Cyber Incident Manager
Core
Lead end-to-end cyber incident response, acting as Incident Commander to protect operations, safeguard intellectual property, and uphold customer trust during high-stakes security events.
Role type
Senior IC Cyber Incident Manager
Builds
Incident response capabilities and resilience for a global semiconductor enterprise
Domain
Cybersecurity / Incident Response / Cloud Security
Deliverable
client delivery
Required skills
Incident lifecycle execution (SANS six steps), cross-functional coordination, executive-level communication, SIEM/EDR operation, cloud incident pattern analysis, legal privilege maintenance, post-incident review leadership
Preferred skills
MITRE ATT&CK mapping, tabletop exercise facilitation, playbook evolution
Technologies
Microsoft Sentinel, Defender, Splunk, Azure, AWS
Responsibilities
Run executive updates and stakeholder calls; stand up and run the Incident Action Group (IAG); orchestrate SOC, IR retainer, legal, and engineering teams; maintain legal privilege throughout investigations; drive post-incident reviews and root-cause analysis; partner with SOC and Threat Intel to apply MITRE ATT&CK mapping; evolve playbooks based on new tactics and cloud patterns
Seniority
Senior, hands-on IC