Lead, Cyber Incident Response
$142.4k - $178kSony Pictures Entertainment
Sony Pictures Entertainment (SPE) is seeking an experienced Lead Cyber Incident Response professional to help protect the company's people, intellectual property, productions, technology platforms, and business operations from cyber threats.This role leads complex cybersecurity investigations, coordinates response activities during significant security incidents, and advances SPE's incident response capabilities. The successful candidate will serve as a senior technical resource within the Incident Response team, leading investigations across corporate, cloud, identity, SaaS, and production environments while partnering with Security Operations, Threat Intelligence, Engineering, Legal, Privacy, People & Organization (P&O), Corporate Communications, and business stakeholders.Key ResponsibilitiesIncident Response and InvestigationsLead complex cybersecurity investigations from initial detection through containment, eradication, recovery, and post-incident review.Serve as incident commander for assigned incidents, coordinating technical responders and business stakeholders throughout the response lifecycle.Investigate ransomware, identity compromise, phishing, insider threats, data exposure, cloud security incidents, and other advanced cyber threats.Conduct digital forensic investigations to determine root cause, scope, business impact, and remediation requirements.Business and Asset ProtectionInvestigate threats affecting SPE intellectual property, content, productions, employees, technology platforms, third-party partners, and business operations.Assess cyber events from both technical and business-risk perspectives, balancing risk reduction with operational continuity.Partner with Legal, Privacy, People & Organization (P&O), Corporate Communications, and business leadership on sensitive investigations and response activities.Security Operations and Continuous ImprovementCollaborate with Security Operations, Threat Intelligence, Detection Engineering, and Security Engineering to enhance detection and response capabilities.Develop and improve incident response playbooks, runbooks, escalation procedures, investigative methodologies, and operational standards.Drive automation and workflow optimization through SOAR, scripting, AI-enabled capabilities, and emerging technologies.Lead post-incident reviews and translate lessons learned into measurable security and operational improvements.Technical LeadershipServe as a senior escalation point for complex investigations and high-severity incidents.Mentor Incident Response analysts through case reviews, training, coaching, and knowledge sharing.Provide clear technical updates, executive-ready summaries, after-action reports, and risk-informed recommendations.Contribute to strategic initiatives that strengthen SPE cyber resilience and operational maturity.QualificationsRequired8+ years of cybersecurity experience, with significant focus on incident response, digital forensics, threat hunting, or security operations.Proven experience leading enterprise-scale cybersecurity investigations and incident response efforts.Strong knowledge of modern attack techniques, threat actor behavior, digital forensics, and investigative methodologies.Experience with cloud security, identity security, endpoint detection and response (EDR/XDR), SIEM, and SOAR platforms.Excellent analytical, communication, and stakeholder-management skills, including the ability to explain complex technical issues to executive and non-technical audiences.PreferredExperience supporting global media, entertainment, technology, or other highly distributed enterprise environments.Experience investigating incidents involving intellectual property, insider threats, data exposure, or third-party compromise.Experience with Microsoft 365, Azure, AWS, modern SaaS environments, and identity platforms.Knowledge of Python, PowerShell, or other scripting and automation technologies.Relevant industry certifications such as CISSP, GCIH, GCFA, GCIA, GNFA, or equivalent.The anticipated base salary for this position is $142,400 - $178,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.Sony Pictures does not allow audio recording, video recording or use of AI note-taking tools during interviews. Please be aware these tools may be enabled as a default and can be difficult to disable once the interview has started, so we recommend you check your device and disable these tools prior to the start of your interview. If recording or the use of the tools occurs during the interview and cannot be promptly turned off or disabled, the interviewer may end the interview.To request an accommodation for purposes of participating in the hiring process, you may contact us at View email address on click.appcast.io: Culver City, CaliforniaType: Full time
- ...solutions for diverse clients. You will lead end-to-end projects, mentor teams, and drive... ...ServiceNow capabilities such as security incident response, vulnerability response, and configuration compliance to optimize clients' cyber risk programs. #J-18808-Ljbffr EYCyber
- ...Angeles, CA. Triskele Labs are one of the leading providers of cybersecurity services in... ...clients to reduce their risk of a cyber compromise through the delivery of risk... ...The Triskele Labs Digital Forensics and Incident Response (DFIR) team assists clients of all sizes...CyberRemote jobWork at office
- EY is seeking an experienced Senior to lead client engagements involving cyber incidents, data breaches, and information security events. This role focuses on the post‑incident response phase, helping clients assess impacted data, evaluate legal and regulatory obligations...Cyber
- kozmetickesluzby.vecnakraska.sk - Jobboard is seeking a Cyber Triage and Forensics Incident Analyst to lead security incident responses at EY. The role involves performing forensic analysis, malware analysis, and investigating security incidents, ensuring robust incident...CyberFlexible hours
- EY is seeking a Senior Cyber Incident Response Coordinator to lead global incident response efforts and coordinate across multiple business units. You will manage complex incidents from detection through resolution, communicating with executives and legal teams as needed...Cyber
$165k - $210k
...looking for a long‑term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorneyposition in our Los Angeles Office. This position offers a flexible, hybrid working arrangement. The...CyberPart timeWork at officeFlexible hours$150k - $175k
...Site Lead Arlington, VA Nooks is pioneering Classified-Infrastructure-as-a-Service... ..., cross-functional team of Security, IT/Cyber, Finance, Hospitality, Customer Success,... ...'ll have clear ownership over your core responsibilities, startup life means priorities can shift...CyberFor contractorsWork at officeLocal areaImmediate startShift work$102k - $123k
...DescriptionWho We AreCreative Artists Agency (CAA) is the leading entertainment and sports agency, with global... ...looking for candidates who have a passion for Cyber Security, Threat Detection, Threat Hunting, and Incident Response. You will be a key part of our efforts to build...CyberPermanent employmentFull timeWork at officeLocal area- Satwic Inc. in Los Angeles seeks a seasoned ServiceNow Security Incident Response (SIR) Specialist to lead deployment and optimization of the SIR module. You will implement configurations, workflows, and integrations while collaborating with security and IT stakeholders...
- ...professional to join the Information Security team in Los Angeles. The role focuses on end-to-end triage, containment, and rapid incident response for enterprise systems and data. The ideal candidate has 3+ years in Incident Response or forensics, with strong skills in...
$155k - $200k
...valued and empowered, then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position is based in our New... ...response for cybersecurity and data privacy incidentsTaking lead responsibility in responding to clients and carriers, and...CyberFull timeWork at officeRemote workFlexible hours$114.1k - $268.18k
...opportunities, a world-class training facility, and leading market tools, we help our people continue to... ....We are currently seeking a Manager, Incident Response to join our Advisory practice.ResponsibilitiesLead and manage cyber incident response activities, including...CyberWork experience placementH1bLocal area$110.5k - $205k
...the space, air, land, sea and cyber domains in the interest of national security. Job Title: Lead, Systems Administrator Job Code... ...Systems Administrator will be responsible for managing and maintaining... ...upgrades, patch management, and incident response. Travel up to 15% to...CyberLocal areaRemote workFlexible hours$169.01k - $370.53k
...opportunities, a world-class training facility, and leading market tools, we help our people continue to... ....KPMG is currently seeking a Director, Incident Response to its Advisory Practice.Responsibilities:Lead enterprise cyber incident response engagements, overseeing containment...CyberH1bLocal area- ...seeking a SOC Analyst II to join the Security Operations team in El Segundo, California. This role involves monitoring and responding to cyber threats and supporting compliance initiatives. Suitable candidates will be mid-career cybersecurity professionals with a strong...Cyber
$125.8k - $209.7k
...that improve efficiency, enhance visibility, and strengthen cyber resilience through automation and orchestration. Join our dynamic... ...effectively. You will work closely with security operations, incident response, threat detection, and engineering teams to automate...CyberImmediate start$183.75k
...SUMMARY The Director of Cybersecurity leads the cybersecurity program — setting... ...and delivering executive- and board-level cyber-risk reporting. The role builds and leads... ...security vendors and their SLAs, and directs incident response and cyber resilience across a global...CyberContract workTemporary workLocal area$127.5k - $236.5k
...solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Lead, Program Management, Advanced Missile... ...flow for new, continuing, or current programs. Responsible for the cost, schedule and technical performance...CyberContract workLocal areaFlexible hours- ...service discipline. Essential Duties And Responsibilities: • Operate, monitor, and maintain... ...equipment. • Respond to P1/P2 incidents and complex escalations. • Drive network... ...vendor support currency. • Partner with cyber security to detect, prevent, and defend...CyberContract workRemote work
- ...Cybersecurity Analyst to join our global security team in a hands-on role defending the organization. You will monitor alerts, triage incidents, and lead investigations across multiple systems while working with global security partners to strengthen defenses. Ideal candidates...
- ...objectivity and integrity at our core, we lead federally funded research and... ...problems including systems resiliency, cyber test, security, and cybersecurity activities... ...activities in direct support of programs.Roles & Responsibilities:The engineer will be a core member of...CyberFor contractorsWork experience placementLocal area
- ...required. The Risk Analyst is responsible for providing guidance on... ...representative for internal and external cyber initiatives, including the... ...the Operations Technology Incident Response Process (OTIRP).... ...assurance exercises as required. Leads awareness and training for...CyberWork experience placementRemote work
$110k - $160k
...of $1 billion in funding from leading investors, including 8VC,... ...organization against evolving cyber threats. This role will support... ..., triage, investigation, and response activities across enterprise... ...Responsibilities Security Monitoring & Incident Response Monitor and triage...CyberContract workWork experience placementCasual workRelocation package$122k - $227k
...solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Lead, Electrical/Mechanical Engineering Job Code:... ...assessments of actuation systems, including response time, bandwidth, damping, stiffness, resonance...CyberLocal areaFlexible hours$114.1k - $268.18k
...class training facility, and leading market tools, we help our... ...our Managed Services practice.Responsibilities:Manage cloud security posture... ...and oversight of Cyber Managed Services delivery across... ...managed services, including incident, problem, and service request...CyberH1bLocal area$107.6k - $209.1k
Senior Underwriter, Team Lead Middle Market Cyber Los Angeles | San Fransciso AXA XL provides cyber insurance and technology professional liability... ...the Cyber underwriting unit. The individual will be responsible for servicing a renewal book, and producing new business,...CyberFlexible hours$114.1k - $268.18k
..., a world-class training facility, and leading market tools, we help our people continue... ...our Managed Services practice. Responsibilities: Provide strategic direction for application... ...those options Partner with the Cyber teams to develop new testing techniques...CyberH1bLocal area$160k
...Advanced skills in Microsoft Word, Excel, PowerPoint, and Outlook. RESPONSIBILITIES Support the Authorizing Official and Security Control Assessor by ensuring adherence to the DoD RMF process, driving cyber‑hardening efforts, and tracking progress along the Road to ATO....CyberFull timeContract work- ...essential NIST Cybersecurity requirements for system assessment and authorization in a full-time, on-site environment. Responsibilities Lead a team of System Security Engineers and Certification Analysts ensuring customer national and international security...CyberFull timeWork at office
$91.1k - $170.4k
...detects, responds and mitigates cyber-risk, protecting EY and client... ...Services (CIS) Junior Incident Coordinator will exercise strong... ...coordinate security incident response to cybersecurity events or incidents... ...support teams within IT Help lead small to medium sized projects...CyberSummer holidayRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead, Cyber Incident Response. Be the first to apply!



