Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Cyber Incident Response Engineer

$140k - $175k

NBCUniversal

Company Description

NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our global theme park destinations, consumer products, and experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, NBC Sports, Telemundo, NBC Local Stations, Bravo, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through our powerhouse film and television studios, including Universal Pictures, DreamWorks Animation, and Focus Features, and the four global television studios under the Universal Studio Group banner, and operate industry-leading theme parks and experiences around the world through Universal Destinations & Experiences, including Universal Orlando Resort, home to Universal Epic Universe, and Universal Studios Hollywood. NBCUniversal is a subsidiary of Comcast Corporation. Visit for more information.

Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.

Job Description

We are seeking a Senior Cyber Incident Response Engineer to design, automate, integrate, and continuously improve the technical systems, workflows, and tooling used to detect, investigate, contain, and recover from cybersecurity incidents. This role combines hands-on response engineering with incident readiness and operational improvement, helping ensure responders have the automation, telemetry, access, and processes needed to act quickly and effectively. The ideal candidate brings strong incident response and DFIR expertise, practical engineering skill, and the ability to turn repeated operational pain points into scalable, reliable capabilities that improve response quality and reduce time to action.

Key Responsibilities:
  • Design, build, and improve automated evidence collection capabilities that increase the speed, consistency, and completeness of incident investigations.
  • Create and maintain SOAR playbooks that orchestrate investigation, enrichment, containment, notification, and recovery workflows.
  • Integrate SIEM, EDR, IAM, cloud, email, case management, and threat intelligence platforms to enable unified response actions and stronger analyst context.
  • Develop and deploy response tooling that may utilize AI to improve response capabilities across cloud, endpoint, identity, SaaS, email, and data platforms.
  • Develop scripts, tools, and integrations that support triage, containment, enrichment, forensic collection, and operational response workflows.
  • Ensure responders have the logs, telemetry, access, and tooling needed to investigate and respond without unnecessary delay.
  • Build dashboards, operational views, and incident metrics that measure response performance, workflow health, and process effectiveness.
  • Identify repeated manual analyst tasks and turn them into safe, scalable, and repeatable automation.
  • Review incident response plans, identify readiness gaps, and help develop practical strategies to improve preparedness.
  • Design and optimize incident response playbooks aligned to relevant threats, operating models, and business needs to allow for quick identification and response to potential incidents.
  • Collaborate with Response Operations and Automation team stakeholders for prioritization, automation creation, and integrations with security tooling
  • Facilitate or support tabletop exercises, drills, and readiness activities to validate plans and improve operational performance.
  • Lead or support complex investigations involving host, network, identity, email, and cloud artifacts to determine nature, scope, and root cause.
  • Partner with cross-functional teams to guide containment, remediation, recovery, and post-incident improvement activities.
  • Brief technical teams and leadership on findings, risks, recommendations, and response decisions during and after incidents.
  • Contribute to incident response standards, methodologies, documentation, and internal knowledge sharing.
  • Participate in an incident response on-call rotation, including weekend coverage, as required.
Qualifications

Requirements:
  • 5+ years of relevant cybersecurity experience in either incident response, DFIR, detection engineering, threat hunting, and or SOC escalation
  • 2+ years of security automation / cyber defense engineering
  • Strong proficiency with Python, PowerShell, Bash, or similar scripting languages used for automation and response engineering.
  • Ability to lead projects with little guidance, and strong communication
  • Knowledge of SIEM, SOAR, EDR, Data Lake, and enterprise security tooling and methodologies.
  • Experience handling security incidents and investigating a multitude of cyber threats with various TTPs across multiple enterprise platforms
  • Experience building and maintaining API integrations across security and enterprise platforms.
  • Working knowledge of SIEM query languages such as SPL, KQL, SQL, or equivalent analytics languages.
  • Experience with EDR response actions, investigation workflows, and endpoint containment techniques.
  • Experience designing, building, or operating SOAR platforms and automated playbooks.
  • Strong understanding of endpoint, identity, network, cloud, email, and SaaS telemetry, including logging, evidence collection, and containment actions across modern environments.
  • Experience collecting and using forensic artifacts to support investigations across endpoints, identities, cloud services, email, or SaaS platforms.
  • Ability to design for scale, repeatability, automation, reliability, and reduced response time in a production security environment.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Digital Forensics, or a related field, or equivalent practical experience.
Desired Characteristics:
  • 7+ years of relevant cybersecurity or security operations experience.
  • Demonstrated ownership of incident response engineering, automation, forensic collection, containment workflows, or large-scale security operations improvements.
  • Experience conducting threat intelligence, threat detection, malware analysis, or forensic analysis in security incidents as a team
  • Experience building and leveraging AI-assisted tooling in investigation or triage workflows for a large, distributed enterprise environment
  • Experience integrating case management, email security, identity platforms, cloud services, and threat intelligence into response workflows.
  • Experience building analyst-facing dashboards, metrics, and reporting that show operational health and response effectiveness.
  • Strong understanding of cloud technologies, AI agents, and LLMs
  • Familiarity with secure automation guardrails, approval models, and change control for containment actions.
  • Experience with detection engineering and the operationalization of alerts, enrichments, and response workflows.
  • Experience improving responder access to logs, telemetry, and investigative tooling across multiple security domains.
  • Relevant certifications are preferred rather than required. Preferred certifications may include GCIH, GCFA, GCFE, GNFA, EnCE, CFCE, GCIA, GSEC, CySA+, Blue Team Level 2, AWS Security Specialty, Azure Security Engineer, Google Cloud Security Engineer, CISSP, CISM, GPEN, OSCP, or PNPT.
Additional Requirements:
  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee's residence.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $140,000 - $175,000 (bonus eligible)

Additional Information

As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.


If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations by emailing View email address on click.appcast.io.

For LA County and City Residents Only: NBCUniversal will consider for employment qualified applicants with criminal histories, or arrest or conviction records, in a manner consistent with relevant legal requirements, including the City of Los Angeles' Fair Chance Initiative For Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Cyber Incident Response Engineer in New York, NY vacancy
  • Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams to... 
    Cyber
    Senior

    Richemont

    New York, NY
    3 days ago
  •  ...and Innovation (OTI) is seeking a skilled cybersecurity professional to serve as a senior technical escalation point for high-profile incidents. You will lead complex incident responses, mentor CERT Specialists, and drive the development of actionable strategies for improving... 
    Cyber
    Senior
    Work at office

    TECHNOLOGY & INNOVATION

    New York, NY
    5 days ago
  • 600 Mobility Tech Solutions LLC is seeking a Cyber Security Engineer to join its Information Security & Cyber Security team. The ideal candidate will have strong experience in incident response, digital forensics, and threat detection, ensuring robust security measures... 
    Cyber

    600 Mobility Tech Solutions LLC

    New York, NY
    1 day ago
  • Fragomen, a leader in global immigration services, is hiring a Cyber Security Engineer to join their Information Security & Cyber Security team. This role focuses on incident response, digital forensics, and improving threat detection capabilities across the organization... 
    Cyber

    Fragomen

    New York, NY
    2 days ago
  • $100k - $185k

    A global intelligence firm is seeking a Cyber Incident Response Analyst to join its Cyber Defence team. The successful candidate will coordinate cybersecurity responses, integrate threat intelligence, and develop operational playbooks. Candidates should have a solid grasp... 
    Cyber
    Senior

    S&P Global, Inc.

    New York, NY
    1 day ago
  • Rapid Strategy, a leading cybersecurity provider, is seeking a mid-level resource to support Cyber Operations with a non-profit client. This role demands expertise in incident response and vulnerability management using tools like CrowdStrike and Microsoft Security suite.... 
    Cyber

    Rapid Strategy

    New York, NY
    1 day ago
  •  ...in the United States is seeking a Senior Backend Software Engineer to join their engineering team. This...  ...services and APIs for an AI-powered incident response platform. The ideal candidate has...  ...enhance their ability to recover from cyber incidents and impact their... 
    Cyber
    Senior

    MOXFIVE

    New York, NY
    4 days ago
  • $80k - $95k

     ...our business. We take that responsibility seriously. With a 200-year...  ...build a fulfilling career. Cyber Incident Response - Sr Analyst...  ...Communication & Reporting: support senior analyst on on-going cyber...  ..., metrics etc.) Social engineering Simulations: Support... 
    Cyber
    Senior
    Local area

    Brown Brothers Harriman

    Jersey City, NJ
    1 day ago
  • Senior Security Engineer, Security Incident Response Team (SIRT) Remote, US GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations...  ...support and response resolution, through to cyber threat analysis and detection and response... 
    Cyber
    Senior
    Remote work

    GitLab

    New York, NY
    4 days ago
  • Job Responsibilities Incident Investigation: Lead investigations into high-severity threats, identifying...  ..., SOC analysis, or system engineering. Technical Skills: Proficiency in network...  ...Bachelor’s degree in Computer Science, Cyber Security, or equivalent experience.... 
    Cyber
    Immediate start

    True Zero Technologies

    New York, NY
    4 days ago
  • Senior Incident Responder Lead cradle-to-grave incident response actions for declared incidents impacting the OT and IT environments...  ...orchestration following the cyber technical incident response...  ...with threat hunting and detection engineering teams to create and enhance... 
    Cyber
    Senior

    Smurfit Westrock plc

    New York, NY
    5 days ago
  • $130k - $152.5k

     ...Senior Associate/Digital Forensics, Incident Response & Cybersecurity (Forensic Services Practice) Boston, MA, United States; Chicago, IL, United States;...  ...include ongoing theft of trade secret investigations, cyber breach detection, threat analysis, incident response... 
    Cyber
    Senior
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    New York, NY
    3 days ago
  • $125k - $160k

    frontdoor, Inc. is seeking a Senior Incident Response Engineer to join their innovative team in the United States. The successful candidate will manage incident responses while working in a cloud-native, remote-first environment, and will leverage their extensive security... 
    Senior
    Remote job

    frontdoor, Inc.

    New York, NY
    4 days ago
  • A healthcare data company dedicated to transforming how patients receive care is seeking a Sr. Cyber Threat & Response Engineer. In this role, you will identify, analyze, and mitigate cyber threats, collaborate with a security team, and respond to critical alerts post-... 
    Cyber
    Senior
    Remote work
    Flexible hours

    Arcadia

    New York, NY
    4 days ago
  • $135k - $140k

    Senior Associate, Cyber Incident Response Cyber | New York, NY Reports to: Cyber Incident Response Manager Role Overview Senior Associate, Cyber Incident Response is a professional responsible for protecting computer systems, networks, and sensitive data from cyber-attacks... 
    Cyber
    Senior
    Local area
    Flexible hours

    Richemont

    New York, NY
    3 days ago
  • $77k - $202k

    PwC is seeking a Senior Associate in Cybersecurity Incident Management in New York City. This role involves analyzing complex cybersecurity challenges and mentoring junior team members. Applicants should have a Bachelor’s Degree in a relevant field and at least 3 years... 
    Cyber
    Senior

    PwC

    New York, NY
    1 day ago
  • $77k - $202k

     ...protecting organisations from cyber threats through...  .... In cybersecurity incident management at PwC, you...  ...and data. You will be responsible for identifying, analysing...  ...deliverables. As a Senior Associate, you guide and...  ...Programming, Computer Engineering, Computer Applications... 
    Cyber
    Senior
    Full time
    H1b

    PwC

    New York, NY
    23 days ago
  •  ...Job Title: Incident Response Sr. Analyst Location: Jersey City, NJ [Hybrid - Week 3 days...  ...'s degree in Information Technology, Cyber Security, Computer Science, or related...  ...Thanks & Regards, Sudheer Senior US IT Recruiter | United Software Group... 
    Cyber
    Senior
    Local area

    United Software Group

    Jersey City, NJ
    5 days ago
  • Carlsbad Tech is seeking an experienced Cyber Security Engineer to work onsite in Franklin or Madison County, Ohio. The role demands over...  ...years of experience in network security, threat detection, incident response, and vulnerability management. Responsibilities include... 
    Cyber

    Carlsbad Tech

    Brooklyn, NY
    4 days ago
  • $188k - $275k

     ...intelligence that drives innovation.  What You’ll Do: CoreWeave is seeking a Senior Manager, Security Engineering, Incident Response to lead and mature our global incident response and cyber defense capabilities. In this role, you will be responsible for developing,... 
    Cyber
    Senior
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    more than 2 months ago
  •  ...Senior Security Engineer II – Threat Detection & Response Client is seeking a Senior Security Engineer- Detection & Response...  ...You will bridge the gap between Cyber Threat Intelligence (CTI) and...  ...and lead cross-functional Incident Response simulations and tabletop... 
    Cyber
    Senior
    Immediate start

    WinMax

    New York, NY
    3 days ago
  • A health services company is looking for a Senior Cyber Incident Responder to lead investigations within the Cyber Fusion Center. The role...  ...in malware analysis and incident handling, with responsibilities including providing support to cyber defense technicians... 
    Cyber
    Senior
    Remote job

    Highmark Health

    New York, NY
    4 days ago
  • Akumin is looking for a Security Engineer III to secure its IT infrastructure and manage incident response. The role involves designing and implementing advanced security solutions, conducting vulnerability assessments, and ensuring compliance with regulatory standards.... 
    Senior

    Akumin

    New York, NY
    4 days ago
  • A leading fitness technology company is seeking a Senior Cyber Analyst. You will support their Security Program, perform in-depth intelligence analysis, and develop incident response protocols. The ideal candidate will have at least 5 years of experience in Information... 
    Cyber
    Senior

    Peloton Interactive

    New York, NY
    2 days ago
  • $140k - $160k

     ...Senior Cybersecurity Engineer St. Louis, MO; Boston, MA; New York, NY The Senior...  ...Cybersecurity Engineer is responsible for protecting Focus'...  ..., networks, and data from cyber threats. This role involves...  ...and responding to security incidents. The ideal candidate... 
    Cyber
    Senior
    Remote work
    3 days per week

    Focus Financial Partners Inc.

    New York, NY
    3 days ago
  • A cybersecurity firm in the United States seeks a Senior SOC Analyst/Engineer to lead incident response and mentor junior analysts. This remote-first role offers a collaborative culture and opportunities for professional growth. Candidates should have 4+ years in SOC analysis... 
    Senior
    Remote job
    Flexible hours

    STIG

    New York, NY
    4 days ago
  •  ...of Information Security. As the Senior Cybersecurity Engineer, you will be responsible for designing, implementing, and...  ...contribute to threat detection, incident response, and compliance efforts....  ...organizational resilience and eliminate cyber threats. * Policy & Documentation... 
    Cyber
    Senior
    Full time
    Work experience placement

    DiversityJobs Inc

    New York, NY
    29 days ago
  • $132k - $160k

    A cybersecurity firm is seeking a Senior Manager, Cyber Resiliency, to lead incident response planning and tabletop exercises. The successful candidate will collaborate with internal stakeholders and ensure compliance with industry standards. A Bachelor's degree in Cybersecurity... 
    Cyber

    TMNA Services, LLC

    New York, NY
    2 days ago
  • A leading cybersecurity consultancy is seeking a strategic leader to head Cyber Incident Response in the Americas. Candidates must have over 15 years of experience and a proven track record with C-level executives in Fortune 500 companies. The role involves delivering complex... 
    Cyber

    DWH Recruitment Limited

    New York, NY
    4 days ago
  • $120k - $135k

    A global multi-manager hedge fund is seeking a Cybersecurity Analyst to enhance security controls and manage incident response. The ideal candidate will have 2-3 years of experience and a strong background in vulnerability management, incident response, and security operations... 
    Cyber

    Schonfeld

    New York, NY
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Cyber Incident Response Engineer. Be the first to apply!