Incident Response Team Lead
Listed on 2026-06-10
-
IT/Tech
Cybersecurity
Our client is seeking a a highly skilled and experienced Incident Response Team Lead, the candidate will play a critical role in detecting, responding to, and mitigating security incidents. The candidate will work alongside a team of skilled professionals to monitor and protect our clients' infrastructure, providing rapid and effective incident response. The candidate s expertise in cybersecurity, along with experience in SOC and incident response, will be invaluable in maintaining the security posture of our clients.
This role is in support of a 24x7 operation, and candidates will be expected to work assigned shifts outside what would be considered normal working hours.
Key Responsibilities:
- Monitor security alerts and logs to identify and analyze potential security incidents.
- Investigate and triage security alerts, assess their severity, and initiate the incident response process as necessary.
- Conduct in-depth analysis of security incidents, including malware analysis, network traffic analysis, and endpoint forensics.
- Lead or assist in responding to security incidents, coordinating with clients and internal teams to contain, eradicate, and recover from security breaches.
- Maintain detailed incident records, including incident timelines, actions taken, and lessons learned.
- Utilize cybersecurity tools such as Crowd Strike and Splunk to enhance threat detection and incident response capabilities.
- Prepare and deliver incident reports to clients and management, including recommendations for improving security posture.
- Collaborate with cross-functional teams to share threat intelligence and develop proactive security measures.
- Stay updated on the latest cybersecurity threats, trends, and best practices to improve incident response capabilities.
- Provide assistance to IR teams on general triage and threat hunting exercises.
- Gather metrics and report ongoing status (not sure how to word this here, or if you need that )
- Provide guidance and training to junior team members.
- Contribute to the continuous improvement of SOC procedures and documentation
Qualifications:
- Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent work experience).
- 3-4 years of experience as a SOC or Incident Response Analyst.
- In-depth knowledge of cybersecurity such as EDR and SIEM , including Crowd Strike and Splunk.
- Strong understanding of cybersecurity concepts, including threat detection, incident response, and malware analysis.
- Knowledge of security frameworks and standards (e.g., NIST, ISO 27001).
- Excellent analytical and problem-solving skills.
- Effective communication skills, both written and verbal.
- Must be able to communicate in English to allow collaboration with global teams.
- Ability to work effectively under pressure and in a fast-paced environment.
- Relevant certifications (e.g., CompTIA Security+, GCIA, GCIH) are a plus.
- Demonstrated ability to manage multiple projects simultaneously, prioritize tasks, and meet deadlines.
- A resourceful person that is a fast learner and asks when in doubt.
- Ability to manage multiple projects simultaneously.
- Naturally organized with determination to deliver excellence.
- Experience working in a fast-paced environment with changing priorities.
Salary/Rate: $55-$70/HR (depends on experience level). This is a contract position with candidates expected to work 40 hours/ week.
About The Company
Peterson Technology Partners (PTP) is an Equal Opportunity Employer committed to creating a transparent, inclusive, and human-centered hiring experience.
For more than 28 years, PTP has operated as one of the top IT staffing and recruiting firms in the USA built on trust, long-term partnerships, and technical excellence.
Based in the Chicago suburb of Park Ridge, IL, our team of more than 500 employees and consultants is dedicated to:
Helping every client make the best hiring decisions possible
Matching professionals with the right IT jobs and career opportunities
As part of that commitment, we believe in providing clear information about how our hiring technologies work and how your data is used. The following section outlines our AI-assisted interview process and your rights as a candidate.
AI-Assisted…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).