This range is provided by CompassMSP. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range
$100,000.00/yr - $140,000.00/yr
Additional compensation types
Annual Bonus
Direct message the job poster from CompassMSP
The Incident Response Manager is responsible for leading and coordinating all phases of the security incident lifecycle. This role ensures rapid detection, containment, eradication, and recovery from cybersecurity incidents while maintaining compliance with organizational policies and industry best practices. The ideal candidate combines strong technical expertise with leadership skills to manage high-pressure situations effectively.
Key Responsibilities
Incident Management & Leadership
- Act as the incident commander during major security events, directing technical investigations and coordinating cross-functional teams (SOC, IT, Legal, Managed Services, and external vendors).
- Oversee the end-to-end incident response lifecycle, ensuring timely triage, containment, eradication, and recovery in line with SLAs.
- Maintain accurate documentation of all incidents in the incident response platform.
Technical Expertise
- Perform and guide advanced forensic analysis, including host-based investigations, network traffic analysis, and malware reverse engineering.
- Develop and refine incident response playbooks, standard operating procedures (SOPs), and escalation protocols.
Team Management
- Partner in leading and mentoring a team of security analysts and responders, fostering continuous improvement and professional development. (No direct people management responsibilities)
- Manage on-call rotations and resource allocation to ensure 24/7 coverage for critical incidents.
Strategic Development
- Collaborate with leadership to enhance organizational security posture through proactive threat hunting and vulnerability management.
- Conduct post-incident reviews and lessons-learned sessions to improve future response strategies.
Qualifications
- Proven experience in incident response, digital forensics, and threat analysis.
- Strong knowledge of security frameworks (NIST, CIS, ISO 27001) and regulatory requirements.
- Familiarity with SIEM, EDR, and other security tools.
- Excellent leadership, communication, and decision-making skills under pressure.
- Relevant certifications (CISSP, GCIH, GCFA, or similar) preferred.
Seniority level: Mid-Senior level
Employment type: Full-time
Job function: Information Technology
Referrals increase your chances of interviewing at CompassMSP by 2x
Inferred from the description for this job
Medical insurance
Vision insurance
401(k)
Get notified about new Incident Manager jobs in United States.