1

Incident Response Team Jobs (NOW HIRING)

$150K - $185K/yr

Incident Response and Crisis Management Direct and manage Americas Cyber Security Incident Response Team (CSIRT) to ensure timely monitoring, detection, and response to threats. Lead the development ...

As a key member of ASMGi's Information Security Incident Response Team this individual will be responsible for various parts of the incident response process - detection, validation, containment ...

Be Seen First

Incident Response Lead

Germantown, MD · On-site

$150K - $180K/yr

Incident Response & Digital Forensics Lead Work arrangement: Hybrid (1-2 days a week onsite ... Manage the team's daily operations, priorities, workload, assignments, and deliverables. * Lead and ...

CSOC Incident Response Lead

Cleveland, OH · On-site

$108K - $140K/yr

SIEM / SOAR, sandbox, email security, End Point Detection and Response, etc.) • Lead and coordinate incident response efforts within the Triage & Response team, including mobilizing resources ...

next page

Showing results 1-20

Incident Response Team information

See salary details

$41K

$127.2K

$199.5K

How much do incident response team jobs pay per year?

As of Sep 9, 2026, the average yearly pay for incident response team in the United States is $127,177.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,000.00 and $172,000.00 per year, depending on experience, location, and employer.

What is an Incident Response Team?

An Incident Response Team (IRT) is a group of cybersecurity professionals responsible for preparing for, detecting, and responding to security incidents within an organization. Their main goal is to minimize the impact of cyber threats such as data breaches, malware attacks, or unauthorized access. The team follows well-defined processes to identify, contain, eradicate, and recover from incidents, and they also work on improving security measures based on lessons learned. IRTs play a critical role in protecting sensitive information and maintaining business continuity.

How does an Incident Response Team typically collaborate with other departments during a security incident?

During a security incident, the Incident Response Team (IRT) works closely with various departments such as IT, legal, communications, and management. The IRT coordinates technical containment and recovery efforts with IT, while collaborating with legal teams to ensure compliance and proper documentation. They also keep leadership informed on the situation and may work with public relations to manage external communications. This cross-departmental collaboration is essential for minimizing impact, ensuring transparency, and supporting an effective response.

What are the key skills and qualifications needed to thrive as an Incident Response Team member, and why are they important?

To thrive as an Incident Response Team member, you need expertise in cybersecurity principles, threat analysis, and incident handling, often supported by a degree in information security or relevant certifications like CISSP or GIAC. Familiarity with security information and event management (SIEM) tools, forensic analysis software, and intrusion detection systems is essential. Strong problem-solving abilities, attention to detail, and effective communication are crucial soft skills for this role. These competencies are vital for quickly detecting, containing, and mitigating security threats to protect organizational assets.

What is the difference between Incident Response Team vs Security Analyst?

AspectIncident Response TeamSecurity Analyst
CertificationsGCIH, CISSP, CEHCISSP, Security+
Work EnvironmentRapid response to security incidents, often in a team settingMonitoring, analyzing security data, and implementing security measures
Employer & Industry UsageIT security teams in various industries, focused on incident handlingSecurity departments across organizations, focusing on prevention and analysis

The Incident Response Team primarily handles security incidents and breaches, working quickly to contain and remediate threats. Security Analysts focus on monitoring, analyzing security data, and strengthening defenses. While both roles require similar certifications and work within security teams, the Incident Response Team is more reactive, whereas Security Analysts are proactive in security management.

More about Incident Response Team jobs

What cities are hiring for Incident Response Team jobs?

Cities with the most Incident Response Team job openings:

What states have the most Incident Response Team jobs?

States with the most job openings for Incident Response Team jobs include:

What are popular job titles related to Incident Response Team jobs?

For Incident Response Team jobs, the most frequently searched job titles are:

Infographic showing various Incident Response Team job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 77% Full Time, 19% Part Time, and 3% Contract. Highlights an 90% Physical, 1% Hybrid, and 9% Remote job distribution, with an average salary of $127,177 per year, or $61.1 per hour.

Incident Response Team Lead

Arlington Heights, IL • On-site

Other

Re-posted 14 days ago


Job description

Solution IT Inc. is looking for a Incident Response Team Lead for one of its clients Arlington Heights, IL / Onsite

Job Title: Incident Response Team Lead

Responsibilities

  • Monitor security alerts and logs to identify and analyse potential security incidents.
  • Investigate and triage security alerts, assess their severity, and initiate the incident response process as necessary.
  • Conduct in-depth analysis of security incidents, including malware analysis, network traffic analysis, and endpoint forensics.
  • Lead or assist in responding to security incidents, coordinating with clients and internal teams to contain, eradicate, and recover from security breaches.
  • Maintain detailed incident records, including incident timelines, actions taken, and lessons learned.
  • Utilize cybersecurity tools such as CrowdStrike and Splunk to enhance threat detection and incident response capabilities.
  • Prepare and deliver incident reports to clients and management, including recommendations for improving security posture.

Required Skills

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent work experience).
  • 3-4 years of experience as a SOC or Incident Response Analyst. In-depth knowledge of cybersecurity such as EDR and SIEM , including CrowdStrike and Splunk.
  • Strong understanding of cybersecurity concepts, including threat detection, incident response, and malware analysis.
  • Knowledge of security frameworks and standards (e.g., NIST, ISO 27001).
  • Ability to work effectively under pressure and in a fast-paced environment. Relevant certifications (e.g., CompTIA Security+, GCIA, GCIH) are a plus.

Work Site: Arlington Heights, IL / Onsite

Duration: 6+ Months

Expected Start Date: Immediate - 2 weeks

Number of Positions: 01

Please send your responses back to

About Solution IT

Solution IT is a national IT consulting company specializing in: Technology Staffing and Oracle E-Business Solutions based in Boston, Massachusetts.

Thanks

Recruiting Team

SOLUTION IT INC

Work: / Extn 143 / 139

URL:
Confidentiality Notice: The material in this e-mail is intended only for the use of the individual to whom it is addressed and may contain information that is confidential, privileged, and exempt from disclosure under applicable law. If you are not the intended recipient(s), be advised that the unauthorized use, disclosure, copying, distribution, or the taking of any action in reliance on this information is strictly prohibited. If you have received this e-mail in error, please immediately contact the sender by reply email and destroy all copies of the original message. Thank you.

Under Bill s.1618 Title III passed by the 105th U.S. Congress this mail cannot be considered as "spam" as long as we include contact information and a remove link for removal from our mailing list. In order to not be in the recipients-list for this mail, please reply to us with "REMOVE" either in the subject or in the mail body. Please include all pertinent email addresses. Our apologies for any inconveniences caused by this mail.

to remove from our mailing list.
Solution IT, Inc, 60E Concord St, Wilmington, MA 01887 Phone: Fax: