Sr. Incident Response Manager

KIA Motors Group

Irvine (CA)

On-site

USD 123,279 - 177,697

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) plan matching
Paid time off
Premium medical coverage
Company lease and purchase programs

Job summary

A leading automotive manufacturer is seeking a Senior Incident Response Manager to oversee cybersecurity efforts in Irvine, California. This role demands extensive experience in incident response, forensic analysis, and vulnerability management. Ideal candidates will have a strong technical background and be capable of leading teams and communicating effectively with stakeholders. The position offers a salary range of $123,279 - $177,697 with competitive benefits.

Qualifications

  • 5-7 years of cybersecurity experience with 2-4 years in enterprise-scale incident response.
  • In-depth knowledge of IT and security systems.
  • Strong understanding of security frameworks (e.g., NIST, ISO).

Responsibilities

  • Lead incident response across KUS and affiliates.
  • Design and implement detection mechanisms.
  • Drive phishing and BEC takedown efforts.

Skills

Cybersecurity Experience
Incident Response
Forensics
Vulnerability Management
Technical Communication

Education

Bachelor’s degree in Computer Science or related field

Tools

Microsoft Sentinel
Splunk ES
Microsoft 365 Defender
Mimecast
Nessus

Job description

At Kia, we’re creating award‑winning products and redefining what value means in the automotive industry. It takes a special group of individuals to do what we do, and we do it together. Our culture is fast‑paced, collaborative, and innovative. Our people thrive on thinking differently and challenging the status quo. We are creating something special here, a culture of learning and opportunity, where you can help Kia achieve big things and most importantly, feel passionate and connected to your work every day.

Kia provides team members with competitive benefits including premium paid medical, dental and vision coverage for you and your dependents, 401(k) plan matching of 100% up to 6% of the salary deferral, and paid time off. Kia also offers company lease and purchase programs, company‑wide holiday shutdown, paid volunteer hours, and premium lifestyle amenities at our corporate campus in Irvine, California.

Status

Exempt

General Summary

The Senior Incident Response (IR) Manager provides strategic and operational leadership for detecting, responding to, and eradicating cyber threats targeting Kia America (KUS) and its affiliated entities. This position oversees end‑to‑end incident response activities including triage, containment, forensics, recovery, and post‑incident analysis and ensures continuous enhancement of blue‑team capabilities across email, endpoint, identity, cloud, and network environments.

In addition, the Senior Manager drives proactive vulnerability and exposure management, enforces secure configuration baselines, and governs enterprise‑wide patch management to minimize risk and prevent incidents before they occur. The role is also accountable for aligning KUS security operations with global and regional (Kia North America) cybersecurity strategies, coordinating with affiliate IT/security teams, developing and maintaining IR playbooks, and advancing the organization’s overall security maturity through awareness programs and cross‑functional collaboration.

Priority One – 20% of Time
  • Lead incident response across KUS and affiliates (triage, containment, eradication, recovery, communication)
  • Coordinate internal/external stakeholders and ensure timely executive reporting.
Priority Two – 20% of Time
  • Detection Engineering & Threat Hunting
    • Design, implement, and tune detections mapped to MITRE ATT&CK framework across the following platforms:
    • Security Information and Event Management (SIEM)- e.g., Microsoft Sentinel
    • Security Orchestration, Automation, and Response (SOAR) - e.g., Splunk ES
    • Extended Detection and Response (XDR) - e.g., Microsoft 365 Defender
    • Email Security- e.g., Microsoft EOP/Mimecast
    • Network sensors
Priority Three – 20% of Time
  • Program Improvement
    • Develop IR runbooks/playbooks, automate with SOAR, run tabletop and purple‑team exercises, coordinate vulnerability remediation with IT partner, and maintain metrics/KPI for continuous improvement.
    • Maintain proactive vulnerability and exposure management, including: enterprise scanning (on‑premises, cloud, and container environments); attack surface management (ASM); configuration baselines such as Center for Internet Security (CIS) Benchmarks; patch and change governance with IT partner; measurement and reporting, such as Common Vulnerability Scoring System (CVSS) / Exploit Prediction Scoring System (EPSS); and preventive controls and system hardening.
Priority Four – 20% of Time
  • Email & Identity Threat Defense
    • Drive phishing and Business Email Compromise (BEC) takedown efforts; domain abuse monitoring through email authentication protocols including SPF (Sender Policy Framework), DKIM (DomainKeys Identified Mail), and DMARC (Domain‑based Message Authentication, Reporting, and Conformance); strengthen identity protection measures; and harden high‑risk workflows including Finance and HR.
Priority Five – 20% of Time
  • Digital Forensics & Malware Triage
    • Acquire and preserve digital evidence; perform host, network, and cloud forensics; analyze malware artifacts; determine root cause; and document findings and lessons learned through comprehensive incident reports.

This list of essential responsibilities and duties is not exhaustive and may be supplemented and changed as necessary by management.

Qualifications/Education
  • Bachelor’s degree in Computer Science, Information Technology, or a related field required.
Job Requirement
  • 5-7 years of cybersecurity experience in organizations with mature security processes, including 5-7 years of hands‑on technical work and 2-4 years specializing in enterprise‑scale incident response and blue‑team operations.
  • In‑depth knowledge and practical experience with various IT and security systems
  • Familiar with security related regulations and compliance requirements
  • Experience in policy development and implementation.
  • Strong understanding of security frameworks and standards (e.g., NIST, ISO, CIS).
  • Strong understanding of network security, applications, cloud, and infrastructure
Other Requirements
  • 20% of domestic or international travel.
  • Job demands may include confidentiality, problem solving, reasoning skills, oral communication, written communication, and ability to effectively communicate with executive as well as technical audience
  • Must be able to maintain focus and attention to detail in a fast‑paced environment.
  • Ability to analyze information and make sound decisions under time constraints.
  • Problem‑solving skills and the ability to work independently
  • Must be able to respond to challenges with poise and agility.
  • Ability to handle competing priorities effectively and with composure.
  • Must be able to calmly and confidently lead multiple cross‑disciplined teams during stressful situations.
  • Other duties as assigned.
Specialized Skills and Knowledge Required
  • Practical expertise with SIEM/XDR/SOAR (e.g., Microsoft Sentinel, Microsoft 365 Defender suite, Splunk ES), EDR (e.g., Defender for Endpoint, Sentinel One), email security (e.g., Mimecast), and Infra/Network vulnerability scanning tools (e.g., Rapid7, Qualys, Nessus, and Nmap, Wireshark)
  • Strong understanding of authentication and email security (SPF/DKIM/DMARC), identity protection (MFA/Conditional Access), and log sources across Windows, O365, Azure, and common SaaS.
  • Care for People
  • Chase Excellence Every Day
  • Dare to Push Boundaries
  • Empower People to Act
  • Move Further Together

Pay Range

$123,279 - $177,697

Pay will be based on several variables that are unique to each candidate, including but not limited to, job‑related skills, experience, relevant education or training, etc.

KUS provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, ancestry, national origin, sex, including pregnancy and childbirth and related medical conditions, gender, gender identity, gender expression, age, legally protected physical disability or mental disability, legally protected medical condition, marital status, sexual orientation, family care or medical leave status, protected veteran or military status, genetic information or any other characteristic protected by applicable law. KUS complies with applicable law governing non‑discrimination in employment in every location in which KUS has offices. The KUSEEO policy applies to all areas of employment, including recruitment, hiring, training, promotion, compensation, benefits, discipline, termination and all other privileges, terms and conditions of employment.

Disclaimer: The above information on this job description has been designed to indicate the general nature and level of work performed by employees within this classification and for this position. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

10279 - Security Incident Response Manager
10279 - Security Incident Response Manager

Hyundai Autoever America • Irvine (CA)

On-site
USD 119,000 - 183,000
Medical coverage
Dental coverage
PTO
+2
Data Scientist
Data Scientist

KIA Motors Group • Irvine (CA)

On-site
USD 82,000 - 111,000
Competitive benefits including medical and dental coverage
401(k) matching program
Paid time off
+1
Emerging Field Data Engineer / Specialist
Emerging Field Data Engineer / Specialist

KIA Motors Group • Irvine (CA)

On-site
USD 77,000 - 101,000
Premium medical coverage
401(k) matching
Paid time off
+2
Emerging Field Data Engineer
Emerging Field Data Engineer

Kia America • Irvine (CA)

On-site
USD 77,000 - 100,000
Business Systems Analyst
Business Systems Analyst

KIA Motors Group • Irvine (CA)

On-site
USD 77,000 - 101,000
Competitive medical, dental, and vision coverage
401(k) matching up to 6%
Paid volunteer hours
+1
HR Generalist II
HR Generalist II

Kia America • Irvine (CA)

On-site
USD 64,000 - 83,000
Premium health coverage
401(k) matching up to 6%
Paid time off
+2
Manager, Service Retention & Loyalty
Manager, Service Retention & Loyalty

Kia America • Irvine (CA)

On-site
USD 140,000 - 195,000
Health benefits
Premium medical/dental/vision coverage
401(k) matching
+3
Manager, Service Retention & Loyalty
Manager, Service Retention & Loyalty

KIA Motors Group • Irvine (CA), Northern (KY)

Hybrid
USD 140,000 - 195,000
Lease and purchase programs
Company-wide holiday shutdown
Paid volunteer hours
+1
Sr. Risk Operation Analyst – Integrated Risk Management “IRM”
Sr. Risk Operation Analyst – Integrated Risk Management “IRM”

Hyundai Autoever America • Irvine (CA)

On-site
USD 120,000 - 170,000
Retail Marketing Analyst
Retail Marketing Analyst

KIA Motors Group • Downers Grove (IL)

Hybrid
USD 58,000 - 75,000