1

Incident Manager Jobs in Raleigh, NC (NOW HIRING)

This position drives field engagement, subcontractor compliance, incident prevention, and ... Subcontractor Management: Prequalification & annual reviews, contract safety exhibits, site ...

Incident management: Triage, notifications, root cause analysis (TapRooT/5-Why), corrective/preventive actions/lessons learned, OSHA reporting/recordkeeping. * Equipment/PPE: Specify, issue, track ...

Showing results 21-40

Incident Manager information

See Raleigh, NC salary details

$35.5K

$158.8K

$188.1K

How much do incident manager jobs pay per year?

As of Sep 8, 2026, the average yearly pay for incident manager in Raleigh, NC is $158,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $125,400.00 and $187,600.00 per year, depending on experience, location, and employer.

What is an incident manager?

An incident manager is responsible for the maintenance of a company’s or organization’s information technology systems. More specifically, they handle any and all technical issues that arise in the system. As an incident manager, your responsibilities are to identify and record any problems that occur, and develop software or hardware solutions to prevent them from happening again. You create and implement incident management response procedures, including an incident report system that identifies and flags problems, especially when they involve the security of the company’s network. You likely have additional duties like overseeing technical support teams and logging incident reports. You need excellent computer skills and experience in other IT positions to excel in an incident manager career.

How does an incident manager typically collaborate with technical teams during high-priority incidents?

During high-priority incidents, an Incident Manager acts as the central coordinator, facilitating communication between technical teams such as IT support, network engineers, and application developers. They ensure that everyone is aligned on the incident's status, set clear priorities, and drive swift resolution by assigning tasks and tracking progress. The Incident Manager also communicates updates to stakeholders and, after the incident is resolved, leads post-incident reviews to identify areas for improvement. Effective collaboration and clear communication are essential for minimizing downtime and preventing future issues.

What are the key skills and qualifications needed to thrive as an incident manager, and why are they important?

To thrive as an Incident Manager, you need strong problem-solving abilities, analytical thinking, and a background in IT service management, often supported by certifications like ITIL. Familiarity with incident management tools such as ServiceNow, Jira, or Remedy, as well as knowledge of monitoring and alerting systems, is important. Excellent communication, leadership, and crisis management skills help coordinate teams and keep stakeholders informed during high-pressure incidents. These competencies are crucial to ensure rapid resolution of IT disruptions, minimize business impact, and maintain service reliability.

What is the difference between Incident Manager vs Service Desk Analyst?

AspectIncident ManagerService Desk Analyst
CertificationsITIL, PMP (optional)ITIL, CompTIA A+ (common)
Work EnvironmentIT operations, incident response teamsHelp desk, customer support
Employer & IndustryIT service providers, large organizationsIT support centers, corporate IT departments
Primary FocusManaging and resolving incidents, minimizing downtimeLogging, categorizing, and initial troubleshooting of issues

While both roles are essential in IT service management, Incident Managers oversee the incident resolution process and coordinate teams to restore services quickly. Service Desk Analysts handle frontline support, logging and troubleshooting user issues. The Incident Manager has a broader strategic role, whereas the Service Desk Analyst focuses on initial incident handling.

Is incident management a good career?

Incident management is a valuable career path for those interested in IT operations, cybersecurity, or service management, as it involves coordinating responses to disruptions and ensuring business continuity. It requires strong problem-solving, communication skills, and often certifications like ITIL or CISSP. The role offers opportunities for advancement and specialization in various industries.

What are the most commonly searched types of Incident jobs in Raleigh, NC?

The most popular types of Incident jobs in Raleigh, NC are:

What job categories do people searching Incident Manager jobs in Raleigh, NC look for?

The top searched job categories for Incident Manager jobs in Raleigh, NC are:

What cities near Raleigh, NC are hiring for Incident Manager jobs?

Cities near Raleigh, NC with the most Incident Manager job openings:

Infographic showing various Incident Manager job openings in Raleigh, NC as of September 2026, with employment types broken down into 82% Full Time, and 18% Contract. Highlights an 77% In-person, 15% Hybrid, and 8% Remote job distribution, with an average salary of $158,833 per year, or $76.4 per hour.

Sr. Manager of Security Operations, Incident Response

Advance Auto Parts

Raleigh, NC • Hybrid

Full-time

Posted 21 days ago


Key responsibilities

  • Lead and oversee the Security Operations Center (SOC) activities, including security monitoring, triage, escalation, analysis, and response.

  • Manage the enterprise Cybersecurity Incident Response Program, including serving as Incident Commander during high-severity events and coordinating containment, eradication, recovery, and business restoration.

  • Drive threat intelligence initiatives, improve detection capabilities, lead proactive threat hunting, and collaborate with external partners to enhance security monitoring and response.


Job description

Job Description

The Sr. Manager, Security Operations is a senior cybersecurity leadership role responsible for leading Advance Auto Parts' enterprise security monitoring, detection, incident response, cyber crisis management, threat hunting, and operational resilience capabilities.

This leader is accountable for the strategic direction, operational effectiveness, and continuous improvement of the Security Operations Center (SOC) and Incident Response (IR) program. The role is responsible for ensuring threats are rapidly detected, investigated, contained, eradicated, and remediated while minimizing risk to business operations, customers, team members, and company reputation.

The Sr. Manager will partner across Cybersecurity, Technology, Legal, Privacy, Corporate Communications, Risk Management, Store Operations, Supply Chain Operations, and Business Leadership to advance the company's cyber defense capabilities and strengthen enterprise resilience against modern threats, including ransomware, identity-based attacks, cloud compromises, insider threats, and third-party breaches.

This role is based out of our corporate headquarters in Raleigh, NC. This is a hybrid work model (4 days in office, 1 day work from home)

Security Operations Leadership

  • Lead and mature Advance Auto Parts' Security Operations Center (SOC) capabilities.
  • Oversee 24x7 security monitoring, triage, escalation, analysis, and response activities.
  • Develop and execute the roadmap for security operations, detection engineering, threat hunting, and operational maturity.
  • Establish and track service-level objectives, KPIs, and operational metrics.
  • Drive continuous improvement of security operations processes, procedures, workflows, and automation.

Incident Response & Cyber Crisis Management

  • Own and manage the enterprise Cybersecurity Incident Response Program.
  • Serve as Incident Commander during high-severity cybersecurity events.
  • Lead response activities for ransomware, malware outbreaks, business email compromise, credential theft, cloud compromise, insider threats, and major security incidents.
  • Coordinate containment, eradication, recovery, and business restoration efforts.
  • Lead executive communications during significant cyber events.
  • Ensure alignment with legal, regulatory, compliance, privacy, and cyber insurance requirements.

Threat Intelligence

  • Drive improvements in enterprise detection capabilities across cloud, endpoint, network, identity, applications, and third-party environments.
  • Partner with Engineering and Architecture teams to improve detection coverage and response automation.
  • Lead use case development aligned to MITRE ATT&CK and emerging threat intelligence.
  • Establish detection effectiveness metrics and continuously improve signal-to-noise ratios.
  • Oversee tuning and optimization of monitoring technologies.
  • Lead proactive threat hunting operations to identify advanced attacker activity.
  • Leverage threat intelligence to improve security monitoring, investigations, and response readiness.
  • Maintain visibility into threat actor activity, TTPs, emerging campaigns, and vulnerabilities impacting the retail industry.
  • Collaborate with external intelligence providers, ISACs, law enforcement, and industry partners.

Cyber Preparedness & Resilience

  • Lead tabletop exercises and cyber crisis simulations.
  • Conduct ransomware preparedness exercises and executive-level response testing.
  • Ensure incident response playbooks remain current and actionable.
  • Perform post-incident reviews and drive corrective actions.
  • Maintain enterprise readiness for significant cyber events.

Metrics, Reporting & Governance

  • Develop operational dashboards and executive reporting.
  • Present security operations metrics, incident trends, threat intelligence insights, and program maturity updates to executive leadership.
  • Report on:
    • Mean Time to Detect (MTTD)
    • Mean Time to Respond (MTTR)
    • Incident Severity Trends
    • Detection Effectiveness
    • Threat Hunting Outcomes
    • SOC Performance Metrics
    • Automation Effectiveness
  • Support Board, Audit Committee, and executive cybersecurity reporting.

Leadership & Talent Development

  • Lead, mentor, and develop security analysts, incident responders, threat hunters, and detection engineers.
  • Build a high-performing cybersecurity operations culture focused on accountability, resilience, and continuous improvement.
  • Establish workforce development plans and professional growth opportunities.
  • Support recruiting and retention of cybersecurity talent.

Qualifications:

  • 10+ years of experience in cybersecurity, incident response and threat intelligence with a strong focus on operational excellence.
  • Proven leadership experience in security architectures, security tools and controls, cloud, operations, governance, or risk management.
  • Strong background in process improvement methodologies (Lean, Six Sigma, ITIL, Agile).
  • Experience with cybersecurity frameworks (NIST, ISO 27001, MITRE ATT&CK).
  • Familiarity with security technologies (SIEM, SOAR, EDR, cloud security tools, vulnerability management).
  • Excellent communication and leadership skills to drive alignment across security, IT, and business teams.

Preferred Qualifications:

  • Certifications: CISSP, CISM, CISA, ITIL,
  • Experience in large-scale, complex organizations or highly regulated industries.
  • Expertise in cybersecurity automation and analytics.



We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.


California Residents click below for Privacy Notice:

https://jobs.advanceautoparts.com/us/en/disclosures

Advance Auto Parts logo

About Advance Auto Parts

Sourced by ZipRecruiter

At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.

Industry

Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools

Company size

10,000+ Employees

Headquarters location

Raleigh, NC, US