Incident Management and Response Engineer
Listed on 2026-02-17
-
IT/Tech
Cybersecurity, IT Consultant, IT Project Manager
Incident Management and Response Engineer
At Construction Resources and its affiliated companies, we are more than a distributor—we are a trusted partner to designers, builders, remodelers, and homeowners. For over 50 years, we’ve delivered integrated solutions that help turn ideas into reality across residential, multi-family, and commercial projects.
Our success is built on collaboration, craftsmanship, and a commitment to excellence. Whether you contribute on the design floor, in operations, or in the field, you’ll be part of a dedicated team that values people, quality, and continuous growth.
Our affiliated brands include Cancos, UMI/Opustone, and Bell Cabinetry.
POSITION OVERVIEWThe Incident Management & Response Engineer is responsible for developing and maintaining the Incident Management (pre-incident) and Incident Response (post-incident) programs of Construction Resources and its affiliates (CR), to ensure that the company's information systems and information assets are adequately monitored and responded to when an attack on, or critical outage of, the CR infrastructure occurs. The Incident Management & Response Engineer will work with other IT leaders to report, review and mitigate the events/incidents that may or have impacted CR’s IT infrastructure systems.
The functional scope of this role includes event management of CR’s IT security systems through the correlation of events and managing any incidents, through discovery, remediation, and communications, to drive a quick recovery of systems and data following an incident.
This position is based onsite, with a preference for candidates located in or near one of the following markets:
Atlanta, Charleston, Tampa, Dallas, or Nashville. A hybrid work arrangement may be considered for candidates in these locations.
- Establish, maintain, and communicate a clear and comprehensive Incident Management & Response (IR) programs aligned to industry standard framework(s); own the program as a leader and be the main point of contact and subject matter expert
- Implement, define and improve CR policies, standards, and procedures of Incident Management & Response services, including: incident management processes and procedures (hunting, event correlation, etc.), incident response processes and procedures, and tabletop exercises for incident responses
- Provide ticketing standards and escalation requirements for security or critical outage events and incidents
- Provide documents that outline incident protocols such as how to handle cybersecurity threats or how to correct server failures
- Keep abreast of relevant trends and threats, and translate these for CR to allow for mitigation activities where possible
- Responding to a reported service incident, identifying the cause, and initiating the incident management process
- Escalating within the team if major issues are found in the IT system
- Establish and drive metrics, analytics, reporting mechanisms and services, maturity models and a roadmap for continual IR program improvements
- Facilitate compliance with the CR policies and external regulations
- Prepare formal reports and presentations of findings and recommendations
- Author Incident Management/Incident Response guidelines, principles, policies, and standards for information / data stewards, stakeholders, and development teams
- Other duties, as assigned
- Security knowledge across various security domains and technologies (e.g., databases, operating systems, networking, applications, data management, access management, and identity management)
- Experience executing security hunting activities to determine possible vulnerabilities or incidents within the IT environment
- Maintain up-to-date understanding of technology trends and developments in the areas of information technology and security
- Ability to understand business processes and needs, gain buy-in and influence change
- Ability to drive execution of defined goals through effective interaction with IT services teams
- Ability to frame security and IT vulnerability-related concepts to both technical and non-technical audiences
- Highly developed analytical,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).