Cybersecurity Incident Response Lead

INSPYR Solutions

California (MO)

Remote

USD 100,000 - 130,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

A leading technology solutions firm is seeking a Cybersecurity Incident Response Lead for remote work. This role is crucial for managing cybersecurity incidents and requires expert knowledge in threat containment, analysis, and remediation. The ideal candidate has a Bachelor's degree in Computer Science or a related field, over 5 years in Cyber Security Operations, and experience in Incident Response roles. Strong leadership, communication, and analytical skills, as well as familiarity with security tools, are essential for success in this position.

Qualifications

  • 5+ years of experience in Cyber Security Operations type role.
  • 3+ years of experience specifically in Incident Response roles.
  • Experience in cloud security architectures and tools (e.g., AWS, Azure, GCP).

Responsibilities

  • Drive containment and eradication of threats during cybersecurity events.
  • Capture detailed notes and deliver precise reports during incidents.
  • Develop and conduct training exercises for team and organizational improvement.

Skills

Communication skills
Leadership skills
Analytical skills
Problem-solving skills
Time-management skills
Collaboration

Education

Bachelor's degree in Computer Science, Information Security, or a related field

Tools

SIEM
IDS/IPS
DLP
Vulnerability management platforms

Job description

Cybersecurity Incident Response Lead - Direct-Hire/FTE - Remote (UK Based)

Position: Cybersecurity Incident Response Lead - Direct-Hire/FTE. Location: Remote (Based in the UK)

The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast‑paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between technical teams and leadership, ensuring effective communication and alignment on cybersecurity priorities. This role will require attention to detail, ability to organize and document information, and in‑depth knowledge of cyber security processes to support the global organization through complex and high‑pressure incidents. This role is ideal for an experienced cybersecurity professional with a passion for leading technical projects, fostering team alignment, and delivering results in a dynamic and complex enterprise environment.

WHAT THIS ROLE WILL DO
  • Capture detailed notes and deliver precise, accurate reports to stakeholders during high‑pressure scenarios, ensuring all action items are effectively communicated and delegated to the Cyber Defense team or partners for execution; throughout the lifecycle of an incident.
  • Collect evidence from cyber events and utilize data to build a complete chain of events from initial access through eradication and recovery phases.
  • Advise and coordinate with Incident Commander by providing trusted expert advice to support the successful conclusion of a cyber incident.
  • Receive and analyze signals from numerous sources to determine possible causes of alerts.
  • Conduct, document and report post‑mortem lessons learned that contribute to the improvement of the team and the organization’s cyber program.
  • Develop and communicate reports on Cyber Defense TTPs, guidance, and incident findings to various stakeholders.
  • Advise and collect forensically sound artifacts for inspection to support cyber incidents.
  • Engage with both technical and non‑technical stakeholders in a professional manner both internally and externally to the business on sensitive cybersecurity issues.
  • Develop training and exercises to promote both team and organizational development to improve delivery during incidents, through the creation and conduction of tabletops and workshops.
  • Work as part of a global team.
  • Be the Incident Response SME.
WHAT THIS PERSON WILL BRING
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • 5+ years of experience in Cyber Security Operations type role
  • 3+ years of experience specifically in Incident Response type roles that performed event investigations
  • Excellent communication skills, with experience delivering executive‑level briefings and reports.
  • Solid understanding of cybersecurity principles, including incident response, policy governance, and compliance requirements.
  • Experience with security tools such as SIEMs, IDS/IPS, DLP, and vulnerability management platforms.
  • Strong organizational, time‑management, and leadership skills.
  • Experience in the application of available tooling to defend against cyber threats and hardened existing systems against further attacks
  • Experience in response to at least one public cloud vendor (e.g.: AWS, GCP, Azure, etc)
  • Experience in response to a variety of system types and applications
  • Must be willing to work an on‑call rotation
  • Excellent analytical and problem‑resolution skills to collect/ preserve evidence for documentation and reporting
  • Certifications: CISSP, GCIH, GCFA, CySA+
  • Experience working in large, global enterprises with complex technical infrastructures
  • Knowledge of audit frameworks and regulatory compliance requirements (e.g., SOX, GDPR, PCI DSS)
  • Familiarity with cloud security architectures and tools (e.g., AWS, Azure, GCP)
  • Exceptional ability to remain calm and focused during high‑stress situations.
  • Strong problem‑solving and conflict‑management skills
  • A collaborative team player who thrives in a global, cross‑functional environment.
About INSPYR Solutions

Technology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients’ business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.

INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Defense (Head of Department)
Cyber Security Defense (Head of Department)

INSPYR Solutions • Irvine (CA)

On-site
USD 190,000 - 230,000
Cyber Defense Incident Responder - Associate Director
Cyber Defense Incident Responder - Associate Director

Ernst & Young Advisory Services Sdn Bhd • Hoboken (NJ)

On-site
USD 140,000 - 210,000
Cyber Defense Incident Responder - Associate Director
Cyber Defense Incident Responder - Associate Director

Ernst & Young Advisory Services Sdn Bhd • Hoboken (NJ)

On-site
USD 140,000 - 210,000
Incident Response Manager
Incident Response Manager

Fortuna Cysec • Atlanta (GA)

On-site
USD 100,000 - 150,000
Incident Response Manager
Incident Response Manager

Fortuna Cysec • Atlanta (GA)

On-site
USD 100,000 - 150,000
Cybersecurity Operations & Incident Response Manager
Cybersecurity Operations & Incident Response Manager

Jobgether • Town of Texas (WI)

On-site
USD 162,681 - 200,000
Competitive salary range: $162,681 – $200,000
Health, dental, and vision coverage
401(k) retirement savings plan
+3
Cyber Incident Response Leader
Cyber Incident Response Leader

PRI Technology • Austin (TX)

On-site
USD 210,000 - 230,000
Annual Bonus
Sign-on bonus
RSUs
Incident Response Lead
Incident Response Lead

Leidos • Ashburn (VA)

On-site
USD 108,000 - 195,000
Engineer - Security Operations and Incident Response
Engineer - Security Operations and Incident Response

Pearl Consulting Group • United States

Hybrid
USD 120,000 - 170,000
Incident Response Lead
Incident Response Lead

Leidos • Washington

On-site
USD 108,000 - 195,000