1

Cyber Security Incident Response Jobs (NOW HIRING)

Proven track record in Information Security with a focus on Incident Response. * In-depth knowledge of the cyber security threat landscape and experience in bring it to bear in a tailored response to ...

$150K - $185K/yr

The Cybersecurity Incident Response Lead will oversee the incident response and threat intelligence programs to safeguard critical assets and data. The ideal candidate will combine technical ...

Proven track record in Information Security with a focus on Incident Response. * In-depth knowledge of the cyber security threat landscape and experience in bring it to bear in a tailored response to ...

Showing results 21-40

Cyber Security Incident Response information

See salary details

$57K

$133K

$186K

How much do cyber security incident response jobs pay per year?

As of Aug 11, 2026, the average yearly pay for cyber security incident response in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

How to become a cyber security incident response specialist?

To become a cyber security incident response specialist, individuals typically need a bachelor's degree in cybersecurity, computer science, or a related field, along with experience in network security and threat analysis. Certifications such as GIAC Certified Incident Handler (GCIH) or Certified Computer Security Incident Handler (CSIH) can enhance job prospects. Developing skills in intrusion detection, malware analysis, and familiarity with security tools like SIEM systems are also important for this role.

What is the difference between Cyber Security Incident Response vs Cyber Security Analyst?

AspectCyber Security Incident ResponseCyber Security Analyst
CertificationsGCIH, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentResponds to security incidents, investigates breachesMonitors networks, analyzes security data
Employer & Industry UsageIncident response teams in various sectorsSecurity teams across industries

Cyber Security Incident Responders focus on managing and mitigating security incidents, while Cyber Security Analysts monitor systems and analyze threats. Both roles require similar certifications and often work within the same security teams, but their core responsibilities differ: incident responders act during and after breaches, whereas analysts proactively identify vulnerabilities.

What are the key skills and qualifications needed to thrive as a cyber security incident response specialist?

To thrive as a Cyber Security Incident Response specialist, you need expertise in network security, threat analysis, digital forensics, and a relevant degree or certifications such as CISSP, CEH, or GIAC. Familiarity with SIEM tools, intrusion detection systems, and forensic analysis software is essential for investigating and mitigating cyber threats. Strong problem-solving skills, attention to detail, and the ability to communicate complex issues clearly are standout soft skills in this role. These abilities are crucial for quickly detecting, analyzing, and responding to security incidents to protect organizational assets and minimize risk.

How much does a cyber security incident response make?

Cyber security incident response professionals typically earn between $70,000 and $130,000 annually, depending on experience, certifications, and location. Entry-level roles may start lower, while experienced analysts with certifications like CISSP or GIAC can earn higher salaries, especially in high-demand areas.

What is cyber security incident response?

Cyber security incident response refers to the process and procedures organizations use to detect, investigate, and respond to security incidents such as data breaches, malware attacks, or unauthorized access. The goal is to minimize damage, recover affected systems, and prevent future incidents by analyzing what happened and implementing corrective actions. Incident response teams follow structured plans that typically include preparation, identification, containment, eradication, recovery, and lessons learned. Effective incident response helps organizations protect sensitive information, maintain business continuity, and comply with legal or regulatory requirements.

What are some common challenges faced by professionals in cyber security incident response roles?

Professionals in Cyber Security Incident Response often face challenges such as rapidly evolving threat landscapes, high-pressure situations requiring quick decision-making, and the need to coordinate across multiple departments during incidents. Handling large volumes of alerts and distinguishing between real threats and false positives can also be demanding. Additionally, staying up to date with the latest tools, techniques, and compliance requirements is essential for success and can require ongoing learning and adaptation.

What does a cyber security incident response do?

A cyber security incident response professional is responsible for identifying, managing, and mitigating cybersecurity incidents such as data breaches, malware infections, or system intrusions. They analyze security alerts, coordinate containment and recovery efforts, and implement measures to prevent future incidents, often using tools like intrusion detection systems and forensic analysis. This role requires strong problem-solving skills and knowledge of security frameworks and protocols.
More about Cyber Security Incident Response jobs
What cities are hiring for Cyber Security Incident Response jobs? Cities with the most Cyber Security Incident Response job openings:
What states have the most Cyber Security Incident Response jobs? States with the most job openings for Cyber Security Incident Response jobs include:
What job categories do people searching Cyber Security Incident Response jobs look for? The top searched job categories for Cyber Security Incident Response jobs are:
Infographic showing various Cyber Security Incident Response job openings in the United States as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Cybersecurity Incident Response Analyst

Creative Artists Agency (CAA)

Los Angeles, CA โ€ข On-site

$102K - $123K/yr

Full-time

Re-posted yesterday


Job description

Job Description
Who We Are
Creative Artists Agency (CAA) is the leading entertainment and sports agency, with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales and endorsements, media finance, consumer investing, fashion, brand management and consumer product licensing, and philanthropy. Distinguished by its culture of collaboration and exceptional client service, CAA's diverse workforce identifies, innovates, and amplifies opportunities for the people and organizations that shape culture and inspire the world. The trailblazer of the agency business, CAA was the first to build a sports business, create an investment bank, launch a venture fund, found technology start-up companies, establish a philanthropic arm, build a business in China, form a brand marketing services division, and launch a family office advisory practice, among other innovations. Named Most Valuable Sports Agency by Forbes for nine consecutive years, CAA represents more than 3,000 of the world's top athletes in football, baseball, basketball, hockey, and soccer, in addition to coaches, on-air broadcasters, and sports personalities and works in the areas of property sales and sponsorships, media advisory, brand consulting, venue development and strategic advisory, and executive search. Founded in 1975, CAA is headquartered in Los Angeles, and has offices in New York, London, Nashville, Shanghai, Beijing, Chicago, Washington D.C., Singapore, Toronto, Denver, Charlotte, Jacksonville, and Atlanta, among other locations globally.
Summary
This is a hands-on security position working within the Information Security group and with the internal IT department at large. This position's core focus is to ensure consistent, measurable end to end triage and closure of security related events. The successful candidate will work to assess, develop, and deploy detection capabilities ensuring enterprise systems and data are protected.
The Role
We are looking for candidates who have a passion for Cyber Security, Threat Detection, Threat Hunting, and Incident Response. You will be a key part of our efforts to build and support a defensible environment where we are able to detect, contain and respond quickly to threats and compromise in ways that serve to enable the business needs a highly collaborative organization. The environment is fast-paced and commonly on the leading edge of technology, including early adoption of various cloud services along with the challenges of integrating those services into our security practice.
Responsibilities
  • Conduct day-to-day Incident Response activities as well as additional SOC related detection and response activities as required for a global environment

  • Design, engineer, and implement runbooks and playbooks for Incident Response

  • Coordinate with both technical and business stakeholders during the incident response process.

  • Perform host based, cloud based, network based, memory, or log analysis and/or forensics in support of Incident Response investigations.

  • Play an active role in CAA's Security Incident Response efforts, working to identify and mitigate information security threats

  • Review security information, event logs, and reports, provide findings and recommendations

  • Use input from IRM leadership and key security metrics to ensure technical security controls are meeting desired objectives; implement a process of continual review and improvement to ensure the measurable effectiveness of CAA's technical controls

  • Other projects or duties as assigned, including periodic on-call

Required Capabilities
  • A minimum of 3 years in Information Technology, ideally with 2 years' experience in a hands-on Incident Response, Threat Hunting, or forensics role

  • A bachelor's or master's degree in a relevant field of work

  • Strong technical background with experience in at least two of the following

  • Windows disk and memory forensics

  • Network traffic analysis (netflow,pcap)

  • Log Analysis

  • Unix or Linux disk and memory forensics

  • Malware analysis - both static and dynamic

  • A strong understanding of the fundamental operations of servers, operating systems, networks, firewalls, cloud applications, and infrastructure

  • Expertise building workflows and playbooks to facilitate the Incident Response process

  • an understanding of the NIST framework and using a continuous improvement loop

  • has built and managed frameworks to test and validate the effective operation of security controls; measuring the ability to respond to threats and attacks at the earliest point in the kill chain.

Location
This position will be based in our LA office.
Compensation
The annual base salary for this position is in the range of $102,000 - $123,000 in Los Angeles. This position is also eligible for benefits and a discretionary bonus. Ultimately, the salary may vary based upon, but not limited to, relevant experience, time in the role, business sector, and geographic location, among other criteria. Please talk with a CAA Recruiter to learn more.
Creative Artists Agency, LLC (the "Company") is committed to a policy of Equal Employment Opportunity and will not discriminate on the basis of race (inclusive of traits historically associated with race, including hair texture and protective hairstyles), color, religion, creed, gender or sex (including pregnancy, childbirth, breastfeeding or related medical conditions), national origin, ancestry, age, physical disability, mental disability, medical condition, genetic information, family and medical care leave status, military or veteran status, marital status, family status, sexual orientation, gender identity, gender expression, political affiliation, an employee's or their dependent's reproductive health decision making (e.g., the decision to use or access a particular drug, device or medical service), or any other characteristic protected by applicable law.
The absence of a permanent address is not a bar to employment. The Company does not discriminate against individuals based on housing status, including the absence of a fixed address.
The Company also complies with the Americans with Disabilities Act and applicable state and local laws with regard to providing reasonable accommodation for qualified individuals with disabilities.
CAA does not accept unsolicited resumes from third-party recruiters unless they were contractually engaged by CAA to provide candidates for a specified opening. Any such employment agency, person or entity that submits an unsolicited resume does so with the acknowledgement and agreement that CAA will have the right to hire that applicant at its discretion without any fee owed to the submitting employment agency, person or entity.