Manager, Security Incident Response
$130k - $150kHUB International
Job Description
ABOUT US
At HUB International, we are a team of entrepreneurs. We believe in protecting and supporting the aspirations of individuals, families, and businesses. We help our clients evaluate their risks and develop solutions tailored to their needs. We believe in empowering our employees to learn, grow, and make a difference. Our structure enables our teams to maintain their own unique, regional culture while leveraging support and resources from our corporate centers of excellence. HUB is a global insurance and employee benefits broker, providing a boundaryless array of business insurance, employee benefits, risk services, persnal insurance, retirement, and private wealth management products and services. With over $5 billion in revenue and almost 20,000 employees in 600 offices throughout North America, HUB has grown substantially, in part due to our industry leading success in mergers and acquisitions Job Description In this role, you will manage the Security Incident Response team; for detecting and identifying cyber threats, as well as containment and remediation of these threats. This role owns the full incident response lifecycle - detection, triage, containment, eradication, recovery, and post-incident review, and is responsible for building a scalable Incident Response function that pairs reactive response capability with proactive detection engineering and threat hunting. The Manager ensures investigations are conducted with sound forensic methodology, including log and audit-trail analysis across cloud and on-premises platforms, accurate scoping of impacted systems and accounts. Objectives of this Role Manages and is responsible for the successful completion of all tasks in assigned projects. Lead and manage a Security Incident Response Team focused on responding to security threats and maintaining HUB's critical threat detection and response suite of security applications. Available 24/7 for any critical incidents that may arise that require immediate resolution, providing leadership and direction to a multi-disciplinary IT team. Work with IT teams to ensure managed environments and procedures comply with defined corporate security policies. Mentor and develop team members to help foster individuals' professional growth. Engage with teams to practice continuous improvement in processes and tooling. Supervises assigned operations team members and performs personnel actions including hiring, individual goal tracking, training, performance evaluation. Maintains current knowledge of relevant technology, bringing forth ideas for modernization and improvement. Identify potential technical issues and assist in engineering possible solutions Engage with management regularly with reports on project status, activities, and achievements Lead "Technical Archeology" efforts (Platform and System Decomposition), in respect to gaps identified during incident response activities. Lead the creation of security incident response processes and playbooks that are scalable, consistent, repeatable, and supportable. Direct forensic investigations of security incidents, including analysis of cloud audit logs (e.g., Microsoft 365 Unified Audit Log), endpoint and network telemetry, and identity activity, to identify indicators of compromise, establish attack timelines, and determine scope of impact. Design and maintain a tiered escalation framework and on-call rotation so that incidents are routed to the appropriate analyst and management level based on severity and business impact. Drive maturity of the Incident Response and Detection Engineering functions against a KPI-based roadmap, tracking metrics such as mean time to detect (MTTD), mean time to respond (MTTR), alert triage volume, and case closure rates. Balance the team’s dual-track structure of reactive Incident Response and proactive Detection Engineering/threat hunting, ensuring each track has clear ownership, workflows, and staffing. Conduct post-incident reviews and root-cause analysis to capture lessons learned, close process gaps, and feed findings back into playbooks and detection content. Daily and Monthly Responsibilities Communicate with stakeholders to assist in the identification of business, technical, and operational requirements. Analysis, of root-cause analysis for service interruption, to establish preventive measures, mitigations, or needed changes. Evaluate security applications, infrastructure and associated costs at regular intervals Be responsible for analysis and recommendation of configuration changes, process improvements or visibility enhancements to the support and scaling of HUB's security response. Triage and prioritize incoming security alerts and incidents daily, assigning severity and escalating to the appropriate analyst or on-call tier. Perform or oversee forensic log review for active investigations (e.g., Microsoft 365 Unified Audit Log, EDR, network/firewall logs), documenting findings and preserving evidence in line with chain-of-custody practices. Report monthly on incident response KPIs, including mean time to detect (MTTD), mean time to respond (MTTR), incident volume, and case closure rates, to leadership. Facilitate tabletop exercises and periodic playbook/runbook reviews to validate incident response readiness and identify process gaps. Skills and Qualifications Bachelor’s degree in technology or applicable experience. 10+ Years of experience with programming/scripting languages (Powershell, python, shell scripting) Extensive experience with: TCP/IP, DNS, CDN, WAF, OAuth, SAML 3+ years of experience with cloud infrastructure as a service (AWS, Azure, GCP) 5+ years of experience with Microsoft Active Directory/Entra and O365 services and technology 5+ years of experience with security platforms, automation tooling Hands-on experience with SIEM, EDR, and SOAR platforms for detection, alerting, and investigation. Experience conducting digital forensics and incident response (DFIR), including log analysis, timeline reconstruction, and evidence handling with chain-of-custody rigor. Working knowledge of incident response frameworks (e.g., NIST 800-61, SANS) and experience developing incident response playbooks and runbooks. Experience building or maturing an incident response team, including defining KPIs/metrics and driving a maturity roadmap. Collaboration, prioritization, and adaptability skills Desire to continuously develop your skills and knowledgeJOIN OUR TEAM
Do you believe in the power of innovation, collaboration, and transformation? Do you thrive in a supportive and client focused work environment? Are you looking for an opportunity to help build and drive change in a rapidly growing and evolving organization? When you join HUB International , you will be part of a community of learners and doers focused on our Core Values: entrepreneurship, teamwork, integrity, accountability, and service. The expected salary range for this position is $ 130,000 to $150,000 and will be impacted by factors such as the successful candidate’s skills, experience and working location, as well as the specific position’s business line, scope and level. HUB International is proud to offer comprehensive benefit and total compensation packages which could include health/dental/vision/life/disability insurance, FSA, HAS and 401(k) accounts, paid-time-off benefits such as vacation, sick, personal, floating holidays and company holidays. In addition, eligible annual bonuses, equity and commissions may be available for some positions. Department Information Technology Required Experience: 5-7 years of relevant experience Required Travel: Negligible Required Education: Bachelor’s degree (4-year degree) HUB International Limited is an equal opportunity employer that does not discriminate on the basis of race/ethnicity, national origin, religion, age, color, sex, sexual orientation, gender identity, disability or veteran’s status, or any other characteristic protected by local, state or federal laws, rules or regulations. E-Verify Program We endeavor to make this website accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the recruiting team View email address on click.appcast.io. This contact information is for accommodation requests only; do not use this contact information to inquire about the status of applications. #J-18808-Ljbffr HUB InternationalVacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Manager, Security Incident Response in Chicago, IL vacancy
$188.4k - $282.6k
...About The Team Abuse Operations is the front-line incident response and remediation function handling active product abuse... ...This multi-disciplinary group, spanning Incident Managers, Investigators, Forward Deployed Security Engineers, and Data Scientists, neutralizes active...SuggestedWork at officeLocal areaRemote workWork from homeRelocation- KPMG is seeking a Manager, Incident Response to join our Advisory practice in the United States. You will lead cyber incident response activities, coordinate investigations across major threats, and manage client communications during high-impact events. You will mentor...Suggested
$20 per hour
...Description Overview Allied Universal®, North America’s leading security and facility services company, offers rewarding careers that... ...Description As a Security Guard Full Time Patrol Driver Incident Response in Chicago, IL , you will serve and safeguard clients in...SuggestedFull timeWork at officeLocal areaShift work- ...Role: Manager, Incident Response within the Advisory practice, focusing on leading cyber incident response activities and managing investigations... ...frameworks like NIST or SANS. Hands-on experience with security tools such as SIEM, EDR, DLP, and threat intelligence platforms...SuggestedWork experience placementVisa sponsorshipWork visa
- ...the largest private talent sourcing and management firms in the US. Our client, one of... ...local communities seeks an accomplished Incident Response Manager. Job Description MUST HAVE: 5+... ...a SOC/NOC Hands-on experience with security and access technologies Experience in...SuggestedLocal areaNight shift
$23.05 per hour
Allied Universal®, North America’s leading security and facility services company, offers... ...Security Guard Enhanced Part Time Alarm Response in Chicago, IL, this role is designed to... ...technology campus environment. Respond to incidents, access concerns, and critical...Full timePart timeFor contractorsWork at officeLocal areaFlexible hoursShift work$19.75 per hour
...Allied Universal®, North America’s leading security and facility services company, offers... ...Description As a Security Officer Armed Patrol Response in Chicago, IL , you will serve and... ...presence to help deter security-related incidents, and provide courteous customer service...Full timeWork at officeLocal areaShift work$20.8 per hour
...Allied Universal®, North America’s leading security and facility services company, offers... ...Security Officer Part Time Armed Patrol Response in Chicago, IL , you will serve and safeguard... ...with site procedures. Respond to incidents, alarms, and critical situations in a calm...Part timeLocal areaShift work$20.8 per hour
Allied Universal®, North America’s leading security and facility services company, offers... ...Security Officer Part Time Armed Patrol Response in Chicago, IL, you will serve and safeguard... ...presence to help deter security-related incidents, and respond professionally to site...Part timeLocal areaShift work$52k
...Titan Security is built on serving our clients and building careers... ...hiring a Field Operations Manager to work as part of a team to... ...Operations and is primarily responsible for the quality assurance and... ...and documents pertaining to incidents, personnel activities, and...Permanent employmentFull timeWork at officeFlexible hoursNight shiftAfternoon shift- ...Security SupervisorChicago, IL 60661OverviewSalary Range $21.33... ...depending on position.Expected Responsibilities:Security Guard duties... ...the extent of threats and/or incidents against persons and property... ...personnel world-wide, trained and managed by a team of professionals...Hourly payPermanent employmentFull timeContract workFor contractorsLocal areaImmediate startFlexible hoursShift work
$114.1k - $268.18k
...consider a career in Advisory.We are currently seeking a Manager, Incident Response to join our Advisory practice.ResponsibilitiesLead and manage... ...) and breach response practicesHands on experience with security monitoring and response technologies, including SIEM, EDR,...Work experience placementH1bLocal area- ...Security SupervisorThe Security Supervisor is responsible for providing a safe and guest friendly environment for employees... ...house approved requests from management.Conduct security for pre-event meetings... ...stairs.Able to write details incident reports with facts.Must have...Work at officeFlexible hoursShift workNight shiftAfternoon shift
- ...Homecare Agency, LLC is seeking an armed security professional to protect a leading... ...conduct patrols on foot and by vehicle, manage access and visitors, and respond as an armed... ...law enforcement, you will document safety incidents and safeguard assets following hospital...
$22.75 - $23 per hour
...Security Shift SupervisorChicago, ILTitan Security is built on serving... ...Shift Supervisor to manage shift operations for an iconic... ...Wednesday (3:00 PM–11:00 PM)Responsibilities:Lead, direct, and motivate on... ...responsibilities and patrols; review incident reports prior to submitting...Contract workMonday to FridayShift workWeekend work- ...Lead Security SupervisorChicago, IL 60661OverviewSalary Range $2... ...depending on position.Expected Responsibilities:Security Guard duties... ...the extent of threats and/or incidents against persons and property... ...personnel world-wide, trained and managed by a team of professionals...Hourly payPermanent employmentFull timeContract workFor contractorsLocal areaImmediate startFlexible hoursShift work
$22 per hour
...Job Description GardaWorld Security Services is Now Hiring a Surveillance Security... ...GardaWorld Uniform provided at no cost Responsibilities of Surveillance Security Guard... ...activity Document observed events and incidents, writing detailed reports Respond quickly...Hourly payFull timeCasual workLocal areaImmediate startShift workNight shiftWeekend workDay shiftAfternoon shift- Titan Security is built on serving our clients and building careers - just... ...hospitality environment. Key Responsibilities Hospitality Security & Operations Management Direct, schedule, and supervise... ..., keycard access systems, and incident-logging software. Ensure guests...Hourly payContract workFor contractorsLocal areaShift work
$70k
...of Science and Industry is the right place for you! The Security Manager is responsible for overseeing the safety and security operations of the... ...operational and effective. Prepare and file safety, criminal, incident, and other department reports. Participate in setting...Contract workTemporary workLocal area- ...Skills ~10+ years of information security experience, including cloud and... ...~ Strong program and project management capabilities. Roles & Responsibilities Define and evolve AI security... ...support monitoring, vulnerability management, and incident readiness....
- Description Position Title: Security Manager Department: Technology Reports To: VP of IT Location: Chicago / Remote Employment Type:... ...assessments across systems, business units, and processes Support incident response: detection, triage, containment, and post-incident review...Full timeRemote work
- ...Universal Services is seeking an Armed Security Shift Supervisor to oversee and coordinate... ...between site supervision, Account Managers, and security officers, providing coaching... ...staff supervision, training, and incident response, with required industry standards and safety...Shift work
$144.9k - $265.8k
...mature, and optimize their security operations, connecting the people... ...of projects. Your Key Responsibilities As our ServiceNow Security Operations... ...seeking a highly motivated Manager focused on ServiceNow SecOps... ...ServiceNow Security Incident Response, Vulnerability Response...Work experience placementSummer holidayWork at officeFlexible hours- ...Security Operations ManagerThis is a newly created position due to... ...time. This is a hands-on team management position, that will be managing... ...Lead/participate in security incident management, as necessary.Lead... ...policies and procedures in response to changing business, industry...
- ...Job Summary: Provide security detail as outlined in the post... ...Special assignments. Responsibilities: Duties may vary depending... ...able to respond to alarms, incidents and emergency situations.... ...Make recommendations to management on better safety and loss prevention...For contractorsLocal areaNight shift
- ...Job Summary Please, submit your Security License and/or 30-hour unarmed training... ...Gamma Team Security, Inc (***) ***-**** Responsibilities Patrol the premises and maintain a high... ...Report on daily activities and any security incidents Qualifications Previous...Flexible hours
- ...Security OfficerThe Study at University of Chicago seeks a dependable, observant, service... ...through routine patrols, monitoring, incident response, and a visible presence throughout the... ...and follow-up skills with the ability to manage multiple priorities in a fast-paced...Full timeLocal areaFlexible hoursShift workNight shiftAfternoon shift
$19 - $28.5 per hour
...*Supports the mission of the Security Services Department in providing... ....* Perform emergency response that includes but is not limited... ...duties.* Utilize computer-based incident report software to complete... ...within six months of hire.* Management of Aggressive Behavior (MOAB)...Hourly payFull timePart timeFor contractorsLocal areaImmediate startAll shiftsNight shiftDay shiftAfternoon shift$25 per hour
...Unarmed Security Officer Show All Jobs Apply Show Map Location... ...Degree High school Manage Others No Contact information... ...in minutes! Your Responsibilities: Deliver exceptional customer... ...appropriately to critical incidents and emergencies. What We’...Weekly payFlexible hours$21.7 - $24.24 per hour
...Medical Center Department: Security Work Type: Full Time (Total... ...year. Able to perform required responsibilities. Able to successfully... ...and safety hazards. Prepare incident reports, memorandums and other... ...access control and visitor management. Controls and enforces vehicular...Hourly payPermanent employmentFull timeLocal areaFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager, Security Incident Response. Be the first to apply!
Related searches
- corporate security manager Chicago, IL
- surveillance manager Chicago, IL
- security manager Chicago, IL
- security engineering manager Chicago, IL
- director information security Chicago, IL
- director global security Chicago, IL
- senior director information security Chicago, IL
- senior security manager Chicago, IL
- security systems manager Chicago, IL
- security operations manager Chicago, IL


