Incident Response Lead

Urban ConnectNew York, NY
3d$185,000 - $200,000Remote

About The Position

Our client has the mission is to reinvent how modern software teams build, deliver, and operate technology at scale. Its a company driven by innovation, collaboration, and a strong engineering culture, where talented people work together to solve complex challenges and help organizations move faster and more securely. You would be joining a global technology company whose platform supports some of the worlds largest enterprises, enabling them to manage, accelerate, and secure their software delivery pipelines from development to production. Its an environment where ambitious professionals can grow quickly, contribute to meaningful work, and be part of a team shaping the future of software delivery. As the Incident Response Lead , you will be the captain of the front-line defense. You won't just respond to threats; you will build the team and the infrastructure that detects them before they happen. You will lead a group of high-performing engineers to mature our Incident Response program, automate security operations, and partner with R&D and DevOps to ensure our "liquid software" remains secure.

Requirements

  • Deep Technical Roots: 7+ years of industry experience in IR with a focus on Information Security principles.
  • Cloud Mastery: Proven expertise in attack and mitigation methods within complex AWS, GCP, or Azure environments.
  • Incident Response Prowess: Extensive experience in risk prioritization and managing the lifecycle of security incidents in a global production environment.
  • Technical Breadth: Mastery in at least 5 of the following: Endpoint Protection (EDR/XDR) & Zero Trust architecture. Identity Management (IAM/IDM) and SSO/SAML. Security Analytics (SIEM/Logging) such as ELK or Splunk. Container Security (Docker, Kubernetes). Email Protection & Patch Management.
  • Coding Proficiency: Ability to review and guide the development of security tools in Python or Go.
  • Communication: Exceptional ability to translate complex technical risks into actionable business insights for stakeholders.

Responsibilities

  • Incident Commander: Act as the primary escalation point for high-priority security incidents, leading the triage, containment, and post-mortem processes.
  • Drive Automation: Champion "Security as Code" by leading the development of internal tools (Python/Go) to automate monitoring and remediation.
  • Cross-Functional Partnership: Collaborate with SRE, DevOps, and Product teams to drive holistic fixes for systemic architectural vulnerabilities.
  • Evangelize Security: Build a culture of security across the organization through training, documentation, and proactive risk management.

Benefits

  • Open to remote work for candidates outside a reasonable commuting distance to the Atlanta office.
  • This position also includes an equity package of restricted stock units (RSU).
  • In addition, employees are eligible to participate in our Employee Stock Purchase Plan.
  • Comprehensive benefits including medical, dental, vision, retirement, wellness and much more!
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service