Global Director of Autonomous Incident Response and Forensic Analysis
MUFG
Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.The Global Director of Autonomous Incident Response and Forensic Analysis leads the strategy, execution, and continuous improvement of a 24/7 global incident response (IR) and digital forensics function. This role is accountable for orchestrating rapid containment, eradication, and recovery for security incidents while ensuring high-quality investigative rigor, evidence handling, and executive-ready reporting. The director operates under the Global Head, helping shape the overarching vision and translating it into operating models, playbooks, and measurable outcomes; the role also partners closely with the SOC Director to ensure seamless handoffs from detection/triage into investigation and response and to drive feedback loops that improve detections and alert fidelity. Additionally, the role advances AI-assisted, human-in-the-loop forensics and response by applying AI/ML and LLM-enabled workflows (e.g., enrichment, case summarization, artifact correlation, and response recommendations) with appropriate governance, controls, and analyst validation to improve speed and consistency without sacrificing investigative integrity. The director owns budget planning and financial stewardship for the function and ensures service delivery across regions, environments, and partners.Major ResponsibilitiesDirect and mature a 24/7 global incident response and digital forensics operating model, including intake, investigation, containment/eradication coordination, and recovery validation across multiple environmentsOwn functional strategy, multi-year roadmap, and KPI/OKR outcomes for incident response and forensics (e.g., time to contain, time to remediate, investigation cycle time, repeat-incident reduction, and readiness metrics)Work with the Global Head to define the vision for Autonomous Incident Response and Forensic Analysis, and execute against that vision in alignment with the strategic designPartner with the SOC Director to define clear handoffs from detection/triage into investigation, establish escalation criteria, and implement feedback loops that improve detections, alert quality, and response playbooksOversee budget planning, vendor management, and financial governance for global cyber operations tooling, services, and staffing; optimize spend to risk reduction and service performanceLead, mentor, and scale high-performing global teams (employees and partners); define operating rhythms, coverage models, escalation paths, and on-call expectationsServe as a lead escalation contact in a 24/7 environment; guide appropriate resources to resolutionProvide executive-level oversight for audit, risk, and regulatory engagements related to cyber operations; ensure processes, evidence, and metrics meet policy and compliance requirementsDeliver leadership reporting on cyber operations health, emerging threats, and risk posture; translate technical findings into business impact and prioritized actionsDrive AI-assisted, human-in-the-loop incident response and forensics initiatives, including evidence/artifact enrichment, timeline reconstruction, case summarization, correlation across telemetry sources, and response recommendations with analyst validation and governanceEstablish governance for IR playbooks/runbooks, case management workflows, evidence handling and retention, and chain-of-custody practices to ensure investigations are consistent, defensible, and repeatableProvide incident command leadership for high-severity events; coordinate containment and recovery execution with infrastructure, identity, endpoint, cloud, application, legal, privacy, and communications stakeholdersOversee third-party IR/forensics capabilities and managed services (as applicable) to ensure coverage, quality, evidence standards, and alignment to enterprise policies and SLAsBuild an IR operations analytics program to measure and continuously improve containment speed, investigation throughput, backlog health, automation effectiveness, and quality of outcomes across regions and shiftsLead incident readiness and validation exercises (e.g., tabletop exercises and technical simulations with relevant teams), and ensure post-incident reviews drive measurable improvements to controls, detections, and response proceduresBuild and maintain forensic readiness capabilities, including standardized collection methods, artifact baselines, and investigative playbooks to accelerate triage-to-proof and reduce dwell timeProvide global operational leadership during cyber events by coordinating communications, handoffs, and technical execution across regions, functions, and time zonesLeverage threat intelligence and adversary TTP research to inform scoping, attribution hypotheses, containment prioritization, and investigative direction; translate insights into improved prevention and detectionProduce and govern recurring and ad-hoc reporting on threats, trends, and program performance; ensure consistent narratives and decision support for stakeholdersChampion innovation and modernization of cyber defense tooling and techniques, including evaluation and adoption of new capabilities that measurably reduce riskPartner with technology, product, and business leaders to align cyber operations priorities, drive remediation ownership, and embed security-by-design practicesQualificationsBachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline or equivalent work experience7+ years of experience working in the Cybersecurity Operations or Information SecurityRelevant technical and industry certifications, such as CISSP, ISSMP, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferredExperience in one or more security domains including Security Governance and Oversight, Security Risk Management, Network Security, Threat and Vulnerability Management, or Incident Response and Forensics preferredExperience with information security risk management, including information security audits, reviews, and risk assessmentsDesired SkillsExperience with security data collection, analysis and correlationWell-developed analytic, qualitative, and quantitative reasoning skills Demonstrated creative problem-solving abilitiesSecurity event monitoring, investigation, and overall incident response processStrong time management skills to balance multiple activities and lead junior analysts as neededUnderstanding of offensive security to include common attack methodsUnderstanding of how to pivot across multiple datasets to correlate artifacts for a single security event A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.Detailed knowledge and experience in security and regulatory frameworks (ISO 27001, NIST 800 series, FFIEC, SOC2, FedRAMP, STAR, etc.)Ability to guide and mentor junior analysts in investigationsUnderstanding of enterprise detection and response technologies and processes (advanced threat detection tools, intrusion detection/prevention systems, network packet analysis, endpoint detection and response, firewalls, Anti malware/anti-virus, Security Information and Event Management tools, etc.)Experienced with Endpoint Detection & Response, email security, web application firewall, and cloud security tooling.Ability to perform risk analysis utilizing logs and other information compiled from various sourcesUnderstanding of network protocols, operating systems (Windows, Unix, Linux, MacOS, databases), and mobile device securityKnowledge of the various types of cyber-attacks and their implementationsA fundamental understanding of enterprise cybersecurity frameworks such as MITRE ATT&CK and Cyber Kill ChainAbility to document and explain technical details in a concise, understandable mannerExperience in operational processes such as security monitoring, data correlation, troubleshooting, security operations, etc.Preferred experience with Torq, 7AI, CrowdStrike, Tanium, Snowflake, Splunk, and ELKScripting/programming experience preferredEducation•Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experienceVisa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position.The typical base pay range for this role is as follows:New York / New Jersey: $203k-249kNon–New York / New Jersey: $182k-227kdepending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.Our hybrid work schedule is four days on-site and work remotely one day per week.MUFG Benefits SummaryWe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.SummaryLocation: Jersey City, NJ; Tempe, AZType: Full time
$150k - $297k
...confidence. We’ll help you succeed in a globally connected powerhouse of diverse... ...Services (CIS) Senior Cyber Incident Response Coordinator will exercise... ...incident management, chain-of-custody, forensics, cybersecurity event analysis, and hands-on cybersecurity/digital...SuggestedSummer holidayLocal areaRemote workFlexible hours$152.7k - $294k
...We’ll help you succeed in a globally connected powerhouse of diverse... ...Strategist is a senior role responsible for shaping and implementing... ...firm. Research & Trend Analysis: Monitor and evaluate... ...and access management (IAM), incident response, and emerging threat...SuggestedSummer holidayLocal areaFlexible hoursShift work- ...infrastructure of the global capital markets.... ...team, the Director, Cyber Resiliency... ...malware and ransomware analysis on backup data, and digital forensics support to enable... ...leadership.Your Primary Responsibilities:Cyber Resiliency... ...support for incident investigations, in...SuggestedRemote workFlexible hours
- ...infrastructure of the global capital markets. The... ...Architecture organization, the Director of Enterprise... ....Your Primary Responsibilities:Shape and champion DTCC... ...reduce noise, accelerate incident triage, and enable... ...assessments, failure-mode analysis, chaos engineering...SuggestedRemote workFlexible hours
- ## Director, Procure to Receipt (P2R) Global Process Owner (GPO)Apply: Philadelphia, PA, USA: Full time: Posted... ...of PCI.**Essential Duties and Responsibilities:** To perform this job successfully... ...environment.* Strong business analysis, requirements elicitation, project...SuggestedFull time
$169.22k - $253k
The Associate Director of Global Value Evidence Strategy supports the development and execution... ...study design, project management, analysis, interpretation, and dissemination of... ...reimbursement, and patient access objectives. Responsibilities Supports the development and...Temporary workFor contractorsWork experience placementLocal areaWorldwideFlexible hoursNight shift- ...emergencies through preparedness, education, and response. NYCEM is responsible for coordinating... ..., and related matters. Advise on global, federal, and state privacy regulations... ...and industry best practices. Support incident response and data breach investigations....Full timeTemporary workWork at officeLocal areaFlexible hoursNight shift3 days per week
- ...data, we would like to talk to you. RESPONSIBILITIES: Work on the latest applications of... ...in building product suite for Global Access and Value team ~ Deep understanding... ...hypotheses and validating them through data analysis to identify and investigate trends ~...Work experience placementLocal area
$160k - $250k
...What is the Opportunity? The Director, Talent Enablement & Delivery for Capital Markets (CM) is responsible for the overall management... ...innovative and practical ~ Global exposure or experience is an... ...Engineering, Financial Statement Analysis, Investments Analysis,...Full timeFlexible hours- ...innovative and impactful results. Role: Operations Director (Creative / Advertising) Location: Netherlands / Germany... ...solutions that align with our strategic goals. Key Responsibilities: Requirement Gathering and Analysis: Work with stakeholders to gather, document, and...Remote jobFixed term contractLocal area
$77k - $100k
...member of myGwork – the largest global platform for the LGBTQ+... ...product offerings. You will be responsible for guiding and driving... ...questions and concerns, log incident tickets, and monitor the ticketing... ...client reporting and use data analysis to recommend opportunities...Full timeContract workFixed term contract$181.8k - $350k
...We'll help you succeed in a globally connected powerhouse of diverse... ...Architect, Associate Director The Senior Commercialization... ...growth ambitions. Your Key Responsibilities Provide leadership, execution... ...such as A/B testing, conjoint analysis, Gabor-Granger, Price Elasticity...Summer holidayFlexible hours- ...Manager to champion our global workforce by... ...planning, control, and analysis for the Human Resources... ...analysis of workplace incidents. Ensure the organization... ...and partner with the Director of Human Resources to... ...essential deployment responsibilities that may be necessary...Work at officeLocal areaShift workNight shift
- ...for a dynamic impact across global operations. As a Principal... ...landscape. Job responsibilities Develop and implement strategic... ...work-in-progress limits, queue analysis, and lean methods to remove... ...transformation programs across autonomous technology organizations and...
$164.6k - $216.1k
...hear from you.The Associate Director, Medical Information Oncology, is responsible for leading and driving Global & US Medical Information... ...documentation and reporting of product incident reports.Responsibilities ·... ..., including research and analysis of the scientific...Full timeFor contractorsWork at office3 days per week$85k - $105k
...Description WHO WE ARE fresh is a global skincare brand within the LVMH Group,... ...practices. Job Description JOB RESPONSIBILITIES Procurement Excellence &... ...procurement best practices. Conduct initial analysis of spend data, supplier performance, and...Contract workSummer workLocal areaFlexible hours$270k - $390k
...the industry. And our corporate social responsibility programs provide meaningful and fulfilling... ...infrastructure and real assets clients globally.Based in Jersey City, the role will... ...investment company accounting, consolidation analysis, and fair value measurement standards...Temporary workLocal areaWorldwide- ...Our teams work with complex global datasets, AI and machine learning... ...cloud-native environment.**Responsibilities:*** Lead a small cross-... ...automation, and business systems analysis.* Serve as the team's... ...including monitoring, logging, incident response, root cause analysis...Work at officeLocal areaWorldwide3 days per week
$120k - $200k
...THE OPPORTUNITY?The Associate Director, U.S. Regulatory Reporting... ...FR Y-8, FR-2004, TIC) with responsibility for ensuring operational effectiveness... ...of Comprehensive Capital Analysis and Review reporting... ...importance of a highly qualified global workforce and plays a...Full timeWork at officeFlexible hours$130k - $165k
...the senior operational leader responsible for the execution,... ...technology issues.Lead technical incident response during live broadcasts... ...incident management, and root cause analysis skills.Demonstrated... ...Basketball Association (NBA) is a global sports and media organization...Full timeTemporary workSummer workFreelanceWork at officeLocal areaShift workWeekend workAfternoon shift- ...military and commercial-grade autonomous systems across sea, air, and... ...systems at speed. Key Responsibilities Program Execution & Cross-Functional... ...plans, and post-test analysis workflows Track field findings... ...Work / Home Office Stipend Global Entry 16 Week Paid Parental...Contract workWork from homeHome office
- ...by leading AI labs, startups, and global enterprises, CoreWeave combines superior... ...clarity; experience operating autonomously across multiple teams and... ...system reliability Experience in incident management and root cause analysis (RCA) Experience building cloud infrastructure...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours
$120k - $200k
...BSA/AML Officer, the Associate Director, U.S. Financial Crimes... ...coordination, risk and control analysis, business advisory support, and... ..., and preparing timely draft responses for the Deputy’s reviewAssist... ...importance of a highly qualified global workforce and plays a...Full timeFlexible hours$182k - $242k
...leading AI labs, startups, and global enterprises, CoreWeave... ...Rewards organization, the team responsible for how we pay, incentivize,... .... About the role: As Director, Compensation, you'll own executive... ..., market studies, and analysis so that recommendations are defensible...Permanent employmentFull timeTemporary workCasual workWork at officeLocal areaFlexible hoursDay shift$142.5k - $190k
...professionalism in service delivery. Job responsibilities Develop and execute comprehensive... ...techniques-such as interviews, document analysis, requirements workshops, surveys, site... ...the diverse talents they bring to our global workforce are directly linked to our success...Work at officeFlexible hours- ...The Employee Relations (ER) Director oversees a wide variety of cases... ...case management and analysis of related trends, monitoring... ...ER strategy. Your Primary Responsibilities Lead investigations and manage... ...other stakeholders to monitor global employment laws and ensure...Remote workRelocationFlexible hours
$120k - $140k
...health care for all. We have a strong global presence, with a workforce of over 4,0... ...Driving issue resolution and root cause analysis for incidents Manage day to day production support... ...experience handling Sev1 / Sev2 incident responses Strong experience working within a...Permanent employmentFull timeWork at officeRemote workWeekend work$168k - $210k
...the AI-native platform for autonomous finance: configure once, let... ...the hardest bottleneck in the global close — within BlackLine's... ...when a person steps in. Ensure responsible-AI guardrails — attributable... ...-driven business cases, ROI analysis, and quarterly planning...Temporary workWork at officeRemote workShift work3 days per week- Perrigo Associate Director Environmental Health & Safety Georgia, VT... ...Health & Safety (EHS) is responsible for leading the development,... ...introductions. Risk Management & Incident Prevention Lead site and enterprise... ...regulations. Experience with global EHS management systems....For contractorsLocal area
- ...that the team aids in top-down risk analysis, immediate control issue detection,... ...and enhance program oversight on a global scale.Job Responsibilities:Create a proactive risk and control... ...networking.Ability to work autonomously, adapt to shifting priorities, and...Work at officeImmediate startShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Global Director of Autonomous Incident Response and Forensic Analysis. Be the first to apply!
- director of mental health Jersey City, NJ
- lab director Jersey City, NJ
- director of sustainability Jersey City, NJ
- director Jersey City, NJ
- director talent acquisition Jersey City, NJ
- director of radiology Jersey City, NJ
- director of inventory management Jersey City, NJ
- director of executive recruiting Jersey City, NJ
- director contracts Jersey City, NJ
- grounds director Jersey City, NJ



