Manager, Incident Response
SophosRemotely
incident responsesiemmdrpowershelledrosquerykqlcirt
Also available on
Job Description
📋 Description
- Lead and develop squads of analysts across CIRT
- Own day-to-day CIRT ops across squads; staffing and SLA focus
- Provide senior technical leadership and act as Incident Commander
- Establish and maintain standards; ensure engagement docs and post-incident actions
- Use metrics to identify trends and drive improvements
- Build readiness: training, playbooks, exercises
🎯 Requirements
- 7+ years in cybersecurity ops or incident response
- Experience leading incident response across concurrent engagements
- Strong background in endpoint, network, cloud security
- Incident Commander or senior escalation experience
- People leadership: coaching, performance management, onboarding
- Experience with operational metrics and improving security workflows
🎁 Benefits
- Remote-first / remote-friendly work model
- Competitive benefits and career development
- Inclusive, diverse team culture
- Opportunities for global collaboration and impact
- Work with MDR/CIRT across customers