Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Lead

Full-time

Qode

Position: Cybersecurity Lead

Location: San Jose, CA (Hybrid)

Type: Full-Time

Company Overview

Incedo is a US-based consulting, data science and technology services firm with over 4000 people helping clients from our six offices across US, Mexico and India. We help our clients achieve competitive advantage through end-to-end digital transformation. Our uniqueness lies in bringing together strong engineering, data science, and design capabilities coupled with deep domain understanding. We combine services and products to maximize business impact for our clients in telecom, Banking, Wealth Management, product engineering and life science& healthcare industries.

Role Overview:

The Cybersecurity Lead serves as a hands-on technical leader responsible for uniting offensive and defensive security operations to continually improve the company’s ability to detect, respond to, and recover from cyber threats.

This role will lead the Blue Team in managing and enhancing security monitoring tools, detection pipelines, and incident response processes, while also coordinating Red Team simulations that measure and improve the company’s defensive posture.

Reporting to the Director of Cybersecurity, this leader bridges strategy and execution driving the mission to emulate adversaries, strengthen controls, and transform findings into actionable defence improvements.

Key Responsibilities:

Blue Team Operations and Tool Management

  • Lead and oversee the management, configuration, and tuning of security detection and response platforms, including:
  • SIEM (e.g., Splunk, PANW, or Azure Sentinel)
  • EDR/XDR (e.g., CrowdStrike, SentinelOne, Microsoft Defender)
  • SOAR automation platforms
  • Network IDS/IPS, NDR, and threat intelligence platforms (TIPs)
  • Ensure all detection tools are integrated for end-to-end visibility across endpoints, cloud environments, and production systems
  • Define standards for log collection, parsing, and correlation to enhance alert accuracy and reduce false positives
  • Drive continuous tuning of detection rules, signatures, and use cases to align with MITRE ATT&CK and emerging threats
  • Collaborate with IT and Engineering teams to ensure security telemetry is fully integrated into cloud and CI/CD environments
  • Oversee threat hunting, alert triage, and incident response playbook execution across the security stack
  • Partner with DevOps and infrastructure teams to embed security monitoring hooks into hybrid environments and new deployments

Red Team and Offensive Security

  • Design and conduct controlled adversary emulation exercises to test detection and response capabilities
  • Execute attack chains including phishing, privilege escalation, persistence, and lateral movement using real-world TTPs
  • Develop and maintain custom adversary scripts and payloads to simulate targeted threats
  • Provide detailed post-exercise reports with actionable defensive improvement recommendations
  • Collaborate with Blue Team engineers to operationalize detections based on Red Team findings

Incident Response and Continuous Improvement

  • Lead or co-lead major incident response efforts, coordinating containment, investigation, and recovery
  • Build and maintain detailed incident response runbooks, integrating lessons learned from purple team exercises
  • Conduct root cause analysis and lead retrospectives that drive measurable improvements in detection and resilience
  • Integrate threat intelligence and forensic insights into detection content and defensive playbooks.
  • Plan and execute adversarial simulations that validate threat detection, alert fidelity, and incident response readiness
  • Develop the roadmap for continuous improvement of detection coverage, response automation, and control validation
  • Serve as a technical escalation point for complex investigations, guiding both Red and Blue Team staff
  • Translate technical results into executive-level insights that demonstrate risk reduction and readiness improvement

Qualifications:

  • Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)
  • 8+ years of cybersecurity experience, with proven leadership across Blue, Red, or Purple Team operations
  • Demonstrated ownership of enterprise security detection tools, including SIEM, EDR/XDR, SOAR, and threat intel platforms
  • Strong understanding of MITRE ATT&CK, Cyber Kill Chain, and threat emulation frameworks.
  • Deep technical expertise in one or more of the following areas:
  • Endpoint and network forensics
  • Cloud security monitoring (AWS, Azure, GCP)
  • Scripting and automation (Python, PowerShell, Bash)
  • Security engineering in hybrid or production environments
  • Proven ability to lead incident response and purple team exercises from start to finish
  • Certifications such as OSCP, GCFA, GCIH, GPEN, GXPN, or GCTI highly desirable
  • Strong communication and leadership skills, with ability to engage both executive stakeholders and technical teams

Preferred Experience:

  • Experience in enterprise or production-scale environments, ideally within SaaS, networking, or hybrid cloud infrastructures
  • Familiarity with DevSecOps practices, CI/CD pipeline security, and cloud-native monitoring
  • Prior experience mentoring Blue Team analysts and managing tool life cycles and vendor relationships
  • Exposure to purple team automation frameworks (e.g., AttackIQ, Caldera, Scythe)

AI Use Guidelines for Interviews:

Our interviews are designed to reflect your own skills and thinking. The use of AI or recording tools during live interviews is not permitted unless explicitly invited by the interviewer or approved in advance as part of a reasonable accommodation. If these tools are used inappropriately or in a way that misrepresents your work, your application may not move forward in the process.

Targeted compensation guideline:

Compensation will vary based on number of factors, including market demand for specific skills, role type, job level, and individual qualifications. Final salary offers are determined by considerations including, but not limited to, subject matter expertise, demonstrated skill level, relevant experience, geographic location, education, certifications, and training. 

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Lead in California vacancy
  •  ...Colorado HR Services LLC is seeking a hybrid role focused on pre-sales support and engagement ownership in cybersecurity. You will help shape proposals and drive early client engagement, ensuring smooth transitions between sales and delivery. The ideal candidate has 1–... 
    Suggested

    Colorado HR Services LLC

    Los Angeles, CA
    1 day ago
  • $171.8k - $277.93k

     ...Lead For Ai Strategy & Transformation Team Palo Alto Networks is seeking a Lead for our AI Strategy & Transformation team to...  ...directly impacting our strategic success and innovation in the cybersecurity landscape. This is a key leadership position in a dynamic environment... 
    Suggested
    Work experience placement
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Palo Alto, CA
    1 day ago
  • $171.8k - $277.93k

     ...as you are, you're in the right place. In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the future...  ...business challenges to drive and support our industry-leading growth. Your efforts will directly affect the overall strategy... 
    Suggested
    Full time
    Work experience placement
    Work at office

    Palo Alto Networks

    Encino, CA
    4 days ago
  •  ...the Defense Language Institute Foreign Language Center. The role involves managing the Information Assurance team and overseeing cybersecurity servers. The ideal candidate will have a BA/BS with 5+ years of experience or relevant experience, and hold an IAT Level II... 
    Suggested

    SUNAYU

    Monterey, CA
    1 day ago
  • $148k - $241k

     ...you're in the right place. Who We Are In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the...  ...manage resources to deliver outsized results. Your Impact Lead the global PR strategy to build the reputation and visibility... 
    Suggested
    Full time
    Work at office
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Santa Clara, CA
    3 days ago
  • Cybersecurity Team Lead / ISSM Location: Monterey, CA Client Supported Supports the Academic Network client by leading cybersecurity operations and protecting Government academic and research systems. Role Summary Leads cybersecurity operations and serves as the Information... 
    Contract work
    For contractors

    Summit Technologies

    Monterey, CA
    1 day ago
  •  ...Job Title: Cybersecurity Team Lead (ISSM) Position Overview The Cybersecurity Team Lead oversees the contract Information Assurance team, responsible for cybersecurity servers, applications, and team operations. Responsibilities Lead cybersecurity staff... 
    Contract work
    Temporary work
    Work at office
    Local area

    Advanced Technology Leaders Inc

    Monterey, CA
    3 days ago
  •  ...instruction for the DLIFLC's diverse academic community. Basic Qualifications & Background This position will serve as the Cybersecurity Team Lead and will be responsible for management, coordination, and oversight of the contract Information Assurance team. The duties... 
    Contract work
    Temporary work
    Work experience placement
    Immediate start
    Remote work

    SUNAYU

    Monterey, CA
    15 hours ago
  • Job Title Location 300 Alameda Boulevard, Coronado, CA, 92118, United States Employee Type Regular Full-Time Required Degree NONE Minimum Experience 10 Years Contact information Name Talent Acquisition Email ****@*****.*** Description Requirements...
    Full time

    ANALYGENCE Inc

    San Diego, CA
    2 days ago
  • $155k - $170k

     ...Job Title: ISSM (Cybersecurity Lead) - KEY Location(s): Monterey, CA Hours: Regular Full-Time Salary Range: $155k/yr - $170k/yr Clearance Requirements This position requires a current and active Secret Clearance at the time of application. What... 
    Full time
    Contract work
    Flexible hours

    JASINT Consulting and Technologies, LLC

    Monterey, CA
    15 hours ago
  •  ...Cybersecurity Team Lead ISSM Security Clearance Required Ops Tech Alliance (OTA) is seeking a Cybersecurity Team Lead / Information System Security Manager (ISSM) to support DLIFLC at the Presidio of Monterey, CA. This role leads the contract Information Assurance team... 
    Contract work

    OPS TECH ALLIANCE LLC

    Monterey, CA
    1 day ago
  •  ...Cybersecurity Team Lead FWI is building a team to administer, maintain, secure, and accredit the Defense Language Institute Foreign Language Center (DLIFLC) Academic Network, which provides the IT environment for 100% of DLIFLC teaching and instruction for all students... 
    Full time
    Contract work
    Temporary work
    Monday to Friday

    FedWriters

    Monterey, CA
    15 hours ago
  • $114.4k - $128.7k

     ...cyber security, training, logistics, administrative, acquisition, and background investigation services. Summary: The Cybersecurity Team Lead ISSM is responsible for management, coordination, & oversight of the Information Assurance team supporting .edu & .mil... 
    Contract work
    Local area

    Nisga'a TEK LLC

    Monterey, CA
    9 days ago
  •  ...Grumman Federal Credi in Gardena, CA, seeks an experienced Information Technology Security Manager to lead its Information Security Program. You will shape cybersecurity strategy and oversee risk management in a regulated financial environment. The ideal candidate has 5–... 

    Northrop Grumman Federal Credi

    Gardena, CA
    3 days ago
  •  ...Position: Cybersecurity Lead Location: San Jose, CA (Hybrid) Type: Full-Time Company Overview Incedo is a US-based consulting, data science and technology services firm with over 4000 people helping clients from our six offices across US, Mexico and India... 
    Full time

    Qode

    San Jose, CA
    1 day ago
  •  ...Presidio of Monterey, CA (coordination with Fort Huachuca, AZ)  Clearance: Secret (TS/SCI eligibility preferred) Overview: Leads cybersecurity operations and compliance to maintain accreditation. Responsibilities: Direct RMF and accreditation processes. Oversee... 

    CSV-TAUREAN

    Pacific Grove, CA
    4 days ago
  •  ...Description Tharros is seeking a Cybersecurity Assessment Lead for an upcoming program supporting a US Navy customer located at NAS North Island. The Cybersecurity Assessment Lead serves as the senior assessor overseeing cybersecurity assessment activities supporting... 

    ANALYGENCE Inc

    Coronado, CA
    2 days ago
  • $135k - $165k

     ...Simbe Robotics is a leading retail robotics company providing in-store intelligence solutions that help retailers optimize operations...  ...Product & Connected Systems Security Stay current on cybersecurity risks relevant to robotics, edge AI, and retail environments;... 
    Work at office

    Simbe Robotics Inc

    San Francisco, CA
    2 days ago
  • $122k - $145k

     ...advanced Military Intelligence, Enterprise and Cloud IT services, Cybersecurity, Special Operations Forces (SOF) Exercise and Training, and...  .... Job Overview: The Cybersecurity Team Lead (ISSM) is responsible for the management, coordination, and oversight... 
    Full time
    Contract work
    Local area

    Nemean Solutions, LLC

    Monterey, CA
    1 day ago
  • $77.9k - $111.3k

     ...Gainwell Technologies is seeking a highly skilled cybersecurity professional for a remote role based in the United States. The position involves strategic engagement with clients, managing security incidents, and deploying SIEM solutions effectively. The ideal candidate... 
    Remote work

    Gainwell Technologies

    North Highlands, CA
    2 days ago
  • $185k - $195k

     ...Cybersecurity Leader Intersect develops, constructs, and operates the most ambitious power and data center infrastructure in the country...  ..., and long-term value creation. What You'll Do Lead Cybersecurity Strategy Define, own, and scale Intersect'... 
    Work at office
    Local area
    Home office
    Flexible hours

    Intersect Power

    San Francisco, CA
    2 days ago
  • $99k - $225k

     ...Cybersecurity Engineer, Lead The Opportunity: As a cyber mission specialist, you understand the value of hunt-forward operations, and you know that battles are won in the grey. At Booz Allen, you can use your cyberspace operations experience to create solutions... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work
    Worldwide

    Booz Allen Hamilton

    Patterson, CA
    1 day ago
  • $171.8k - $277.93k

     ...are, you’re in the right place. Who We Are In order to be the cybersecurity partner of choice, we must trailblaze the path and shape the...  ...critical business challenges to drive and support our industry-leading growth. Your efforts will directly affect the overall strategy... 
    Full time
    Work experience placement
    Work at office

    Palo Alto Networks

    Santa Clara, CA
    4 days ago
  • $140k - $170k

     ...Manager located in Lake Forest, California. This role entails leading UL certification execution for TPS products, managing internal...  ...ensuring that all certifications align with safety, regulatory, and cybersecurity requirements. The ideal candidate will possess over 5 years of... 
    Remote job
    Full time

    TAE Power Solutions

    Lake Forest, CA
    3 days ago
  • Join the Clean Energy Revolution Becomea Cybersecurity Vulnerability Management Data Senior Specialist at Southern California Edison (SCE) and build a better tomorrow. In this job, you will apply your engineering and data analysis skills to find, prioritize, and drive remediation... 
    Remote work
    Relocation

    Thomson Reuters Markets Espana SL.

    Rosemead, CA
    3 days ago
  • $171.8k - $277.93k

    A leading cybersecurity company is looking for a senior member to join their GTM team. This role involves developing a multi-year roadmap for the Endpoint Security business, collaborating on strategic initiatives, and managing projects from ideation to execution. Ideal... 

    Palo Alto Networks

    Santa Clara, CA
    3 days ago
  •  ...driving continuous improvement initiatives. The ideal candidate will possess strong knowledge of industrial control systems and cybersecurity practices. Join a forward-thinking team that values collaboration and innovation, and make a significant impact in a dynamic environment... 

    TechDigital Group

    Santa Clara, CA
    2 days ago
  • Dormont Manufacturing Co seeks a senior cybersecurity expert to lead initiatives focused on Microsoft Security solutions. The role involves engaging with clients and driving SOC modernization, particularly utilizing Microsoft Sentinel and Defender XDR. The ideal candidate... 

    Dormont Manufacturing Co

    Los Angeles, CA
    3 days ago
  • A leading cybersecurity technology company in San Francisco is looking for a Senior Channel Development Manager to develop and drive strategic growth within the partner ecosystem. This role will focus on optimizing channel sales strategies, building key partnerships, and... 

    FLEXXON

    San Francisco, CA
    3 days ago
  • Google Inc. is seeking a Research Scientist located in Mountain View, California, to lead cutting-edge cybersecurity projects. The role focuses on preventing malicious AI model misuse and enhancing cyber defense mechanisms for their Gemini product. Ideal candidates will... 

    Google Inc.

    Mountain View, CA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Lead. Be the first to apply!