Cybersecurity, IT, Legal, HR, Governance, Risk Management, and Executive Leadership to manage high-impact incidents, insider risk, and crisis situations. You will define response strategy, mature operational capabilities, and ensure the organization is resilient against both externalJob Description
LOCATION: UTAH
9800 S MONROE ST
SANDY UT 84070
SCHEDULE: FULL-TIME
To be effective, an individual must be able to perform each job duty successfully. This is a Director level role that will be tasked to come into the organization and be a hands-on leader to re-establish, build, manage, and guide the team.
Key ResponsibilitiesIncident Response & Crisis Management
- Lead the enterprise cybersecurity incident response program, including preparation, detection, containment, eradication, and recovery activities.
- Serve as the executive incident commander for high-severity cybersecurity events, coordinating technical teams, business stakeholders, and leadership.
- Define and maintain incident response plans, playbooks, escalation models, and crisis communication procedures.
- Conduct executive-level briefings during and after incidents, including post-incident reports, root cause analysis, and lessons learned.
- Oversee breach investigations, digital forensics, and evidence preservation in coordination with Legal and Compliance.
- Lead tabletop exercises, red/blue team simulations, and ransomware readiness scenarios.
- Lead the organization's brand protection efforts to safeguard reputation and identity.
- Lead proactive threat-hunting initiatives to identify advanced threats, vulnerabilities, and anomalous activities across the enterprise environment.
- Define and maintain incident response plans, playbooks, escalation models, and crisis communication procedures.
Insider Threat Program Leadership
- Own and operate the enterprise Insider Threat Program, addressing malicious, negligent, and compromised insider risks.
- Define insider threat detection, triage, investigation, and response processes across people, process, and technology.
- Partner with HR, Legal, Privacy, and Risk Management teams to ensure investigations are lawful and appropriate.
- Implement behavioral, technical, and contextual monitoring capabilities.
- Establish governance, oversight, and separation of duties for insider investigations.
Security Operations & Capability Maturity
- Collaborate with SOC leadership to enhance monitoring, alerting, and response automation.
- Drive continuous improvement using metrics and maturity models.
- Translate threat intelligence into actionable detection and response strategies.
Governance, Risk, and Compliance
- Ensure alignment with regulatory frameworks including NCUA, FFIEC, and NIST.
- Support audits, regulatory exams, and breach notification requirements.
- Partner with Risk Management and Internal Audit to remediate gaps.
Leadership & Influence
- Lead and mentor incident response and insider threat professionals.
- Partner across IT, Digital Solutions, Legal, HR, Communications, and executives.
- Act as a trusted advisor during high-impact and sensitive situations.
The requirements listed are representative of the knowledge, skills, and/or abilities required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential job functions.
Education and Experience
- 8+ years of experience in cybersecurity operations or incident response with progressive responsibility.
- 5+ years in a leadership role responsible for cybersecurity operations or incident response.
- Experience leading enterprise-scale incident response programs.
- Financial services or regulated industry experience preferred.
- Bachelor's degree in a related discipline or equivalent experience required.
Licenses, Certifications, Registrations
- CISSP strongly preferred.
- GCIH, GCFA, CISM, CISA, or GIAC certifications highly desirable.
Other Skills and Abilities
- Expertise in incident response and digital forensics.
- Strong understanding of insider threat risk and investigations.
- Executive-level communication and leadership under pressure.
- Proven ability to balance security, privacy, and business needs.
- Data driven decision making and the ability to drive a program through metrics and tell the story of why things matter
- Strategic thinking.
- Problem-solving skills.
- Verbal/written communication skills.
- Leadership and talent management skills.
- Public speaking skills.
Physical Demands
Ability to sit, talk and hear consistently
Vision Requirements
Close vision (clear vision at 20 inches or less)
Distance vision (clear vision at 20 feet or more)
Color vision (ability to identify and distinguish colors)
Weight Lifted or Force Exerted
Ability to lift up to 10 pounds frequently and up to 25 pounds occasionally
Environmental
There are no unusual environmental factors (such as a typical office)
Noise Environment
Moderate noise (business office with computers and printers, light traffic)
***This Job is not eligible to be performed in Colorado or Connecticut, either remotely or in-person.***
Mountain America Credit Union is an EEO/AA/ADA/Veterans employer.