10318 - Security Incident Response Manager

Hyundai Autoever AmericaIrvine, CA
42d$139,390 - $199,320

About The Position

This role will lead enterprise-wide incident response efforts, ensuring effective coordination, analysis, and remediation of cybersecurity events. It involves managing the full incident lifecycle, maintaining compliance, and continuously improving response capabilities through planning, testing, and cross-functional collaboration.

Requirements

  • Experience & Leadership: 10-15 years in security operations and incident response, including 2+ years in leadership role managing internal teams and MSSPs during cybersecurity events.
  • Education: Bachelor’s degree in Cybersecurity, Information Technology, or a related discipline.
  • Technical Expertise: Strong understanding of threat landscapes, attack vectors, malware behavior, and forensic techniques; proficient in using and interpreting data from IR tools like SIEM and EDR.
  • Availability & Coordination: Capable of working flexible hours during active incidents to support global response efforts across multiple time zones.
  • Language Skills: Proficient in English for effective communication and coordination.

Nice To Haves

  • Certifications: Industry-recognized credentials such as GCIH, GCFA, GCIA, GNFA, CISM, or CISSP are highly desirable.
  • Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication.
  • Client-Facing Experience: Background in cybersecurity consulting or advisory services, particularly in incident response, is a plus.
  • Cloud Security Knowledge: Familiarity with cloud platforms like Azure, AWS, and GCP enhances effectiveness in modern security environments.

Responsibilities

  • Incident Response Leadership: Directs and coordinates teams across the organization during security investigations and vendor-related incidents, overseeing the full lifecycle from detection to resolution.
  • Security Data Analysis: Monitors and evaluate server and network activity to identify vulnerabilities and emerging threats.
  • Cybersecurity Incident Management: Serves as the primary point of contact during incidents, managing communications and driving remediation efforts.
  • SIRP Development & Testing: Maintains and improves the Security Incident Response Plan (SIRP), aligning with frameworks like NIST, ISO 27035, and MITRE ATT&CK; conducts tabletop exercises to validate readiness.
  • Compliance & Reporting: Ensures adherence to legal and regulatory requirements, tracks KPIs, and provides updates to executives and technical teams throughout the response process.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service