Strategic Incident Response & Threat Intel Lead

Sophos

United States

Remote

USD 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Sophos is seeking an experienced Incident Response & Threat Intelligence Lead to support clients facing sophisticated security threats. You will lead investigations, containment, and response across Windows, Mac, and Linux, while enriching findings with the latest attacker TTP intelligence.

You will translate operational insights into actionable guidance for clients and internal teams. You will also act as a key liaison with Sophos Counter Threat Unit, delivering high quality technical and

Qualifications

  • Lead investigations, containment and response to incidents across platforms (Windows, Mac, Linux).
  • Translate threat intelligence into actionable client guidance and remediation plans.
  • Present findings to executives and technical staff with clear, data-driven recommendations.
  • Display strong leadership under pressure and coordinate with internal teams.

Responsibilities

  • Lead assigned engagements to investigate, contain and respond to incidents.
  • Coordinate communications with customer senior stakeholders and internal teams.
  • Utilize threat intelligence to inform investigations and tooling improvements.
  • Deliver high-quality written and verbal reports to clients and management.

Skills

Incident response leadership
Threat intelligence
Executive communication
Cross-functional collaboration
Investigation & root cause analysis
TTPs analysis (MITRE ATT&CK)

Education

Bachelor's degree in CS/IR or related
Security certifications (GCIH/GCFA/GCFE)

Tools

EnCase/FTK/X-Ways
Microsoft 365 forensics
AWS forensics
EDR tooling (Sophos and others)

Job description

Sophos is seeking an experienced Incident Response & Threat Intelligence Lead to support clients facing sophisticated security threats. You will lead investigations, containment, and response across Windows, Mac, and Linux, while enriching findings with the latest attacker TTP intelligence.

You will translate operational insights into actionable guidance for clients and internal teams. You will also act as a key liaison with Sophos Counter Threat Unit, delivering high quality technical and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Incident Response Lead
Senior Incident Response Lead

Sophos • United States

On-site
USD 150,000 - 190,000
Senior Incident Response Engineer
Senior Incident Response Engineer

Sophos • United States

On-site
USD 150,000 - 190,000
Remote Senior Incident Response Leader
Remote Senior Incident Response Leader

Sophos • United States

Remote
USD 180,000 - 240,000
Remote-first work model
Incident Response Consultant 3
Incident Response Consultant 3

Sophos • United States

On-site
USD 120,000 - 200,000
Senior MDR Threat Analyst – Detection & Response
Senior MDR Threat Analyst – Detection & Response

Sophos • United States

On-site
USD 70,000 - 100,000
Senior SOC Analyst - Lead Incident Response & Threat Hunting
Senior SOC Analyst - Lead Incident Response & Threat Hunting

Confidential • United States

Hybrid
USD 120,000 - 180,000
Threat Analyst 1
Threat Analyst 1

Sophos • United States

On-site
USD 75,000 - 110,000
Incident Response Analyst — SOC & Threat Hunting Pro
Incident Response Analyst — SOC & Threat Hunting Pro

Thrive • United States

Remote
USD 70,000 - 100,000
Senior SOC Analyst: Threat Hunting & Incident Response
Senior SOC Analyst: Threat Hunting & Incident Response

Logicalis GmbH • Beachwood (OH)

On-site
USD 78,000 - 100,000
Senior SOC Lead: Incident Response & Threat Hunting (Hybrid)
Senior SOC Lead: Incident Response & Threat Hunting (Hybrid)

Tier4 Group • Wixom (MI)

Hybrid
USD 110,000 - 150,000