CrawlJobs Logo

Head of Detection & Incident Response

thisisiceberg.com Logo

Iceberg Cyber Security

Location Icon

Location:
United States , New York City

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

This is not a shift-management SOC role. We’re looking for someone with deep IR experience, strong technical judgement, and the ability to set strategy and execute building monitoring, hunting, and response capabilities that materially reduce risk. This role stands out to me as you’ll be trusted to lead when it matters most and your impact will be measured by stronger detection, faster response, and a more resilient security posture.

Job Responsibility:

  • Lead incident response, threat hunting, detection engineering, and forensics across the organisation
  • Build and advance internal monitoring and auditing frameworks
  • Develop and execute a vision for where our SecOps program goes next
  • Act as a senior escalation point during incidents, communicating clearly with leadership and stakeholders
  • Drive pragmatic adoption of AI-enabled approaches in detection/response (build vs buy, risks and controls)

Requirements:

  • Demonstrated leadership in high-severity incidents with strong judgement and crisp communication
  • Technical depth in threat hunting, detection engineering, incident response, forensics, and threat intelligence
  • Experience building or running monitoring/detection programs (and improving signal quality over time)
  • Comfortable partnering with compliance and governance while maintaining operational effectiveness
  • Thoughtful, practical approach to AI in security operations (not buzzword-led
  • not AI-averse)

Additional Information:

Job Posted:
March 19, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Head of Detection & Incident Response

Cyber Security Defense Head of Department

The Cyber Security Defense Head of Department (HOD) will lead and mature our org...
Location
Location
United States , Irvine
Salary
Salary:
181240.00 - 259160.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–20 years of progressive experience across the various cyber defense disciplines (SOC, Incident Response, Red/Blue teams, or similar defensive/offensive functions)
  • Proven experience leading cyber defense teams
  • Demonstrated ability to hire, mentor, and lead high-performing technical teams
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or a related discipline
  • Strong knowledge of threat detection, incident response, adversary tactics (MITRE ATT&CK), vulnerability management, and secure software development
  • Excellent incident management, communication, and executive reporting skills
  • Proficient in English for effective communication and coordination
  • In the absence of IR team members, utilize a flexible work schedule to facilitate the security incident response process for high/critical incidents
Job Responsibility
Job Responsibility
  • Develop and execute the Cyber Defense strategy aligned with organizational goals, customer requirements and the evolving threat landscapes
  • Establish frameworks, processes, and KPIs for SOC, Incident Response, TVM, AppSec, Red/Blue Teaming, and Adversary Simulation
  • Serve as a senior advisor to the CISO and executive leadership on cyber risks, readiness, and emerging threats
  • Oversee 24x7 SOC operations, ensuring effective monitoring, detection, and response to security events, across levels 1-3
  • Drive continuous enhancement of detection engineering, threat hunting, and security analytics
  • Implement best-in-class security tooling, automation, and operational processes
  • Lead internal Red Team and offensive security capabilities, including penetration testing
  • Define testing methodologies, operational rules of engagement, and reporting standards
  • Translate offensive findings into actionable improvements for defensive teams and architecture
  • Oversee the Incident Response program, ensuring rapid and effective handling of security incidents
  • Fulltime
Read More
Arrow Right

Cyber Defense Head of Department

The Cyber Security Defense Head of Department (HOD) will lead and mature our org...
Location
Location
United States , Irvine
Salary
Salary:
181240.00 - 259160.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–20 years of progressive experience across the various cyber defense disciplines (SOC, Incident Response, Red/Blue teams, or similar defensive/offensive functions)
  • Proven experience leading cyber defense teams
  • Demonstrated ability to hire, mentor, and lead high-performing technical teams
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science or a related discipline
  • Strong knowledge of threat detection, incident response, adversary tactics (MITRE ATT&CK), vulnerability management, and secure software development
  • Excellent incident management, communication, and executive reporting skills
  • Proficient in English for effective communication and coordination
  • In the absence of IR team members, utilize a flexible work schedule to facilitate the security incident response process for high/critical incidents
Job Responsibility
Job Responsibility
  • Develop and execute the Cyber Defense strategy aligned with organizational goals, customer requirements and the evolving threat landscapes
  • Establish frameworks, processes, and KPIs for SOC, Incident Response, TVM, AppSec, Red/Blue Teaming, and Adversary Simulation
  • Serve as a senior advisor to the CISO and executive leadership on cyber risks, readiness, and emerging threats
  • Oversee 24x7 SOC operations, ensuring effective monitoring, detection, and response to security events, across levels 1-3
  • Drive continuous enhancement of detection engineering, threat hunting, and security analytics
  • Implement best-in-class security tooling, automation, and operational processes
  • Lead internal Red Team and offensive security capabilities, including penetration testing
  • Define testing methodologies, operational rules of engagement, and reporting standards
  • Translate offensive findings into actionable improvements for defensive teams and architecture
  • Oversee the Incident Response program, ensuring rapid and effective handling of security incidents
  • Fulltime
Read More
Arrow Right

Head of Information Security

The Head of Information Security is a senior technical leadership role. The role...
Location
Location
Poland , Kraków
Salary
Salary:
Not provided
content.perkinelmer.com Logo
PerkinElmer
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Engineering, or related field
  • 5+ years of experience in technical cybersecurity roles
  • Proven experience leading enterprise-scale security engineering and operations teams
Job Responsibility
Job Responsibility
  • Own the enterprise security architecture across network, endpoint, cloud, identity, and application domains
  • Define technical security standards, reference architectures, and engineering patterns
  • Lead the selection, deployment, and lifecycle management of security platforms and tooling
  • Embed security-by-design into infrastructure, cloud, and application initiatives
  • Lead Security Operations (SOC / SecOps), including detection, response, and operational resilience
  • Own vulnerability management, threat intelligence, and security telemetry
  • Drive continuous improvement in detection, automation, and response effectiveness
  • Lead the Cybersecurity Incident Response Team (CIRT)
  • Act as technical incident commander during major security incidents
  • Own investigation, containment, eradication, and recovery activities
What we offer
What we offer
  • Private healthcare including dental care
  • Life and long-term disability insurance
  • MyBenefit Cafeteria system
  • Multisport Card
  • Social Fund Subsidies
  • Home Office allowance
  • Tuition reimbursement
  • Referral awards
  • Internal career development opportunities in multiple business areas
  • Day off to celebrate your birthday
Read More
Arrow Right

Noc Section Head

Location
Location
Egypt , Nasr City
Salary
Salary:
Not provided
el-delta.com Logo
El Delta Electronic Systems
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Technology, Computer Science, Engineering, Networking, or a related field
  • Minimum of 5-10+ years of experience in network operations or IT service management, with at least 2-5+ years in a managerial or supervisory role, preferably within a 24/7 operations environment
  • Proven experience leading a large-scale service delivery organization is highly desirable
  • Strong understanding and practical experience in implementing ITSM processes
  • Experience with business process improvement methodologies (e.g., Six Sigma) is a plus
  • Demonstrated experience in leading ITSM solutions, process and teams
  • ITIL Certification (required): ITIL Foundation is essential
  • advanced ITIL certifications (e.g., ITIL Expert, ITIL v4 Managing Professional) are highly advantageous
  • Other relevant certifications (e.g., CCNA, PMP, CompTIA Network+, Security+) are beneficial
  • Technical Stack (with emphasis on ITIL, ITSM): ITSM: This is a key platform for incident management, problem management, change management, service request fulfillment, and asset management. Experience with its various modules like BMC ITSM (e.g., BMC Helix ITSM)
Job Responsibility
Job Responsibility
  • Leading, mentoring, and developing a team of NOC engineers and technicians
  • Managing staffing, scheduling (including 24/7 coverage), and performance of the NOC team
  • Overseeing 24/7 monitoring, incident response, and service restoration activities
  • Implementing, overseeing, and coordinating incident detection, response, resolution, and escalation procedures
  • Ensuring incidents are resolved in a timely manner to minimize downtime and impact on services and customers
  • Leading Major Incident Management efforts, coordinating cross-functional teams to resolve high-priority incidents swiftly
  • Conducting root cause analysis (RCA) for major incidents and implementing preventive measures to reduce recurrence (Problem Management)
  • Developing, implementing, and continuously improving operational procedures and protocols, aligned with ITIL best practices (e.g., Incident Management, Problem Management, Change Management, Service Request Fulfillment, Availability Management, Capacity Management)
  • Driving the adoption of automation tools and technologies to streamline service management processes
  • Generating and analyzing reports on network performance, incidents, and operational metrics
  • Fulltime
Read More
Arrow Right

Head of Information Security

As River Island’s Head of Information Security, you’ll play a strategic and hand...
Location
Location
United Kingdom , West London
Salary
Salary:
Not provided
riverisland.com Logo
River Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in a senior information security role, ideally within a complex, multi-channel retail or technology environment
  • Strong technical grounding across key security domains: network, cloud, endpoint, application, and data security
  • Experience managing or working with vulnerability management tools, SIEM/SOC environments, and incident response processes
  • Familiarity with frameworks and standards such as ISO 27001, NIST, CIS, PCI DSS, and GDPR
  • Excellent communication and stakeholder management skills, with the ability to influence at all levels of the organisation
  • Analytical, pragmatic, and calm under pressure — with a focus on enabling the business, not blocking it
Job Responsibility
Job Responsibility
  • Define, implement, and evolve River Island’s information security strategy in line with business objectives, regulatory obligations, and risk appetite
  • Lead the development and maintenance of Information Security policies, standards, and controls, ensuring alignment with frameworks such as ISO 27001, NIST CSF, and the SANS Top 18
  • Define and report security KPIs/KRIs to senior management to senior leadership representing risk posture, compliance status, and strategic improvement initiatives
  • Own and manage the Information Security Risk Register
  • ensure risks are assessed, documented, and mitigated effectively
  • Lead compliance efforts across GDPR, PCI DSS, and other applicable regulations
  • Conduct and coordinate enterprise-wide risk assessments, audits, and internal reviews
  • Champion a pragmatic, risk-based approach to security — balancing protection, productivity, and customer experience
  • Own and govern IAM standards (RBAC, joiner/mover/leaver, privileged access, MFA, SSO) across corporate, store and customer-facing platforms
  • Oversee operational security activities, including threat detection, vulnerability management, and incident response
What we offer
What we offer
  • Generous 50% staff discount so you can treat yourself to the latest products, and a bargain staff shop on site
  • Reducing Islanders everyday expenses through discounts, benefits, financial advice, wellbeing solutions and more through Reward Gateway
  • A free onsite gym, subsidised restaurant & café to fill you needs
  • Various social events to socialise throughout the year
  • Every family is unique, we support Islanders with all different family setups enhanced maternity, paternity, adoption & fertility treatment
  • We also work closely with the Retail Trust to create dedicated support for all our Islanders
  • Flexible working is a given, on top of payday and summer early finish Fridays
  • Give as you earn scheme, a ‘Giver Island’ day each year and receive matched funding
  • Support with upskilling through on the job training and qualifications
  • A succession plan if you want to progress
  • Fulltime
Read More
Arrow Right

Head of Cyber Security

At Vodafone, we’re not just shaping the future of connectivity for our customers...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • University Degree: IT/Telecom Studies
  • Minimum 8 years of experience in Cyber field
  • Experience in team management and coaching
  • Experience in risk management
  • Good understanding of communication protocols
  • Windows/Linux knowledge
  • Knowledge of network principles
  • DBMS knowledge
  • Experience in adopting ISO27001
  • Certifications in the field of information security CISA, CISSP, CISM, CRISC, CCNA, etc.
Job Responsibility
Job Responsibility
  • Deliver a secure by design strategy and process for Vodafone’s technology platforms including network, cloud, and digital services
  • Lead the implementation of NIS2 requirements across IT, network and digital infrastructure
  • Define and maintain security governance aligned to global and local policy and regulation
  • Implement enhanced risk-management practices across supply chain and incident response
  • Act as primary liaison with authorities and regulatory bodies regarding cyber security reporting obligations
  • Provide structured reporting to executive committees and company-wide forums
  • Ensure management-body accountability and support for cybersecurity risk management
  • Develop and maintain KPIs for threat detection, vulnerability reduction, incident response, and compliance posture
  • Act as the first level of escalation for prioritising requests within the managed team
  • Responsible for the quality of the team's results and alignment with applicable policies and procedures
What we offer
What we offer
  • Competitive Salary
  • Flexible working (times and location) is part of our culture where your hours can facilitate your personal work-life balance
  • Generous Employer Pension contribution
  • Free Phone Bill – When you join the team, your phone bill is on us! You will also receive mobile phone purchasing discounts
  • Learning and Development – We provide extensive training to all of our employees so they can progress in their careers! There is also the Vodafone University where our employees can gain incredible skills!
  • Exclusive Family and Friends Discounts – Receive additional discounts for you, your Family and Friends on Vodafone Products!
  • 23 days annual leave and 3 charity days off – PLUS a dedicated day off for your birthday
  • Access to our Wellness centre including free access to our Gym, health and wellness centre and external practitioners
  • Fulltime
Read More
Arrow Right

Head of Security and Compliance

The Head of Security and Compliance will be responsible for building and leading...
Location
Location
United States
Salary
Salary:
Not provided
eightsleep.com Logo
Eight Sleep
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8-10+ years of experience in security engineering, with deep expertise in mobile app security, IoT device security, or cloud infrastructure security
  • Proven expertise in cybersecurity, cloud infrastructure security (AWS), IoT device security, and corporate risk management
  • Experience in consumer technology, health tech, or regulated industries is highly desirable
  • Strong knowledge of compliance standards (SOC 2, ISO 27001, HIPAA, GDPR, etc.)
  • Excellent communication and stakeholder management skills
  • Ability to balance risk with business agility in a fast-paced startup environment
Job Responsibility
Job Responsibility
  • Oversight and implementation, operation and monitoring of information security tools and processes in customer production environments
  • Responsible for conducting IT risk assessments, documenting identified threats and maintaining risk register
  • Communicates information security risks to executive leadership
  • Reports information security risks annually to Eight Sleep leadership and gains approvals to bring risks to acceptable levels
  • Define and own Eight Sleep’s end-to-end security strategy across cloud, product, corporate, and customer environments
  • Serve as the primary security advisor to the executive team—translating risk into clear business decisions and helping set the company’s security posture and risk tolerance
  • Build and scale Eight Sleep’s security program, including roadmap, processes, metrics, and future team structure
  • Oversee security architecture and practices for software, cloud infrastructure, connected devices (IoT), and data storage
  • Ensure compliance with security frameworks (e.g., SOC 2, GDPR, HIPAA)
  • Lead vulnerability management, threat detection, and incident response
What we offer
What we offer
  • Equity participation
  • Periodic equity refreshments based on performance
  • Every Eight Sleep employee receives a Pod
  • Fulltime
Read More
Arrow Right

Ciso & Head Of It

Bringg is seeking a senior, hands-on CISO & Head of IT to act as "one-man-show" ...
Location
Location
Israel , TLV
Salary
Salary:
Not provided
bringg.com Logo
Bringg
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of experience across IT operations and information security, preferably in a SaaS or cloud environment
  • Hands-on experience with enterprise IT systems (e.g., Google Workspace, Okta) and security governance frameworks (SOC 2, ISO 27001)
  • Experience supporting audits, certifications, and customer security requirements
  • Ability to manage vendors and drive outcomes through others
  • Strong communication skills and sound judgment in balancing risk, speed, and practicality
  • Full professional proficiency in English is required
Job Responsibility
Job Responsibility
  • Build and maintain a pragmatic information security and IT risk management program aligned with business priorities
  • Lead security risk assessments and drive remediation in partnership with engineering, IT, and business teams
  • Define and maintain security policies, standards, and secure-by-design practices in collaboration with our Product House organization
  • Promote security awareness and accountability across the company, including ownership of employee security training programs
  • Own Bringg’s internal IT environment, including identity and access management (e.g., Okta), Google Workspace, endpoints, and core SaaS tools
  • Ensure smooth employee onboarding and offboarding
  • Act as a point of escalation for IT issues and access problems, including hands-on work
  • Manage external IT service providers and helpdesk vendors, including SLAs and escalation
  • Own the overall effectiveness of security monitoring, detection, and response
  • Design and maintain preventive controls, processes, and readiness measures to reduce the likelihood and impact of data security incidents
Read More
Arrow Right