Manager of Security Incident Response
$130k - $150kHUB International
At HUB International, we are a team of entrepreneurs. We believe in protecting and supporting the aspirations of individuals, families, and businesses. We help our clients evaluate their risks and develop solutions tailored to their needs. We believe in empowering our employees to learn, grow, and make a difference. Our structure enables our teams to maintain their own unique, regional culture while leveraging support and resources from our corporate centers of excellence. HUB is a global insurance and employee benefits broker, providing a boundaryless array of business insurance, employee benefits, risk services, personal insurance, retirement, and private wealth management products and services. With over $5 billion in revenue and almost 20,000 employees in 600 offices throughout North America, HUB has grown substantially, in part due to our industry leading success in mergers and acquisitions Job Description In this role, you will manage the Security Incident Response team; for detecting and identifying cyber threats, as well as containment and remediation of these threats. This role owns the full incident response lifecycle - detection, triage, containment, eradication, recovery, and post-incident review, and is responsible for building a scalable Incident Response function that pairs reactive response capability with proactive detection engineering and threat hunting. The Manager ensures investigations are conducted with sound forensic methodology, including log and audit-trail analysis across cloud and on-premises platforms, accurate scoping of impacted systems and accounts. Objectives of this Role Manages and is responsible for the successful completion of all tasks in assigned projects. Lead and manage a Security Incident Response Team focused on responding to security threats and maintaining HUB’s critical threat detection and response suite of security applications. Available 24/7 for any critical incidents that may arise that require immediate resolution, providing leadership and direction to a multi-disciplinary IT team. Work with IT teams to ensure managed environments and procedures comply with defined corporate security policies. Mentor and develop team members to help foster individuals’ professional growth. Engage with teams to practice continuous improvement in processes and tooling. Supervises assigned operations team members and performs personnel actions including hiring, individual goal tracking, training, performance evaluation. Maintains current knowledge of relevant technology, bringing forth ideas for modernization and improvement. Identify potential technical issues and assist in engineering possible solutions Engage with management regularly with reports on project status, activities, and achievements Lead "Technical Archeology" efforts (Platform and System Decomposition), in respect to gaps identified during incident response activities. Lead the creation of security incident response processes and playbooks that are scalable, consistent, repeatable, and supportable. Direct forensic investigations of security incidents, including analysis of cloud audit logs (e.g., Microsoft 365 Unified Audit Log), endpoint and network telemetry, and identity activity, to identify indicators of compromise, establish attack timelines, and determine scope of impact. Design and maintain a tiered escalation framework and on-call rotation so that incidents are routed to the appropriate analyst and management level based on severity and business impact. Drive maturity of the Incident Response and Detection Engineering functions against a KPI-based roadmap, tracking metrics such as mean time to detect (MTTD), mean time to respond (MTTR), alert triage volume, and case closure rates. Balance the team’s dual-track structure of reactive Incident Response and proactive Detection Engineering/threat hunting, ensuring each track has clear ownership, workflows, and staffing. Conduct post-incident reviews and root-cause analysis to capture lessons learned, close process gaps, and feed findings back into playbooks and detection content. Daily and Monthly Responsibilities Communicate with stakeholders to assist in the identification of business, technical, and operational requirements. Analysis, of root-cause analysis for service interruption, to establish preventive measures, mitigations, or needed changes. Evaluate security applications, infrastructure and associated costs at regular intervals Be responsible for analysis and recommendation of configuration changes, process improvements or visibility enhancements to the support and scaling of HUB’s security response. Triage and prioritize incoming security alerts and incidents daily, assigning severity and escalating to the appropriate analyst or on-call tier. Perform or oversee forensic log review for active investigations (e.g., Microsoft 365 Unified Audit Log, EDR, network/firewall logs), documenting findings and preserving evidence in line with chain-of-custody practices. Report monthly on incident response KPIs, including mean time to detect (MTTD), mean time to respond (MTTR), incident volume, and case closure rates, to leadership. Facilitate tabletop exercises and periodic playbook/runbook reviews to validate incident response readiness and identify process gaps. Skills and Qualifications Bachelor’s degree in technology or applicable experience. 10+ Years of experience with programming/scripting languages (Powershell, python, shell scripting) Extensive experience with: TCP/IP, DNS, CDN, WAF, OAuth, SAML 3+ years of experience with cloud infrastructure as a service (AWS, Azure, GCP) 5+ years of experience with Microsoft Active Directory/Entra and O365 services and technology 5+ years of experience with security platforms, automation tooling Hands‑on experience with SIEM, EDR, and SOAR platforms for detection, alerting, and investigation. Experience conducting digital forensics and incident response (DFIR), including log analysis, timeline reconstruction, and evidence handling with chain-of-custody rigor. Working knowledge of incident response frameworks (e.g., NIST 800-61, SANS) and experience developing incident response playbooks and runbooks. Experience building or maturing an incident response team, including defining KPIs/metrics and driving a maturity roadmap. Collaboration, prioritization, and adaptability skills Desire to continuously develop your skills and knowledge
JOIN OUR TEAM
Do you believe in the power of innovation, collaboration, and transformation? Do you thrive in a supportive and client focused work environment? Are you looking for an opportunity to help build and drive change in a rapidly growing and evolving organization? When you join HUB International , you will be part of a community of learners and doers focused on our Core Values: entrepreneurship, teamwork, integrity, accountability, and service. The expected salary range for this position is $ 130,000 to $150,000 and will be impacted by factors such as the successful candidate’s skills, experience and working location, as well as the specific position’s business line, scope and level. HUB International is proud to offer comprehensive benefit and total compensation packages which could include health/dental/vision/life/disability insurance, FSA, HAS and 401(k) accounts, paid-time-off benefits such as vacation, sick, personal, floating holidays and company holidays. In addition, eligible annual bonuses, equity and commissions may be available for some positions. #J-18808-Ljbffr HUB International- A leading global food retailer is seeking a Security Engineering Manager to safeguard their technology environment in Chicago. This role involves enforcing security policies, managing incident responses, and collaborating with IT and business teams. The ideal candidate...SuggestedFlexible hours
$70.72k - $115.63k
...service specific activities in the Security Services program and... ...Aligns department goals and manages department resources and budgets... ...alarms, following emergency response procedures. Collects, analyzes... ...to bi-weekly labor reports, incident reports, quality assurance reports...SuggestedHourly payLocal areaAll shiftsFlexible hoursNight shiftAfternoon shift- ...Thornton International Ltd seeks an Associate Director, Physical Security to lead the firm’s physical security programs across... ...team and collaboration with Workplace Operations and Regional Managers. Responsible for standards, risk-based site security, crisis...Suggested
- ...SummaryThe Director of Corporate Security owns the development and... ...continuity and risk management. This role oversees strategic... ...the Global Crisis Management Response Team.Key ResponsibilitiesDevelop... ....Rapid response to security incidents and help reduce exposure and...SuggestedFull timeFlexible hours
$80.72k - $86.5k
...Director Of Security City Colleges of Chicago's vision is to... ...administrator, the Director of Security manages and oversees all aspects of... ...of Security is also responsible for maintaining... ...various reports related to incidents, crimes, and security operations...SuggestedFull timeWork at officeLocal areaAll shiftsShift workWeekend workAfternoon shift$138.2k - $179.65k
...you'll do here: As the Director of Security Operations at Cengage, you will play a... ...development, AI security, and vulnerability management perspective. In this role, you will:... ...operations. - Collaborate with the Incident Response team to identify, bring up and...Local areaWorldwide- ...senior leader to own the US region's operational resilience, incident management and business continuity programs. You will lead a team across 4 areas: resilience strategy, risk management, incident response, and governance, aligning with regulatory requirements and business...
- ...Head of Security About the Company Innovative platform for sending... ...dedicated security hire, responsible for owning the security... ...address security gaps, lead incident response, and drive a cultural... ...and technologies. Hiring Manager Title VP of Engineering...Shift work
- ...Description Head of High School Security Job Description Reports... ...enforces school protocols in response to emergency situations.... ...administration on best practices for managing student movement throughout... ...of student or staff incidents. Assists the administration...Full timeLocal areaDay shiftAfternoon shift
- Echo Global Logistics, Inc. is seeking a Manager, Security Operations to lead the 24/7 Security Operations... ...threat detection, investigation, and response. This hands-on leadership role shapes security strategy, leads major incident response, and builds a world-class...Remote job
$129.35k - $188.08k
We are seeking a Manager, Security Operations, to lead our 24/7 Security Operations Center (SOC)... ...powered threat detection, investigation, and response. This is a hands-on leadership role... ...ll shape security strategy, lead major incident response, and build a world-class...Full timeWork at office$161.5k - $299.7k
...development.Job SummaryThis Position Is Responsible for directing and managing the activities of the HCSC’s Cyber... ...improve the organization’s Cyber Security Posture, ensuring the CFC is... ...including vulnerability management, incident handling and forensics* Problem solving...Full time- ...Chicago is seeking an Executive Director of Information Security. The ideal candidate will establish and manage comprehensive information security programs to mitigate risks and ensure compliance. Responsibilities include leading security initiatives, developing policies...Full time
$164.39k - $193.4k
...at—all from Day One.Job DescriptionJob SummaryThe Director of Security Technology Engineering and Operations is an enterprise executive... ...-the-sun security engineering and operations organization responsible for enterprise security technology platformsDefine and execute...Full timeFor contractorsLocal area3 days per week$97k - $189k
...fullest potential. The Consulting Director, AI Security is a hands-on technical contributor responsible for reviewing, evaluating, and validating... ...workflows. Assist with vulnerability management, security monitoring, and incident readiness for AI systems. Provide...Full timeWork experience placement- ...venue development and end-to-end capabilities across venue management, hospitality, and sponsorship sales. Founded in 2015, the... ...spanning four continents. Position Summary The Director of Security is responsible for managing a team of Guest Services & Security managers...Full timePart timeWork at officeLocal areaFlexible hoursNight shift
- ...The Charles Schwab Corporate Security team is hiring a highly... ...experienced Senior Security Manager. This is an incredible career... ...retail environment. Major Job Responsibilities: Lead their team and our employees... ...yearly. Respond to incidents/threats and coordinate follow...Full timeWork at officeLocal areaRelocationMonday to Friday
$201.4k - $260k
...time to join United Airlines. Our Aviation Security team helps uphold the regulatory and... ...a 24/7 NOC Security Desk, the Passenger Incident Programs, and the Facilitation team. Job overview and responsibilities The Managing Director of Global Aviation Security and...Hourly payRemote workWorldwideNight shift$37 - $40 per hour
...Security Manager Pay Rate: $37.00–$40.00 per hour This is a Remote Opportunity Job... ...approximately $8 million. This position is responsible for the successful execution of... ...Investigate operational issues, security incidents, and client concerns, implementing long...Hourly payContract workWork at officeLocal areaRemote work- ...Security Operations Manager Chicago, IL - 3 days/week onsite in the loop (2 days work from home)... ...solutions. Lead/participate in security incident management, as necessary. Lead... ...to evolve policies and procedures in response to changing business, industry and...Work from home3 days per week
$20.5 per hour
...Job Description Job Description Security Crowd Manager Part-time / Evening and weekends... ...United Center Rate Field General Responsibilities: Assist Event Security personnel... ...Guest complaint resolution Incident report documentation Limit entry...Hourly payPart timeShift workWeekend workAfternoon shift$175k - $225k
...automation, and process improvement. You will manage workflows, monitor exchange positions,... ...-decade track record of success. Key Responsibilities: Manage traders and trading schedules... ...KPIs for desk operations (uptime, incident response times, error rates, etc.) and...Temporary workFlexible hours$215k - $300k
OverviewThe Next 150 Operations Manager is a senior operational leader responsible for translating Next 150’s strategic plan and forecast into disciplined,... ...performance expectationsDrives the safety culture; review incidents and trends; partner with Safety to implement...Work at officeRemote work$68k - $78k
...personally. Position Summary The Director of Security is responsible for leading all security, safety, and... ...response procedures, and risk management strategies that align with hotel... ...Manage investigations involving guest incidents, theft, workplace misconduct, property...Full timeWork at officeLocal areaImmediate start$149k - $206k
...Description Director, Corporate Security Position Overview The... ..., Corporate Security is responsible for protecting the company’s... ...an enterprise security risk management (ESRM) framework aligned with... ...addressing internal and external incidents, including theft, fraud,...Local areaWorldwideVisa sponsorship$317.5k - $365k
...everyone is a stakeholder.What You’ll Be Responsible ForCircle is building the next... ...native APIs. As VP, Global Head of Product Security & Risk, you will define and lead the enterprise... ..., compliance operations, and risk management.Serve as a primary executive interface...WorldwideFlexible hours$80k - $90k
...Overview: The Safety & Security Manager contributes to the transportation safety management... ...TAS employees ; coordinates accident/incident process; conducts audits and... ...policy. Benefits vary by location. Key Responsibilities: ~ Ensure compliance with state and...Full timeContract workTemporary workWork at officeLocal areaShift workWeekend work$152k - $220k
...intelligence-driven offensive security program, leveraging AI-... ...Job Description Roles and Responsibilities People leadership & talent... ...coordination with detection and incident response teams. Defense-... ...reliability. Vendor management : Manage vendor relationship...Permanent employmentContract workRemote workRelocation package$180k - $210k
...newly created leadership position responsible for the reliable, resilient, secure, and consistent delivery of technology... ...Cybersecurity Analyst ? ??? IT Manager, Cloud and Endpoint Engineering ?... ...Experience leading major incidents and service-restoration efforts Experience...Remote work$157k - $188.5k
...Global Technology Operations, Product Engineering, Service Management, Security Operations, and other technology functions around the... ...operations through observability, automation, disciplined incident response, and continuous improvement. You’ll identify opportunities...Permanent employmentFull timeWork at officeLocal area1 day per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager of Security Incident Response. Be the first to apply!



