1

Incident Investigation Jobs (NOW HIRING)

Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...

Complete investigations of reported incidents and accidents, which often involves sensitive matters, throughout the agency in a confidential, fair, consistent and thorough manner. Ensure thorough and ...

Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...

Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...

Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats * Lead and coordinate incident response ...

Incident Response Lead

Washington, DC · On-site

$140K - $150K/yr

Everforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote ... Experience investigating security incidents, developing timelines, and communicating findings to ...

Effectively investigative andidentifyroot cause findings then communicate findings to stakeholders ... Advanced knowledge of the Incident Response Lifecycle and applicability tovarious typesof incidents ...

Showing results 21-40

Incident Investigation information

See salary details

$41K

$127.2K

$199.5K

How much do incident investigation jobs pay per year?

As of Aug 7, 2026, the average yearly pay for incident investigation in the United States is $127,177.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,000.00 and $172,000.00 per year, depending on experience, location, and employer.

What is incident investigation?

Incident investigation is the process of systematically examining workplace accidents, near-misses, or hazardous events to determine their causes and prevent future occurrences. Investigators gather evidence, interview witnesses, and analyze data to identify root causes rather than just symptoms. The goal is to improve safety protocols, ensure compliance with regulations, and protect employees and assets. Effective incident investigations help organizations learn from mistakes and create a safer work environment.

What is the difference between Incident Investigation vs Safety Technician?

AspectIncident InvestigationSafety Technician
Required credentialsOSHA training, safety certifications, sometimes engineering or technical backgroundOSHA 10/30-hour training, safety certifications, technical knowledge
Work environmentOn-site investigations, accident scenes, industrial settingsInspections, safety audits, training sessions in various workplaces
Employer and industry usageManufacturing, construction, oil & gas, industrial facilitiesManufacturing plants, construction sites, facilities management

Incident Investigators focus on analyzing accidents and determining root causes after incidents occur, often working on-site at accident scenes. Safety Technicians perform inspections, safety audits, and implement safety measures to prevent incidents. Both roles require safety certifications and are vital in maintaining workplace safety, but Incident Investigators primarily analyze past events, while Safety Technicians proactively identify hazards.

What are the key skills and qualifications needed to thrive in incident investigation, and why are they important?

To excel in Incident Investigation, you need strong analytical abilities, attention to detail, and a background in safety, engineering, or a related field, often supported by certifications such as Certified Safety Professional (CSP) or Certified Incident Investigator (CII). Familiarity with root cause analysis tools, incident management software, and reporting systems is typically required. Exceptional communication, critical thinking, and problem-solving skills help investigators effectively gather information and convey findings. These competencies are essential to accurately identify causes, prevent future incidents, and ensure workplace safety and compliance.

What are some common challenges faced by professionals in incident investigation roles, and how can they be effectively managed?

Incident investigation professionals often encounter challenges such as gathering accurate information from multiple sources, managing sensitive or confidential data, and working under tight deadlines to resolve issues promptly. To effectively manage these challenges, it's important to establish clear communication protocols, utilize structured investigation methodologies, and foster trust with all stakeholders. Regular training on the latest investigative tools and techniques also helps ensure thorough and unbiased investigations, leading to better outcomes for both the organization and affected individuals.
More about Incident Investigation jobs
What states have the most Incident Investigation jobs? States with the most job openings for Incident Investigation jobs include:
What job categories do people searching Incident Investigation jobs look for? The top searched job categories for Incident Investigation jobs are:
Infographic showing various Incident Investigation job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 12% Part Time, 1% Temporary, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $127,177 per year, or $61.1 per hour.

Manager, Incident Response

KPMG

New York, NY

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 7 days ago


Job description

The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.

We are currently seeking a Manager, Incident Response to join our Advisory practice.

Responsibilities

  • Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents
  • Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats
  • Lead and coordinate incident response engagements, including client communications, executive briefings, war-room facilitation, and cross functional stakeholder management (legal, forensics, privacy, communications, and leadership) during high impact events
  • Oversee incident investigation and remediation, including root cause analysis, development of actionable improvement plans, and integration with broader cyber resilience practices
  • Manage incident response delivery and performance, defining and tracking SLAs, metrics, reporting, and contributing to the enhancement of incident response playbooks, methodologies, and service offerings
  • Collaborate and lead within the Cyber & Tech Risk practice, partnering across threat management, governance, risk, compliance, privacy, and technology risk teams while mentoring and developing incident response personnel
  • Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment

Qualifications

  • Five years of experience in cybersecurity incident response or cyber threat management is required
  • Bachelor's degree from an accredited college or university (or equivalent work experience); advanced degree a plus
  • Proven experience leading cyber incident investigations and managing escalations in high pressure environments, applying established incident response frameworks (e.g., NIST, SANS) and breach response practices
  • Hands on experience with security monitoring and response technologies, including SIEM, EDR, DLP, network security, and threat intelligence platforms
  • Strong engagement and stakeholder management capabilities, with the ability to lead complex workstreams, balance competing priorities, and communicate effectively—including presenting to senior executives
  • Demonstrated professionalism and judgment, exhibiting a high degree of integrity and the ability to manage sensitive and confidential matters
  • Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
KPMG LLP and its subsidiaries (“KPMG”) complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work.

Follow this link to obtain salary ranges by city outside of CA: 
https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.

KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. 

Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.