Incident Response Lead - Remote

Strada

$120K — $223K *
US-AnywhereRemote in New York, NY
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in incident management with high-severity incidents
  • Proven experience in creating or enhancing incident response programs
  • Ability to operate independently and decisively under pressure
  • Comfortable with undefined processes and unexpected situations
  • Proven ability to collaborate across various teams, including legal and technology
  • Experience with cloud infrastructure incidents and familiarity with distributed systems
  • Strong analytical skills for using data to inform response actions and improvements
  • Exceptional communication skills for high-pressure situations.

Responsibilities

  • Act as incident lead for major cybersecurity incidents, overseeing objectives and communication
  • Direct the response workflow from validation to closure, ensuring thorough documentation
  • Coordinate diverse teams to restore services and validate operational stability
  • Provide concise updates and recommendations to executives during incidents
  • Partner with cross-functional teams to meet various regulatory and communication obligations
  • Develop and refine incident response processes and operational standards
  • Conduct exercises to enhance readiness and test incident response effectiveness
  • Mentor team members and lead post-incident reviews for continuous improvement.

Benefits

  • Opportunity to build a new cybersecurity organization from the ground up
  • Dynamic and collaborative work environment
  • Professional development and career growth opportunities
  • Flexible working arrangements
  • Comprehensive benefits package.
Full Job Description
We are looking for a highly skilled and motivated Incident Response Lead to join our cybersecurity team. This individual will serve as the operational backbone of how Strada handles incidents and ensures Strada is prepared to respond effectively to cybersecurity incidents. This is an individual contributor leadership role with significant cross-functional influence. When things go wrong, you are the person who makes sure the right people are in the room, the right information is flowing, and nothing falls through the cracks. The right person for this role brings structure and rigor to complex situations, drives timely decisions, and helps restore services safely and quickly without waiting for a playbook to be handed to them. This role will strengthen Strada's incident response readiness by maturing processes, playbooks, escalation paths, exercises, and cross-functional operating mechanisms. You will be a self-starter who turns ambiguity into practical, repeatable operating mechanisms and moves work forward without waiting for detailed direction. The role will partner closely with the SOC Leads, who own monitoring operations, detection engineering, alert triage processes, SIEM management, and SOC team performance.

Key Responsibilities:

Lead Cybersecurity Incident Response
  • Act as incident lead for major cybersecurity incidents, establishing severity, objectives, workstreams, decision rights, communication cadence, and escalation paths.
  • Direct the end-to-end response through validation and scoping, containment, eradication, recovery, and closure, maintaining a clear record of timelines, decisions, actions, and owners.
  • Coordinate security, infrastructure, cloud, identity, network, application, vendor, and business teams to restore affected services safely and validate operational stability and residual risk.
  • Provide concise, timely situation reports and decision recommendations to executives and stakeholders, translating technical findings into business impact and required actions.
  • Partner with Legal, Privacy, Risk, Communications, Human Resources, Business Continuity, and customer-facing teams to meet regulatory, contractual, insurance, notification, and crisis communication obligations.


Build readiness for incidents
  • Own and mature incident response by establishing processes, enhancing tooling, and defining operational standards for handling incidents at scale
  • Continually improve the incident response framework, major-incident plans, escalation criteria, call trees, and response and recovery playbooks, including clear handoffs with other teams.
  • Design and facilitate tabletop exercises and simulations to test technical readiness, decision-making, communications, and recovery arrangements.
  • Perform incident readiness activities, and support additional cybersecurity initiatives as needed in a dynamic global corporate environment


Coach and enable the organization
  • Provide expert guidance on complex incidents and mentor responders, analysts, and technical stakeholders in effective incident management practices.
  • Lead post-incident reviews, assign and track corrective actions, and ensure lessons learned improve controls, architecture, detections, response capability, and operational resilience.


Qualifications and Experience:
  • Have 5+ years of experience in incident management, with direct experience leading high-severity cybersecurity incidents in complex, global, or distributed environments.
  • Have built or significantly shaped an incident response program, ideally in an environment where you had to create structure rather than inherit it
  • Demonstrate a strong sense of ownership and urgency, with the ability to operate independently and make sound decisions under pressure without waiting for direction
  • Are comfortable working in unprecedented situations where processes are still being defined and guidance may be incomplete or conflicting, leaving things better than you found them
  • Have a track record of effective cross-functional collaboration, particularly with technology, product, security, legal, communications, and executive leadership
  • Have experience with cloud infrastructure incidents and enough technical depth across the stack to engage meaningfully with technology teams during response, including comfort navigating distributed systems, monitoring tools, and logs
  • Are analytically minded, with experience using data (incident metrics, queries, trend analysis) to inform decisions during response and to drive operational improvements over time
  • Excellent communication skills with the ability to communicate clearly and calmly under pressure, both in real-time coordination and in post-incident written communications
  • A strong record as a self-starter: you anticipate needs, identify gaps, set priorities, and drive work to completion with limited direction.
  • Strong process-design and documentation skills, including process mapping, runbook development, workflow design, and translating lessons into repeatable operating practices.
  • Proven coaching, facilitation, and change-enablement skills, with the ability to raise the capability and confidence of technical and non-technical stakeholders.
  • Strong knowledge of incident response methodologies and frameworks, including NIST SP 800-61, the SANS incident response lifecycle, and MITRE ATT&CK.
  • Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience
  • Relevant certifications such as CISSP, GCIA, or equivalent are a plus.


What We Offer:
  • An opportunity to play a critical role in building a new cybersecurity organization.
  • A dynamic and collaborative work environment.
  • Professional development and career growth opportunities.
  • Competitive salary and benefits package.
  • Flexible working arrangements.


Join Us:

If you are passionate about cybersecurity, thrive in a dynamic environment, and want to contribute to building a robust security program from the ground up, we encourage you to apply and be part of our journey at Strada Global.

We offer you a competitive total rewards package, continuing education & training, and tremendous potential with a growing worldwide organization.

Salary Pay Range

Minimum - Maximum:
$120,190.00 - $223,210.00

Pay Transparency Statement: Strada considers a variety of factors in determining whether to extend an offer of employment and in setting the appropriate compensation level, including, but not limited to, a candidate's experience, education, certification/credentials, market data, internal equity, and geography. Strada makes these decisions on an individualized, non-discriminatory basis. Bonus and/or incentive eligibility are determined by role and level.

DISCLAIMER:

Nothing in this job description restricts management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Strada business units.

Similar Jobs

More Jobs at Strada

More Information Technology Jobs

Find similar Incident Response Lead - Remote jobs: