Incident Management Lead
Listed on 2026-09-25
-
IT/Tech
Cybersecurity
Why AIS?
When you join AIS, you're joining a mission-driven team that's passionate about making a difference. You'll work on projects that matter, alongside industry-leading experts, in an environment that fosters innovation, driving client success, and empowering our team to make a lasting impact. As an employee-owned company, we value collaboration, inclusivity, continuous growth, and shared success.
Employee Ownership
:
Your contributions directly impact the company's success, and you share in its achievements.Continuous Learning
:
Access to resources, training, and mentorship to support your professional growth.Inclusive Culture
: A workplace where diversity is celebrated, and everyone's voice is valued.Mission-Driven Work
:
Engage in projects that make a meaningful difference for our clients and communities.
At AIS, we're looking for more than just skills - we're looking for driven individuals who are passionate about making a difference, eager to grow, and aligned with our core principles.
What you will be doing?
This position is contingent upon contract award. We are currently pursuing a proposal and are seeking qualified candidates to include in our submission and identify candidates for future hiring needs on the program once awarded.
Core Knowledge &
Skills:
Develops enterprise security architectures, frameworks, and standards; utilizes advanced forensics and integrates solutions with IT systems.Work & Complexity: Designs secure architectures, manages integration projects, leads strategic initiatives, and enforces policies and standards.
Quality & Independence: Ensures integrity and scalability, develops comprehensive strategies, and optimizes solutions for performance and efficiency.
Teamwork & Communication: Leads architectural teams, builds partnerships, manages knowledge, and communicates strategies and executive reports.
Consulting & Engagement: Provides architectural consulting, leads innovation initiatives, evaluates enterprise technologies, and builds strategic partnerships.
Project Summary
The Incident Management Lead is responsible for directing enterprise-wide incident response activities, managing advanced cyber defense operations, and guiding teams in identifying, analyzing, and responding to cybersecurity threats. This role will develop incident response strategies, lead technical investigations, collaborate with senior leadership on threat intelligence sharing, and ensure the organization maintains a proactive and resilient cyber defense posture. The ideal candidate has deep expertise in incident response, malware analysis, forensics, security engineering, and penetration testing, with a strong record of leading high-performing cyber operations teams.
This is a proposal-based position; employment is contingent upon contract award and funding availability.
Key ResponsibilitiesIncident Response Leadership
Lead and manage incident response teams responsible for detecting, analyzing, containing, and eradicating cybersecurity incidents.
Direct responses to cyber events involving advanced threats, malware, indicators of compromise (IOCs), and complex attack patterns.
Oversee the development and execution of incident handling procedures, playbooks, and escalation processes.
Conduct after-action reviews and drive continuous improvement across incident response capabilities.
Threat Analysis & Cyber Defense Operations
Provide expert oversight for investigations involving threat actors, malware analysis, and digital forensics.
Ensure timely analysis and dissemination of threat intelligence, indicators of compromise, and trends to stakeholders.
Maintain readiness of incident response tools, technologies, and methodologies.
Strategic Planning & Security Architecture
Formulate both short- and long-term strategies to strengthen cybersecurity controls, monitoring, and detection capabilities.
Design, architect, and engineer security solutions that enhance threat visibility and reduce risk exposure.
Collaborate with engineering and operations teams to support deployment strategies and ensure alignment with security requirements.
Stakeholder Communication &…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).