Manager, Incident Response
KPMG
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.
We are currently seeking a Manager, Incident Response to join our Advisory practice.
Responsibilities
- Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery efforts for client incidents
- Oversee and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced persistent threats
- Lead and coordinate incident response engagements, including client communications, executive briefings, war-room facilitation, and cross functional stakeholder management (legal, forensics, privacy, communications, and leadership) during high impact events
- Oversee incident investigation and remediation, including root cause analysis, development of actionable improvement plans, and integration with broader cyber resilience practices
- Manage incident response delivery and performance, defining and tracking SLAs, metrics, reporting, and contributing to the enhancement of incident response playbooks, methodologies, and service offerings
- Collaborate and lead within the Cyber & Tech Risk practice, partnering across threat management, governance, risk, compliance, privacy, and technology risk teams while mentoring and developing incident response personnel
- Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications
- Five years of experience in cybersecurity incident response or cyber threat management is required
- Bachelor's degree from an accredited college or university (or equivalent work experience); advanced degree a plus
- Proven experience leading cyber incident investigations and managing escalations in high pressure environments, applying established incident response frameworks (e.g., NIST, SANS) and breach response practices
- Hands on experience with security monitoring and response technologies, including SIEM, EDR, DLP, network security, and threat intelligence platforms
- Strong engagement and stakeholder management capabilities, with the ability to lead complex workstreams, balance competing priorities, and communicate effectively—including presenting to senior executives
- Demonstrated professionalism and judgment, exhibiting a high degree of integrity and the ability to manage sensitive and confidential matters
- Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
KPMG LLP and its subsidiaries (“KPMG”) complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work .
Follow this link to obtain salary ranges by city outside of CA:
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.
KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.
Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
$135k
...A healthcare organization in Atlanta is seeking a Manager of Security Operations who will lead a team of security analysts and engineers. This role encompasses overseeing incident response operations, developing enterprise playbooks, and managing the security tooling...SuggestedFlexible hours$142.9k - $266k
Job Number: R0241993 Cyber Incident Response Business Development Senior Manager The Opportunity: Join a team to contribute to Booz Allen's growth efforts for its Incident Response business, applying business development, strategic sales expertise and knowledge of Incident...SuggestedFull timeContract workPart timeLocal area$135k - $165k
Digital Realty is seeking a Senior Manager for its Cyber Security Operations Center in Atlanta, Georgia. The role involves overseeing 24/7 global security monitoring, managing incident responses, and optimizing SOC tools to improve cyber defense capabilities. The ideal...Suggested$135k
...Position Overview The Manager of Security Operations & Incident Response leads a team of security analysts and engineers responsible for protecting the organization through detection, response, and continuous improvement of security controls. This role owns the operational...Suggested- ...seeks to recruit a passionate and experienced Leader for its Incident Response team. This is a senior-level, hands‑on, highly technical role... ...engineering practices. You are a motivated leader who will directly manage, mentor, and develop a team of SOC analysts while driving the...SuggestedShift work
- ...TheFense platform—our integrated MDR, SIEM, EDR, and response ecosystem designed for regulated industries,... ...environments. Description We are expanding our Incident Response leadership team with a hands‑on technical manager who thrives in fast-moving investigations and...Work at officeNight shift
- Fox Rothschild LLP is seeking a Senior Analyst for Cybersecurity Operations & Response in Atlanta, Georgia. The role involves supporting the Firm’s cybersecurity efforts, managing incident response, and overseeing vulnerability assessments. The ideal candidate will have...
- ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations... ...activities, ensuring alignment with established incident management processes, service incident models, and enterprise IT objectives...Contract workWork experience placementWork at officeShift work
- ...Key Responsibilities War‑Room Facilitation: Structure/facilitate major incident bridges; maintain restoration focus; assign actions/owners; track progress to closure... ...experience. 8+ years of experience in incident management, incident response, or related IT roles,...Contract workWork experience placementWork at officeShift work
$62.2k - $105.7k
...An Accenture Federal Services Company in Atlanta seeks an Incident Manager to oversee the end-to-end lifecycle of IT incidents. This role... ...teams to ensure minimal disruption to critical systems. Responsibilities include leading incident response, conducting reviews, and...- Cayuse Holdings is seeking an ITSM Incident Response Analyst to provide support and respond to IT incidents. This remote position requires... ...in Service Now, with a focus on incident documentation and managing critical events. The ideal candidate should have 3-5 years of...Remote job
$142.9k - $266k
Phase2 Technology in Atlanta, Georgia is seeking a Cyber Incident Response Business Development Senior Manager to lead business development initiatives for its Incident Response business. This role requires expertise in sales strategies, maintaining strategic relationships...- Check Point Software in Atlanta is seeking an experienced Incident Response Team Leader to guide a team of analysts in managing security incidents for enterprise customers across the US. This pivotal role emphasizes hands-on leadership in cyber incident management and operational...
- ...culture, we invite you to join us. We are seeking an experienced Incident Response Team Leader to lead a team of IR analysts supporting... ...This is a hands‑on leadership role focused on cyber incident management, customer engagement, threat containment, and operational excellence...Remote job
- Google is seeking experienced Security Engineers to drive incident response and forensics. The ideal candidate will have extensive experience in managing incident response operations and will collaborate to enhance security for Google's services. This role requires a Bachelor...
- Fortuna Cysec in Atlanta, GA, seeks a Cybersecurity Incident Response Manager to lead investigations and manage critical security events. The ideal candidate will have 5-10+ years in incident response, possess deep expertise with EDR and SIEM platforms, and be adept in...
- American Express is seeking a seasoned Leader for its Incident Response team in Atlanta, Georgia. This senior role involves hands-on technical responsibilities, incident management, and team leadership in a fast-paced environment. The ideal candidate possesses deep expertise...
- Murata Electronics is seeking an Operations Incident Specialist to manage operational incidents impacting demand management and ensure timely resolutions. This role requires strong problem-solving abilities and experience in a fast-paced environment. Candidates should possess...
- ...infrastructure and developing the company’s Information Security program. Applicants should have strong experience with anti-virus and incident mitigation. The ideal candidate will recognize potential threats, lead investigations, and possess robust knowledge of scripting...
- Gasoc is seeking experienced Cybersecurity professionals to manage and oversee cybersecurity tools and strategies, focusing on cloud... ...must have substantial experience in endpoint security, incident response, and data protection. This role requires expertise in managing...
- ...hands-on technical leader in Cyber Investigation and Forensic Response. This role involves leading complex investigations and mentoring... ...will have at least 4 years of experience in Digital Forensics and Incident Response. Essential skills include advanced memory forensics...
- ...Georgia, is seeking an experienced cybersecurity professional for incident management and forensic analysis. Candidates should have over 10 years of experience in cybersecurity, with a focus on T3 incident response and the ability to manage complex global incidents. The role...
$99k - $232k
Industry/Sector Not Applicable Specialism Managed Services Management Level Manager... ...As a Managed Services - AI Operations & Incident Commander - Manager, you will leverage data... ...inspire others to deliver quality. You are responsible for coaching, leveraging team members’...H1b$87.6k - $131.3k
...software to optimize fast, accurate, and cost-effective order fulfillment and last‑mile delivery. Position Summary The Incident Manager leads the real‑time response to high‑impact incidents across complex automated warehouse environments, ensuring rapid service restoration by...Local area- Crump Life Insurance Svcs Inc in Atlanta is seeking an Incident Manager to lead enterprise cyber incident and high-risk vulnerability responses. In this role, you will drive effective coordination of cross-functional teams, ensuring timely decision-making and clear communication...
$62.2k - $105.7k
...Position Overview The Incident Manager oversees the end‑to‑end lifecycle of IT incidents in an enterprise environment, ensuring rapid... ...reporting in a highly regulated federal IT environment. Key Responsibilities Lead coordination of incident response across infrastructure...Contract workWork experience placementWork at office- ...encompasses staff supervision, patient flow management, crisis intervention, and collaboration... ...promptly Adjust staffing levels in response to patient acuity and census, ensuring... ...Utilize electronic health records and incident reporting systems to document and communicate...Full timeTemporary workShift work
- ...Traveling Project Manager- Self Perform (AFG) Location: Kansas City, MO, US, 641... ...travel to assigned projects. Key Role Responsibilities - Core PROJECT MANAGEMENT FAMILY –... ...mentoring others. Investigates safety incidents and retrains staff as needed. Manages...Contract workFor subcontractorRelocation
- The Incident & Request Manager is responsible for leading incident response and request management across all non-production environments (Dev, QA, UAT, Performance). This role serves as the escalation point for project and product delivery teams, ensuring incidents are...
$99k - $232k
PwC South Africa is seeking a Manager for its Managed Services - AI Operations & Incident Commander team in Atlanta, Georgia. The ideal candidate will leverage... ...planning and client account management. Responsibilities include leading teams, enhancing business performance...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager, Incident Response. Be the first to apply!
- apple localization manager Atlanta, GA
- compounding manager Atlanta, GA
- nicu manager Atlanta, GA
- ca identity manager Atlanta, GA
- mitigation manager Atlanta, GA
- senior compensation manager Atlanta, GA
- manager total rewards Atlanta, GA
- manager salesforce Atlanta, GA
- valuation manager Atlanta, GA
- fraud prevention manager Atlanta, GA


