Incident Response Lead - Remote
$120.19k - $223.21kStrada
Our story
Strada is a technology-enabled, people powered company committed to delivering world-class payroll, human capital management, and financial management solutions to organizations globally.
We are looking for a highly skilled and motivated Incident Response Lead to join our cybersecurity team. This individual will serve as the operational backbone of how Strada handles incidents and ensures Strada is prepared to respond effectively to cybersecurity incidents. This is an individual contributor leadership role with significant cross-functional influence. When things go wrong, you are the person who makes sure the right people are in the room, the right information is flowing, and nothing falls through the cracks. The right person for this role brings structure and rigor to complex situations, drives timely decisions, and helps restore services safely and quickly without waiting for a playbook to be handed to them. This role will strengthen Strada’s incident response readiness by maturing processes, playbooks, escalation paths, exercises, and cross-functional operating mechanisms. You will be a self-starter who turns ambiguity into practical, repeatable operating mechanisms and moves work forward without waiting for detailed direction. The role will partner closely with the SOC Leads, who own monitoring operations, detection engineering, alert triage processes, SIEM management, and SOC team performance.
Key Responsibilities:
Lead Cybersecurity Incident Response
- Act as incident lead for major cybersecurity incidents, establishing severity, objectives, workstreams, decision rights, communication cadence, and escalation paths.
- Direct the end-to-end response through validation and scoping, containment, eradication, recovery, and closure, maintaining a clear record of timelines, decisions, actions, and owners.
- Coordinate security, infrastructure, cloud, identity, network, application, vendor, and business teams to restore affected services safely and validate operational stability and residual risk.
- Provide concise, timely situation reports and decision recommendations to executives and stakeholders, translating technical findings into business impact and required actions.
- Partner with Legal, Privacy, Risk, Communications, Human Resources, Business Continuity, and customer-facing teams to meet regulatory, contractual, insurance, notification, and crisis communication obligations.
Build readiness for incidents
- Own and mature incident response by establishing processes, enhancing tooling, and defining operational standards for handling incidents at scale
- Continually improve the incident response framework, major-incident plans, escalation criteria, call trees, and response and recovery playbooks, including clear handoffs with other teams.
- Design and facilitate tabletop exercises and simulations to test technical readiness, decision-making, communications, and recovery arrangements.
- Perform incident readiness activities, and support additional cybersecurity initiatives as needed in a dynamic global corporate environment
Coach and enable the organization
- Provide expert guidance on complex incidents and mentor responders, analysts, and technical stakeholders in effective incident management practices.
- Lead post-incident reviews, assign and track corrective actions, and ensure lessons learned improve controls, architecture, detections, response capability, and operational resilience.
Qualifications and Experience:
- Have 5+ years of experience in incident management, with direct experience leading high-severity cybersecurity incidents in complex, global, or distributed environments.
- Have built or significantly shaped an incident response program, ideally in an environment where you had to create structure rather than inherit it
- Demonstrate a strong sense of ownership and urgency, with the ability to operate independently and make sound decisions under pressure without waiting for direction
- Are comfortable working in unprecedented situations where processes are still being defined and guidance may be incomplete or conflicting, leaving things better than you found them
- Have a track record of effective cross-functional collaboration, particularly with technology, product, security, legal, communications, and executive leadership
- Have experience with cloud infrastructure incidents and enough technical depth across the stack to engage meaningfully with technology teams during response, including comfort navigating distributed systems, monitoring tools, and logs
- Are analytically minded, with experience using data (incident metrics, queries, trend analysis) to inform decisions during response and to drive operational improvements over time
- Excellent communication skills with the ability to communicate clearly and calmly under pressure, both in real-time coordination and in post-incident written communications
- A strong record as a self-starter: you anticipate needs, identify gaps, set priorities, and drive work to completion with limited direction.
- Strong process-design and documentation skills, including process mapping, runbook development, workflow design, and translating lessons into repeatable operating practices.
- Proven coaching, facilitation, and change-enablement skills, with the ability to raise the capability and confidence of technical and non-technical stakeholders.
- Strong knowledge of incident response methodologies and frameworks, including NIST SP 800-61, the SANS incident response lifecycle, and MITRE ATT&CK.
- Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience
- Relevant certifications such as CISSP, GCIA, or equivalent are a plus.
What We Offer:
- An opportunity to play a critical role in building a new cybersecurity organization.
- A dynamic and collaborative work environment.
- Professional development and career growth opportunities.
- Competitive salary and benefits package.
- Flexible working arrangements.
Join Us:
If you are passionate about cybersecurity, thrive in a dynamic environment, and want to contribute to building a robust security program from the ground up, we encourage you to apply and be part of our journey at Strada Global.
At Strada, our values guide everything we do:
Anticipate Customer Needs – We stay ahead of trends so our customers can grow and succeed.
Own the Outcome – We take responsibility for delivering excellence and ensuring things get done right.
Challenge Ourselves to Work Smarter – We move faster than the world around us to drive change and accomplish more.
Empower Each Other to Solve Problems – We tackle challenges head on, ask tough questions, and collaborate to find the best solutions.
Care About Our Work – We understand that what we do impacts millions, and we have a responsibility to get it right.
Benefits
At Strada, we support your whole self—offering a range of benefits for your health, wellbeing, finances, and future. These include health coverage, wellbeing programs, paid leave (vacation, sick, parental), retirement plans, learning opportunities, and more.
All offers are contingent on successful completion of background checks, where permitted by law and as appropriate for the role. These may include identity, education, employment, and in some cases, criminal history verification, checks against global watchlists, credit reports, and/or drug testing. You’ll be informed of the specific checks applicable to your role and location during the recruitment process.
Our commitment to Diversity and Inclusion
Strada is dedicated to fostering a diverse, equitable, and inclusive workplace where everyone feels valued and supported. We believe that embracing differences strengthens our teams and drives innovation and success.
Equal Employment Opportunity Statement
Strada is an Equal Opportunity Employer and prohibits discrimination based on legally protected characteristics. We provide reasonable accommodation for disabilities and religious practices. Applicants may request reasonable accommodation by contacting their recruiter.
Authorization to work in the Employing Country
To be considered, you must have current and future work authorization in the country where you're applying, without the need for visa sponsorship by Strada.
We offer you a competitive total rewards package, continuing education & training, and tremendous potential with a growing worldwide organization.
Salary Pay Range
Minimum - Maximum:
$120,190.00 - $223,210.00Pay Transparency Statement: Strada considers a variety of factors in determining whether to extend an offer of employment and in setting the appropriate compensation level, including, but not limited to, a candidate’s experience, education, certification/credentials, market data, internal equity, and geography. Strada makes these decisions on an individualized, non-discriminatory basis. Bonus and/or incentive eligibility are determined by role and level.
DISCLAIMER:
Nothing in this job description restricts management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Strada business units.
$140k - $150k
Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a senior-level Incident Response Lead to join our advanced security operations team which is a...Remote workWork at office- ...As the Incident Response Lead, this full-time remote position will manage client security incidents, directing response efforts, establishing protocols, and coordinating communications during critical events while building and refining the incident response practice. Key...Remote workFull time
- The Cybersecurity Security Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional responsible for overseeing and coordinating... ...opportunities with unused IR retainer credits.This is a remote position.This position is not eligible for sponsorship for...Remote workContract workFor contractorsLocal area
$40 - $80 per hour
...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About the Role What if your hard-won experience in the SOC trenches could directly strengthen how organizations detect, respond to, and contain real threats? We're looking for a seasoned Incident...Remote workHourly payOngoing contractContract workFreelanceFlexible hoursNight shift$105k - $135k
...Our Managed Detection and Response practice, formerly Quadrant Information... ...insurance panel. You are the incident commander, directing Harbor’s... ...experience acting as the lead on security incidents, meaning... ...Location & Work Model Location: Remote (US) Schedule: Standard...Remote workContract workImmediate start- ...Mandiant, part of Google Cloud, seeks a Senior Incident Response Security Consultant to lead end-to-end incident investigations across cloud, network, and endpoints. You will guide technical teams, communicate findings to executives, and drive remediation strategies on...Remote job
- Mandiant is seeking a Principal Incident Response Security Consultant to lead end-to-end incident response engagements for high-profile breaches, including... ...detailed technical and executive-level reports. This remote role based in Arizona requires strong client communication...Remote work
- ...hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a... ...reporting to the Cyber Monitoring and Incident Response Team Director, you are responsible for... ...DTCC.Utilize metrics, feedback from team leads, feedback from stakeholders, threat intelligence...Remote workFlexible hours
- ...Group (MUFG), one of the world’s leading financial groups. Across the... ...sites four days per week and work remotely one day. A member of our... ...actions based upon that analysis. Responsibilities include rapidly responding to potential incidents and events to minimize risk exposure...Remote workFull timeWork at officeLocal area1 day per week
- ...Switch is seeking an Incident Commander to lead regional response during active data center incidents. You will coordinate Mission Control, Site Operations, Engineering, and customer-facing teams to achieve incident objectives, restoration, and formal closure. Ideal...Remote job
- ...tomorrow. In this job, you’ll serve as Cybersecurity Incident Response Team (CSIRT) Coordinator, leading the coordination of incident response activities... ...facility for a set number of days with the option to work remotely on the remaining days. Unless otherwise noted,...Remote workWork at officeRelocation
$130k - $170k
At WHOOP, we're on a mission to unlock and inspire performance for life.We are seeking a Incident Response Lead to drive security incident response across the enterprise. In this role, you will serve as the primary internal escalation point and hands-on responder for security...Full timeWork at officeRelocation$142.4k - $178k
Sony Pictures Entertainment (SPE) is seeking an experienced Lead Cyber Incident Response professional to help protect the company's people, intellectual property, productions, technology platforms, and business operations from cyber threats.This role leads complex cybersecurity...Full time- Verisk is seeking a Principal, Incident Response Lead to join the Enterprise Incident Response team. The successful candidate will work as a team lead on the incident response team to identify and respond to information security incidents and proactively hunt for potential...
$107.9k - $195.05k
...transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC...- ...Colorado Springs is seeking a Security Operations Center Technical Lead to act as the senior technical authority for SOC watch... ...cyber defense analysis, and threat hunting. The role focuses on incident response leadership and complex investigations to mature DoD-based SOC...
- ...most admired brands, Toyota is growing and leading the future of mobility through... ...seeking an experienced and proactive Post Incident Review Lead to oversee and drive the post... ...and incidents. This leadership role is responsible for managing the PIR team, ensuring thorough...H1b
$142.32k - $273.93k
...military spouses. USAA roles may offer remote or hybrid flexibility for active-duty... ...OpportunityAs a dedicated Cybersecurity Incident Manager - Lead, the candidate selected for this... ...within the Cyber Threat Monitoring and Response (CTMR) team, responsible for leading and...Remote workFull timeH1bWork at officeHome officeRelocation packageFlexible hours- ...Swift Software seeks a Lead SOC Analyst for our Cyber Fusion Centre to oversee threat hunting, support incident response, and provide strategic guidance to junior staff. You will lead a formal Threat Hunting program, participate in 24x7 SOC operations, and collaborate...
- ...Incident Response Lead Downey, CA 12+ months Description: An Information Security Specialist interprets information security policies, standards and other requirements as they relate to internal information system and coordinates the...
$125.1k - $225.2k
...potential. Unleash your talent and redefine what’s possible. Job Description: Parsons is looking for an experienced Incident Response Lead to guide a team performing high-impact cyber investigations and analysis in support of critical mission objectives. This...Seasonal workLocal areaFlexible hours- ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data...Contract work
$134.8k
...today! Job Overview: An IR analyst L3 is responsible for the daily operations of IR alerts/... ..., and escalating security alerts and incidents, managing IR tools and services, and supporting... ...and services. Act as the Incident Lead during significant security events....Local areaWorldwide- ...combines the scale and investment of an industry leader, access to leading-edge technologies and the opportunity to help shape how a... ...built to last.Corporate Vice President, Cyber Security Incident Response Team LeadJob Title: Corporate Vice President, Cyber Security...Work experience placementWork at officeLocal areaShift work3 days per week
- Placements24 is seeking a highly experienced Senior Information Security Analyst for a fully remote role. You will lead advanced threat detection, incident response, and security strategy development while mentoring junior analysts and driving security initiatives across...Remote job
- ...Surefox Utah, Inc. in Provo, Utah, is seeking a Security Officer/Incident Commander to join our team. You will act as liaison between Surefox and clients, manage emergency response, and ensure compliance with client policies and state/federal regulations. The role requires...
- ...head the Global Information Security Team. The role focuses on leading incidents, threat hunting, and maturing blue-team capabilities across... ..., and implement automation to improve detection and response. Strong communication and cross-functional collaboration are...
- ...Apex Space, Inc. is seeking a Cybersecurity Lead to oversee the SOC, drive proactive threat detection, incident response, and team performance. The role reports to IT & Cybersecurity leadership and collaborates with IT and compliance to align security with business...
- ...Zachary Piper Solutions seeks a SOC Lead to support a DOE/NNSA program in Manassas, VA on-site. The role directs the SOC team, leads incident response, and improves detection capabilities to protect sensitive assets. Requirements include active TS clearance or DOE...
- ...Athena is seeking a Head of InfoSec Operations to lead day-to-day cybersecurity operations, incident response, threat detection, and risk reduction. The role interfaces with IT, Eng, DevOps, Legal, Compliance, Sales, and Customer Success, and includes client security inquiries...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Lead - Remote. Be the first to apply!
- revenue manager remote Remote
- training manager remote Remote
- title examiner remote Remote
- remote social worker Remote
- remote nurse practitioner Remote
- remote coding manager Remote
- product designer remote Remote
- customer service rep remote Remote
- part-time virtual/remote assistant Remote
- remote pilot operator Remote


