Incident Response Lead — AI-Driven Cyber Defense

NorthMark Strategies

Dallas (TX)

On-site

USD 120,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Lunch stipend
Employer-paid medical, dental, vision
401(k) match 100% up to 6%
Optional benefits: HSA/FSA, etc.
25 days PTO + 12 holidays

Job summary

NorthMark Strategies is seeking a Cyber Defense Incident Responder to lead and execute the full incident response lifecycle across enterprise and cloud environments. You will act as Incident Commander for high-impact events, drive rapid containment actions, and improve detection fidelity with AI-assisted tools.

Responsibilities include real-time decision-making, cross-functional coordination, and delivering executive-ready reports.

Qualifications

  • 6+ years of hands-on experience in Cybersecurity Operations / Incident Response.
  • Strong experience within Microsoft Security Ecosystem.
  • Proven experience investigating incidents across cloud (Azure/AWS), identity, endpoint, and email.
  • Demonstrated experience integrating AI/automation in security operations.
  • Strong proficiency in KQL for threat hunting and investigation.
  • Excellent written and verbal communication, including executive-level reporting.
  • Bachelor’s degree in Cybersecurity, IT, or related field, or equivalent experience.
  • Certifications CISSP, CISM, CISA, or GIAC.

Responsibilities

  • Act as Incident Commander for high-impact security incidents, coordinating cross-functional response efforts.
  • Lead the full Incident Response lifecycle with focus on reducing time-to-detect and time-to-contain.
  • Leverage MITRE ATT&CK and Cyber Kill Chain to guide investigations and response strategies.
  • Lead real-time decision-making during active incidents, ensuring business risk is understood and mitigated.
  • Provide executive-ready incident reports, including impact assessments and actions.
  • Mentor junior analysts and collaborate with IT, Legal, HR, and business stakeholders.

Skills

Incident response
Microsoft Security
AI in SecOps
KQL
Executive reporting
Incident leadership
Stakeholder influence

Education

Bachelor's degree in Cybersecurity or IT
CISSP/CISM/CISA or GIAC certs

Job description

NorthMark Strategies is seeking a Cyber Defense Incident Responder to lead and execute the full incident response lifecycle across enterprise and cloud environments. You will act as Incident Commander for high-impact events, drive rapid containment actions, and improve detection fidelity with AI-assisted tools.

Responsibilities include real-time decision-making, cross-functional coordination, and delivering executive-ready reports.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Incident Response Lead — AI & Cloud Security
Senior Incident Response Lead — AI & Cloud Security

F5 Networks, Inc.  • United States

Hybrid
USD 182,000 - 273,000
AI Cyber Defense & Crisis Lead (Remote)
AI Cyber Defense & Crisis Lead (Remote)

Stryker Corporation • Kalamazoo (MI)

Hybrid
Confidential
AI Incident Response Lead
AI Incident Response Lead

Arcitix Technologies • San Francisco (CA)

On-site
USD 120,000 - 150,000
AI Security Defense Lead & Incident Response
AI Security Defense Lead & Incident Response

sevenai • Boston (MA)

On-site
USD 180,000 - 240,000
AI-Driven Detection & Response Lead
AI-Driven Detection & Response Lead

Objective Partners • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+4
Incident Response Lead - Remote IR Commander
Incident Response Lead - Remote IR Commander

Rippling, Inc. • United States

Remote
USD 105,000 - 135,000
Medical, dental, vision coverage
401(k) with company match
Paid time off
+1
AI Incident Response Analyst - Remote & Flexible
AI Incident Response Analyst - Remote & Flexible

Alignerr Corp. • Seattle (WA)

Remote
USD 55,000 - 96,000
Autonomy
Global collaboration
Hybrid Cyber Defense Lead - Incident Commander
Hybrid Cyber Defense Lead - Incident Commander

AFL • South Carolina

Hybrid
USD 120,000 - 170,000
Hybrid in-office schedule
401K match
Tuition reimbursement
+2
Senior Incident Response Lead – AI-Driven Security (Remote)
Senior Incident Response Lead – AI-Driven Security (Remote)

Atlassian • Seattle (WA), Northern (KY)

Hybrid
USD 240,000 - 280,000
Health and wellbeing resources
Volunteer days
Incident Response Lead - Blue Team & Automation
Incident Response Lead - Blue Team & Automation

Atlas Search • New York (NY)

On-site
USD 140,000 - 190,000