1

Incident Response Jobs in Raleigh, NC (NOW HIRING)

Ensure that incident response procedures, post-incident reviews, and process improvements are ... properly documented, implemented, and managed throughout their lifecycle. Responsibilities Major ...

Principal Incident Response Lead J ob Profile Summary The Principal Incident Response Lead position provides strategic and tactical leadership for enterprise incident response across a complex hybrid ...

Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency * Evaluate and implement new automation capabilities, including AI-assisted ...

next page

Showing results 1-20

Incident Response information

See Raleigh, NC salary details

$39.9K

$123.6K

$193.9K

How much do incident response jobs pay per year?

As of Jul 31, 2026, the average yearly pay for incident response in Raleigh, NC is $123,619.00, according to ZipRecruiter salary data. Most workers in this role earn between $86,500.00 and $167,200.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in Incident Response roles and how can they be managed?

Incident Response professionals often face challenges such as rapidly evolving cyber threats, handling high-pressure situations, and coordinating effectively with cross-functional teams during security incidents. Managing these challenges requires staying updated with the latest threat intelligence, practicing incident simulations, and maintaining clear communication protocols. Building strong relationships with IT, legal, and management teams can also help ensure a swift and coordinated response to incidents, making the role both demanding and highly collaborative.

What is incident response?

Incident response refers to the organized approach that organizations use to address and manage the aftermath of a security breach or cyberattack. The goal is to handle the situation in a way that limits damage, reduces recovery time and costs, and mitigates the risks associated with the incident. Incident response typically involves preparation, detection, containment, eradication, recovery, and lessons learned. A well-developed incident response plan helps organizations quickly identify threats, minimize impact, and restore normal operations.

What is the difference between Incident Response vs Security Analyst?

AspectIncident ResponseSecurity Analyst
CertificationsGCIH, CISSP, CEHCISSP, Security+
Work EnvironmentResponding to security incidents, investigating breachesMonitoring networks, analyzing security data
Employer & Industry UsageCybersecurity firms, large organizationsIT departments, security teams

Incident Response specialists focus on managing and mitigating security incidents and breaches, often working in response teams. Security Analysts monitor systems proactively, analyze security data, and identify vulnerabilities. While both roles require similar certifications and work within cybersecurity, Incident Response is more reactive, whereas Security Analysts are more proactive in security monitoring.

What are the key skills and qualifications needed to thrive as an Incident Response professional, and why are they important?

To thrive as an Incident Response professional, you need strong analytical skills, a deep understanding of cybersecurity principles, and usually a degree in computer science or a related field. Familiarity with tools like SIEM platforms (e.g., Splunk), forensic analysis software, and certifications such as CISSP or GIAC is highly beneficial. Attention to detail, calmness under pressure, and effective communication are crucial soft skills for responding to security incidents and working with cross-functional teams. These skills and qualities enable quick detection, containment, and resolution of security threats, minimizing organizational risk and damage.
What are the most commonly searched types of Incident Response jobs in Raleigh, NC? The most popular types of Incident Response jobs in Raleigh, NC are:
What are popular job titles related to Incident Response jobs in Raleigh, NC? For Incident Response jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Incident Response jobs in Raleigh, NC look for? The top searched job categories for Incident Response jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Incident Response jobs? Cities near Raleigh, NC with the most Incident Response job openings:
Infographic showing various Incident Response job openings in Raleigh, NC as of July 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, 1% Temporary, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $123,619 per year, or $59.4 per hour.

VP Cyber Security Incident Detection & Response

NC SECU

Raleigh, NC โ€ข Hybrid

Full-time

Re-posted 22 days ago


Job description

If you are motivated and believe in the credit union philosophy of "People Helping People," join our team!

Position Overview:

The Vice President of Cyber Security Incident Detection & Response is a management role responsible for overseeing and managing the Security Incident Detection and Response function. This manager will lead a high-performing team tasked with incident detection, triage, investigation, and response, SIEM engineering, and digital forensics. The position reports directly to the Senior Vice President of Security Operations Center and Assurance.

Essential Responsibilities:

  • (25%) Lead, mentor, and develop a team of security professionals dedicated to incident detection, triage, investigation, response, SIEM engineering, and forensics.
  • (20%) Oversee the design, implementation, and optimization of security incident detection and response processes, ensuring rapid and effective containment and resolution of threats. Lead post-incident reviews and root-cause analyses to drive continuous improvement in security posture and incident handling.
  • (15%) Develop and maintain incident response plans, playbooks, and escalation procedures aligned with industry best practices. Collaborate with cross-functional teams, including IT, legal, compliance, and risk management, to coordinate incident response efforts and ensure regulatory compliance.
  • (15%) Manage and enhance the Security Information and Event Management (SIEM) infrastructure to ensure comprehensive monitoring, threat detection, and actionable alerting.
  • (10%) Provide regular reporting and updates to executive leadership regarding incident trends, response effectiveness, and emerging threats.
  • (15%) Stay abreast of the latest cybersecurity trends, attack techniques, and technologies to continuously improve the team's capabilities. Foster a culture of proactive threat hunting and ongoing training within the incident response team.

Required Education & Experience (Knowledge, Skills, & Abilities):

  • Bachelor's degree and 7 years of direct experience with at least 1 year of experience in a leadership role. Must have Information technology and/or financial Institution or related field experience.
  • 7 total years of experience in cybersecurity with 5 years of incident response, SOC operations or related field.
  • Expertise with security incident management:
    • collection, detection, triage, investigation and response
    • collection monitoring
    • proactive threat hunting
    • SIEM and detection engineering
    • Reporting and metrics

Preferred Education & Experience (Knowledge, Skills, & Abilities):

  • Bachelor's degree in computer science, Information Security, or related field
  • 7 total years of experience in cybersecurity with 5 years of incident response, SOC operations or related field. With 2 years in a supervisory or lead role.
  • Relevant certifications (e.g., CISSP, CISM, GSOM, GCIA, GCIH, GCFA) or other relevant industry certification and/or desire to obtain such certifications.

Job Environment & Physical Requirements:

  • Hybrid work environment; 2 days on location in Raleigh, NC
  • Able to work all hours scheduled, including unscheduled overtime as directed by manager/supervisor and required by business need.

SECU provides equal employment opportunity to all qualified persons regardless of race, color, religion, age, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or other classification protected by law.

Disclaimer

State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.