
Manager, Incident Response
Posted Jul 29

Posted Jul 29
This is a fully remote position, open to applicants in Virginia.
• Provide strategic, technical, and overall leadership to the IR Consulting Team as well as other stakeholders.
• Aid in managing the team’s portfolio according to established metrics (utilization, revenue, margin, etc.).
• Deliver services to clients by participating in essential meetings, conducting quality assurance reviews of deliverables, and offering direct consultation as required.
• Collaborate with the Product Management Team to define and enhance our range of service offerings.
• Partner with Sales to support prospective client engagements, project scoping, and budgeting.
• Sustain individual and team knowledge of industry best practices, tools, tabletop exercise methods, and scenario-based and live testing exercises.
• Manage customer stakeholders and implement security incident investigation protocols, from incident confirmation to resolution and lessons learned.
• Rapidly mitigate damages by coordinating with technical teams and third-party vendors to triage and contain threats.
• Maintain and revise incident response playbooks and toolkits in line with new procedures, best practices, advanced open-source technologies, and various incident response products.
• Design and implement real-time monitoring and triage systems for incidents and alerts received.
• Identify and document requirements to enhance, automate, and collaborate with developers to create tools that eliminate inefficiencies, improve effectiveness, and significantly enhance the customer experience.
• Build and nurture relationships with local, state, federal, and international law enforcement agencies.
• A minimum of 5 years of experience in the field of cybersecurity.
• At least 1 year of experience leading information security and/or consulting teams.
• A Bachelor’s Degree in Computer Science, Management Information Systems, Cyber Security, or a related field, or equivalent experience, is preferred.
• One or more of the following technical certifications is preferred: GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), MCFE, EnCE, or equivalent certifications.
• A proven history of complex problem-solving and decision-making capabilities.
• Expert-level skills in analytical thinking, planning, and organization.
• Strong, proactive communication skills are essential.
• Medical, dental, vision, disability, FSA, HSA, life, and AD&D insurance.
• 401(k) Plan.
• Time off: PTO, sick leave, holidays, and parental leave.
ReWorks Solutions
Johnson & Johnson
Thermo Fisher Scientific
Get handpicked remote jobs straight to your inbox weekly.