Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Incident Review Coordinator
Amsterdam, NY · On-site
$32 - $42.45/hr
Complete investigations of reported incidents and accidents, which often involves sensitive matters, throughout the agency in a confidential, fair, consistent and thorough manner. Ensure thorough and ...
Incident Review Coordinator
Amsterdam, NY · On-site
$32 - $42.45/hr
Complete investigations of reported incidents and accidents, which often involves sensitive matters, throughout the agency in a confidential, fair, consistent and thorough manner. Ensure thorough and ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...
Senior Analyst - Cyber Incident Respose
Boston, MA · On-site
$110K - $160K/yr
Effectively communicate to senior management updates on on-going cyber incident investigation. Timely escalate as needed • Documentation & Reporting: Create and send CSIRT notifications, post ...
Senior Analyst - Cyber Incident Respose
Boston, MA · On-site
$110K - $160K/yr
Effectively communicate to senior management updates on on-going cyber incident investigation. Timely escalate as needed • Documentation & Reporting: Create and send CSIRT notifications, post ...
Senior Analyst - Cyber Incident Respose
Boston, MA · On-site
$110K - $160K/yr
Coordinate with clients and vendors for 3rd party cyber investigations * Internal cyber events : Coordinate cyber incident response process from initial detection to resolution, ensuring timely and ...
Senior Analyst - Cyber Incident Respose
Boston, MA · On-site
$110K - $160K/yr
Coordinate with clients and vendors for 3rd party cyber investigations * Internal cyber events : Coordinate cyber incident response process from initial detection to resolution, ensuring timely and ...
We need someone with cyber incident investigation and forensics experience (GCFE, GCIH or CySA); experience with Magnet/Graykey and Encase/Cellebrite tooling is an important value add. The ideal ...
New
We need someone with cyber incident investigation and forensics experience (GCFE, GCIH or CySA); experience with Magnet/Graykey and Encase/Cellebrite tooling is an important value add. The ideal ...
New
AbleLight's Incident/Investigation Manager role focuses on timely incident management and investigations into abuse, neglect, and exploitation of vulnerable adults. Responsibilities include field ...
AbleLight's Incident/Investigation Manager role focuses on timely incident management and investigations into abuse, neglect, and exploitation of vulnerable adults. Responsibilities include field ...
AbleLight's Incident/Investigation Manager role focuses on timely incident management and investigations into abuse, neglect, and exploitation of vulnerable adults. Responsibilities include field ...
AbleLight's Incident/Investigation Manager role focuses on timely incident management and investigations into abuse, neglect, and exploitation of vulnerable adults. Responsibilities include field ...
Incident Response Lead
Washington, DC · On-site
$140K - $150K/yr
Everforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote ... Experience investigating security incidents, developing timelines, and communicating findings to ...
Incident Response Lead
Washington, DC · On-site
$140K - $150K/yr
Everforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote ... Experience investigating security incidents, developing timelines, and communicating findings to ...
Cyber Incident Response Senior Analyst
$80K - $95K/yr
Communication & Reporting: support senior analyst on on-going cyber incident investigation. Timely escalate as needed * Documentation & Reporting: Create draft CSIRT notifications, post incident ...
Cyber Incident Response Senior Analyst
$80K - $95K/yr
Communication & Reporting: support senior analyst on on-going cyber incident investigation. Timely escalate as needed * Documentation & Reporting: Create draft CSIRT notifications, post incident ...
Cyber Incident Response Senior Analyst
Jersey City, NJ · On-site
$80K - $95K/yr
Communication & Reporting: support senior analyst on on-going cyber incident investigation. Timely escalate as needed * Documentation & Reporting: Create draft CSIRT notifications, post incident ...
Cyber Incident Response Senior Analyst
Jersey City, NJ · On-site
$80K - $95K/yr
Communication & Reporting: support senior analyst on on-going cyber incident investigation. Timely escalate as needed * Documentation & Reporting: Create draft CSIRT notifications, post incident ...
Effectively investigative andidentifyroot cause findings then communicate findings to stakeholders ... Advanced knowledge of the Incident Response Lifecycle and applicability tovarious typesof incidents ...
Effectively investigative andidentifyroot cause findings then communicate findings to stakeholders ... Advanced knowledge of the Incident Response Lifecycle and applicability tovarious typesof incidents ...
Incident Management Administrative Assistant
Albany, NY · On-site +1
$20 - $25/hr
The Incident Management Administrative Assistant is responsible for the management of the ... Additional trips may be necessary during weeks when Part 624 investigation reports must be ...
Incident Management Administrative Assistant
Albany, NY · On-site +1
$20 - $25/hr
The Incident Management Administrative Assistant is responsible for the management of the ... Additional trips may be necessary during weeks when Part 624 investigation reports must be ...
Quality-Incident Investigator-OCFS-Justice Center
Yonkers, NY · On-site
$50K - $60K/yr
Job Overview of Quality-Incident Investigator The Compliance & Risk Management Specialist is responsible for ongoing assessment of programs' performance, incident investigations, and monitoring ...
Quick apply
Quality-Incident Investigator-OCFS-Justice Center
Yonkers, NY · On-site
$50K - $60K/yr
Job Overview of Quality-Incident Investigator The Compliance & Risk Management Specialist is responsible for ongoing assessment of programs' performance, incident investigations, and monitoring ...
Cyber Analyst, Digital Forensics Incident Response
$80K - $115K/yr
Cybersecurity Analysts focused on Digital Forensics and Incident Response (DFIR) deliver incident investigation and response services to At-Bay insureds via: * Forensically sound collection ...
Cyber Analyst, Digital Forensics Incident Response
$80K - $115K/yr
Cybersecurity Analysts focused on Digital Forensics and Incident Response (DFIR) deliver incident investigation and response services to At-Bay insureds via: * Forensically sound collection ...
Quality-Incident Investigator-OCFS-Justice Center
Yonkers, NY · On-site
$50K - $60K/yr
Job Overview of Quality-Incident Investigator The Compliance & Risk Management Specialist is responsible for ongoing assessment of programs' performance, incident investigations, and monitoring ...
Quick apply
Quality-Incident Investigator-OCFS-Justice Center
Yonkers, NY · On-site
$50K - $60K/yr
Job Overview of Quality-Incident Investigator The Compliance & Risk Management Specialist is responsible for ongoing assessment of programs' performance, incident investigations, and monitoring ...
Build scripts, tools, or methodologies to enhance Amtrak's incident investigation processes. * Conduct host forensics, network forensics, log analysis, and malware triage in support of incident ...
Build scripts, tools, or methodologies to enhance Amtrak's incident investigation processes. * Conduct host forensics, network forensics, log analysis, and malware triage in support of incident ...
Incident Response Lead
Washington, DC · On-site
$140K - $150K/yr
Everforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote ... Experience investigating security incidents, developing timelines, and communicating findings to ...
Incident Response Lead
Washington, DC · On-site
$140K - $150K/yr
Everforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote ... Experience investigating security incidents, developing timelines, and communicating findings to ...
Incident Investigation information
See salary details
$41K - $55.4K
6% of jobs
$55.4K - $69.8K
7% of jobs
$69.8K - $84.2K
6% of jobs
$87.6K is the 25th percentile. Wages below this are outliers.
$84.2K - $98.6K
21% of jobs
$98.6K - $113K
7% of jobs
The median wage is $118.4K / yr.
$113K - $127.5K
4% of jobs
$127.5K - $141.9K
3% of jobs
$141.9K - $156.3K
7% of jobs
$167.9K is the 75th percentile. Wages above this are outliers.
$156.3K - $170.7K
15% of jobs
$170.7K - $185.1K
19% of jobs
$185.1K - $199.5K
3% of jobs
$41K
$127.2K
$199.5K
How much do incident investigation jobs pay per year?
What is incident investigation?
What is the difference between Incident Investigation vs Safety Technician?
| Aspect | Incident Investigation | Safety Technician |
|---|---|---|
| Required credentials | OSHA training, safety certifications, sometimes engineering or technical background | OSHA 10/30-hour training, safety certifications, technical knowledge |
| Work environment | On-site investigations, accident scenes, industrial settings | Inspections, safety audits, training sessions in various workplaces |
| Employer and industry usage | Manufacturing, construction, oil & gas, industrial facilities | Manufacturing plants, construction sites, facilities management |
Incident Investigators focus on analyzing accidents and determining root causes after incidents occur, often working on-site at accident scenes. Safety Technicians perform inspections, safety audits, and implement safety measures to prevent incidents. Both roles require safety certifications and are vital in maintaining workplace safety, but Incident Investigators primarily analyze past events, while Safety Technicians proactively identify hazards.
What are the key skills and qualifications needed to thrive in incident investigation, and why are they important?
What are some common challenges faced by professionals in incident investigation roles, and how can they be effectively managed?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 7 days ago
Job description
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.
We are currently seeking a Manager, Incident Response to join our Advisory practice.
Responsibilities
- Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents
- Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats
- Lead and coordinate incident response engagements, including client communications, executive briefings, war-room facilitation, and cross functional stakeholder management (legal, forensics, privacy, communications, and leadership) during high impact events
- Oversee incident investigation and remediation, including root cause analysis, development of actionable improvement plans, and integration with broader cyber resilience practices
- Manage incident response delivery and performance, defining and tracking SLAs, metrics, reporting, and contributing to the enhancement of incident response playbooks, methodologies, and service offerings
- Collaborate and lead within the Cyber & Tech Risk practice, partnering across threat management, governance, risk, compliance, privacy, and technology risk teams while mentoring and developing incident response personnel
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications
- Five years of experience in cybersecurity incident response or cyber threat management is required
- Bachelor's degree from an accredited college or university (or equivalent work experience); advanced degree a plus
- Proven experience leading cyber incident investigations and managing escalations in high pressure environments, applying established incident response frameworks (e.g., NIST, SANS) and breach response practices
- Hands on experience with security monitoring and response technologies, including SIEM, EDR, DLP, network security, and threat intelligence platforms
- Strong engagement and stakeholder management capabilities, with the ability to lead complex workstreams, balance competing priorities, and communicate effectively—including presenting to senior executives
- Demonstrated professionalism and judgment, exhibiting a high degree of integrity and the ability to manage sensitive and confidential matters
- Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)