2

Remote Incident Response Jobs in Colorado (NOW HIRING)

Site Reliability Engineer II

Denver, CO · On-site +1

$98K - $138K/yr

Maintain documentation of infrastructure, monitoring, runbooks, and incident response procedures ... Wellness initiatives #BI-Remote Internal Employees - R365 is committed to growing talent from ...

Site Reliability Engineer II

Denver, CO · On-site +1

$98K - $138K/yr

Maintain documentation of infrastructure, monitoring, runbooks, and incident response procedures ... Wellness initiatives #BI-Remote Internal Employees - R365 is committed to growing talent from ...

Observability & Incident Response * Evolve our observability stack: logging, distributed tracing ... Remote-first: Work from anywhere in the US. Our team spans Seattle, San Francisco, Ann Arbor ...

Senior Software Engineer (Remote)

Denver, CO · Remote

$126K - $166K/yr

This is a remote role anywhere in the USA. Meet the Team Our software engineering team develops ... Knowledge of production monitoring, incident response, postmortems, and root cause analysis.

Senior Software Engineer (Remote)

Boulder, CO · Remote

$127K - $167K/yr

This is a remote role anywhere in the USA. Meet the Team Our software engineering team develops ... Knowledge of production monitoring, incident response, postmortems, and root cause analysis.

next page

Showing results 1-20

Remote Incident Response information

See Colorado salary details

$18

$43

$70

How much do remote incident response jobs pay per hour?

As of Sep 3, 2026, the average hourly pay for remote incident response in Colorado is $43.88, according to ZipRecruiter salary data. Most workers in this role earn between $30.82 and $50.05 per hour, depending on experience, location, and employer.

What is remote incident response?

Remote incident response refers to the process where cybersecurity professionals detect, investigate, and resolve security incidents from a remote location, rather than being physically present at the affected site. This approach leverages specialized tools and secure communication channels to analyze threats, contain breaches, and restore normal operations. Remote incident response allows organizations to quickly access expert support regardless of their location, which is especially valuable for distributed workforces or organizations without in-house security teams.

What are remote incident response jobs?

Remote incident response jobs include positions such as remote incident response consultant, remote incident response manager, remote senior project manager, and remote incident response analyst. All of these jobs have different duties and responsibilities, but the main focus is to respond quickly to cybersecurity attacks or to advise companies or organizations on how to prevent and digital manage threats. Some work from home incident response analysts monitor systems and advise their clients whenever a breach occurs or is likely to occur. Instead of working in the office, remote incident response jobs work from home or another location outside of the office with internet connectivity. But they must be able to respond quickly to system problems that arise.

What are some common challenges faced in a remote incident response role, and how can they be effectively managed?

Remote incident response professionals often encounter challenges such as coordinating with distributed teams across different time zones, ensuring secure and reliable access to affected systems, and maintaining clear and timely communication during high-pressure situations. To manage these challenges, it's vital to establish well-documented response procedures, utilize secure remote access tools, and leverage collaboration platforms for real-time updates. Regular training exercises and clear escalation paths also help ensure the team can respond efficiently, regardless of their physical location.

What is the difference between Remote Incident Response vs Remote Security Analyst?

AspectRemote Incident ResponseRemote Security Analyst
CertificationsGCIH, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentResponds to security incidents, investigates breachesMonitors security systems, analyzes threats
Industry UsageIncident handling teams, cybersecurity firmsSecurity operations centers, IT departments
Search IntentIncident response, breach investigationSecurity monitoring, threat analysis

Remote Incident Response specialists focus on investigating and mitigating security breaches, while Remote Security Analysts monitor systems and analyze threats. Both roles require similar certifications and often work within cybersecurity teams, but their core responsibilities differ in scope and focus.

What are the most commonly searched types of Incident Response jobs in Colorado?

The most popular types of Incident Response jobs in Colorado are:

What are popular job titles related to Remote Incident Response jobs in Colorado?

For Remote Incident Response jobs in Colorado, the most frequently searched job titles are:

What cities in Colorado are hiring for Remote Incident Response jobs?

Cities in Colorado with the most Remote Incident Response job openings:

Infographic showing various Remote Incident Response job openings in Colorado as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 14% Part Time, 3% Contract, and 1% Nights. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $91,280 per year, or $43.9 per hour.

Detection and Response Manager - Tempus

PNC

Denver, CO • On-site, Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


PNC Bank rating

7.8

Company rating: 7.8 out of 10

Based on 347 frontline employees who took The Breakroom Quiz

88th of 174 rated banks


Job description


Job Profile
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Detection and Response Manager within PNC's Tempus Technologies organization, you may be based in a remote location. This position may not be available in all geographic locations.
Tempus Technologies, Inc. is the expert leader of secure payments at the point of interaction. For more than 25 years, innovation and producing high quality custom-ready solutions is at the forefront of everything we do. We’re committed to developing exceptional point-of-sale payment integration technology and software solutions to meet the growing needs of our customers’ business requirements. Our knowledgeable and friendly employees are passionately dedicated to delivering world-class support to every client. We thrive in a transparent culture that understands the value of shared ideas, teamwork, and excellence in everything we do.
The Detection and Response Manager is responsible for overseeing and maturing the full detection and security incident response lifecycle to minimize organizational risk, ensure rapid containment, and drive timely and effective remediation. This role leads day‑to‑day SOC operations—including proactive monitoring, triage, investigation, and response—while ensuring 24/7 readiness through on‑call management, process rigor, and operational discipline.
The ideal candidate brings strong analytical and technical expertise, deep understanding of modern threat landscapes, and the leadership skills required to guide analysts through complex investigations. This role partners closely with Security Engineering, IT, Application teams, Compliance, and external stakeholders to coordinate response activities, facilitate clear communication, and ensure incidents are managed with consistency, transparency, and measurable improvements. In addition, the Detection and Response Lead drives continuous enhancement of SIEM detections, playbooks, automation, and readiness exercises, strengthening the organization’s overall security posture and operational resilience. Responsibilities include:
Core Detection & Response Operations:
• Lead day‑to‑day Detection and Response activities, ensuring timely detection, triage, investigation, and response to security events.
• Ensure 24/7 incident response readiness by maintaining and managing the on‑call rotation, including scheduling, escalation paths, and service‑level expectations.
• Serve as the owner for incident response execution, including initial containment, escalation, incident declaration, and forensic coordination.
• Act as the primary technical lead and liaison during high‑severity incidents, collaborating with Infrastructure, Engineering, Legal, and Executive leadership.
Detection Engineering & Threat Intelligence:
• Oversee the development, tuning, and continuous improvement of SIEM detections, alerting logic, and correlation rules.
• Drive integration of internal and external Threat Intelligence to enhance visibility and detection capabilities.
• Produce operational metrics and performance reporting focused on detection coverage, MTTD/MTTR, case handling quality, and tooling efficacy.
• Evaluate and implement new technologies, integrations, and automation opportunities to reduce manual workload and enhance response capabilities.
Incident Response Program Management:
• Own and maintain incident response playbooks, SOPs, escalation paths, and response frameworks.
• Ensure regulatory, contractual, and internal stakeholder notifications are initiated and documented when required.
• Manage post-incident activities, including after-action reviews, corrective actions, and measurable improvements.
• Lead readiness activities such as tabletop exercises, red/blue/purple team scenarios, and simulation‑based training.
• Ensure incident response posture aligns with organizational risk appetite, audit requirements, and industry best practices.
Leadership, Coaching & Continuous Improvement:
• Direct and mentor analysts in investigations, incident handling, and operational processes.
• Execute staffing decisions, performance evaluations, onboarding, and the professional development pipeline for analysts.
• Identify operational gaps and recommend technical or process improvements to mature the detection and response program.
• Champion a culture of continuous improvement, documentation discipline, and analytical excellence.
Key Relationships:
• Security Operations & Application Security Teams
• IT Infrastructure Teams
• Development Teams
• Executive Leadership
• External Vendors & Incident Response Partners
Qualifications:
• CCSP, CISSP, GCIA, GCIH, GCFA, CySA+ or equivalent certifications.
• Demonstrated ability to lead incident response activities from detection through containment, eradication, recovery, and post incident review.
• Experience performing root cause analysis, log analysis, and threat investigation.
• Exposure to compliance frameworks such as PCI DSS, SOC 2, HIPAA, and FedRAMP.
• Strong understanding of cybersecurity fundamentals, including networking, operating systems, endpoint security, cloud security, and identity access management.
• Hands-on experience with SIEM platforms (e.g., Elastic, Splunk), EDR tools, IDP/IPS, and other monitoring technologies.
• Expertise with incident handling methodologies and frameworks such as NIST 800 61, ISO 27035, and MITRE ATT&CK.
• Proficiency in incident management tools and ticketing systems (e.g., Jira, ServiceNow).
• Excellent ability to translate technical details into clear, actionable communication for both technical and non-technical stakeholders.
• Strong communication and interpersonal skills with the ability to manage stressful situations.
• Strong organizational skills with the ability to prioritize and manage multiple concurrent incidents and tasks.
• Excellent problem-solving, analytical, and decision-making skills. This position may be eligible for remote work in select geographic locations, subject to approval by PNC. If approved, work must be conducted from a quiet, secure, and confidential home-based workspace. Occasional in-office participation may be required based on business needs. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position. Job Description
  • Manages a team that oversees the day-to-day operations and effectiveness of assigned security technology and programs.
  • Manages resources that enables security control effectiveness with a team and technology.
  • Monitor trends and continuously assesses staff/security system capabilities to meet business demands.
  • Leads in policy development, audit mitigation, and other tasks related to securing and maintaining the operational health of the infrastructure. Evaluates security systems, teams and processes to provide recommendations to maintain continuity and operational health.
  • Documents and revises procedures and playbooks for teams, processes and technology to provide a standard security practice and increase team effectiveness.

PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:

  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

PNC also has fundamental expectations of our people managers. As a manager of talent in PNC, you will be expected to:

  • Include Intentionally - Cultivates diverse teams and inclusive workplaces to expand thinking.
  • Live the Values - Role models our values with transparency and courage.
  • Enable Change - Takes action to drive change and innovation that will transform our business.
  • Achieve Results - Takes personal ownership to deliver results. Empowers and trusts others in decision making.
  • Develop the Best - Raises the bar with every talent decision and guides the achievement of all employees and customers.
Qualifications

Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.

Preferred SkillsAccess Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies CompetenciesData Governance, Information Assurance, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization Work ExperienceRoles at this level typically require a university / college degree, with 5+ years of industry-relevant experience. At least 3 years of prior management experience is typically required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. EducationAssociates CertificationsNo Required Certification(s) LicensesNo Required License(s) Language Assessments No Required or Preferred Language Assessments Pay Transparency Base Salary: $100,100.00 – $223,080.00 Salaries may vary based on geographic location, market data and on individual skills, experience, and education. This role is incentive eligible with the payment based upon company, business and/or individual performance. Application Window Generally, this opening is expected to be posted for two business days from 06/16/2026, although it may be longer with business discretion. Benefits PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives. In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.

To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com.

Disability Accommodations Statement

If an accommodation is required to participate in the application process, please contact us via email at AccommodationRequest@pnc.com. Please include “accommodation request” in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses.  Applicants may also call 877-968-7762 and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.


At PNC we foster an inclusive and accessible workplace.  We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.

Equal Employment Opportunity (EEO)


PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.

This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history.

California Residents

Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.


What PNC Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom