Incident Response Lead
$262k - $364kSocket
Minimum qualifications: Bachelor's degree or equivalent practical experience. 10 years of experience with security assessments or security design reviews or threat modeling. 10 years of experience with security engineering, computer and network security and security protocols. 10 years of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment. Experience in people management. Preferred qualifications: Deep technical expertise in threat research, exploit and vulnerability analysis, and the execution of intelligence-led disruption strategies. Expertise in developing specialized teams to identify, analyze, and counter emerging threats and tactics. Track record of building specialized technical teams, optimizing organizational health, and driving operational excellence. Demonstrated ability to scale threat analysis and accelerate intelligence velocity using agentic workflows. Exceptional communication skills in translating complex analysis and campaigns for leadership and executives. About the job: Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities. Operating within the Google Threat Intelligence Group (GTIG), the Google Defense Intelligence (GDI) team identifies, attributes, and counters sophisticated global cyber threats and sits alongside its peer teams of Advanced Persistent Threat Intelligence and Cyber Crime Intelligence under the Threat Operations organization. GDI’s mission is to protect Google's ecosystem by tracking and disrupting advanced adversaries within specialized threat domains (such as Information Operations and commercial surveillance vendors), monitoring threat actors to stay ahead of AI-driven exploitation and enablement, and providing rapid response and threat hunting for developing global exploitation and threats. As the manager of Google Defense Intelligence, you will direct operational execution and investigative strategy for security engineers and analysts. You will oversee complex campaign investigations, convert intelligence into systemic mitigations, and deliver strategic risk assessments to Google leadership while scaling global defenses alongside peers in parallel teams. We succeed in collaborative, high-tempo, innovative problem-solving, balancing real-time response with long-term issue tracking. Our team fosters technical curiosity and cross-functional collaboration to solve complex security issues at Google scale. Individual pay is determined by factors including job-related skills, experience, and relevant education or training. US: $262000 - $364000 (USD) + 25% bonus target + equity + benefits Learn more about benefits at Google. Responsibilities: Threat hunting and advanced attribution to unmask and disrupt sophisticated global adversary campaigns. Provide high-fidelity strategic assessments and threat landscape analysis to guide leadership risk management and enable defense. Drive sustainable capacity and performance through toil-reducing automation and streamlined workflows. Oversee the integration of agentic workflows and advanced analytics into core investigative capabilities. Manage early-warning escalation life-cycles and cross-functional response to emerging, high-exposure threats. #J-18808-Ljbffr
$172.5k - $260.1k
...heart of it all.Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right... ...of Salesforce.The ExperienceSalesforce's Computer Security Incident Response Team (CSIRT) provides 24x7x365 security monitoring and rapid...SuggestedFull timeMonday to FridayShift workNight shift$107.9k - $195.05k
...transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC...SuggestedFull time$140k - $150k
Job DescriptionEverforth ECS is seeking an Incident Response Lead to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a senior-level Incident Response Lead to join our advanced security operations team which is a...SuggestedWork at officeRemote work- ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data...SuggestedContract work
- ...Cadwalder looks for an experienced cybersecurity professional to join the Security Operations team in Washington, D.C. You will lead incident response, investigations, and detection improvements across endpoints, cloud, and identity. The role emphasizes collaboration with...Suggested
- Base One Technologies is seeking a seasoned Cyber Threat Hunter to serve as the hunt and incident response SME in a high-security environment. You will apply in-depth knowledge of threat actor tools and TTPs, distill findings into executive summaries and deep technical...
- Leidos is seeking a Security Operations Center Lead for the DISA GSM-O program in Alexandria, VA. The role... ...day-to-day SOC activities, coordinates 24x7 incident handling, and ensures strict adherence to incident response processes. Qualified candidates will have TS/SCI...
- ICS (a REDHAWK company) seeks an experienced Tier 2 Cyber Incident Response Team Shift Lead in Beltsville, MD to join the Federal Strategic Cyber Mission program. You will lead Tier 2 shift operations, review tickets for accuracy, and coordinate with CIRT Watch Officers...Shift work
- ...security operations professional to oversee continuous security operations across enterprise infrastructure. You will lead threat detection, incident response, and proactive threat hunting while managing SIEM telemetry and investigations of breach attempts. This role...
- ...client seeks a seasoned leader to direct enterprise cybersecurity incident response and offensive security initiatives. The role will manage... ...integrated vulnerability management. The position will also lead penetration testing and adversary emulation programs, align procedures...Hourly payFull timeContract workLocal area2 days per week3 days per week
- A dynamic Woman Owned Small Business is seeking a Senior Incident Response Coordinator for their Program Management and Cyber Support Services project in Arlington, Virginia. The role entails coordinating cyber incident responses, managing stakeholder communications, and...
- Leidos is seeking a Security Operations Center (SOC) Lead in Alexandria, VA, to direct day-to-day SOC activities and manage 24x7 incident response operations for the DISA GSM-O program. The role requires a TS/SCI clearance, a strong background in cybersecurity, and hands...
$138k - $209k
...Inc is seeking a Security Architect in Alexandria, Virginia. The ideal candidate will lead incident management activities, develop cybersecurity strategies, and oversee incident response teams. With a Master's degree in IT or a related field and at least 10 years of...Contract work$138k - $209k
AIS (Applied Information Sciences) is seeking a qualified Security Architect to lead incident response activities and manage cybersecurity threats effectively. The candidate will develop strategies, frameworks, and ensure adherence to security protocols, working closely...- ID.me is seeking a highly experienced SOC Lead to play a pivotal role in our advanced... ...Based in McLean, VA, you will manage complex incidents, mentor junior analysts, and drive... ...hunting, forensic analysis, and incident response across GCP/Kubernetes, leveraging SIEM tools...
- ...Group is seeking a SOC Project Manager to join our client’s team in Bethesda, Maryland. The role focuses on leading day-to-day SOC operations, incident response, and threat analysis in a hybrid on-premises/cloud environment. The position requires strong leadership, policy...
- ...highest form of third-party validation. is searching for a Rapid Response Team Lead to oversee the integrity, security, and efficiency of the... ...before they occur.Communicate plans and responses to incidents to customer leadership, providing them confidence that cybersecurity...Full timeContract workLocal area
$172.5k - $260.1k
...to level-up your career at the company leading workforce transformation in the agentic... ...investigations into advanced or high-impact incidents across Salesforce Core, Marketing Cloud,... ...You Have:8+ years in security incident response with consistent hands-on technical case...Full time- ...Lead Incident Responder Evolver Federal is seeking a Lead Incident Responder to fulfill a requirement for a potential government client... ...the central point of accountability for day-to-day incident response operations, providing leadership and direction in high-...Contract workFlexible hours
- ...Washington, DC Position Overview We are seeking a highly skilled Lead Incident Responder to manage and maintain critical security... ...will have extensive experience in risk management, incident response, and vulnerability assessment within a government contract setting...Contract workFor contractorsWork at officeLocal area
- ...Geospatial & Cloud Analytics (GCA) is seeking a mission-driven Rapid Response Team Lead to support the high-priority, time-sensitive operational... ...activities, VIP support in GO/Flag quarters, and immediate incident response across critical infrastructure. The ideal...Full timeContract workImmediate startWorldwideNight shift
$165k - $180k
Job Title Lead Cyber Defense Incident Responder Clearance TS/SCI (active, required) Location Arlington, VA On-site Salary Range $165,000 to... ...) and Special Access Program (SAP) networks. Duties And Responsibilities Lead a small team of advanced and mid-level security analysts...Weekend work$138k - $209k
...on projects that matter, alongside industry‑leading experts, in an environment that fosters... ...support the unique needs of our client as an Incident Management Lead. Project Summary The Incident Management Lead is responsible for directing enterprise‑wide incident response...Contract workTemporary work- ...connect with us to get a preview of the full benefits package. Required Experience Minimum of 10 years’ experience providing incident response, security operations, and penetration testing support. Minimum 5 years’ managing and directing incident response teams with a...Temporary work
- ...Responsibilities And Qualifications Responsibilities Monitor and control project budgets... ...and management practices (e.g., Asset, Incident, Problem, Change, Release, Capacity, Operations... ...Officer's Representative (ACOR). Lead the rapid response efforts during...Full timeContract workTemporary workWork at officeLocal areaMonday to FridayWeekend workDay shiftAfternoon shift
- ...your career. About the team Abuse Operations is the front-line incident response and remediation function handling active product abuse and... ...active attacks, gathers requirements for operational tooling, and leads incidents. The team works directly with impacted merchants to...
- ...Position Title SOC Operations Lead / Managed Detection & Response (MDR) Lead Position Overview The SOC Operations Lead will oversee 24x7x3... ...enterprise environment. The Lead will direct SOC analysts, incident responders, and MDR personnel responsible for security...Full time
$116.9k - $243.1k
...AI/ML Strategist to implement governance frameworks for AI/ML models in Arlington, Virginia. You will develop policies and ensure responsible AI practices within the organization, including compliance with ethical principles and regulatory requirements. Candidates must...$70.33k - $90.66k
...translating field-based lessons into broader systems and policy change. Primary Function This position primarily supports the Eviction Data Response Network (EDRN), a groundbreaking initiative to create the country’s first large-scale eviction data infrastructure and use that...Full timeWork at officeLocal areaImmediate startWork from home- ...collaborative, congenial environment. Competitive Range Solutions requires the expertise of a talented and experienced Rapid Response Team Lead to assist in the direction and management of the program’s executive support group. The candidate must reference their ability...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Incident Response Lead. Be the first to apply!


