Cybersecurity Incident Manager

Wintrust Financial CorporationRosemont, IL
3d$130,000 - $160,000Hybrid

About The Position

The Cybersecurity Incident Manager is a senior technical contributor within the Security Operations Center responsible for owning and coordinating escalated cybersecurity incidents from detection through resolution. This role ensures that high-severity threats are investigated, contained, and remediated effectively while minimizing business impact. The Cybersecurity Incident Manager serves as a subject-matter expert for incident response & forensics, provides advanced analysis support to L1/L2 analysts, and drives improvements in incident handling processes and documentation.

Requirements

  • Bachelor’s degree or equivalent experience
  • 5+ years of forensics and incident response experience
  • Experience working with CrowdStrike tools
  • Detection engineering experience
  • Investigation experience

Responsibilities

  • Incident Response & Coordination – Lead and manage escalated cybersecurity incidents and major events, coordinating analysis, containment, remediation, and recovery across technical teams. Act as escalation point for complex incidents and serve as subject matter expert during active threat handling
  • Forensics – Perform in-depth incident analysis & using SIEM, EDR/XDR, and forensic tools
  • Documentation & Reporting – Document incident timelines, technical findings, decisions, and remediation steps. Produce detailed post-incident reports, contribute to post-incident reviews, and communicate actionable insights to stakeholders
  • Process & Playbook Development – Maintain and improve incident response playbooks, standard operating procedures (SOPs), and runbooks. Work with SOC leadership to evolve response workflows based on lessons learned and emerging threats
  • Knowledge Sharing, Mentorship, and Continuous Improvement – Provide technical guidance and mentoring to L1/L2 analysts, help refine escalation criteria and foster consistent incident handling practices. Identify gaps in detection and response capabilities. Collaborate with team to enhance alerts, automations, and defensive measures. Contribute to SOC initiatives like tabletop exercises and capability evaluations

Benefits

  • Medical Insurance
  • Dental
  • Vision
  • Life insurance
  • Accidental death and dismemberment
  • Short-term and long-term Disability Insurance
  • Parental Leave
  • Employee Assistance Program (EAP)
  • Traditional and Roth 401(k) with company match
  • Flexible Spending Account (FSA)
  • Employee Stock Purchase Plan at 5% discount
  • Critical Illness Insurance
  • Accident Insurance
  • Transportation and Commuting Benefits
  • Banking Benefits
  • Pet Insurance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service