Incident Response Manager
Atlanta, GA ยท On-site
We are expanding our Incident Response leadership team with a hands-on technical manager who thrives in fast-moving investigations and can guide customers through their most critical security events.
Atlanta, GA ยท On-site
We are expanding our Incident Response leadership team with a hands-on technical manager who thrives in fast-moving investigations and can guide customers through their most critical security events.
Atlanta, GA ยท On-site
We are expanding our Incident Response leadership team with a hands-on technical manager who thrives in fast-moving investigations and can guide customers through their most critical security events.
Incident Response Manager Position Summary The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring ...
Incident Response Manager Position Summary The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring ...
Be Seen First
Houston, TX ยท On-site
$20 - $30/hr
As an Emergency Response Team Member, you will have the opportunity to make a meaningful impact by contributing to the safety and well-being of others, and to protect the environment. Position ...
Quick apply
Be Seen First
Houston, TX ยท On-site
$20 - $30/hr
As an Emergency Response Team Member, you will have the opportunity to make a meaningful impact by contributing to the safety and well-being of others, and to protect the environment. Position ...
The Incident Response Engineer will oversee security incident response, investigate threats, and implement corrective actions while collaborating with various teams to enhance cybersecurity measures.
The Incident Response Engineer will oversee security incident response, investigate threats, and implement corrective actions while collaborating with various teams to enhance cybersecurity measures.
Washington, DC ยท On-site
$100K - $125K/yr
Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or ...
Quick apply
Washington, DC ยท On-site
$100K - $125K/yr
Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or ...
Arlington, VA ยท On-site
$70K - $136K/yr
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Arlington, VA ยท On-site
$70K - $136K/yr
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Arlington, VA ยท On-site
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Arlington, VA ยท On-site
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Arlington, VA ยท On-site
The Incident Response Engineer will manage security incident response processes, investigate threats, and implement corrective actions to ensure the safety and security of federal operations.
Arlington, VA ยท On-site
The Incident Response Engineer will manage security incident response processes, investigate threats, and implement corrective actions to ensure the safety and security of federal operations.
Irving, TX ยท Hybrid
The Incident Response Coordinator is a role for those experienced with leading, managing and coordinating cybersecurity incident response activities. This role serves as a single point of contact for ...
New
Irving, TX ยท Hybrid
The Incident Response Coordinator is a role for those experienced with leading, managing and coordinating cybersecurity incident response activities. This role serves as a single point of contact for ...
New
Arlington, VA ยท On-site
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Arlington, VA ยท On-site
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Atlanta, GA ยท On-site
Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents * Oversee and coordinate incident investigations across cyber ...
Atlanta, GA ยท On-site
Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents * Oversee and coordinate incident investigations across cyber ...
Washington, DC ยท On-site
$100K - $125K/yr
Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or ...
Washington, DC ยท On-site
$100K - $125K/yr
Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro Area) Employment Type: Full-Time Clearance: Public Trust (or ...
Incident Response Manager Position Summary The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring ...
Incident Response Manager Position Summary The Incident Response Manager serves as a senior technical leader responsible for managing complex cybersecurity incident response engagements, mentoring ...
Arlington, VA ยท On-site
$112K - $257K/yr
Incident Response SME The Opportunity: As an expert in defense missions, your unique background inspires you to think bigger, push further, and ask questions others don't. We need your extensive ...
Arlington, VA ยท On-site
$112K - $257K/yr
Incident Response SME The Opportunity: As an expert in defense missions, your unique background inspires you to think bigger, push further, and ask questions others don't. We need your extensive ...
RiVidium is seeking an Incident Response Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations
RiVidium is seeking an Incident Response Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations
$112K - $257K/yr
Incident Response SME The Opportunity: As an expert in defense missions, your unique background inspires you to think bigger, push further, and ask questions others don't. We need your extensive ...
$112K - $257K/yr
Incident Response SME The Opportunity: As an expert in defense missions, your unique background inspires you to think bigger, push further, and ask questions others don't. We need your extensive ...
Boston, MA ยท On-site
$130K - $170K/yr
We are seeking a Incident Response Lead to drive security incident response across the enterprise. In this role, you will serve as the primary internal escalation point and hands-on responder for ...
Boston, MA ยท On-site
$130K - $170K/yr
We are seeking a Incident Response Lead to drive security incident response across the enterprise. In this role, you will serve as the primary internal escalation point and hands-on responder for ...
Arlington, VA ยท On-site
$221K/yr
The Incident Response Engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. They will analyze security ...
Arlington, VA ยท On-site
$221K/yr
The Incident Response Engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. They will analyze security ...
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
The Incident Response engineer will manage security incident response processes, investigate threats, and implement corrective actions to contain and remediate incidents. Analyze security alerts ...
Irving, TX ยท On-site
The Incident Response Coordinator is a role for those experienced with leading, managing and coordinating cybersecurity incident response activities. This role serves as a single point of contact for ...
New
Irving, TX ยท On-site
The Incident Response Coordinator is a role for those experienced with leading, managing and coordinating cybersecurity incident response activities. This role serves as a single point of contact for ...
New
$12.74 - $14.18
3% of jobs
$14.18 - $15.62
4% of jobs
$15.63 - $17.07
15% of jobs
$17.32 is the 25th percentile. Wages below this are outliers.
$17.07 - $18.51
15% of jobs
The median wage is $19.33 / hr.
$18.51 - $19.95
22% of jobs
$19.95 - $21.39
10% of jobs
$22.19 is the 75th percentile. Wages above this are outliers.
$21.39 - $22.84
11% of jobs
$22.84 - $24.28
10% of jobs
$24.28 - $25.72
6% of jobs
$25.72 - $27.16
2% of jobs
$27.16 - $28.61
2% of jobs
$12
$20
$28
| Aspect | Response | Customer Service Representative |
|---|---|---|
| Required credentials | Typically no formal degree, may require training in communication or specific tools | High school diploma or equivalent; often requires customer service training |
| Work environment | Call centers, online chat, email support | Retail stores, call centers, corporate offices |
| Employer and industry usage | Used across various industries for handling inquiries and issues | Common in retail, telecom, banking, and service sectors |
| Common search and comparison intent | Understanding job roles, responsibilities, and requirements | Looking for customer support roles, job duties, and qualifications |
Response roles focus on addressing specific inquiries or issues, often via digital channels, with minimal formal credentials. Customer Service Representatives handle broader customer interactions, including sales and support, typically requiring more extensive training. Both roles are vital in customer support but differ in scope and work environment.

Full-time
Re-posted 20 days ago
Company Overview
Fortuna Cysec delivers unified cybersecurity operations through TheFense platformโour integrated MDR, SIEM, EDR, and response ecosystem designed for regulated industries, nonprofits, healthcare, education, and mission-driven organizations. Our global SOC/NOC operates 24ร7ร365, providing real-time visibility, rapid containment, and deep technical expertise across diverse customer environments.
We are expanding our Incident Response leadership team with a hands-on technical manager who thrives in fast-moving investigations and can guide customers through their most critical security events.
Role Summary
The Cybersecurity Incident Response Manager leads and directly participates in high-severity investigations across Fortuna Cysecโs customer base. This role blends technical depth, operational leadership, and customer-facing communication. You will serve as the senior escalation point for complex incidents, drive containment and remediation, and strengthen TheFense platformโs detection and response capabilities.
Lead and Execute Incident Response
ยท Command all phases of incident responseโtriage, investigation, containment, eradication, and recoveryโwhile performing hands-on technical analysis.
ยท Analyze EDR telemetry, SIEM alerts, network logs, cloud audit logs, and identity events across Microsoft, AWS, and hybrid environments.
ยท Execute containment actions including endpoint isolation, identity disablement, MFA resets, OAuth token revocation, and firewall/network segmentation changes.
ยท Conduct forensic acquisition and analysis using Velociraptor, KAPE, FTK, EnCase, and Volatility.
ยท Reverse-engineer or sandbox suspicious binaries/scripts to determine behavior and impact.
ยท Lead hypothesis-driven threat hunts mapped to MITRE ATT&CK using TheFenseโs unified telemetry.
Strengthen IR Operations
ยท Oversee daily IR operations across global SOC/NOC teams, ensuring SLA adherence and seamless follow-the-sun handoffs.
ยท Review and enhance IR playbooks, runbooks, and automated response actions within TheFense.
ยท Ensure high-quality incident documentation, evidence handling, and customer-ready reporting.
ยท Conduct root-cause analysis and deliver technically detailed post-incident reviews.
ยท Partner with engineering to refine detection logic, reduce false positives, and improve automation.
Engage Directly with Customers
ยท Serve as the technical authority during active breaches, guiding CISOs, IT directors, and executive stakeholders.
ยท Deliver clear, concise briefings that include attack path analysis, forensic findings, and prioritized remediation steps.
ยท Support customer teams with hands-on remediation across identity, cloud, endpoint, and email ecosystems.
ยท Provide strategic recommendations aligned with NIST, CIS Controls, and Fortuna Cysec best practices.
Advance Threat Intelligence and Detection
ยท Translate emerging threat intelligence into new detection rules, response playbooks, and threat-hunting queries.
ยท Validate detection logic through lab testing, simulated attacks, and historical telemetry review.
ยท Identify detection gaps and collaborate with TI teams to enrich investigations with IOCs and adversary behavior patterns.
Build Team and Platform Maturity
ยท Mentor analysts across global SOC/NOC teams in IR, forensics, cloud investigations, and threat hunting.
ยท Develop internal tooling and automation using Python or PowerShell.
ยท Participate in tabletop exercises, purple-team engagements, and breach simulations.
ยท Contribute to the evolution of TheFense platform by evaluating new telemetry sources and response capabilities.
Required Qualifications
Preferred Qualifications
Fortuna Cysec is an equal opportunity employer. We consider all qualified applicants for employment without regard to race, color, religion, creed, national origin, sex, pregnancy, age, sexual orientation, transgender status, gender identity, disability, alienage or citizenship status, marital status or partnership status, genetic information, veteran status or any other characteristic protected under applicable law.