Lead, Cyber Threat Response

The Security Executive Council

New York, Northern (NY, KY)

Hybrid

USD 105,000 - 173,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

The Estée Lauder Companies Inc. invites applications for the Cyber Threat Response (CTR) Lead, a junior leadership role based in NYC.

You will coordinate triage, containment, remediation, and closure during active security events, partnering with Security Operations, IT, Legal, Privacy, and external teams to drive timely decisions and consistent execution. Responsibilities include investigating threat activity, maintaining playbooks, and supporting exercises to improve response readiness.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Digital Forensics, or related field; equivalent experience will be considered.
  • 3–5 years of experience in threat management, cybersecurity, security operations, incident response, threat hunting, digital forensics, vulnerability management, or related technical work.
  • Working knowledge of cybersecurity frameworks, standards, and incident response best practices.
  • Ability to assess event criticality and business impact with attention to detail and operational context.

Responsibilities

  • Cyber Threat Response: Investigate threat activity by reviewing evidence, assessing impact, and documenting findings.
  • Coordinate incident response activities across triage, containment, remediation, recovery, and closure.
  • Lead response efforts for emerging threats, including zero-day vulnerabilities, third-party breaches, and threat hunting findings.
  • Collaborate with internal teams and external partners for timely decision-making, escalation, and resolution.
  • Maintain playbooks, workflows, and response documentation to support consistent execution.
  • Support tabletop exercises, lessons learned, and after-action reviews to improve response readiness.
  • Lead or support on-call emergency cyber incident response activities outside normal business hours, including nights and weekends during active incidents.

Skills

Incident response
Threat detection
Security monitoring
Cyber investigations
MITRE ATT&CK
NIST framework
Cloud security

Education

Bachelor's degree in Cybersecurity/IT/CS/DF or related field

Tools

SIEM
EDR
SOAR
Case management
Digital forensics tools

Job description

About the job

The Estée Lauder Companies Inc. is one of the world’s leading manufacturers, marketers, and sellers of quality skin care, makeup, fragrance, and hair care products, and is a steward of luxury and prestige brands globally. The company’s products are sold in approximately 150 countries and territories under brand names including: Estée Lauder, Aramis, Clinique, Lab Series, Origins, M·A·C, La Mer, Bobbi Brown Cosmetics, Aveda, Jo Malone London, Bumble and bumble, Darphin Paris, TOM FORD, Smashbox, AERIN Beauty, Le Labo, Editions de Parfums Frédéric Malle, GLAMGLOW, KILIAN PARIS, Too Faced, Dr.Jart+, the DECIEM family of brands, including The Ordinary and NIOD, and BALMAIN Beauty.

Job Overview

The Cyber Threat Response (CTR) Lead is a junior leadership role supporting incident coordination, security event investigation, and security operations. The CTR Lead coordinates triage, containment, remediation, recovery, and closure activities during active security events while keeping stakeholders informed and documenting actions, findings, and outcomes. The CTR Lead partners with Security Operations, IT, Legal, Privacy, and external partners to support timely decisions, consistent execution, and continuous improvement of response readiness. This position is based in NYC and collaborates with global teams across the company.

Responsibilities

  • Cyber Threat Response
  • Investigate threat activity by reviewing evidence, assessing impact, and documenting findings.
  • Coordinate incident response activities across triage, containment, remediation, recovery, and closure.
  • Lead response efforts for emerging threats, including zero-day vulnerabilities, third-party breaches, and threat hunting findings.
  • Collaborate with internal teams and external partners for timely decision-making, escalation, and resolution.
  • Maintain playbooks, workflows, and response documentation to support consistent execution.
  • Support tabletop exercises, lessons learned, and after-action reviews to improve response readiness.
  • Lead or support on-call emergency cyber incident response activities outside normal business hours, including nights and weekends during active incidents.

Other Support Activities

  • Support insider threat reviews, threat hunting, and executive protection activities by analyzing security data and presenting findings.
  • Assist with digital forensics and eDiscovery through evidence collection, preservation, analysis, and documentation.
  • Contribute to projects and assessments that strengthen security operations and response maturity.
  • Support forensics lab maintenance and case management improvements.
Qualifications:

Qualifications

  • Education & Experience
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Digital Forensics, or a related field; equivalent experience will be considered.
  • 3–5 years of experience in threat management, cybersecurity, security operations, incident response, threat hunting, digital forensics, vulnerability management, or related technical work.
  • Working knowledge of cybersecurity frameworks, standards, and incident response best practices.
  • Ability to assess event criticality and business impact with attention to detail and operational context.

Technical Skills

  • Knowledge of incident response, threat detection, security monitoring, and cyber investigations.
  • Experience with SIEM, EDR, SOAR, case management, and digital forensic tools.
  • Familiarity with MITRE ATT&CK, the NIST Cybersecurity Framework, and incident response methodologies.
  • Knowledge of operating systems, cloud, networking, identity, endpoint security, and logging concepts.
  • Ability to explain findings, risks, and recommended actions to technical and non-technical audiences.

Certifications (Preferred)

  • GCIH, GCFA, GCIA, GCTI, OSCP, CHFI, or other relevant cybersecurity certifications

Soft Skills

  • Analytical, organized, detail-oriented, and able to follow structured processes.
  • Communicates clearly with technical and non-technical audiences.
  • Collaborates effectively across technical, business, and vendor teams.
  • Demonstrates developing leadership, sound judgment, accountability, and ownership.
  • Manages priorities, remains calm during active events, and escalates appropriately.
Compensation:

Pay Range

Anticipated Base Salary Range $105,100.00 to $172,600.00 (Depending on qualifications, skills, experience and/or budget), based on a 40 hour work week (range to be scaled accordingly). In addition, The Estée Lauder Companies offers a variety of benefits to eligible employees, including health insurance coverage (medical, dental, and vision insurance), wellness and family support programs, life and disability insurance, retirement savings plans, education-related programs, paid holidays and vacation time. In addition, the Company maintains highly competitive incentive compensation programs (role eligibility may vary based on terms of the respective plan(s)).

You may be eligible to participate in the applicable Commission/Bonus Plan, under the plan guidelines in effect at the time of hire. Additional details regarding the commission plan will be provided as part of your onboarding.

We know how to fine-tune corporate security because we've led effective and efficient Fortune 500-level security programs. The SEC helps businesses find the best balance of risk mitigation, cost and innovation.

Want insight delivered to your inbox? Subscribe to Security Insight newsletter.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Analyst, Tech GRC M&A
Senior Analyst, Tech GRC M&A

Estée Lauder Companies • New York (NY)

On-site
USD 90,450 - 135,000
Health insurance
Retirement savings plans
Paid leave
Senior Analyst, Tech GRC M&A
Senior Analyst, Tech GRC M&A

The Estée Lauder Companies Inc. • New York (NY)

On-site
USD 90,000 - 135,000
Health insurance
Wellness programs
Retirement savings plans
+2
Cyber Threat Response Lead: Incident Command & Containment
Cyber Threat Response Lead: Incident Command & Containment

The Security Executive Council • New York (NY), Northern (KY)

Hybrid
USD 105,000 - 173,000
Environmental Health and Safety Specialist
Environmental Health and Safety Specialist

Estée Lauder Companies • Blaine (MN)

On-site
USD 60,000 - 86,000
Health insurance
Wellness programs
Life insurance
+4
Administrative Assistant II
Administrative Assistant II

The Estée Lauder Companies Inc. • New York (NY)

On-site
USD 45,000 - 72,000
Health insurance
Retirement plans
Paid holidays
+1
Administrative Assistant II
Administrative Assistant II

Estée Lauder Companies • New York (NY)

On-site
USD 45,000 - 72,000
Health insurance
Retirement plans
Paid holidays
+2
Director, External Corporate Communications, North America
Director, External Corporate Communications, North America

Estée Lauder Companies • New York (NY)

Hybrid
USD 124,000 - 214,000
Health insurance
Wellness programs
Life & disability insurance
+4
Counsel, Securities
Counsel, Securities

Estée Lauder Companies • New York (NY)

On-site
USD 159,000 - 273,000
Executive Director, Global Influencer Marketing Strategy & Operations
Executive Director, Global Influencer Marketing Strategy & Operations

The Estée Lauder Companies Inc. • New York (NY)

On-site
USD 158,000 - 273,000
Health insurance
Wellness programs
Life and disability insurance
+5
Environmental Health and Safety Specialist
Environmental Health and Safety Specialist

The Estée Lauder Companies • Blaine (MN)

On-site
USD 60,000 - 86,000
Health insurance
Retirement savings plans
Paid holidays and vacation