Cyber Incident Response Team Lead
The Cyber Incident Response Team Lead directs enterprise incident response operations, ensuring rapid detection, containment, and remediation of cybersecurity incidents impacting CBP systems and data. This role serves as the senior escalation point for cyber incidents.
If you are energized by fast‑paced, high‑stakes cyber response, this role offers the opportunity to lead incident response operations that truly matter. As the Cyber Incident Response Team Lead, you’ll serve as the senior decision‑maker during major cyber events, guiding containment and recovery efforts for mission‑critical federal systems. This is a leadership role for professionals who want ownership, visibility, and the ability to directly protect enterprise environments from real‑world threats.
The Cyber Incident Response Team Lead directs enterprise incident response operations, ensuring rapid detection, containment, and remediation of cybersecurity incidents impacting CBP systems and data. This role serves as the senior escalation point for cyber incidents.
If you are energized by fast‑paced, high‑stakes cyber response, this role offers the opportunity to lead incident response operations that truly matter. As the Cyber Incident Response Team Lead, you’ll serve as the senior decision‑maker during major cyber events, guiding containment and recovery efforts for mission‑critical federal systems. This is a leadership role for professionals who want ownership, visibility, and the ability to directly protect enterprise environments from real‑world threats.
What You'll Do:
- Lead enterprise‑wide cyber incident response activities
- Coordinate containment, eradication, and recovery efforts
- Maintain and execute incident response playbooks
- Oversee use of SIEM, EDR, IDS/IPS, and case management tools
- Provide leadership during major cyber events and crises
What You Have:
- US Citizenship Required
- 5+ years of progressively responsible cybersecurity or incident response experience
- Bachelor’s degree in a technical discipline (or 8 years experience in lieu)
- CISSP certification required
- GIAC certifications or DoD 8140 IAT Level III preferred
- TS (SCI‑eligible) clearance