Cybersecurity Incident Manager - Lead
$142.32k - $273.93kUSAA - United Services Automobile Association
Why USAA?At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs.The OpportunityAs a dedicated Cybersecurity Incident Manager - Lead, the candidate selected for this position serves as a Lead within the Cyber Threat Monitoring and Response (CTMR) team, responsible for leading and coordinating cybersecurity incident response activities throughout the incident lifecycle across security, technology, business, and third-party partner organizations. Acts as an Incident Commander during active cybersecurity incidents by establishing response objectives, maintaining situational awareness, coordinating cross-functional response teams, and communicating incident status, business impact, and response actions to stakeholders and senior leadership.This role also supports the ongoing development and maturity of the Cyber Threat Operations Center by driving improvements to incident response processes, operating models, playbooks, training, metrics, and after-action review practices. The successful candidate will identify opportunities to enhance response effectiveness, operational readiness, and cyber resilience through continuous improvement, operational excellence, and the application of industry best practices.Investigates, analyzes, and responds to security anomalies and events (e.g. suspicious behavior, attacks, and security breaches) within USAA's environments using a variety of cyber defense tools to detect and respond to threats. Conducts vulnerability, security configuration, and/or penetration testing assessments of systems and networks. Identifies cyber threats, analyzes operational impacts, and communicates to appropriate stakeholders. Stays current with latest information security threats, exploits, trends, and intelligenceWe offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ or Colorado Springs, CO. Relocation assistance is not available for this position.What you'll doInfluences and leads efforts across the Information Security department and enterprise as a subject matter expert in their domain.Leads research efforts and analysis of the latest information security vulnerabilities, threats, exploits, trends and intelligence. Shares intelligence with the enterprise. Collaborates in the Intelligence community with external organizations.Serves as subject matter expert, leads, and improves the vulnerability management, security configuration assessment, and/or penetration testing programs.Develops analysts through training and knowledge sharing activities.Monitors internal and external networks, systems, and applications for advanced security anomalies and events (e.g.suspicious behavior attacks, and security breaches). Trains analysts in incident detection and response.Leads and improves the incident response program.Leads and responds to cyber incidents, performing detailed analysis using complex security tools to determine root cause and impact by using a broad range of demonstrated experience (e.g.forensics, networking, servers, coding, etc.) to determine a malicious actor's tactics, techniques, and procedures.Acts as leader for cyber incidents.May testify as expert witness in court.Incorporates discoveries from the incident response process to substantially improve the existing detection capabilities, operational processes, security controls, and overall program.Prepares and delivers written and verbal briefs with recommendations to senior leadership and external parties on latest threats, alerts, incidents, and improvements.Drives and directs quality work efforts. Serves as the primary resource for cross-functional team members on escalated issues of a unique nature.Maintains expert level knowledge of USAA Information Security standards as well as industry information security best practices, frameworks, laws, and regulations.Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.What you have:Bachelor's degree OR 4 years of relevant education and/or experience.8 years of related experience in Information Security, Cybersecurity and/or Information Technology with a security focus to include accountability for complex tasks and/or projects.6 years of related experience in one of the following domains: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, Software Development Security.Expert level of business acumen in the areas of business operations, risk management, industry practices and emerging trends.Experience performing security reviews to identify gaps, resulting in recommendations for inclusion in risk mitigation strategies.Experience investigating potentially malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.What sets you apart:Experience leading technical investigations and response activities during cybersecurity incidents, including coordinating responders, prioritizing actions, and validating containment efforts.Experience across multiple incident response disciplines, including security monitoring, alert triage, incident investigation, case disposition, malware analysis, digital forensics, threat intelligence, endpoint security, network security, identity security, and incident containment.Demonstrated ability to coordinate cross-functional teams and maintain situational awareness during complex or high-severity cybersecurity incidents.Experience responding to ransomware, credential compromise, insider threats, data exfiltration, cloud compromise, advanced malware, or other large-scale cyber threats.Familiarity with proactive cybersecurity activities such as threat hunting, detection engineering, cyber threat intelligence, purple teaming, red teaming, or adversary emulation.Experience developing and maturing incident response programs, processes, playbooks, operating models, and after-action review programs to improve response capabilities and operational effectiveness.Experience communicating technical findings, business impact, and response recommendations to senior leadership and stakeholders during active cybersecurity incidents.Experience coordinating cybersecurity response activities across security, technology, business, and third-party partner organizations.Compensation range: The salary range for this position is: $142,320 - $273,930.USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.SummaryLocation: San Antonio Home Office I; Colorado Springs Campus; Plano Legacy; Phoenix Campus (Main)Type: Full time
- Cyber Incident Response Analyst Location: Austin OR San Antonio, TX - Hybrid Candidates... ...analysis. Serve as Incident Commander during cybersecurity events, coordinating actions,... ...Gravwell, NetWitness, Corelight, and case management workflows. 4 - Required - Strong understanding...Suggested
- ...Are you passionate about leading the frontline defense against... ...scope of threat monitoring and managed Security Operations Center (... ...some of today's toughest cybersecurity and organizational challenges... ...escalation management, and complex incident investigation, mitigation,...SuggestedLocal areaVisa sponsorship
- ...grow their business by delivering risk management solutions across critical domains, including... .... Within that environment, this role leads the delivery, growth, and continuous improvement... ...executive governance, status reporting, incident response, risk mitigation, and financial...SuggestedContract workLocal areaVisa sponsorship
- ...organizational risk posture of leading companies at enterprise... ...security services marketplace. Managing our industry-leading... ...solve some of today's toughest cybersecurity and organizational challenges... ...other executives for security incidents, strategic risk decisions, executive...SuggestedLocal areaVisa sponsorship
$163.4k - $322.1k
...intelligence, investigations, emergency communications, case and incident management, and physical security technology. The Physical Security... ...Security consulting team, you will be responsible for:Leading client engagements focused on physical security strategy, operating...SuggestedLocal areaVisa sponsorship$134.5k - $265.1k
...security strategies, technologies, and managed services. By advising on how to strengthen... ...risk management, security operations, incident response, and defense-in-depth capabilities... ...team, you will be responsible for:Leading physical security advisory and implementation...Contract workLocal areaVisa sponsorship- A safety management firm is seeking a Corporate Health, Safety, and Risk Coordinator in San Antonio, Texas. The role involves coordinating safety programs, managing incident investigations, and ensuring regulatory compliance. Candidates should have at least 5 years of...Full time
$148.01k
...Job Summary: As a Senior Cyber Security Manager Lead a technical cybersecurity team responsible for enterprise security engineering, security tooling... ..., vulnerability management, detection engineering, incident investigation, or infrastructure/cloud security. Translate...- ...professional to join our dedicated team. Job Summary: The Site Lead serves as the on-site manager responsible for day-to-day execution of all access... ...with security stakeholders during real-time incidents or special access events. Daily Operations & Oversight:...Full timeContract workFor contractorsWork at officeShift workNight shift
- ...Description Job Description Security Shift Lead Collaborate with a passionate Zoo... ...operational readiness, responding to incidents, and providing leadership during emergencies... ...stakeholders. Ability to effectively manage public interactions while remaining calm...Full timeShift workNight shiftWeekend workAfternoon shift
$67.9k - $101.9k
...Johnson Controls, a global leader in thermal management, mission-critical building systems,... ...technology, lifecycle services and an industry-leading field organization, we elevate customer... ...and fabrication equipment. Assist in incident investigations and corrective action...$163.4k - $322.1k
Position Summary Senior Manager, Advanced Cyber Threat Response, Forensics and Technical... ...for, respond to, and recover from cyber incidents. As a Senior Manager, Advanced Cyber... ...Forensics and Technical Remediation Integration Lead, you will quarterback complex client...Local areaVisa sponsorship$73.45k - $132.78k
...seeking an Operations Shift Lead 3rd shift (9PM to 5AM) to join... ...operations activities and incident response for assigned shift.... ...Participate in major incident management and post-incident reviews.... ...Hands on experience in IT Cybersecurity, Network Operations, or Windows...Full timeWork at officeShift workNight shift$16 - $24.75 per hour
• • • • • • Lead Supervisor I Coach is a global fashion house founded in New York in 1941. Inspired by the vision of Creative Director... ...& Requirements: • 1+ years of equivalent experience in Managing Competitive Retail Space at the Lead Supervisor level • Can bend...Minimum wageShift work- ...Job Description Job Description The Lead Teacher is responsible for the total operation... ...involving classroom issues, situations, incidents, etc…communication is key in any and all... ...Director 10. General Work Habits: -Manages time well, such as submitting all required...
- ...Description Job Description Job Summary: Job Title: HVAC Lead Installer: Company: Elmer's Home Services Location: 1171... ...neatly. Report to and take direction from the HVAC Project manager and follow all established company policies and procedures....Full timeContract workImmediate startWork from homeFlexible hours
$14.5 per hour
...consistent with the requirements of the job. Responsibilities Management and maintenance of the equipment and supplies used for events... ...to your direct supervisor as soon as possible following an incident resulting in an injury. Qualifications Education/Experience:...Hourly payPart timeLocal areaImmediate start- ...The Inventory Control Lead is responsible for ensuring the accuracy, integrity, traceability, and availability of all ingredients... ...operations. The Inventory Control Lead supports the Supply Chain Manager and Supply planning and purchasing lead in maintaining accuracy,...
- ...Rackspace Technology is seeking a Senior Cyber Security Manager to lead a technical cybersecurity team and own the security tool portfolio, including EDR, NDR, IDPS, vulnerability scanners, and cloud security tooling. You will oversee exposure management, telemetry quality...
- ...System Security Officer (ISSO) to join our cybersecurity team. In this role, you will be... ...compliance with security policies, and managing risk through the implementation of robust... ...Collaborate with teams to address security incidents and findings REQUIRED SKILLS...Temporary workFor contractorsImmediate startFlexible hours
- ...implementing and overseeing security policies, managing risk assessments, and ensuring... ...organized, and has a strong understanding of cybersecurity principles, with the ability to respond quickly and effectively to security incidents. Join us to play a key role in...Temporary workFor contractorsImmediate startFlexible hours
- ...The Senior Analyst will be required to develop, implement, and manage security solutions; and must demonstrate the ability to communicate... ...threat detections, performing threat hunting and/or conducting incident response. Familiarity with enterprise logging technologies such...
- ...our clients and communities.In the role of Environmental Section Lead, we'll count on you to: Take responsibility for operations of... ...morale, quality control and marketing supportFunction as Project Manager and take responsibility for production on projects in addition to...Local area
- ...focused Technology, Media & Telecommunications (TMT) Environmental Lead to provide leadership, technical excellence, and market growth... ..., project delivery, professional development, quality management, and strategic growth initiatives across HDR’s global TMT portfolio...Local area
$82.6k - $162.8k
...opportunities businesses face in cybersecurity. Join our team to deliver... ...Through powerful solutions and managed services that simplify... ...(SLA) timeframes.Respond to incidents using documented procedures and... ...meeting minutes; notify shift leads when procedures need updating...Work at officeLocal areaVisa sponsorshipShift workRotating shift$39 - $43 per hour
DescriptionKforce is seeking a Cybersecurity Specialist in San Antonio, TX to support governance... ...strengthen cybersecurity posture, manage risk, and maintain compliance with applicable... ...disaster recovery, business continuity, incident response, data privacy, and security...- ...directed by operational flight leads. Conduct Cyber Threat... ...teams. (CDRL A007) Work with incident response team to develop... ...the following: attack surface management, Security Operations Center... ...framework, and its uses within the cybersecurity community (e.g., Open Source...Temporary workFor contractorsFlexible hours
- ...Chief Information Security Officer and lead the global enterprise security and compliance... ...governance, and public company risk management. Key responsibilities include developing... ...negotiate security contracts, and experience in incident management, threat and vulnerability...
$105.4k - $207.8k
...emergency preparedness, and enterprise risk management intersect.Recruiting for this role ends... ...professional relationshipsAbility to lead projects or workstreamsAbility to manage... ...intelligence; mass communication systems; or incident case management and dispatching...Local areaVisa sponsorship$105.4k - $207.8k
...opportunities businesses face in cybersecurity. Join our team to deliver... ...Through powerful solutions and managed services that simplify... ...information risk events and incidents based on incident type and severity... ...detection, and escalations to Shift Lead/Engineering/SDMs and SOC...Work at officeLocal areaVisa sponsorshipShift workRotating shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Incident Manager - Lead. Be the first to apply!
- cyber security lead San Antonio, TX
- director - cyber security San Antonio, TX
- cybersecurity manager San Antonio, TX
- cyber security incident responder San Antonio, TX
- remote cyber security San Antonio, TX
- cyber security San Antonio, TX
- cybersecurity policy and compliance analyst San Antonio, TX
- cybersecurity San Antonio, TX
- cybersecurity certificate San Antonio, TX
- cybersecurity technical writer San Antonio, TX





