Cybersecurity Incident Manager
Core
Technical lead and escalation point for complex, high-severity security incidents, guiding analysts and coordinating response to safeguard client systems and data.
Role type
Senior IC Cybersecurity Incident Manager
Builds
Secure client systems and data through proactive incident response and mitigation strategies
Domain
Cybersecurity / Information Security
Deliverable
client delivery
Required skills
Incident Response and Management, Security tool proficiency (SIEM, EDR), Threat vector analysis, Risk management, Team leadership and mentorship, Performance evaluation, Strategic guidance for clients, KPI and SLA monitoring
Preferred skills
CISSP/GIAC/EC-Council certifications, MSSP environment experience, Vendor management
Technologies
SIEM, EDR, Windows, Linux, Unix
Responsibilities
Serve as escalation contact for confirmed and high-impact incidents; Oversee technical investigations and coordinate response activities; Take technical ownership of Level 2 senior security analysts' team; Provide guidance and assistance with troubleshooting and resolution of complex issues; Coordinate incident response and recovery actions; Review and validate security incident reports; Conduct quality assurance reviews and provide feedback; Collaborate on complex incidents requiring intervention; Conduct performance evaluations and identify training needs; Develop and deliver training and mentoring programs; Work with clients to offer strategic and technical guidance; Monitor and report on KPIs and metrics for the team; Maintain communication with shift leads to review daily operations metrics.
Seniority
Senior, hands-on IC with mentorship responsibilities