Threat Hunting & Incident Response Director
Gibson Dunn
Incident Response Coordinator The Incident Response Coordinator supports the end‑to‑end response to IT incidents and service disruptions, helping restore normal operations quickly and reduce impact on mission‑critical systems. The role serves as the central coordination point for incident response activities, ensuring alignment with established incident management processes, service incident models, and enterprise IT objectives in a highly regulated federal environment. The coordinator orchestrates communication among technical teams, vendors, and leadership; provides clear and timely status reporting; and executes functional and hierarchical escalations to Senior Coordinators and the Senior Incident Manager as defined in the incident management practice and Major Incident Process. The coordinator maintains complete, audit‑ready documentation throughout the incident lifecycle and contributes to lessons‑learned activities and process improvements. Operational Coordination: Organize response efforts across the full end‑to‑end lifecycle of incidents, high‑impact events, and multiple concurrent incidents; set priorities; assign actions; track progress through restoration; maintain disciplined status calls. Runbook & ITSM Execution: Ensure accurate categorization, CI linkage, documentation, and knowledge updates; maintain audit‑ready records/timelines, and capture key decisions, timelines, and impacts accurately. Telemetry‑Informed Engagement: Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide structured internal messaging (leadership updates, stakeholder briefings, and status pages); manage shift handoffs and continuity of incident coordination. PIR Support & Improvement: Help lead PIRs; identify recurring patterns; update runbooks/workflows; track action closure. Escalation Discipline: Elevate deteriorating/unresolved incidents per SLA/escalation guidelines. Evidence Management: Collect/store key decisions, impact summaries, timelines for compliance/audits. Single point of contact: facilitate collaboration for IT incidents between infrastructure, application, cybersecurity, and vendor teams to drive timely resolution. IT service management platforms/ related monitoring tools: track incidents, verify remediation steps, and maintain accurate records required for audits, compliance reviews, and post‑incident analysis. Post‑incident reviews: participate by identifying systemic issues and recurring patterns, and translate lessons learned into updates to runbooks, workflows, and ITSM configurations. **Required Qualifications** Bachelor's degree in information technology, Computer Science, Business Administration, or related field, or equivalent relevant work experience. 4-7 years of experience in incident management, incident response, or related IT operations roles with direct responsibility for coordinating multi‑party incident activities. Strong understanding of ITIL‑aligned incident management and structured incident response practices, including prioritization, escalation, and lifecycle management. Proficiency with IT service management platforms and monitoring solutions. Ability to manage multiple incidents and communicate clearly in a high‑pressure operations center environment. Excellent problem‑solving, analytical, written, and verbal communication skills, with the ability to tailor content for both technical staff and business leadership. Active SECRET clearance or ability to obtain and maintain required background investigation; U.S. citizenship required. **Preferred Qualifications** ITIL Foundation or similar IT service management certification, ideally combined with training in structured IT or cybersecurity incident response. Hands‑on experience coordinating incident response in large enterprise or defense‑focused operations centers. Experience contributing to the design or optimization of incident response runbooks, coordination models, and ITSM workflows. $77k - $101,804 **EEO Requirements** It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment. #J-18808-Ljbffr Gibson Dunn
$244k - $305k
...enables security teams to detect, investigate, and respond to threats across modern cloud and SaaS environments. As a Staff Product... ...define and drive the vision for our Threat Detection and Incident Response (TDIR) capabilities, with direct impact on how our customers...Suggested$200k - $220k
A technology solutions provider is seeking a Head of Cyber Incident Response & Threat Mitigation to lead incident response teams and design proactive strategies. The ideal candidate has over 7 years of technology experience and strong leadership in cybersecurity, particularly...SuggestedFull time$169.01k - $370.53k
...is currently seeking a Specialist Director, Threat Management to join our Managed Services practice. Responsibilities: Set the strategy and roadmap for... ...including detection engineering, threat hunting, threat intelligence, incident response enablement, automation,...SuggestedH1bLocal area$92.5k - $105k
...CRA clients, in preparation of, and in response to, data security matters, which may include ongoing breach detection, threat analysis, incident response and malware analysis; Providing... ...usage by an adversary; Detect and hunt unknown live, dormant, and custom malware...SuggestedWork experience placementWork at officeImmediate startWork from home3 days per week- ...monitor and analyze security events, incidents, and alerts from a remote home-office setup. You will support threat detection, incident response, and collaboration with IT and security... ...reporting metrics, and proactive threat hunting in a dynamic security environment. #J...SuggestedRemote jobHome office
- ...Associate to monitor, detect, investigate, and respond to security threats across networks, endpoints, cloud environments, and critical infrastructure. You will work with security operations, incident response, and threat intelligence teams to strengthen resilience and...
$154k - $205k
Datadog Incident Response is an end-to-end incident operations solution native to Datadog’s unified observability and security platform. It brings the entire incident lifecycle — from alert to resolution — together in one place so engineers can respond fast with confidence...Work at office- ...cybercrime investigations, data security incidents, and forensic reporting. The candidate will... ...with cross-disciplinary teams to analyze threats, recover data, and produce evidence-driven insights for clients. Responsibilities include conducting investigations, drafting...
- ...cybersecurity operations through continuous monitoring, threat detection, investigation, and response activities. Operating within a co-managed Security... ...providers (MSSPs) to investigate security events, support incident response, coordinate vulnerability remediation, and...
$114.1k - $268.18k
...consider a career in Advisory.We are currently seeking a Manager, Incident Response to join our Advisory practice.ResponsibilitiesLead and manage... ...and coordinate incident investigations across cyber threats such as ransomware, data breaches, insider threats, and advanced...Work experience placementH1bLocal area$100.91k - $180.11k
...Level (for internal use): 11 The Role: Associate Director, Global Financial Crimes Compliance Enterprise Threat Mitigation The Team: The Associate Director,... ...screening and third-party screening alerts. The role is responsible for helping ensure that potential sanctions, AML...Second jobLive inWorldwideFlexible hours$170k - $210k
...Leader to drive their global operations strategy. This role involves leading a high-performing team for 24/7 security monitoring, incident response, and ensuring regulatory compliance. Candidates should have extensive cybersecurity experience, particularly in SOC...$254k - $349k
...work. We're all in on this mission. If you are too, let's talk.We are seeking a Principal Product Manager, Okta Identity Threat Detection and Response Products, an individual contributor role, to drive the evolution of Okta’s cutting-edge identity security offerings....Local areaWorldwideFlexible hours- ...Incorporated, seeks an experienced Security Operations Center (SOC) Manager to lead monitoring, detection, investigation, and incident response across the organization's locations. You will oversee day-to-day SOC operations, manage a team of specialists, develop and refine...
$65k - $150k
A leading financial institution in New York is seeking a Security Operation Center Manager to oversee incident response, manage SOC associates, and ensure adherence to security protocols. Candidates should possess a relevant Bachelor's degree and have at least 4 years of...Full time- ...security operations and involves coordinating with our managed detection and response provider. The ideal candidate should have over 5 years of experience in security operations, proficiency in incident response, and strong communication skills. A comprehensive benefits...
$160k - $190k
...for a long-term fit where you can grow in a role, and will be valued and empowered, then we invite you to apply to our Cyber Incident Response Associate Attorneyposition in our New York City Office.This position offers a flexible, hybrid working arrangement.The PositionKey...Full timeWork at officeFlexible hours- NYU Langone Health is seeking an Associate Director - Network Security to oversee planning, implementation, and maintenance of the... ...security strategy, design robust architectures (firewalls, IDS/IPS, VPNs), and lead incident response. #J-18808-Ljbffr NYU Langone Health
- Job OverviewA law firm seeks an Incident Response Associate to join their Privacy and Cyber practice group in New York City, NY. The ideal candidate will have 4-6 years of experience in incident response, privacy advisory, and compliance. Duties Lead all aspects of the...
- ...with maintaining intelligence requirements focused on threats to pharmaceutical R&D, clinical operations,... ...intelligence into detection use cases, alert tuning, and threat-hunting hypotheses. Support Incident Response efforts during active investigations by providing...
$153k - $297k
...currently seeking an Associate Director, Content Development,... ...Services organization.Responsibilities:Direct the end-to-end... ...as-Code)Partnering with Threat Intelligence, SOC, and Incident Response teams to map detections... ...alerts, and threat-hunting queries using Kusto...H1bLocal area- Orrick Herrington & Sutcliffe seeks a highly motivated Managing Associate to join our Cybersecurity & Incident Response practice in New York. This role offers an opportunity to lead incident response, advise on cybersecurity laws, and coordinate investigations across industries...
- ...eradication actions, rebuild enterprise identity, and support advisory teams under tight deadlines. The role requires 3-5 years in incident response or forensics, strong scripting in PowerShell, and experience with EDR platforms. Flexible hybrid work and cross‑functional...Flexible hours
$260k - $365k
...Orrick is seeking a highly motivated Managing Associate to join our fast-growing and internationally recognized Cybersecurity & Incident Response practice. This is an opportunity to develop deep expertise in one of the most dynamic areas of law while working closely with...Temporary workWork at officeFlexible hours- ...production systems. The ideal candidate will have 4-6 years of experience in production support and incident management, particularly in fintech or SaaS environments. Responsibilities include monitoring systems, managing incidents, and facilitating communication among cross-...
- ...Production Support & Issue Management Specialist to enhance system stability and reliability. The role involves real-time monitoring, incident response, and compliance documentation. Preferred candidates will have 4-6 years of experience in production support within fintech,...
$150k - $180k
...career opportunities Job Title: Associate Director of Network Security Location: New... ...protect our organization from cyber threats. Key Responsibilities: Develop and execute a comprehensive... ...architectures. Establish and maintain incident response procedures. Conduct regular...16 hoursFull timeImmediate startRelocation package- ...KPMG is currently seeking an Associate Director, Presales Solution Architect - Cyber... ...KPMG Delivery Network organization.Responsibilities:Lead KYC / AML Solution Architecture... ...core cyber capabilities such as incident management, threat detection, vulnerability management,...H1bLocal area
$185k - $296k
...our security operations program. In this role, you will build and scale systems and processes that protect our community. Key responsibilities include managing the security monitoring program and automating workflows to enhance detection capabilities. Candidates should...Full time$81.31k - $122.02k
## Senior Associate Director of Residence LifeApplylocations: Penn... ...to develop respect and responsibility for themselves and their community... ...to emergencies or critical incidents. Living within a minimum... ...Public Safety, and Behavioral Threat Management teams to support...Full timeWork experience placementSummer workLive inWork at officeRemote workWeekend workAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Threat Hunting & Incident Response Director. Be the first to apply!
- ai director New York, NY
- franchise director New York, NY
- director it pmo New York, NY
- director of demand generation New York, NY
- residence director New York, NY
- academic director New York, NY
- director of scheduling New York, NY
- industrial director New York, NY
- director of information management New York, NY
- director estimating New York, NY

