
Manager, Incident Response
Posted Sep 2

Posted Sep 2
This is a fully remote position, open to applicants in Ireland, +1 more country.
• Provide strategic leadership, operational management, and advanced technical expertise to enhance Arctic Wolf's Incident Response practice.
• Mentor, develop, and oversee a hybrid/remote team of Incident Response professionals.
• Recruit, hire, onboard, train, and retain talent in Digital Forensics and Incident Response (DFIR).
• Ensure the consistent, scalable delivery of high-quality Incident Response services.
• Scope, monitor, and manage incident response engagements, assigning personnel based on skills, availability, customer requirements, and objectives.
• Maintain oversight of active investigations and recovery efforts, intervening when escalation or leadership is necessary.
• Create operational processes, standards, quality assurance mechanisms, KPIs, service metrics, and reporting capabilities.
• Assess incident reports, executive summaries, investigative findings, and deliverables for customers.
• Lead and support advanced digital forensic and incident response investigations.
• Conduct and supervise forensic analysis across host, network, cloud, and log systems, including Windows, Linux, macOS, Azure, AWS, and Google Cloud.
• Guide containment, eradication, recovery, and remediation efforts during active security incidents.
• Validate investigative findings and technical conclusions.
• Formulate investigation strategies and incident response plans.
• Analyze evidence to identify threat activity, timelines, persistence mechanisms, data impact, and indicators of compromise.
• Act as a senior trusted advisor during cybersecurity incidents.
• Communicate findings effectively to executives, legal counsel, insurance carriers, and technical stakeholders.
• Facilitate scoping discussions and engagement planning.
• Assist in the development and approval of cyber extortion and ransomware negotiation strategies.
• Present recovery plans, investigative findings, and recommendations to clients.
• Build collaborative relationships with legal counsel, cyber insurance carriers, strategic partners, and clients.
• Support business development, industry events, and thought leadership initiatives.
• Collaborate with Directors and Executive Leadership on vision, strategy, growth, budgeting, forecasting, workforce planning, and scaling efforts.
• Identify opportunities for automation, innovation, tooling, and operational efficiency.
• Work in collaboration with teams across Product, Engineering, Security Operations, Concierge, MDR, Sales, Marketing, and Customer Success.
• Participate in escalation, evening, weekend, and holiday on-call rotations.
• Conduct peer reviews, quality assessments, and case audits.
• Promote information sharing, documentation, and organizational learning.
• Perform additional duties in support of Arctic Wolf's Incident Response mission.
• Minimum of 3 years of experience in leading technical teams, managing people, or overseeing service delivery organizations.
• Proven track record in leading complex cyber incident investigations and recovery efforts.
• In-depth knowledge of host, network, cloud, and enterprise forensic analysis.
• Experience managing customer-facing engagements that involve legal counsel, cyber insurance carriers, and executive stakeholders.
• Outstanding verbal and written communication skills.
• Experience in developing operational processes, performance metrics, and quality assurance programs.
• Ability to manage multiple concurrent initiatives and prioritize effectively in high-pressure situations.
• Proficiency in English, both verbal and written.
• Background checks are mandatory for this position.
• Offer may be contingent upon authorization to receive software or technology governed by U.S. export control laws and regulations.
• Bachelor's degree in Information Security, Digital Forensics, Computer Science, Cybersecurity, or a related field (preferred).
• Industry certifications such as GCFA, GCFE, CISSP, GCIH, EnCE, ACE, or equivalent (preferred).
• Experience in consulting, managed security services, or incident response service organizations (preferred).
• Experience presenting at industry conferences, customer events, or technical forums (preferred).
• Background in supporting large-scale enterprise incident response programs and global service delivery teams (preferred).
• Maintain the required technical certifications and professional development goals.
• Equity for all employees.
• 28 days of annual leave.
• 10 public holidays.
• Paid volunteering days off.
• Comprehensive private benefits plan, including medical, mental health, dental, disability, and value-added services.
• Pension Plan with employer contributions.
• Robust Employee Assistance Program (EAP) offering mental health services.
• Employee Discount Program through Beneplace.
• Variable incentive compensation.
• New hire equity grants.
• Comprehensive benefits package.
• Accommodations for candidates and employees with disabilities and/or specific needs when feasible.
Worldwide Clinical Trials
Critical Project Services
BioCryst Pharmaceuticals, Inc.
INTEGRIS Health
Get handpicked remote jobs straight to your inbox weekly.