Incident Response Team Lead
Listed on 2026-07-07
-
IT/Tech
Cybersecurity
Job Summary
Our client, a leading transportation provider, is seeking an Incident Response Team Lead. This candidate will play a critical role in detecting, responding to, and mitigating security incidents. The candidate will work alongside a team of skilled professionals to monitor and protect our clients' infrastructure, providing rapid and effective incident response. The candidate’s expertise in cybersecurity, along with experience in SOC and incident response, will be invaluable in maintaining the security posture of our clients.
This role is in support of a 24x7 operation, and candidates will be expected to work assigned shifts outside what would be considered normal working hours. This position is W-2 only.
- Monitor security alerts and logs to identify and analyze potential security incidents
- Investigate and triage security alerts, assess their severity, and initiate the incident response process as necessary
- Conduct in-depth analysis of security incidents, including malware analysis, network traffic analysis, and endpoint forensics
- Lead or assist in responding to security incidents, coordinating with clients and internal teams to contain, eradicate, and recover from security breaches
- Maintain detailed incident records, including incident timelines, actions taken, and lessons learned
- Utilize cybersecurity tools such as Crowd Strike and Splunk to enhance threat detection and incident response capabilities
- Prepare and deliver incident reports to clients and management, including recommendations for improving security posture
- Collaborate with cross-functional teams to share threat intelligence and develop proactive security measures
- Stay updated on the latest cybersecurity threats, trends, and best practices to improve incident response capabilities
- Provide assistance to IR teams on general triage and threat hunting exercises
- Gather metrics and report ongoing status
- Provide guidance and training to junior team members
- Contribute to the continuous improvement of SOC procedures and documentation
- Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent work experience)
- 3+ years of experience as a SOC or Incident Response Analyst
- In-depth knowledge of cybersecurity such as EDR and SIEM, including Crowd Strike and Splunk
- Strong understanding of cybersecurity concepts, including threat detection, incident response, and malware analysis
- Knowledge of security frameworks and standards (e.g., NIST, ISO 27001)
- Excellent analytical and problem‑solving skills
- Effective communication skills, both written and verbal
- Must be able to communicate in English to allow collaboration with global teams
- Ability to work effectively under pressure and in a fast‑paced environment
- Demonstrated ability to manage multiple projects simultaneously, prioritize tasks, and meet deadlines
- A resourceful person that is a fast learner and asks when in doubt
- Ability to manage multiple projects simultaneously
- Naturally organized with determination to deliver excellence
- Experience working in a fast‑paced environment with changing priorities
- Relevant certifications such as CompTIA Security+, GCIA, GCIH
Location:
Arlington Heights, FL
FULLY ONSITE
Contract:
6 months
Pay Range: $57.00–$62.00 per hour
Medical, Dental & Vision Insurance Plans
Employee Stock Ownership Plan
401K offered
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).