Cyber Incident Response Lead - Remote
$120.19k - $223.21kStrada
Our story
Strada is a technology-enabled, people powered company committed to delivering world-class payroll, human capital management, and financial management solutions to organizations globally.
We are looking for a highly skilled and motivated Incident Response Lead to join our cybersecurity team. This individual will serve as the operational backbone of how Strada handles incidents and ensures Strada is prepared to respond effectively to cybersecurity incidents. This is an individual contributor leadership role with significant cross-functional influence. When things go wrong, you are the person who makes sure the right people are in the room, the right information is flowing, and nothing falls through the cracks. The right person for this role brings structure and rigor to complex situations, drives timely decisions, and helps restore services safely and quickly without waiting for a playbook to be handed to them. This role will strengthen Strada’s incident response readiness by maturing processes, playbooks, escalation paths, exercises, and cross-functional operating mechanisms. You will be a self-starter who turns ambiguity into practical, repeatable operating mechanisms and moves work forward without waiting for detailed direction. The role will partner closely with the SOC Leads, who own monitoring operations, detection engineering, alert triage processes, SIEM management, and SOC team performance.
Key Responsibilities:
Lead Cybersecurity Incident Response
- Act as incident lead for major cybersecurity incidents, establishing severity, objectives, workstreams, decision rights, communication cadence, and escalation paths.
- Direct the end-to-end response through validation and scoping, containment, eradication, recovery, and closure, maintaining a clear record of timelines, decisions, actions, and owners.
- Coordinate security, infrastructure, cloud, identity, network, application, vendor, and business teams to restore affected services safely and validate operational stability and residual risk.
- Provide concise, timely situation reports and decision recommendations to executives and stakeholders, translating technical findings into business impact and required actions.
- Partner with Legal, Privacy, Risk, Communications, Human Resources, Business Continuity, and customer-facing teams to meet regulatory, contractual, insurance, notification, and crisis communication obligations.
Build readiness for incidents
- Own and mature incident response by establishing processes, enhancing tooling, and defining operational standards for handling incidents at scale
- Continually improve the incident response framework, major-incident plans, escalation criteria, call trees, and response and recovery playbooks, including clear handoffs with other teams.
- Design and facilitate tabletop exercises and simulations to test technical readiness, decision-making, communications, and recovery arrangements.
- Perform incident readiness activities, and support additional cybersecurity initiatives as needed in a dynamic global corporate environment
Coach and enable the organization
- Provide expert guidance on complex incidents and mentor responders, analysts, and technical stakeholders in effective incident management practices.
- Lead post-incident reviews, assign and track corrective actions, and ensure lessons learned improve controls, architecture, detections, response capability, and operational resilience.
Qualifications and Experience:
- Have 5+ years of experience in incident management, with direct experience leading high-severity cybersecurity incidents in complex, global, or distributed environments.
- Have built or significantly shaped an incident response program, ideally in an environment where you had to create structure rather than inherit it
- Demonstrate a strong sense of ownership and urgency, with the ability to operate independently and make sound decisions under pressure without waiting for direction
- Are comfortable working in unprecedented situations where processes are still being defined and guidance may be incomplete or conflicting, leaving things better than you found them
- Have a track record of effective cross-functional collaboration, particularly with technology, product, security, legal, communications, and executive leadership
- Have experience with cloud infrastructure incidents and enough technical depth across the stack to engage meaningfully with technology teams during response, including comfort navigating distributed systems, monitoring tools, and logs
- Are analytically minded, with experience using data (incident metrics, queries, trend analysis) to inform decisions during response and to drive operational improvements over time
- Excellent communication skills with the ability to communicate clearly and calmly under pressure, both in real-time coordination and in post-incident written communications
- A strong record as a self-starter: you anticipate needs, identify gaps, set priorities, and drive work to completion with limited direction.
- Strong process-design and documentation skills, including process mapping, runbook development, workflow design, and translating lessons into repeatable operating practices.
- Proven coaching, facilitation, and change-enablement skills, with the ability to raise the capability and confidence of technical and non-technical stakeholders.
- Strong knowledge of incident response methodologies and frameworks, including NIST SP 800-61, the SANS incident response lifecycle, and MITRE ATT&CK.
- Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience
- Relevant certifications such as CISSP, GCIA, or equivalent are a plus.
What We Offer:
- An opportunity to play a critical role in building a new cybersecurity organization.
- A dynamic and collaborative work environment.
- Professional development and career growth opportunities.
- Competitive salary and benefits package.
- Flexible working arrangements.
Join Us:
If you are passionate about cybersecurity, thrive in a dynamic environment, and want to contribute to building a robust security program from the ground up, we encourage you to apply and be part of our journey at Strada Global.
At Strada, our values guide everything we do:
Anticipate Customer Needs – We stay ahead of trends so our customers can grow and succeed.
Own the Outcome – We take responsibility for delivering excellence and ensuring things get done right.
Challenge Ourselves to Work Smarter – We move faster than the world around us to drive change and accomplish more.
Empower Each Other to Solve Problems – We tackle challenges head on, ask tough questions, and collaborate to find the best solutions.
Care About Our Work – We understand that what we do impacts millions, and we have a responsibility to get it right.
Benefits
At Strada, we support your whole self—offering a range of benefits for your health, wellbeing, finances, and future. These include health coverage, wellbeing programs, paid leave (vacation, sick, parental), retirement plans, learning opportunities, and more.
All offers are contingent on successful completion of background checks, where permitted by law and as appropriate for the role. These may include identity, education, employment, and in some cases, criminal history verification, checks against global watchlists, credit reports, and/or drug testing. You’ll be informed of the specific checks applicable to your role and location during the recruitment process.
Our commitment to Diversity and Inclusion
Strada is dedicated to fostering a diverse, equitable, and inclusive workplace where everyone feels valued and supported. We believe that embracing differences strengthens our teams and drives innovation and success.
Equal Employment Opportunity Statement
Strada is an Equal Opportunity Employer and prohibits discrimination based on legally protected characteristics. We provide reasonable accommodation for disabilities and religious practices. Applicants may request reasonable accommodation by contacting their recruiter.
Authorization to work in the Employing Country
To be considered, you must have current and future work authorization in the country where you're applying, without the need for visa sponsorship by Strada.
We offer you a competitive total rewards package, continuing education & training, and tremendous potential with a growing worldwide organization.
Salary Pay Range
Minimum - Maximum:
$120,190.00 - $223,210.00Pay Transparency Statement: Strada considers a variety of factors in determining whether to extend an offer of employment and in setting the appropriate compensation level, including, but not limited to, a candidate’s experience, education, certification/credentials, market data, internal equity, and geography. Strada makes these decisions on an individualized, non-discriminatory basis. Bonus and/or incentive eligibility are determined by role and level.
DISCLAIMER:
Nothing in this job description restricts management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Strada business units.
- ...As the Incident Response Lead, this full-time remote position will manage client security incidents, directing response efforts, establishing protocols,... ...from various data sources Experience working with breach counsel and cyber insurance carriers during incidents...Remote workCyberFull time
$140k - $150k
Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are... ...-incident reportingDeep familiarity with the Cyber Kill Chain, MITRE ATT&CK, Diamond Model of Intrusion...Remote workCyberWork at office$40 - $80 per hour
...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About the Role What if your hard-won experience in the SOC trenches could directly strengthen how organizations detect, respond to, and contain real threats? We're looking for a seasoned Incident...Remote workCyberHourly payOngoing contractContract workFreelanceFlexible hoursNight shift$105k - $135k
...Managed Detection and Response practice, formerly Quadrant... ...panel. You are the incident commander, directing Harbor... ...the Senior Director of Cyber Services and work... ...experience acting as the lead on security incidents,... ...Work Model Location: Remote (US) Schedule: Standard...Remote workCyberContract workImmediate start- ...hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a... ...Strategy team, reporting to the Cyber Monitoring and Incident Response Team Director, you are responsible for... ...Utilize metrics, feedback from team leads, feedback from stakeholders, threat...Remote workCyberFlexible hours
- ...), one of the world’s leading financial groups. Across... ...per week and work remotely one day. A member of our... ...based upon that analysis. Responsibilities include rapidly responding to potential incidents and events to minimize... ...the various types of cyber-attacks and their...Remote workCyberFull timeWork at officeLocal area1 day per week
- ...Cybersecurity Incident Response Specialist We're on the hunt for a Cybersecurity Incident Response Specialist with the curiosity of a detective... ...," you'll fit right in. Key Responsibilities Conduct cyber incident investigations and digital forensic analysis (sans...Remote workCyber
- ...Springs is seeking a Security Operations Center Technical Lead to act as the senior technical authority for SOC watch operations, cyber defense analysis, and threat hunting. The role focuses on incident response leadership and complex investigations to mature DoD-based...Cyber
- ...Swift Software seeks a Lead SOC Analyst for our Cyber Fusion Centre to oversee threat hunting, support incident response, and provide strategic guidance to junior staff. You will lead a formal Threat Hunting program, participate in 24x7 SOC operations, and collaborate...Cyber
- ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high... ...back to our community. The Perks: As recognized members of the Cyber Elite, we work together in partnership to defend our nation'...CyberContract work
$107.9k - $195.05k
...programs, allowing us to better serve our customers through scale and repeatability. Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber...Cyber$142.32k - $273.93k
...military spouses. USAA roles may offer remote or hybrid flexibility for active-... ...a dedicated Cybersecurity Incident Manager - Lead, the candidate selected for this... ...position serves as a Lead within the Cyber Threat Monitoring and Response (CTMR) team, responsible for...Remote workCyberFull timeH1bWork at officeHome officeRelocation packageFlexible hours$180k - $218k
Cydecor, Inc. is seeking a Lead Cyber Mission Threat Analyst to support critical U.S. Navy cybersecurity operations in Port Hueneme... ...experience in cyber operations, particularly in threat detection and incident response. The ideal candidate will lead cybersecurity efforts,...Cyber- ...Incident Response Specialist PH - Fully Remote The Incident Response Specialist will play a key role in supporting customers through all stages of a cyber incident, from initial investigation through to containment, eradication, recovery and post-incident reporting...Remote workCyber
$125 - $175 per hour
Gridnaut Recruiting is hiring a remote Cybersecurity Practitioner: Paid Expert Interviews (SOC, Incident Response, Detection, AppSec) contractor (pay $125–$175/hr). Contribute... ...how well AI agents do real enterprise cyber defense work.; Before we build it, we want to...Remote workCyberHourly payTemporary workFor contractors- Noblis is seeking a security professional to advance cyber defense programs for federal missions. You will evaluate capabilities, lead improvements, and design incident response playbooks within an agile framework. The role emphasizes cross‑functional collaboration, data...Remote jobCyber
- ...outcomes.Across technology, data, AI, cyber, product, digital experience, architecture... ...of an industry leader, access to leading-edge technologies and the opportunity to... ...Corporate Vice President, Cyber Security Incident Response Team LeadJob Title: Corporate Vice President...CyberWork experience placementWork at officeLocal areaShift work3 days per week
$142.4k - $178k
Sony Pictures Entertainment (SPE) is seeking an experienced Lead Cyber Incident Response professional to help protect the company's people, intellectual property, productions, technology platforms, and business operations from cyber threats.This role leads complex cybersecurity...CyberFull time- ...Corporate Vice President, Cyber Security Incident Response Team Lead About the Company Pioneering mutual life insurance company Industry Financial Services Type Privately Held Founded 1845 Employees 10,001+ Categories Finance Insurance...CyberWork experience placement
$87.32k
...active-duty and veteran employees. Responsibilities The Senior Cybersecurity Incident Response Administrator manages... ...investigation of threats. This is a remote-eligible position. Local... ...security standards. Review Army Cyber Tasking Orders (CTOs) and coordinate...Remote workCyberFor contractorsLocal area- Verisk is seeking a Principal, Incident Response Lead to join the Enterprise Incident Response team. The successful candidate will work as a team... ...Privacy NoticeBachelor's degree in Information Systems, Cyber Security, or related sciences preferred.5+ years of information...Cyber
- ...Leidos in Arlington, VA seeks a Senior Incident Response Analyst to join the DHS CISA SOC program, driving incident detection, response, and threat analysis to protect government networks. You will coordinate investigations, analyze indicators, and develop playbooks...Remote jobCyber
$134.8k
...Overview: An IR analyst L3 is responsible for the daily operations of... ...escalating security alerts and incidents, managing IR tools and... ...services. Act as the Incident Lead during significant security events... ...5 years of experience in IT/Cyber with at least 3 in Incident...CyberLocal areaWorldwide$125 - $175 per hour
...creative and technical talent with leading AI research labs.... ...Paid Expert Interviews (SOC, Incident Response, Detection, AppSec) Type:... ...5–$175/hour Location: Remote Role Responsibilities... ...processes used in enterprise cyber defense work. Evaluate how...Remote workCyberHourly payContract workSummer work- ...Leidos LLC is seeking a Senior Incident Response Analyst to support the DHS CISA Security Operations Center (SOC) program. The role focuses... ...Bash). This position requires a bachelor's in a related field and extensive cyber experience, with #J-18808-Ljbffr Jobleads-USCyber
- ...Zachary Piper Solutions is seeking a NOC Lead to support a federal mission environment with on-site work in Manassas, VA and Washington... ..., and security of enterprise systems while leading incident response and operational excellence initiatives. The role will supervise...CyberNight shift
$120k - $135k
...single focus has been delivering cyber solutions to effectively manage risk... ...years! TDI is seeking a Senior Incident Response Analyst to join our team in support... ...radius are eligible to work fully remote. RESPONSIBILITIES: Lead and coordinate cyber incident...Remote workCyberPermanent employmentContract work2 days per week- ...brands, Toyota is growing and leading the future of mobility... ...experienced and proactive Post Incident Review Lead to oversee and drive... ...incidents. This leadership role is responsible for managing the PIR team,... ...~ Deep understanding of Cyber Threat TTPs, threat hunting techniques...CyberH1b
- ...tomorrow: At Bosch, you change lives.Bosch Cyber Defense has an open position for a... ...skilled, and experienced cyber forensic and incident response analyst to work as part of the cyber... ....Perform live-system, offline, and remote compromise investigations; collect, preserve...Remote workCyber
$125 - $175 per hour
...creative and technical talent with leading AI research labs.... ...Paid Expert Interviews (SOC, Incident Response, Detection, AppSec) Type:... ...5–$175/hour Location: Remote Role Responsibilities... ...processes used in enterprise cyber defense work. Evaluate AI...Remote workCyberHourly payContract workSummer work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Incident Response Lead - Remote. Be the first to apply!



