Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
The Federal Reserve Bank of Richmond is seeking a proven leader to head the National Incident Response Team (NIRT). You will drive a 24x7 security operations center and incident response program, coordinating with detection engineering, threat intelligence and security assessment teams to protect critical Federal Reserve assets.
You will report to the NIRT Group Vice President and guide senior stakeholders with informed risk decisions, transforming processes and technologies to strengthen our
When you join the Federal Reserve—the nation's central bank—you’ll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we’re building a dynamic team for our future. The Information Security & Policy portfolio collaborates with business areas to address current and future cybersecurity threats across the enterprise, enforce SAFR and security policy, provide strategic and cost-effective services to its stakeholders, and protect the availability, confidentiality and integrity of Federal Reserve assets. We are looking for an enthusiastic and practiced leader to join the Office of the Chief Information Security Officer’s National Incident Response Team (NIRT). The team brings together experts across multiple disciplines to deliver cross‑functional, cybersecurity services to help protect critical systems that support market operations, financial institution supervision, services to banking organizations, services to the U.S. Treasury Department, and internal Federal Reserve System operations. The mission of the National Incident Response Team is to play a role in the Federal Reserve System’s efforts to protect its information systems against unauthorized use. You will be reporting to the NIRT Group Vice President and will be responsible for all aspects of our cyber incident response practice and operate with peers in detection engineering, cyber threat intelligence and security assessment services, in addition to various other security, IT operation and business partners.
World‑Class Operations – Lead and mature a 24x7 SOC and IR operations, inclusive of threat hunting, malware analysis and forensics; while advancing incident response capabilities by integrating AI tools, autonomous triage models, and innovative analytics that increase speed, precision, and operational excellence.
Deliver Business Value – Develop and implement strategies furthering processes, capabilities, and optimizations to detection and response, and System cybersecurity services.
Ensure Cyber Response – Provide leadership and technical expertise to bring defense and response capabilities to critical operational areas; support managing or directing response activities during significant enterprise‑level cyber incidents or new cyber threat conditions.
Support Decision‑Making – Ensure informed risk decisions by senior executive leadership and business line executives through coordinating high impact written and verbal briefings on sensitive cyber security matters.
Leadership – Demonstrate experience with mentorship to foster personal and professional growth; be an active expert to help shape our future environment through strategic relationships; and lead effective change management by guiding teams through transformation with clarity, empathy, and disciplined execution. This includes preparing stakeholders for new processes, ensuring alignment across cross‑functional partners, and empowering teams to adopt and sustain improved ways of working.
You lead with a focus on performance, excellence and accountability – Anticipating trends and our needs; communicate a compelling vision for your team; articulate and align team priorities; drive disciplined execution across complex, 24x7 cybersecurity and incident‑response environments.
You excel at change and transformation management – guiding teams through modernization, process evolution, and readiness for new technologies; enabling cross‑functional adoption of improved ways of working with clarity and steadiness.
You champion innovation and experimentation – integrating diverse perspectives, embracing emerging technologies, and participating in System‑wide innovation forums to advance cybersecurity capabilities.
You communicate with precision and impact – delivering clear, timely, and audience‑aware updates during routine operations and high‑visibility incidents, ensuring senior executives and partners remain informed and aligned.
You model inclusive leadership and talent development – mentoring others, fostering growth, and building strong relationships that promote collaboration, trust, and shared success across the enterprise.
You have knowledge of modern detection and response operations – Exceptional grasp of operational management; incident response and crisis leadership; SOC operations; cloud capabilities, AI modernization, security technology integration and architecture.
Bachelor’s degree in applicable discipline, or the equivalent is required.
Five (5) to ten (10) years of leadership experience in progressively responsible roles in a demanding enterprise environment.
Strong leadership skills and ability to manage staff.
Professional experience in applicable discipline and demonstrated experience in evaluating processes and maintaining a robust control environment for a complex, federated IT organization.
U.S. citizenship and ability to obtain and maintain Top Secret level security clearance.
Atlanta, Boston, Chicago, Cleveland, Dallas, Denver, Kansas City, Minneapolis, New York, Philadelphia, Richmond, San Francisco, or St.Louis
The expected starting salary range for this position is between $308,700 and $365,100 annually in addition to annual performance‑based discretionary bonuses. Final salary and offer will be determined based on the applicant’s home bank, relevant experience, skills, internal equity, and alignment with geographic and other market data. The listed salary is applicable to the Chicago District. Final offers are determined by factors including the candidate’s qualifications, internal alignment considerations, district assignment, and geographic location.
We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender, gender identity or expression, or veteran status.
Full Time / Part Time Full time Regular / Temporary Regular Job Exempt (Yes / No) Yes Job Category Work Shift First (United States of America)
The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.
Our reputation precedes us
There will always be room for personal growth
Our people are first
You’ll find the right balance
Your responsibilities will be meaningful
We hope that you will be our future colleague.