Cybersecurity Incident Response Manager
Listed on 2025-12-01
-
IT/Tech
Cybersecurity, Network Security
Join to apply for the Cybersecurity Incident Response Manager role at War Collar Industries, LLC
2 weeks ago Be among the first 25 applicants
Join to apply for the Cybersecurity Incident Response Manager role at War Collar Industries, LLC
Job Description
War Collar Industries is seeking a Senior Incident Handler to be a part of a diverse, multi-discipline team that has high visibility and several avenues for continued career growth. The Senior Incident Handler will help protect our national security while working on innovative projects that offer opportunities for advancement.
Job Description
War Collar Industries is seeking a Senior Incident Handler to be a part of a diverse, multi-discipline team that has high visibility and several avenues for continued career growth. The Senior Incident Handler will help protect our national security while working on innovative projects that offer opportunities for advancement.
Responsibilities Include, But Are Not Limited To
- Perform actions in response to identified cyber intrusions
- Determine appropriate course of action in response to identified cybersecurity attacks or anomalous network activity
- Perform advanced analysis to include forensic seizures of hardware, malware triage and dynamic analysis, and determination of the scope of compromise during a cyber attack
- Communicate with stakeholders and leaders to ensure cyber incidents are managed appropriately
- Act as incident command during small scale cyber-attacks and cyber response subject matter expert during large scale attacks
- Recommend enterprise countermeasures based on threat trends
- Prepare detailed recommendations for network defense improvements to close or mitigate cyber incidents
Required Skills
- Minimum of 6+ years of experience in Cybersecurity, Info Sec, Security Engineering, Network Engineering with emphasis in cybersecurity issues and operations, computer incident response, systems architecture, data management.
- Demonstrated experience in cyber incident response/detection or expert network engineering, system administration, or develops
- Network and Host malware detection and prevention
- Network and Host forensic tools
- Endpoint Detection and Response (EDR)
- Network Detection and Response (NDR)
- Sysmon, audit, Windows Security Event Log analysis
- Web/Email gateway security technologies
- Experience with Splunk, Windows Power Shell, or similar technologies
- Net Flow and Full Packet Capture solutions
- Security Information and Event Management (SIEM) systems
- Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
- Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
- AWS, Azure, GCP incident response
Education
- Bachelor’s Degree in electrical engineering, computer engineering, computer science, or other closely related IT discipline. Or 4 additional years of experience in lieu of degree with minimum of 5 years of related experience.
About War Collar Industries
COVID-19 Vaccination Policy:
Prospective and/or new employees will be required to adhere to the customer’s vaccination policy.
About Us
War Collar Industries, LLC is a veteran-owned small business. We maintain a team of cybersecurity experts committed to protecting complicated data and distribution systems and providing decision makers with the most accurate assessment of residual risk possible. We work with our clients to solve the toughest challenges in the ever-evolving digital landscape. Services include network defense, computer network attack, secure network design, penetration testing and vulnerability assessment.
War Collar enables its clients to find, fix, stop, and ultimately solve cybersecurity problems across their entire enterprise.
War Collar offers generous benefits including:
Medical insurance premium coverage; PTO based on billable hours; federal holidays plus your birthday; matching 401k, education reimbursement plus paid training days;…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).