1

Incident Response Jobs (NOW HIRING)

Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents * Oversee and coordinate incident investigations across cyber ...

The Incident Response Manager will be responsible for managing complex cybersecurity incident response engagements, mentoring incident responders, and serving as a trusted advisor to clients during ...

Description About Sygnia Sygnia is a leading global cyber readiness and incident response firm. Our teams operate on the digital frontlines of today's most sophisticated cyber battles, helping the ...

Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents * Oversee and coordinate incident investigations across cyber ...

Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents * Oversee and coordinate incident investigations across cyber ...

The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring and developing incident responders ...

The Incident Response Coordinator is a role for those experienced with leading, managing and coordinating cybersecurity incident response activities. This role serves as a single point of contact for ...

The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring and developing incident responders ...

The Role We are seeking a highly skilled and motivated Incident Response Expert to join our elite global team. In this role, you will lead and participate in complex forensic investigations and ...

Manager, Incident Response

Mclean, VA · Remote

$150K - $175K/yr

About the Role As the Manager, Incident Response at Pondurance, you will help manage our Incident Response Consulting Team. You should have a strong desire to mentor our consultants and deliver ...

We are seeking a battle-tested, highly self-driven Manager, Incident Response to lead, inspire, and continuously mature our Incident Response Team. In this role, you will not just help to manage ...

Incident Response Manager MUST HAVE: * 5+ years' hands-on experience in Incident Response management * Experience with legal operations * Experience working with a SOC/NOC * Hands-on experience with ...

Job Summary Serves as the dedicated lead responder for Transocean's Cyber Security Incident Response Team (CSIRT), responsible for leading major investigation, coordination, containment, eradication ...

Showing results 21-40

Incident Response information

See salary details

$41K

$127.2K

$199.5K

How much do incident response jobs pay per year?

As of Aug 13, 2026, the average yearly pay for incident response in the United States is $127,177.00, according to ZipRecruiter salary data. Most workers in this role earn between $89,000.00 and $172,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals in incident response roles and how can they be managed?

Incident Response professionals often face challenges such as rapidly evolving cyber threats, handling high-pressure situations, and coordinating effectively with cross-functional teams during security incidents. Managing these challenges requires staying updated with the latest threat intelligence, practicing incident simulations, and maintaining clear communication protocols. Building strong relationships with IT, legal, and management teams can also help ensure a swift and coordinated response to incidents, making the role both demanding and highly collaborative.

How to get a job in incident response?

To get a job in incident response, candidates should develop skills in cybersecurity, network analysis, and digital forensics, often through relevant certifications like CISSP, GIAC, or CEH. Gaining experience through internships or entry-level security roles and familiarizing oneself with security tools such as SIEM systems and intrusion detection is also beneficial.

How much do incident responders make?

Incident responders typically earn a median annual salary between $70,000 and $110,000, depending on experience, certifications, and location. Entry-level positions may start lower, while experienced professionals with certifications like CISSP or GIAC can earn higher salaries, especially in high-demand industries or regions with a strong cybersecurity focus.

What is incident response?

Incident response refers to the organized approach that organizations use to address and manage the aftermath of a security breach or cyberattack. The goal is to handle the situation in a way that limits damage, reduces recovery time and costs, and mitigates the risks associated with the incident. Incident response typically involves preparation, detection, containment, eradication, recovery, and lessons learned. A well-developed incident response plan helps organizations quickly identify threats, minimize impact, and restore normal operations.

What is the difference between Incident Response vs Security Analyst?

AspectIncident ResponseSecurity Analyst
CertificationsGCIH, CISSP, CEHCISSP, Security+
Work EnvironmentResponding to security incidents, investigating breachesMonitoring networks, analyzing security data
Employer & Industry UsageCybersecurity firms, large organizationsIT departments, security teams

Incident Response specialists focus on managing and mitigating security incidents and breaches, often working in response teams. Security Analysts monitor systems proactively, analyze security data, and identify vulnerabilities. While both roles require similar certifications and work within cybersecurity, Incident Response is more reactive, whereas Security Analysts are more proactive in security monitoring.

What are the key skills and qualifications needed to thrive as an incident response professional?

To thrive as an Incident Response professional, you need strong analytical skills, a deep understanding of cybersecurity principles, and usually a degree in computer science or a related field. Familiarity with tools like SIEM platforms (e.g., Splunk), forensic analysis software, and certifications such as CISSP or GIAC is highly beneficial. Attention to detail, calmness under pressure, and effective communication are crucial soft skills for responding to security incidents and working with cross-functional teams. These skills and qualities enable quick detection, containment, and resolution of security threats, minimizing organizational risk and damage.

What are the career paths for incident response?

Incident response professionals can advance to roles such as senior analyst, incident response manager, cybersecurity director, or chief information security officer. Career progression often involves gaining experience, obtaining certifications like CISSP or GIAC, and developing skills in threat analysis, forensics, and security management.

What cities are hiring for Incident Response jobs?

Cities with the most Incident Response job openings:

What are the most commonly searched types of Incident Response jobs?

The most popular types of Incident Response jobs are:

What states have the most Incident Response jobs?

States with the most job openings for Incident Response jobs include:

Infographic showing various Incident Response job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 50% In-person, and 50% Remote job distribution, with an average salary of $127,177 per year, or $61.1 per hour.

Manager, Incident Response

KPMG

New York, NY

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 12 days ago


Job description

The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.

We are currently seeking a Manager, Incident Response to join our Advisory practice.

Responsibilities

  • Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents
  • Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats
  • Lead and coordinate incident response engagements, including client communications, executive briefings, war-room facilitation, and cross functional stakeholder management (legal, forensics, privacy, communications, and leadership) during high impact events
  • Oversee incident investigation and remediation, including root cause analysis, development of actionable improvement plans, and integration with broader cyber resilience practices
  • Manage incident response delivery and performance, defining and tracking SLAs, metrics, reporting, and contributing to the enhancement of incident response playbooks, methodologies, and service offerings
  • Collaborate and lead within the Cyber & Tech Risk practice, partnering across threat management, governance, risk, compliance, privacy, and technology risk teams while mentoring and developing incident response personnel
  • Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment

Qualifications

  • Five years of experience in cybersecurity incident response or cyber threat management is required
  • Bachelor's degree from an accredited college or university (or equivalent work experience); advanced degree a plus
  • Proven experience leading cyber incident investigations and managing escalations in high pressure environments, applying established incident response frameworks (e.g., NIST, SANS) and breach response practices
  • Hands on experience with security monitoring and response technologies, including SIEM, EDR, DLP, network security, and threat intelligence platforms
  • Strong engagement and stakeholder management capabilities, with the ability to lead complex workstreams, balance competing priorities, and communicate effectively—including presenting to senior executives
  • Demonstrated professionalism and judgment, exhibiting a high degree of integrity and the ability to manage sensitive and confidential matters
  • Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
KPMG LLP and its subsidiaries (“KPMG”) complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work.

Follow this link to obtain salary ranges by city outside of CA: 
https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.

KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. 

Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.