Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Cyber Incident Response Engineer

$140k - $175k

NBCUniversal

Company Description

NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our global theme park destinations, consumer products, and experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, NBC Sports, Telemundo, NBC Local Stations, Bravo, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through our powerhouse film and television studios, including Universal Pictures, DreamWorks Animation, and Focus Features, and the four global television studios under the Universal Studio Group banner, and operate industry-leading theme parks and experiences around the world through Universal Destinations & Experiences, including Universal Orlando Resort, home to Universal Epic Universe, and Universal Studios Hollywood. NBCUniversal is a subsidiary of Comcast Corporation. Visit for more information.

Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.

Job Description

We are seeking a Senior Cyber Incident Response Engineer to design, automate, integrate, and continuously improve the technical systems, workflows, and tooling used to detect, investigate, contain, and recover from cybersecurity incidents. This role combines hands-on response engineering with incident readiness and operational improvement, helping ensure responders have the automation, telemetry, access, and processes needed to act quickly and effectively. The ideal candidate brings strong incident response and DFIR expertise, practical engineering skill, and the ability to turn repeated operational pain points into scalable, reliable capabilities that improve response quality and reduce time to action.

Key Responsibilities:
  • Design, build, and improve automated evidence collection capabilities that increase the speed, consistency, and completeness of incident investigations.
  • Create and maintain SOAR playbooks that orchestrate investigation, enrichment, containment, notification, and recovery workflows.
  • Integrate SIEM, EDR, IAM, cloud, email, case management, and threat intelligence platforms to enable unified response actions and stronger analyst context.
  • Develop and deploy response tooling that may utilize AI to improve response capabilities across cloud, endpoint, identity, SaaS, email, and data platforms.
  • Develop scripts, tools, and integrations that support triage, containment, enrichment, forensic collection, and operational response workflows.
  • Ensure responders have the logs, telemetry, access, and tooling needed to investigate and respond without unnecessary delay.
  • Build dashboards, operational views, and incident metrics that measure response performance, workflow health, and process effectiveness.
  • Identify repeated manual analyst tasks and turn them into safe, scalable, and repeatable automation.
  • Review incident response plans, identify readiness gaps, and help develop practical strategies to improve preparedness.
  • Design and optimize incident response playbooks aligned to relevant threats, operating models, and business needs to allow for quick identification and response to potential incidents.
  • Collaborate with Response Operations and Automation team stakeholders for prioritization, automation creation, and integrations with security tooling
  • Facilitate or support tabletop exercises, drills, and readiness activities to validate plans and improve operational performance.
  • Lead or support complex investigations involving host, network, identity, email, and cloud artifacts to determine nature, scope, and root cause.
  • Partner with cross-functional teams to guide containment, remediation, recovery, and post-incident improvement activities.
  • Brief technical teams and leadership on findings, risks, recommendations, and response decisions during and after incidents.
  • Contribute to incident response standards, methodologies, documentation, and internal knowledge sharing.
  • Participate in an incident response on-call rotation, including weekend coverage, as required.
Qualifications

Requirements:
  • 5+ years of relevant cybersecurity experience in either incident response, DFIR, detection engineering, threat hunting, and or SOC escalation
  • 2+ years of security automation / cyber defense engineering
  • Strong proficiency with Python, PowerShell, Bash, or similar scripting languages used for automation and response engineering.
  • Ability to lead projects with little guidance, and strong communication
  • Knowledge of SIEM, SOAR, EDR, Data Lake, and enterprise security tooling and methodologies.
  • Experience handling security incidents and investigating a multitude of cyber threats with various TTPs across multiple enterprise platforms
  • Experience building and maintaining API integrations across security and enterprise platforms.
  • Working knowledge of SIEM query languages such as SPL, KQL, SQL, or equivalent analytics languages.
  • Experience with EDR response actions, investigation workflows, and endpoint containment techniques.
  • Experience designing, building, or operating SOAR platforms and automated playbooks.
  • Strong understanding of endpoint, identity, network, cloud, email, and SaaS telemetry, including logging, evidence collection, and containment actions across modern environments.
  • Experience collecting and using forensic artifacts to support investigations across endpoints, identities, cloud services, email, or SaaS platforms.
  • Ability to design for scale, repeatability, automation, reliability, and reduced response time in a production security environment.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Digital Forensics, or a related field, or equivalent practical experience.
Desired Characteristics:
  • 7+ years of relevant cybersecurity or security operations experience.
  • Demonstrated ownership of incident response engineering, automation, forensic collection, containment workflows, or large-scale security operations improvements.
  • Experience conducting threat intelligence, threat detection, malware analysis, or forensic analysis in security incidents as a team
  • Experience building and leveraging AI-assisted tooling in investigation or triage workflows for a large, distributed enterprise environment
  • Experience integrating case management, email security, identity platforms, cloud services, and threat intelligence into response workflows.
  • Experience building analyst-facing dashboards, metrics, and reporting that show operational health and response effectiveness.
  • Strong understanding of cloud technologies, AI agents, and LLMs
  • Familiarity with secure automation guardrails, approval models, and change control for containment actions.
  • Experience with detection engineering and the operationalization of alerts, enrichments, and response workflows.
  • Experience improving responder access to logs, telemetry, and investigative tooling across multiple security domains.
  • Relevant certifications are preferred rather than required. Preferred certifications may include GCIH, GCFA, GCFE, GNFA, EnCE, CFCE, GCIA, GSEC, CySA+, Blue Team Level 2, AWS Security Specialty, Azure Security Engineer, Google Cloud Security Engineer, CISSP, CISM, GPEN, OSCP, or PNPT.
Additional Requirements:
  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee's residence.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $140,000 - $175,000 (bonus eligible)

Additional Information

As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.


If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations by emailing View email address on click.appcast.io.

For LA County and City Residents Only: NBCUniversal will consider for employment qualified applicants with criminal histories, or arrest or conviction records, in a manner consistent with relevant legal requirements, including the City of Los Angeles' Fair Chance Initiative For Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Cyber Incident Response Engineer in Orlando, FL vacancy
  • $77.5k - $140.9k

     ...Title: CyberSecurity SIEM Engineer (Senior SDC) About the job...  ...vulnerabilities. As part of our Cyber Threat and Vulnerability Management...  ...needs. Your Key Responsibilities Deliver exceptional client...  ...understanding of the incident response process and familiarity... 
    Cyber
    Senior
    Work experience placement
    Summer holiday
    Flexible hours

    EY

    Orlando, FL
    1 day ago
  • $106.8k - $194.8k

     .... WAF Operations Solution Engineer PRACTICE DESCRIPTION:...  ...Solution Engineer, you will be responsible for implementing and managing...  ...protect client applications from cyber threats. You will work within...  ...events, and respond to incidents to mitigate risks effectively... 
    Cyber
    Senior
    Summer holiday
    Flexible hours

    EY

    Orlando, FL
    3 days ago
  •  ...Job Title Responsible for developing and maintaining the technical IT / cyber security capabilities necessary for safeguarding the firm's information systems...  ...degree and eight years of experience in systems engineering or administration or an equivalent combination... 
    Cyber
    Senior
    Work experience placement
    Work at office

    SunTrust Investment Services, Inc.

    Orlando, FL
    14 days ago
  •  ...Lead Engineer, Cyber Security The Lead Engineer, Cyber Security provides strategic direction...  ...Cyber Security Assurance team, the Senior Cyber Security Engineer functions as a...  ...leadership to define strategy. Major Responsibilities: Support UDX in securely... 
    Cyber
    Senior
    Work experience placement

    Universal Orlando Resort

    Orlando, FL
    1 day ago
  •  ...Lead Engineer, Cyber Security The Lead Engineer, Cyber Security provides strategic direction for Universal...  ...capabilities, evaluating new tools, and working with senior leadership to define strategy. Major responsibilities include: Support UDX in securely... 
    Cyber
    Senior
    Work experience placement
    Flexible hours

    Universal Orlando Resort

    Orlando, FL
    3 days ago
  •  ...Lead Engineer, Cyber Security The Lead Engineer, Cyber Security provides strategic direction for Universal...  ...capabilities, evaluating new tools, and working with senior leadership to define strategy. Major responsibilities include: Support UDX in securely... 
    Cyber
    Senior
    Work experience placement

    Universal Orlando Resort

    Orlando, FL
    1 day ago
  •  ...Senior Project Development Engineer (Federal) CMTA, a Legence company, is one of the fastest growing engineering firms in the U.S., with nationally...  ...Corps of Engineers IDIQ contract requirements. Meeting cyber security requirements by DOD and other federal agencies.... 
    Cyber
    Senior
    Contract work

    Black Bear Energy Inc.

    Orlando, FL
    4 days ago
  •  ...employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Senior Electrical Engineer Job Code: 39490 Job Location: Orlando, FL Job Schedule: 9/80 work 9 out of every... 
    Cyber
    Senior
    Local area

    L3Harris

    Orlando, FL
    21 hours ago
  •  ...and working with a team of cyber professionals motivate you?...  ...the largest technology and engineering firms in the world? As the OT...  ...% travel to client sites Responsibilities: Primary responsibilities...  ...service management practices (incident, change, problem management)... 
    Cyber
    Contract work
    Remote work

    Jacobs

    Orlando, FL
    3 days ago
  •  ...Specific Essential Duties and Responsibilities: - Experience supporting...  ...requirements. - Execute directed cyber actions including network...  ...- Maintain documentation, incident logs, and runbooks to...  ...internal value analysis including seniority and merit systems, as well... 
    Cyber
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    Orlando, FL
    1 day ago
  •  ...Senior Cyber Security Engineer / CSET Location US-FL-Orlando ID 2026-11183 Category Network Engineering...  ...the following: Active Directory, Software Development, Incident Response, or Cloud Infrastructure Carefully document and log... 
    Cyber
    Senior
    Civilian Contractor
    Full time
    For contractors
    Work at office
    Local area

    Scientific Research

    Orlando, FL
    20 hours ago
  •  ...CMTA ( is one of the fastest growing engineering firms in the U.S., with nationally recognized...  ..., a Legence company, is looking for a Senior Project Development Engineer in the...  ...IDIQ contract requirements. Meeting cyber security requirements by DOD and other federal... 
    Cyber
    Senior
    Contract work
    Local area
    Immediate start
    Flexible hours

    CMTA Inc

    Orlando, FL
    2 days ago
  •  ...Senior Field Service Engineer Vanderlande is a global leader in logistics process automation, specializing...  ...Senior Field Service Engineer is responsible for ensuring the reliability and...  ...based on customer demand, travel, and incident response requirements.... 
    Senior
    Full time
    Local area
    Remote work
    Flexible hours
    Shift work

    Vanderlande

    Orlando, FL
    4 days ago
  • $112.84k - $146.05k

     ...Responsibilities for this Position Location: USA FL Orlando Full Part/Time: Full time...  ...Yes Job Description: SYSTEMS ENGINEER PRINCIPAL The Sr. Unified Communication...  ...in digital modernization, AI/ML, Cloud, Cyber and application development. Together with... 
    Cyber
    Senior
    Full time
    Temporary work
    Part time
    Work experience placement
    Local area
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    GDIT

    Orlando, FL
    a month ago
  •  ...You will be a Cyber Systems Security Engineer in the Program Protection Organization. Our organization oversees all aspects of Anti-Tamper and...  ...: As the Cyber Systems Security Engineer you will be responsible for providing embedded System Security Engineering design... 
    Cyber

    PLANIT Group

    Orlando, FL
    2 days ago
  • $100k - $150k

     ...Group is seeking a Structural Project Engineer to join our team in our Orlando office....  ...facilities practice. This individual will be responsible for leading projects, performing, and...  ...and company standards. Communicate incidents, accidents, near misses, potential... 
    Senior
    Work experience placement
    Work at office
    Local area

    C&S Companies

    Orlando, FL
    22 days ago
  • $85k - $110k

     ...Companies is seeking an experienced Senior Project Engineer in the Buffalo, Rochester, or Syracuse...  ...your career at C&S. Position Responsibilities Ability to work with internal...  ...and company standards. Communicate incidents, accidents, near misses, potential... 
    Senior
    Contract work
    Work experience placement
    Work at office
    Local area

    C&S Companies

    Orlando, FL
    1 day ago
  • $135k - $170k

     ...heard. Position Overview C&S Engineers is seeking a Senior Project Engineer with a focus on...  ...scheduling, and business development. Responsibilities include administration of...  ...company standards. ~ Communicate incidents, accidents, near misses, potential... 
    Senior
    Full time
    Work experience placement
    Work at office
    Local area
    Relocation package

    C&S Companies

    Orlando, FL
    1 day ago
  • $86.5k - $142.7k

     ...building proofs‑of‑concept, and guiding engineering teams through complex technical...  ...Engineering Managed Services. Your key responsibilities Hands‑on solution architecture & design...  ..., telemetry, graceful degradation and incident readiness. • Embed security‑by‑... 
    Senior
    Summer holiday
    Flexible hours

    EY

    Orlando, FL
    2 days ago
  •  ...Description Cybersecurity Engineer III (InSITE)- "WTRS" Orlando,...  ...Cybersecurity Engineer III serves as the senior/lead cybersecurity engineer...  ...Engineer III is responsible for driving the overall security...  ...program: *Serve as primary cyber point of contact for program... 
    Cyber
    Contract work
    Work at office

    V2X

    Orlando, FL
    2 days ago
  •  ...Senior Software Engineer At Disney, we're storytellers. We make the impossible, possible. The Walt...  ..., prevent, detect, and respond to cyber threats that present risk to The Walt...  ...highly secure services to customers. Responsibilities of Role: Design and develop... 
    Cyber
    Senior
    Work experience placement

    Disney

    Orlando, FL
    19 days ago
  •  ...be valued and empowered, then we invite you to apply to our Cyber Class Action Attorney . While the position is based in our...  ...for career advancement and to take on significant, substantive responsibilities in defending complex class actions, including cyber and... 
    Cyber
    Senior
    Work at office
    Flexible hours

    Wilson Elser - Attorneys

    Orlando, FL
    24 days ago
  •  ...for a Sr. Quality & Mission Assurance Engineer at a place you can make an impact every...  ...CNPS Program. The QMA Engineer will have responsibility for ensuring product, process, and supplier...  ...and consistency Familiar with Cyber Security Process If you are interested... 
    Cyber
    Full time
    Contract work
    Part time
    Interim role
    Local area
    Immediate start
    Flexible hours

    Serco

    Orlando, FL
    3 days ago
  •  ...Job Description Job Description The Senior IT Security Engineer is responsible for designing, implementing, and maintaining enterprise security technologies to protect the organization's digital infrastructure. Working under general supervision, this role serves as... 
    Senior

    GREATER ORLANDO AVIATION AUTH

    Orlando, FL
    a month ago
  •  ...Senior DevOps Engineer Job Locations US-FL-Orlando ID 2026-11034 # of Openings...  ...and processes that enable cyber training for the integrated multi-domain...  ...and fielding team. This role will be responsible for improving the speed, reliability,... 
    Cyber
    Senior
    Contract work
    Temporary work
    Worldwide

    By Light Professional IT Services

    Orlando, FL
    1 day ago
  •  ...environment where flexibility and a willingness to take on new responsibilities keep things interesting! We value team members who are...  ...technical discussions with general and electrical contractors, engineering firms, vendors, end users and internal departments to successfully... 
    Senior
    For contractors
    Flexible hours

    Nixon Power Services

    Orlando, FL
    15 days ago
  • $107.9k - $195.05k

     ...Leidos’ NISC IV program seeks an Electrical Engineer/ Radio Frequency (RF) Engineer to...  ...Group. The Spectrum Engineering Group is responsible for securing, managing, and protecting...  ...local law enforcement and report the incident to the U.S. Federal Trade Commission .... 
    Senior
    Local area
    Immediate start

    Leidos

    Orlando, FL
    20 hours ago
  •  ...We are seeking a Senior QA Engineer to join our growing team of data management and analytics professionals. In this role, you will lead...  ...quality advocate across cross-functional teams. You will be responsible for ensuring data integrity, system performance, and high-quality... 
    Senior

    Tentek

    Orlando, FL
    20 hours ago
  • $100k - $130k

     ...Job Description Job Description Senior Civil Engineer – Site Development Location: Orlando, FL (Hybrid/Remote Options Available...  ...within a collaborative, fast-paced team environment. Responsibilities: Prepare site layout, grading, drainage, and utility... 
    Senior
    Remote work

    ECI Talent Partners

    Orlando, FL
    21 days ago
  • Software Test Engineer Location US-FL-Orlando ID 2026-1120...  ...Engineer position whose primary responsibility includes integration,...  ...to express technical ideas to senior decision makers Experience...  ...processes Working knowledge of cyber testing or training... 
    Cyber
    Full time
    For contractors
    Local area

    Scientific Research

    Orlando, FL
    14 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Cyber Incident Response Engineer. Be the first to apply!