Serve as Incident Response Lead during cybersecurity events * Direct containment, eradication, and recovery efforts * Coordinate with: * Internal engineering teams * Client leadership * Insurance ...
Serve as Incident Response Lead during cybersecurity events * Direct containment, eradication, and recovery efforts * Coordinate with: * Internal engineering teams * Client leadership * Insurance ...
Lead Incident Response Analyst
Houston, TX · On-site
Job Summary Serves as the dedicated lead responder for Transocean's Cyber Security Incident Response Team (CSIRT), responsible for leading major investigation, coordination, containment, eradication ...
Lead Incident Response Analyst
Houston, TX · On-site
Job Summary Serves as the dedicated lead responder for Transocean's Cyber Security Incident Response Team (CSIRT), responsible for leading major investigation, coordination, containment, eradication ...
Strong Incident Response knowledge and experience * Theoretical and practical knowledge with Mac OS ... Strong time management skills to balance multiple activities and lead junior analysts as needed
Strong Incident Response knowledge and experience * Theoretical and practical knowledge with Mac OS ... Strong time management skills to balance multiple activities and lead junior analysts as needed
The Incident Response Engineer Journeyman is a mid-level cybersecurity professional responsible for ... Lead or support containment, eradication, and recovery efforts for cybersecurity incidents ...
The Incident Response Engineer Journeyman is a mid-level cybersecurity professional responsible for ... Lead or support containment, eradication, and recovery efforts for cybersecurity incidents ...
Strong Incident Response knowledge and experience * Theoretical and practical knowledge with Mac OS ... Strong time management skills to balance multiple activities and lead junior analysts as needed
Strong Incident Response knowledge and experience * Theoretical and practical knowledge with Mac OS ... Strong time management skills to balance multiple activities and lead junior analysts as needed
$150K - $185K/yr
The Cybersecurity Incident Response Lead will oversee the incident response and threat intelligence programs to safeguard critical assets and data. The ideal candidate will combine technical ...
$150K - $185K/yr
The Cybersecurity Incident Response Lead will oversee the incident response and threat intelligence programs to safeguard critical assets and data. The ideal candidate will combine technical ...
Incident Response (IR) Tech Lead
Bethesda, MD · On-site +1
Overview Edgewater Federal Solutions is currently seeking an Incident Response (IR) Tech Lead to provide technical expertise, oversight, growth, and maturation of an Incident Response team comprised ...
Incident Response (IR) Tech Lead
Bethesda, MD · On-site +1
Overview Edgewater Federal Solutions is currently seeking an Incident Response (IR) Tech Lead to provide technical expertise, oversight, growth, and maturation of an Incident Response team comprised ...
Incident Response Team Lead
Reston, VA · On-site
$155K - $180K/yr
Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP) SUMMARY Agile Defense is seeking experienced ...
Incident Response Team Lead
Reston, VA · On-site
$155K - $180K/yr
Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP) SUMMARY Agile Defense is seeking experienced ...
Incident Response Team Lead
$155K - $180K/yr
Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP) SUMMARY Agile Defense is seeking experienced ...
Incident Response Team Lead
$155K - $180K/yr
Incident Response Team Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) Active Certified Information System Security Professional (CISSP) SUMMARY Agile Defense is seeking experienced ...
Incident Response And Forensics Lead At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13 ...
New
Incident Response And Forensics Lead At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13 ...
New
Overview Edgewater Federal Solutions is currently seeking an Incident Response (IR) Tech Lead to provide technical expertise, oversight, growth, and maturation of an Incident Response team comprised ...
Overview Edgewater Federal Solutions is currently seeking an Incident Response (IR) Tech Lead to provide technical expertise, oversight, growth, and maturation of an Incident Response team comprised ...
Incident Response And Forensics Lead At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13 ...
New
Incident Response And Forensics Lead At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13 ...
New
Lead and manage the Incident Response & Forensics team. * Deliver briefings and coordinate with clients and senior leadership on incident responses. * Analyze intrusion artifacts (e.g., malware ...
Lead and manage the Incident Response & Forensics team. * Deliver briefings and coordinate with clients and senior leadership on incident responses. * Analyze intrusion artifacts (e.g., malware ...
Navy Federal Credit Union is seeking a detail-oriented fraud and security analyst to identify patterns of activity indicating fraud and to monitor member accounts for suspicious transactions. The ...
Navy Federal Credit Union is seeking a detail-oriented fraud and security analyst to identify patterns of activity indicating fraud and to monitor member accounts for suspicious transactions. The ...
Navy Federal Credit Union is seeking a detail-oriented fraud and security analyst to identify patterns of activity indicating fraud and to monitor member accounts for suspicious transactions. The ...
Navy Federal Credit Union is seeking a detail-oriented fraud and security analyst to identify patterns of activity indicating fraud and to monitor member accounts for suspicious transactions. The ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations. * Tool Development: Create and enhance scripts, tools ...
Lead Incident Responder
Washington, DC · On-site
$160K - $185K/yr
Lead end-to-end incident response activities, including detection, triage, containment, eradication, and recovery. Direct investigations of advanced threats, including APTs, ransomware, and insider ...
Quick apply
Lead Incident Responder
Washington, DC · On-site
$160K - $185K/yr
Lead end-to-end incident response activities, including detection, triage, containment, eradication, and recovery. Direct investigations of advanced threats, including APTs, ransomware, and insider ...
Incident Response Lead information
See salary details
$17.79 - $22.25
8% of jobs
$22.25 - $26.70
1% of jobs
$29.56 is the 25th percentile. Wages below this are outliers.
$26.70 - $31.16
24% of jobs
$31.16 - $35.62
8% of jobs
$35.62 - $40.08
4% of jobs
The median wage is $41.19 / hr.
$40.08 - $44.54
15% of jobs
$47.22 is the 75th percentile. Wages above this are outliers.
$44.54 - $48.99
23% of jobs
$48.99 - $53.45
2% of jobs
$53.45 - $57.91
2% of jobs
$57.91 - $62.37
1% of jobs
$62.37 - $66.83
11% of jobs
$17
$41
$66
How much do incident response lead jobs pay per hour?
What are the primary challenges an Incident Response Lead faces during a major security incident?
What does an Incident Response Lead do?
What are the key skills and qualifications needed to thrive as an Incident Response Lead?
What is the difference between Incident Response Lead vs Security Analyst?
| Aspect | Incident Response Lead | Security Analyst |
|---|---|---|
| Certifications | GCIH, CISSP, CISA | CISSP, Security+ |
| Work Environment | Leads incident response teams, manages response strategies | Monitors security systems, analyzes threats |
| Employer & Industry Usage | Used in cybersecurity teams across various industries | Common in security operations centers (SOCs) |
The Incident Response Lead focuses on managing and leading incident response efforts, coordinating teams during security breaches. In contrast, a Security Analyst primarily monitors systems, detects threats, and analyzes security data. While both roles require cybersecurity certifications and work within similar environments, the Lead has a leadership and strategic focus, whereas the Analyst is more operational and technical.

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 20 days ago
Job description
Mirazon is a scaling, people-centered IT company that believes strong security starts long before an incident occurs, and that calm, capable leadership matters most when it does. We're looking for aSecurity Specialistwho thrives at the intersection of strategy and execution: someone who enjoys strengthening security postures proactively and who can step confidently into high-pressure situations to guide clients through complex cybersecurity events.
Mission of the Position
This role is designed for an experienced individual contributor with deep technical expertise, sound judgment, and executive presence. You value preparation, documentation, and disciplined processes, and you're equally comfortable designing preventative controls as you are leading incident response efforts in real time. You bring clarity to chaos, translate technical risk into business impact, and act as a trusted advisor to clients when the stakes are highest.
Key Criteria/Requirements
- 5+ years in cybersecurity or infrastructure security roles
- 3+ years leading security incidents
- Strong experience with:
- Firewalls (FortiGate, Cisco, SonicWall, Palo Alto, etc.)
- Endpoint detection and response (EDR/XDR)
- Microsoft 365 security stack
- Identity and access management
- Backup and disaster recovery systems
- Experience with ransomware containment and recovery
- Deep understanding of networking and Active Directory environments
- Strong written and verbal communication skills
- Ability to lead under pressure
Preferred Certifications
- CISSP
- CISM
- CEH
- GIAC (GCIA, GCIH, etc.)
- Security+
- Microsoft Security certifications
- Vendor firewall certifications
Key Accountabilities
1. Pre-Incident Security Consulting (Strategic & Preventative)
- Conduct comprehensive security risk assessments and gap analyses
- Lead cybersecurity maturity assessments aligned to NIST, CIS, or industry frameworks
- Perform vulnerability assessments and coordinate remediation planning
- Design and review:
- Network security architecture
- Firewall and segmentation strategies
- Endpoint security strategies
- MFA and identity security implementation
- Develop incident response plans and business continuity playbooks
- Conduct tabletop exercises with client executive teams
- Provide executive-level reporting with risk prioritization and budget guidance
- Assist sales/engineering with scoping security engagements and SOW development
2. Incident Response Leadership
- Serve as Incident Response Lead during cybersecurity events
- Direct containment, eradication, and recovery efforts
- Coordinate with:
- Internal engineering teams
- Client leadership
- Insurance carriers
- Legal counsel
- Forensics vendors
- Perform initial triage and determine scope of compromise
- Oversee forensic evidence preservation
- Guide ransomware response and recovery strategy
- Lead root-cause analysis and post-incident reporting
- Develop corrective action plans
3. Client & Executive Communication
- Act as trusted advisor to C-suite and ownership groups
- Translate technical findings into business risk language
- Present findings and remediation plans in board-level settings
- Provide calm, decisive leadership during crisis situations
- Maintain strict confidentiality and professionalism
4. Documentation & Process Development
- Maintain standardized security assessment templates
- Develop and refine internal IR procedures
- Create security standards and best practices
- Ensure all engagements are properly documented in PSA systems
- Contribute to continuous improvement of security offerings
Insurance Benefits
Eligibility begins the first day of full-time employment (date of hire).
- Life Insurance
- Short-term Disability
- Long-term Disability
- Cafeteria Plan - Premium, Medical, & Child Care Reimbursement
- Health Insurance
- Dental Plan
- Vision Plan
Other Benefits
- 401K Matching
- Referral Bonuses
- Tuition Reimbursement
- Performance Incentives
- Time Off- benefitsaccrueon a pro-rated basis each pay period over a 12-month period with the following maximums:
- Vacation Time -10 daysper calendar year
- Sick Leave- 5 days per calendar year
- Paid Company Holidays (7)
- Paid Floating Holidays (2)
- Volunteer 1
- Cell Phone & Internet Reimbursement
About Mirazon
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Louisville, KY, US
Year founded
2000