Senior/Lead Cyber Security
Core
Lead defensive security operations by designing and facilitating incident response tabletop exercises, managing the full incident lifecycle, and building organizational readiness for security incidents.
Role type
Senior Incident Response Engineer (Lead)
Builds
Incident response playbooks, runbooks, and organizational readiness for security incidents
Domain
Cybersecurity, Cloud Security, AI Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response lifecycle management, Tabletop exercise design and facilitation, Digital forensics, Cloud security fundamentals, AI security concepts, Cross-functional stakeholder engagement
Preferred skills
Threat intelligence integration, SIEM and CSPM tooling, Automation in IR workflows
Technologies
SIEM, CSPM, Magnet Axiom, Velociraptor, Volatility, FTK, Autopsy, AWS
Responsibilities
Design and facilitate incident response tabletop exercises across security, IT, engineering, legal, and business teams; Own the full incident lifecycle including detection, triage, containment, eradication, recovery, and post-incident review; Build and maintain IR plans, playbooks, and runbooks; Partner with threat intelligence, SOC, and engineering to turn findings into stronger detection and controls; Support digital forensics investigations using PICERL and NIST frameworks; Lead IR activities in cloud environments using cloud security tooling
Seniority
Senior, hands-on IC with leadership responsibilities