Associate Director, Cyber Defense - Staff Incident Responder
Core
Leading complex cyber investigations, forensic analysis, and threat hunting to protect the enterprise and advance detection/response capabilities.
Role type
Senior individual contributor incident responder (staff level)
Builds
Scalable detection and response tooling, automation, and integrations
Domain
Cybersecurity / Incident Response / Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response, digital forensics, threat hunting, cloud security, endpoint security, network security, identity security, multi-source telemetry correlation, MITRE ATT&CK frameworks, NIST/CISA incident response frameworks, Python, Go, PowerShell, Bash, cross-functional leadership, technical mentorship
Preferred skills
None stated
Technologies
Python, Go, PowerShell, Bash, MITRE ATT&CK, NIST, CISA
Responsibilities
Lead complex cyber investigations and incident response across global environments; Perform advanced forensic analysis and proactive threat hunting; Translate investigation findings into scalable improvements in detection coverage and response effectiveness; Develop and enhance incident response playbooks, investigation workflows, and containment strategies; Improve response speed and effectiveness through detection engineering, alert tuning, and automation; Build and evolve incident response tooling, scripts, and integrations; Influence and optimize the security tooling ecosystem; Lead post-incident analysis and produce actionable reports; Partner cross-functionally to drive remediation and risk reduction; Provide technical leadership and mentorship to junior responders
Seniority
Senior, hands-on IC with leadership and mentorship responsibilities