Security Incident Response Engineer

The Jackson National Life Insurance Company

Lansing (MI)

On-site

USD 95,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Competitive pay
Bonuses
Health insurance
401(k) matching
Adoption assistance
Education matching gift program
Dependent tuition program

Job summary

The Jackson National Life Insurance Company is seeking a Security Incident Response Engineer to join the Jackson Information Security and Privacy (JISP) Security Incident Response Team (SIRT) in Lansing, Michigan. You will act as first responder to escalated security alerts, containing malicious activity and coordinating with Legal, Financial Fraud Investigations, and HR.

Responsibilities include leading containment, performing host/network forensics, and developing alerts, playbooks, and

Qualifications

  • Bachelor's degree or equivalent required.
  • 3+ years Information Security experience required.
  • Incident Response and/or Forensics certifications preferred (e.g., GCIH, GCFE, GCFA, CISSP).

Responsibilities

  • Respond to cybersecurity incidents and lead containment actions.
  • Perform host/network forensics, log analysis, and malware triage.
  • Develop and improve incident response playbooks and detection rules.
  • Collaborate with Legal, Financial Fraud Investigations, and HR as needed.

Skills

InfoSec experience
IR & Forensics
PowerShell
Python
Communication

Education

Bachelor's degree or equivalent
GCIH/GCFE/GCFA/CISSP certs

Job description

Job Purpose

The Security Incident Response Engineer is a member of the Jackson Information Security and Privacy (JISP) Security Incident Response Team (SIRT) and will be responsible for initiating and supporting Cybersecurity incident and forensic investigations. As an incident handler, this individual will act as first responder to escalated security alerts, assessing, and swiftly containing malicious activity. The role will be responsible for communicating with multiple business units to include Legal, Financial Fraud Investigations, and Human Resources.

Essential Responsibilities
  • Identifies, investigates, and responds to cybersecurity incidents, including host analysis, network forensics, log analysis, and malware triage.
  • Takes the lead on immediate containment actions and initiates root cause analysis.
  • Notifies on-call resources and escalates incidents to appropriate technical teams and management based on severity, impact, and established incident response procedures.
  • Utilizes forensic tools, techniques, and capabilities to support account takeover (ATO) investigations.
  • Maintains accurate incident records, ensuring proper documentation, evidence handling, and chain of custody throughout investigations.
  • Researches security trends and recommends optimization of security tools, engaging engineering staff and management for approval and assisting in implementation.
  • Performs detection engineering and develops alerts, analytics, and response playbooks to improve detection and response capabilities.
  • Leverages threat intelligence and Security Operations Center data to enrich investigations, analyzes incident trends, and informs improvements to detection and response capabilities.
  • Provides training, mentoring, and subject matter expertise for Security Operations Center (SOC) staff.
  • Defines technical requirements and provides guidance for security monitoring, logging, and incident response capabilities.
  • Creates actionable after-incident reports for Security management and technical teams.
  • Works with other areas of the company, finding common ground to ensure a smooth Security Incident Response process.
  • Validates and ensures SOC security tools operate effectively and leads enhancements that improve detection, automation, and response outcomes.
  • Leads projects that drive continuous improvement of the Incident Response program.
Other Duties

Participates in an on-call rotation and responds to critical security incidents outside of scheduled hours, as required.

Ability to work outside of normal scheduled hours as required to support business continuity and emergency response efforts.

Performs other duties and/or projects as assigned.

Knowledge, Skills and Abilities
  • Expertise in investigating cybersecurity incidents using enterprise security technologies, including SIEM, SOAR, EDR, and host/network forensic tools.
  • Familiarity with authentication, authorization, and logging concepts across enterprise environments.
  • Strong understanding of incident response processes and methodologies, including investigation, containment, escalation, documentation practices, and chain of custody requirements for forensic investigations.
  • Strong Understanding of networking, security fundamentals, and administration of Windows, Linux, and Apple iOS.
  • Understanding of Security Incident Response techniques in cloud environments (SaaS, PaaS, IaaS).
  • Basic understanding of DevSecOps concepts and exposure to automation or AI-assisted tools used in security operations.
  • Scripting or automation experience (e.g., PowerShell, Python, or Bash) to support investigations, or data analysis.
  • Ability to correlate data from multiple sources to identify anomalies, suspicious behavior, or potential security incidents.
  • Strong analytical and problem-solving skills, with the ability to follow established procedures and make sound decisions under guidance.
  • Effective written and verbal communication skills, with the ability to document findings, collaborate with SOC team members, and clearly communicate findings, incident status, and relevant information to security leadership.
Qualifications
  • Bachelor's Degree and/or equivalent experience required.
  • 3+ years Information Security experience required.
  • Incident Response and/or Forensics required within 180 days of hire, such as GCIH, GCFE, or GCFA CISSP (Certified Information Systems Security Professional) preferred.
Company Information / Culture

Jackson is proud to be an equal opportunity workplace.

The Company subscribes to and endorses federal and state laws and regulations relating to equal employment opportunity for all persons without regard to race, color, religion, gender, age, national origin, legally-recognized disability, marital status, legally-protected medical condition, citizenship, ancestry, height, weight, sexual orientation, veteran status or any other factor not related to the needs of the job.

The Company is committed to a policy of equal opportunity.

Company facilities and campuses are tobacco‑free environments.

At Jackson, our employees are empowered to bring a fresh perspective, confront new challenges, and define their own career paths.

We value the unique perspectives and innovative ideas that come from our employees' diverse backgrounds.

Jackson is the marketing name for Jackson National Life Insurance Company (Home Office: Lansing, Michigan) and Jackson National Life Insurance Company of New York (Home Office: Purchase, New York).

Jackson National Asset Management, LLC (JNAM) located in Chicago, Illinois, is an SEC‑registered investment adviser and Jackson subsidiary.

Annuities are distributed by Jackson National Life Distributors LLC, Member FINRA.

Jackson companies offer an outstanding benefits package including competitive pay, bonuses, comprehensive health insurance benefits, a matching 401(k) retirement plan, adoption assistance, education matching gift program and dependent tuition program.

Contact human.resources@jackson.com for alternate formats for accommodation.

To learn more about Jackson's financial strength and results, visit jackson.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Automation Engineer
Security Automation Engineer

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 120,000 - 160,000
Competitive compensation
Bonuses
Health insurance benefits
+4
Security Incident Response Engineer Jackson National Life Insurance · Lansing, MI Full-time · On-site — 3 hours ago
Security Incident Response Engineer Jackson National Life Insurance · Lansing, MI Full-time · On-site — 3 hours ago

Emploive • Lansing (MI)

On-site
USD 90,000 - 130,000
Security Incident Response Engineer
Security Incident Response Engineer

jackson • Lansing (MI)

On-site
USD 90,000 - 140,000
Internal Auditor
Internal Auditor

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 70,000 - 90,000
Bonuses
Health insurance
401(k) matching
+3
Operations Manager, People & Performance
Operations Manager, People & Performance

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 75,000 - 110,000
Project Manager
Project Manager

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 85,000 - 120,000
Health insurance
401(k) plan
Bonuses
+3
Sr. Talent Development Consultant
Sr. Talent Development Consultant

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 85,000 - 120,000
Bonuses
Health insurance benefits
401(k) match
+4
Accounting Policy Lead
Accounting Policy Lead

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 120,000 - 180,000
Competitive pay
Bonuses
Health insurance (comprehensive)
+4
Accounting Policy Lead
Accounting Policy Lead

The Jackson National Life Insurance Company • Town of Lansing (NY)

On-site
USD 120,000 - 190,000
IT SOX Lead
IT SOX Lead

The Jackson National Life Insurance Company • Lansing (MI)

On-site
USD 120,000 - 180,000
Health insurance
401(k) matching
Education matching gift program
+2