Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Incident Security Responder

Full-time

Blackduck

Position Summary

The Lead Incident Security Responder drives applied product security work across Black Duck’s portfolio, protecting our products and supporting the customer security inquiries that come into our Security Operations team. Operating with broad autonomy under general guidance, you lead portions of complex security projects, partner with the Director of Security Operations and the broader engineering organization, and serve as an informal technical resource for less experienced team members. The role requires hands-on product security depth combined with program coordination: delivering architecture reviews, threat models, vulnerability triage, and customer-facing security work, while also maintaining detection content, contributing to SOAR automations, and tracking projects through to measurable outcomes.

Essential Functions/Responsibilities

  • Partner with engineering teams building Black Duck SCA, Coverity, and adjacent products on architecture reviews, threat models, and security design feedback.
  • Contribute to a measurable secure development lifecycle covering SCA , SAST , secret scanning ( GitGuardian ), dependency hygiene, and build pipeline security.
  • Recommend systematic improvements when patterns emerge across the portfolio rather than relying on one-off fixes.
  • Triage internally discovered and externally reported product vulnerabilities and help drive resolution with engineering teams.
  • Coordinate vulnerability fixes with engineering and support customer-facing communications when needed.
  • Help triage customer security questionnaires, audit requests, and ad hoc product security questions in close partnership with the Director of Security Operations.
  • Draft technically accurate answers to customer security inquiries; gather evidence from engineering when needed.
  • Join customer security calls as a subject matter expert when called upon and contribute to a growing knowledge base of reusable responses.
  • Support detection engineering and incident response activities across the corporate environment, with a focus on issues that intersect with our products.
  • Maintain and tune detection content in CrowdStrike NG-SIEM and Sumo Logic related to product security risks; help work escalations from our MDR provider ( ReliaQuest ).
  • Contribute to SOAR automations and runbooks that reduce manual toil.
  • Lead discrete workstreams within larger security initiatives or coordinate small project teams where appropriate.
  • Track projects through Jira with clear milestones and concise status updates; provide technical input into vendor evaluations and POCs across the SecOps and AppSec stack.
  • Act as an informal resource and mentor for less experienced team members on product security, secure development, and threat modeling.
  • Explain difficult or sensitive technical information clearly to engineers, security peers, and non-technical stakeholders.
  • Document tribal knowledge into runbooks, SOPs, and onboarding materials.
  • Other tasks and activities as assigned.

Required Education/Experience & Skills

  • At least 7 – 8 years of applicable experience in product security, application security, or security engineering, with hands-on depth in at least two of the following: secure SDLC, threat modeling, secure code review, vulnerability management, product incident response, or customer-facing product security work.
  • Working knowledge of application security tooling ( SCA , SAST , DAST , secret scanning) and the vulnerabilities they catch.
  • Familiarity with at least one major cloud platform ( AWS , Azure , or GCP ) from a security perspective.
  • Awareness of AI and LLM security risks such as prompt injection, sensitive data exposure, and the OWASP Top 10 for LLM Applications .
  • Demonstrated ability to work independently under general guidance and to lead workstreams or small project teams without formal direct-report authority.
  • Practical use of AI and LLM tools to accelerate day-to-day security work (investigation, query drafting, secure code review, documentation), with sound judgment about when AI-generated output requires human validation before it is shared, shipped, or acted on.
  • Strong written and verbal communication skills, including the ability to explain technical security topics to engineers, security peers, and non-technical stakeholders; calm and steady under incident, audit, or customer-escalation pressure.
  • Bachelor’s degree in Computer Science , Information Security , Information Technology , or equivalent practical experience.
  • Experience contributing to a Product Security Incident Response Team (PSIRT) or equivalent product vulnerability response process.
  • Familiarity with vulnerability scoring ( CVSS ), embargo handling, and coordinated disclosure.
  • Industry certifications such as CISSP , CSSLP , GWAPT , GPEN , OSCP , OSWE , or cloud security equivalents are a plus.
  • Experience supporting customer security questionnaires, RFPs, or third-party risk assessments.

Physical Requirements

  • General office environment and responsibilities requiring:
  • Extensive use of the computer which involves viewing a monitor and keyboarding for most of the workday
  • Placing and receiving phone calls
  • Occasionally moving and lifting objects up to 20 pounds
  • May require some travel as needed.
Vacancy posted 29 days ago
Similar jobs that could be interesting for youBased on the Lead Incident Security Responder in Remote vacancy
  •  ...Position Summary The Lead Incident Security Responder drives applied product security work across Black Duck’s portfolio, protecting our products and supporting the customer security inquiries that come into our Security Operations team. Operating with broad autonomy... 
    Suggested
    Full time
    Work at office

    Blackduck

    Remote
    a month ago
  • $240k - $280k

     ...Responsibilities Will Include Obsidian Security is the leading SaaS security platform, trusted by...  ...security platform to reduce risk, detect and respond to threats, and prevent breaches at...  ...response actions, and partner with incident response to operationalize them. Support... 
    Suggested
    Work from home

    Obsidian Security

    Palo Alto, CA
    13 hours ago
  • The Cybersecurity Security Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional responsible for overseeing and coordinating the response to all security incidents within the organization, acting as the primary decision-maker during a breach... 
    Suggested
    Contract work
    For contractors
    Local area
    Remote work

    Sherwin-Williams

    Cleveland, OH
    13 hours ago
  •  ...cybersecurity challenges, from proactive risk mitigation to incident response. You will lead engagements, assess client environments, and coordinate...  ...teams. In this role, you will communicate complex security concepts to executives and technical staff, manage remediation... 
    Suggested
    Remote job

    Google

    Phoenix, AZ
    3 days ago
  • Google Cloud's Mandiant unit seeks a Security Consultant with strong leadership in incident response and remediation. You'll guide clients through complex security...  ...coordinating with cross-functional teams. You will lead engagements, communicate effectively with... 
    Suggested
    Remote job

    Google

    Seattle, WA
    3 days ago
  • $112.8k - $257k

     ...Task & Integration LeadThe Opportunity:As a Security Operations Center (SOC) Task Lead, you’re in the middle of the action, responding to and mitigating threats in real time....  ...groups performing monitoring, detection, and incident response3+ years of experience developing... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Huntsville, AL
    3 days ago
  •  ...Position Title: Cyber Security Incident Response Lead Location: Texas (Teleworker) Clearance Requirements: Public Trust Clearance Pay...  ...specific IR/forensic credentials Experience mentoring SOC responders and maturing incident response programs Knowledge of... 
    For contractors
    Remote work

    Seneca

    United States
    4 days ago
  • $40 - $80 per hour

     ...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About the Role What if your hard-won experience in the SOC trenches could directly strengthen how organizations detect, respond to, and contain real threats? We're looking for a seasoned... 
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours
    Night shift

    Alignerr

    United States
    4 days ago
  • $10k

     ...About The Role Join our growing security team and help drive security detection and response initiatives across...  ...Square Park) at least 2 days/week. What You’ll Do Respond and assist with security requests and incidents submitted by Ramp team members Review logging, alerting... 
    Full time
    Work experience placement
    Work at office
    Home office
    Relocation package
    Flexible hours
    2 days per week

    RAMP

    New York, NY
    13 hours ago
  • $100k - $110k

     ...Overview The Work The Site Lead functions as the on-site...  ...execution of access control and security operations at a designated...  ...stakeholders during real-time incidents or special access events....  ...inspections, and readiness checks. Respond to and manage on-site... 
    Full time
    Temporary work
    For contractors
    Local area
    Remote work
    Flexible hours
    Shift work

    Cayuse Holdings

    Honolulu, HI
    1 day ago
  •  ...Security Lead We are looking for a hands-on Security Lead with strong technical depth to...  ...will own cloud and application security, incident response, IT and corporate security,...  ...processes, and lead efforts to detect, respond to, and remediate threats. Your focus is... 
    Work at office
    Remote work
    Work from home

    Apheris

    United States
    2 days ago
  • $91.1k - $170.4k

     ...and everyone in EY Information Security has a critical role to play....  ...well as detect and quickly respond to security events as they happen...  ...The opportunityThe CTF Shift Lead at EY plays a critical role...  ...to information security incidents, develop, maintain, and follow... 
    Work experience placement
    Summer holiday
    Local area
    Flexible hours
    Shift work

    EY (Ernst & Young)

    Hoboken, NJ
    13 hours ago
  • $150k - $160k

     ...Security Compliance Lead TSTC is an award-winning, Woman Owned, HUBZone certified Small Business...  ...POA&M management, monthly reports, and responding to ad hoc requests) ~ Vulnerability...  ...~ Vulnerability tracking ~ Incident management / security event monitoring... 
    Contract work
    Temporary work
    Local area
    Remote work
    Flexible hours

    Total System Technologies

    Annapolis Junction, MD
    1 day ago
  • $24.2 per hour

    DEPARTMENT: Security & Transportation REPORTS TO: Manager, Ballpark Security STATUS...  ...a long way. Your role as a Lead, Ballpark Security (Day Shift):...  ...coordinating daily security operations, and responding to incidents and operational needs. The Ballpark Security... 
    Full time
    Temporary work
    For contractors
    Work experience placement
    Casual work
    Work at office
    Local area
    Work from home
    Flexible hours
    Shift work
    Day shift

    San Diego Padres

    San Diego, CA
    6 days ago
  • $45k

     ...consequences. Data and Information Security is a core enabler of the...  ...us work with the world's leading pharmaceutical partners, handle...  ...Key Responsibilities Incident Response & Business Continuity...  ...We will make every effort to respond to your request for disability... 
    Full time
    Contract work
    Work at office
    Immediate start
    Remote work
    Flexible hours

    Alloy Therapeutics

    Waltham, MA
    a month ago
  •  ...Financial Group (MUFG), one of the world’s leading financial groups. Across the globe,...  .... Responsibilities include rapidly responding to potential incidents and events to minimize risk exposure...  ...course of resolution while driving security improvement Strong Incident Response... 
    Full time
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Tempe, AZ
    13 hours ago
  •  ...space universally accessible, secure and actionable? Then you’ve...  ...savvy Principal Cybersecurity Lead to defend the company as an...  ...operator, security engineer, and incident leader. This person will...  ...employees, customers, and external responders during high-pressure events.... 
    Permanent employment
    Temporary work
    Immediate start
    Remote work
    Night shift

    E-Space

    Saratoga, CA
    2 days ago
  • $10k

     ...Summary Securing Travel, Protecting People - At the Transportation...  ...Duties Help This Lead Transportation Security...  ...Assisting with investigations of incidents, and preparing incident reports...  ...required information. Responding to breaches of security and emergency... 
    Permanent employment
    Full time
    Part time
    Traineeship
    Work experience placement
    Work at office
    Remote work
    Trial period
    Relocation package
    Flexible hours
    Shift work

    Transportation Security Administration

    Kodiak, AK
    1 day ago
  • First Citizens Bank is seeking a Senior Incident Response Analyst to join the Cyber Incident Response team in a remote role across the United States. The candidate will detect and respond to threats, interact with business stakeholders, and restore operations while mentoring... 
    Remote job

    First Citizens Bank

    Scottsdale, AZ
    13 hours ago
  • $30.85 per hour

     ...: Allied Universal®, North America's leading security and facility services company, offers...  ...GSOC to include, but not limited to, incident recognition/escalation, emergency response...  ...systems, handling incidents, and responding to emergencies Update the GSOC Operator... 
    Hourly pay
    Full time
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work
    Night shift

    Alliedbarton Security Services

    Cambridge, MA
    1 day ago
  •  ...processor management. Refine and maintain security and compliance policies, keeping them...  ...residency, and verify they're met. Coordinate incident response processes, including tabletop...  ...authoring security policy and responding to enterprise client security questionnaires... 
    Contract work
    For contractors
    For subcontractor
    Work at office
    Remote work
    Flexible hours

    Litehouse

    Brooklyn, NY
    3 days ago
  • TeleTech Holdings, Inc. is seeking an Incident Response Manager to lead our security operations from a remote location in the United States. You will oversee detection, containment, and remediation of cybersecurity threats while guiding a skilled team of analysts. You’... 
    Remote work

    TeleTech Holdings, Inc.

    Austin, TX
    13 hours ago
  • First Citizens Bank is seeking a Senior Incident Response Analyst for a remote role that can be hired in multiple U.S. markets. You will join the Cyber Incident Response team, detecting and responding to threats, interacting with business stakeholders, and restoring operations... 
    Remote job

    First Citizens Bank

    Phoenix, AZ
    3 days ago
  •  ...Lead Consultant for the IR/Forensics Practice Employment Type...  ...will be part of the Incident Response and Forensics practice...  ...activities during suspected security events, manage customer recovery...  ...As a Lead Consultant you will respond to, analyze, diagnose, and report... 
    Remote work

    Lumifi Cyber

    Arlington, VA
    13 hours ago
  • $66.5k - $94.8k

     ...Job Summary We are currently seeking a Lead Physical Security Systems Specialist in Columbus, Ohio....  ...reports and system data for security incidents, audits, and compliance reviews Assist...  ...operating procedures and work instructions Respond to security system outages and... 
    For contractors
    Work experience placement
    Work at office
    Local area
    Remote work
    Flexible hours

    Battelle

    Columbus, OH
    3 days ago
  • $110.5k - $205k

     ...domains in the interest of national security. Job Title: Lead, Systems Administrator Job Code: 4216...  ...Tenable and Splunk to monitor, detect, and respond to security threats. Apply SCAP and...  ...upgrades, patch management, and incident response. Travel up to 15% to support... 
    Local area
    Remote work
    Flexible hours

    L3Harris Technologies

    Los Angeles, CA
    2 days ago
  •  ...LOVE OUR WORK. - Provide Security in assigned area, maintains high...  ...reports as required for incidents involving law violations and...  ...a nationally certified First Responder or state certified EMT. STAY...  ...We've grown to become the leading provider of integrated entertainment... 
    Local area
    Shift work
    Night shift

    Argosy Casino Hotel & Spa

    Riverside, MO
    4 days ago
  • $20.69 per hour

     ...Company Overview: Allied Universal®, North America’s leading security and facility services company, offers rewarding...  ...like CCTV cameras and access control systems.   ~ Responding to security alarms and incidents promptly.       Incident Response:  ~ Investigating... 
    Weekly pay
    Full time
    Work at office
    Local area
    Monday to Friday
    Shift work

    Allied Universal

    Atlanta, GA
    5 days ago
  •  ...Company Overview: Allied Universal®, North America’s leading security and facility services company, offers rewarding careers that...  ...policies and when appropriate, emergency response activities Respond to incidents and critical situations in a calm, problem solving manner... 
    Weekly pay
    Temporary work
    Work at office
    Local area
    Day shift

    Allied Universal

    Minneapolis, MN
    8 days ago
  • $32 per hour

     ...GardaWorld Security Services is Now Hiring a Lead Mobile Patrol Specialist! Ready to suit up as a Lead Mobile...  ...by being visible and spotting incidents as, or even before, they happen....  ...reporting discrepancies to management. Respond to security incidents, emergencies,... 
    Hourly pay
    Full time
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours
    Shift work
    Night shift
    Day shift
    Afternoon shift

    GardaWorld

    Auburn, MI
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Incident Security Responder. Be the first to apply!