Lead Incident Security Responder
Blackduck
Position Summary
The Lead Incident Security Responder drives applied product security work across Black Duck’s portfolio, protecting our products and supporting the customer security inquiries that come into our Security Operations team. Operating with broad autonomy under general guidance, you lead portions of complex security projects, partner with the Director of Security Operations and the broader engineering organization, and serve as an informal technical resource for less experienced team members. The role requires hands-on product security depth combined with program coordination: delivering architecture reviews, threat models, vulnerability triage, and customer-facing security work, while also maintaining detection content, contributing to SOAR automations, and tracking projects through to measurable outcomes.
Essential Functions/Responsibilities
- Partner with engineering teams building Black Duck SCA, Coverity, and adjacent products on architecture reviews, threat models, and security design feedback.
- Contribute to a measurable secure development lifecycle covering SCA , SAST , secret scanning ( GitGuardian ), dependency hygiene, and build pipeline security.
- Recommend systematic improvements when patterns emerge across the portfolio rather than relying on one-off fixes.
- Triage internally discovered and externally reported product vulnerabilities and help drive resolution with engineering teams.
- Coordinate vulnerability fixes with engineering and support customer-facing communications when needed.
- Help triage customer security questionnaires, audit requests, and ad hoc product security questions in close partnership with the Director of Security Operations.
- Draft technically accurate answers to customer security inquiries; gather evidence from engineering when needed.
- Join customer security calls as a subject matter expert when called upon and contribute to a growing knowledge base of reusable responses.
- Support detection engineering and incident response activities across the corporate environment, with a focus on issues that intersect with our products.
- Maintain and tune detection content in CrowdStrike NG-SIEM and Sumo Logic related to product security risks; help work escalations from our MDR provider ( ReliaQuest ).
- Contribute to SOAR automations and runbooks that reduce manual toil.
- Lead discrete workstreams within larger security initiatives or coordinate small project teams where appropriate.
- Track projects through Jira with clear milestones and concise status updates; provide technical input into vendor evaluations and POCs across the SecOps and AppSec stack.
- Act as an informal resource and mentor for less experienced team members on product security, secure development, and threat modeling.
- Explain difficult or sensitive technical information clearly to engineers, security peers, and non-technical stakeholders.
- Document tribal knowledge into runbooks, SOPs, and onboarding materials.
- Other tasks and activities as assigned.
Required Education/Experience & Skills
- At least 7 – 8 years of applicable experience in product security, application security, or security engineering, with hands-on depth in at least two of the following: secure SDLC, threat modeling, secure code review, vulnerability management, product incident response, or customer-facing product security work.
- Working knowledge of application security tooling ( SCA , SAST , DAST , secret scanning) and the vulnerabilities they catch.
- Familiarity with at least one major cloud platform ( AWS , Azure , or GCP ) from a security perspective.
- Awareness of AI and LLM security risks such as prompt injection, sensitive data exposure, and the OWASP Top 10 for LLM Applications .
- Demonstrated ability to work independently under general guidance and to lead workstreams or small project teams without formal direct-report authority.
- Practical use of AI and LLM tools to accelerate day-to-day security work (investigation, query drafting, secure code review, documentation), with sound judgment about when AI-generated output requires human validation before it is shared, shipped, or acted on.
- Strong written and verbal communication skills, including the ability to explain technical security topics to engineers, security peers, and non-technical stakeholders; calm and steady under incident, audit, or customer-escalation pressure.
- Bachelor’s degree in Computer Science , Information Security , Information Technology , or equivalent practical experience.
- Experience contributing to a Product Security Incident Response Team (PSIRT) or equivalent product vulnerability response process.
- Familiarity with vulnerability scoring ( CVSS ), embargo handling, and coordinated disclosure.
- Industry certifications such as CISSP , CSSLP , GWAPT , GPEN , OSCP , OSWE , or cloud security equivalents are a plus.
- Experience supporting customer security questionnaires, RFPs, or third-party risk assessments.
Physical Requirements
- General office environment and responsibilities requiring:
- Extensive use of the computer which involves viewing a monitor and keyboarding for most of the workday
- Placing and receiving phone calls
- Occasionally moving and lifting objects up to 20 pounds
- May require some travel as needed.
- ...Position Summary The Lead Incident Security Responder drives applied product security work across Black Duck’s portfolio, protecting our products and supporting the customer security inquiries that come into our Security Operations team. Operating with broad autonomy...SuggestedFull timeWork at office
$240k - $280k
...Responsibilities Will Include Obsidian Security is the leading SaaS security platform, trusted by... ...security platform to reduce risk, detect and respond to threats, and prevent breaches at... ...response actions, and partner with incident response to operationalize them. Support...SuggestedWork from home- The Cybersecurity Security Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional responsible for overseeing and coordinating the response to all security incidents within the organization, acting as the primary decision-maker during a breach...SuggestedContract workFor contractorsLocal areaRemote work
- ...cybersecurity challenges, from proactive risk mitigation to incident response. You will lead engagements, assess client environments, and coordinate... ...teams. In this role, you will communicate complex security concepts to executives and technical staff, manage remediation...SuggestedRemote job
- Google Cloud's Mandiant unit seeks a Security Consultant with strong leadership in incident response and remediation. You'll guide clients through complex security... ...coordinating with cross-functional teams. You will lead engagements, communicate effectively with...SuggestedRemote job
$112.8k - $257k
...Task & Integration LeadThe Opportunity:As a Security Operations Center (SOC) Task Lead, you’re in the middle of the action, responding to and mitigating threats in real time.... ...groups performing monitoring, detection, and incident response3+ years of experience developing...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Position Title: Cyber Security Incident Response Lead Location: Texas (Teleworker) Clearance Requirements: Public Trust Clearance Pay... ...specific IR/forensic credentials Experience mentoring SOC responders and maturing incident response programs Knowledge of...For contractorsRemote work
$40 - $80 per hour
...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About the Role What if your hard-won experience in the SOC trenches could directly strengthen how organizations detect, respond to, and contain real threats? We're looking for a seasoned...Hourly payOngoing contractContract workFreelanceRemote workFlexible hoursNight shift$10k
...About The Role Join our growing security team and help drive security detection and response initiatives across... ...Square Park) at least 2 days/week. What You’ll Do Respond and assist with security requests and incidents submitted by Ramp team members Review logging, alerting...Full timeWork experience placementWork at officeHome officeRelocation packageFlexible hours2 days per week$100k - $110k
...Overview The Work The Site Lead functions as the on-site... ...execution of access control and security operations at a designated... ...stakeholders during real-time incidents or special access events.... ...inspections, and readiness checks. Respond to and manage on-site...Full timeTemporary workFor contractorsLocal areaRemote workFlexible hoursShift work- ...Security Lead We are looking for a hands-on Security Lead with strong technical depth to... ...will own cloud and application security, incident response, IT and corporate security,... ...processes, and lead efforts to detect, respond to, and remediate threats. Your focus is...Work at officeRemote workWork from home
$91.1k - $170.4k
...and everyone in EY Information Security has a critical role to play.... ...well as detect and quickly respond to security events as they happen... ...The opportunityThe CTF Shift Lead at EY plays a critical role... ...to information security incidents, develop, maintain, and follow...Work experience placementSummer holidayLocal areaFlexible hoursShift work$150k - $160k
...Security Compliance Lead TSTC is an award-winning, Woman Owned, HUBZone certified Small Business... ...POA&M management, monthly reports, and responding to ad hoc requests) ~ Vulnerability... ...~ Vulnerability tracking ~ Incident management / security event monitoring...Contract workTemporary workLocal areaRemote workFlexible hours$24.2 per hour
DEPARTMENT: Security & Transportation REPORTS TO: Manager, Ballpark Security STATUS... ...a long way. Your role as a Lead, Ballpark Security (Day Shift):... ...coordinating daily security operations, and responding to incidents and operational needs. The Ballpark Security...Full timeTemporary workFor contractorsWork experience placementCasual workWork at officeLocal areaWork from homeFlexible hoursShift workDay shift$45k
...consequences. Data and Information Security is a core enabler of the... ...us work with the world's leading pharmaceutical partners, handle... ...Key Responsibilities Incident Response & Business Continuity... ...We will make every effort to respond to your request for disability...Full timeContract workWork at officeImmediate startRemote workFlexible hours- ...Financial Group (MUFG), one of the world’s leading financial groups. Across the globe,... .... Responsibilities include rapidly responding to potential incidents and events to minimize risk exposure... ...course of resolution while driving security improvement Strong Incident Response...Full timeWork at officeLocal areaRemote work1 day per week
- ...space universally accessible, secure and actionable? Then you’ve... ...savvy Principal Cybersecurity Lead to defend the company as an... ...operator, security engineer, and incident leader. This person will... ...employees, customers, and external responders during high-pressure events....Permanent employmentTemporary workImmediate startRemote workNight shift
$10k
...Summary Securing Travel, Protecting People - At the Transportation... ...Duties Help This Lead Transportation Security... ...Assisting with investigations of incidents, and preparing incident reports... ...required information. Responding to breaches of security and emergency...Permanent employmentFull timePart timeTraineeshipWork experience placementWork at officeRemote workTrial periodRelocation packageFlexible hoursShift work- First Citizens Bank is seeking a Senior Incident Response Analyst to join the Cyber Incident Response team in a remote role across the United States. The candidate will detect and respond to threats, interact with business stakeholders, and restore operations while mentoring...Remote job
$30.85 per hour
...: Allied Universal®, North America's leading security and facility services company, offers... ...GSOC to include, but not limited to, incident recognition/escalation, emergency response... ...systems, handling incidents, and responding to emergencies Update the GSOC Operator...Hourly payFull timeCurrently hiringWork at officeLocal areaFlexible hoursShift workNight shift- ...processor management. Refine and maintain security and compliance policies, keeping them... ...residency, and verify they're met. Coordinate incident response processes, including tabletop... ...authoring security policy and responding to enterprise client security questionnaires...Contract workFor contractorsFor subcontractorWork at officeRemote workFlexible hours
- TeleTech Holdings, Inc. is seeking an Incident Response Manager to lead our security operations from a remote location in the United States. You will oversee detection, containment, and remediation of cybersecurity threats while guiding a skilled team of analysts. You’...Remote work
- First Citizens Bank is seeking a Senior Incident Response Analyst for a remote role that can be hired in multiple U.S. markets. You will join the Cyber Incident Response team, detecting and responding to threats, interacting with business stakeholders, and restoring operations...Remote job
- ...Lead Consultant for the IR/Forensics Practice Employment Type... ...will be part of the Incident Response and Forensics practice... ...activities during suspected security events, manage customer recovery... ...As a Lead Consultant you will respond to, analyze, diagnose, and report...Remote work
$66.5k - $94.8k
...Job Summary We are currently seeking a Lead Physical Security Systems Specialist in Columbus, Ohio.... ...reports and system data for security incidents, audits, and compliance reviews Assist... ...operating procedures and work instructions Respond to security system outages and...For contractorsWork experience placementWork at officeLocal areaRemote workFlexible hours$110.5k - $205k
...domains in the interest of national security. Job Title: Lead, Systems Administrator Job Code: 4216... ...Tenable and Splunk to monitor, detect, and respond to security threats. Apply SCAP and... ...upgrades, patch management, and incident response. Travel up to 15% to support...Local areaRemote workFlexible hours- ...LOVE OUR WORK. - Provide Security in assigned area, maintains high... ...reports as required for incidents involving law violations and... ...a nationally certified First Responder or state certified EMT. STAY... ...We've grown to become the leading provider of integrated entertainment...Local areaShift workNight shift
$20.69 per hour
...Company Overview: Allied Universal®, North America’s leading security and facility services company, offers rewarding... ...like CCTV cameras and access control systems. ~ Responding to security alarms and incidents promptly. Incident Response: ~ Investigating...Weekly payFull timeWork at officeLocal areaMonday to FridayShift work- ...Company Overview: Allied Universal®, North America’s leading security and facility services company, offers rewarding careers that... ...policies and when appropriate, emergency response activities Respond to incidents and critical situations in a calm, problem solving manner...Weekly payTemporary workWork at officeLocal areaDay shift
$32 per hour
...GardaWorld Security Services is Now Hiring a Lead Mobile Patrol Specialist! Ready to suit up as a Lead Mobile... ...by being visible and spotting incidents as, or even before, they happen.... ...reporting discrepancies to management. Respond to security incidents, emergencies,...Hourly payFull timeWork at officeLocal areaImmediate startRemote workFlexible hoursShift workNight shiftDay shiftAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Incident Security Responder. Be the first to apply!



