Guardian Life Insurance

Lead Cyber Defense & Incident Response

Guardian Life Insurance$118K — $195K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cybersecurity focusing on digital forensics and incident response.
  • Extensive technical knowledge of enterprise environments, including public cloud and SaaS.
  • 2+ years in a leadership capacity, particularly in incident response or cyber defense.
  • Proficient in incident response methodologies and digital forensics principles.
  • Skilled in threat hunting, malware analysis, and understanding attacker techniques.
  • Hands-on experience with SIEM and log analytics for incident monitoring.
  • Familiarity with NIST CSF, MITRE ATT&CK, and regulatory environments.

Responsibilities

  • Lead and mentor a team of incident response and forensics professionals.
  • Act as senior escalation point for investigating complex cyber incidents from the SOC.
  • Coordinate response actions among various cybersecurity teams and internal departments.
  • Develop and maintain incident response plans and communication procedures.
  • Enhance logging, detection coverage, and user behavior analytics capabilities.
  • Collaborate on cross-functional incident response training and debriefs.
  • Drive improvements in incident response processes and cyber defense effectiveness.

Benefits

  • Support for professional development and skill-building opportunities.
  • Leadership development programs and philanthropic initiatives.
  • Diverse and inclusive work environment promoting ethical standards.
  • Flexible working arrangements and resources for achieving personal goals.
  • Comprehensive company benefits including health and wellness support.
Full Job Description
Lead Cyber Defense & Incident Response

Position Overview

Are you passionate about leading complex cyber incident response efforts while remaining deeply technical?
This role sits at the intersection of hands-on cyber defense, incident response, threat mitigation, and team leadership. You will be part of a highly collaborative cyber defense organization, leading the response to high-impact security incidents while mentoring and developing the next generation of incident responders.

The ideal candidate is an analytical, curious, and resilient technical defender with a strong investigative mindset and a desire to reduce risk through decisive action. You bring deep knowledge of modern attack techniques and frameworks, communicate clearly under pressure, and naturally step in lead during critical situations. You thrive in partnership working closely with security, IT, legal, HR, communications, and business teams to drive effective identification, containment, investigation, response, and recovery.

As a lead within Guardian's cybersecurity organization, you are expected to think big, accelerate operational excellence, and lead through change in collaboration with Cyber leadership with confidence and courage scaling both technical impact and team capability in a rapidly evolving threat landscape.

You Have
  • 5-7 years of overall cybersecurity experience, with a focus on digital forensics, incident response, SOC, or threat mitigation.
  • Broad and deep technical expertise across enterprise environments, including public cloud and SaaS platforms.
  • 2+ years of security leadership experience, ideally in incident response or cyber defense, with a player/coach mindset.
  • Strong command of incident response methodologies, digital forensics principles, and evidence handling.
  • Knowledge and experience in threat hunting, malware analysis, attacker techniques, and common vulnerabilities.
  • Practical experience working with NIST CSF, MITRE ATT&CK, and related security frameworks.
  • Hands-on experience with SIEM and log analytics platforms including logging, monitoring, insider threat, and UBA concepts.
  • Ability to translate cyber threat intelligence into actionable detections, mitigations, and response strategies.
  • Experience operating in regulated environments, preferably financial services or insurance, with understanding of U.S. privacy regulations.
  • Proven ability to lead, mentor, and develop high-performing technical teams.
  • Strong written and verbal communication skills, with experience engaging technical teams, executives, and cross-functional partners.
  • Analytical, curious, and resilient under pressure; able to think structurally and creatively during incidents.
  • BS or MS in cyber security, digital forensics, or equivalent experience and/or industry certifications preferred.
  • A continuous, lifelong learner with a desire to grow into broader cyber leadership.


You Will
  • Lead and mentor a team of incident response and forensics professionals in a hands-on leadership role.
  • Serve as the senior escalation point within the team responsible for investigating complex, high-impact cyber incidents advanced from the SOC.
  • Act as incident commander or technical lead, coordinate response actions with leadership across cybersecurity security teams while collaborating with legal, enterprise technology, engineering, and other internal teams.
  • Lead the organization's Corporate Cyber Incident Response capability, including coordination and execution in coordination with cyber security leadership.
  • Develop, maintain, and test incident response plans, playbooks, quick-reference guides, and crisis communication procedures.
  • Partner with first-line SOC teams to build muscle memory, clarify containment authorities, and standardize response actions.
  • Coordinate with business continuity/disaster recovery teams to ensure an integrated response to large-scale cyber events.
  • Drive continuous improvement of logging, monitoring, detection coverage, and UBA capabilities, proactively identifying gaps.
  • Ensure incidents are tracked, reported, and reviewed, with high-quality after-action reports and meaningful metrics.
  • Manage third-party incident response retainers, readiness exercises, and periodic simulations.
  • Collaborate across teams through the hosting of cross-functional incident response training events, and debriefs to align on threats, trends, and lessons learned.
  • Champion risk mitigation initiatives and improvements to security control effectiveness.
  • Collaborate with cybersecurity leadership on strategy, roadmap development, vendor management, and talent planning.
  • Contribute to enterprise programs such as DLP and insider risk management.
  • Support internal and external audits, regulatory requests, and due diligence activities.
  • Continuously identify opportunities to enhance incident response maturity, automation, and cyber defense capabilities.
  • Drive our user behavior analytics (UBA) program working with the business to develop and improve appropriate logging monitoring. Develop standard operating procedures for our 1st line SOC based on threats/observed incidents.


Location and Travel
  • Three days a week at a Guardian office in New York, NY. or Holmdel, NJ
  • 20% travel to other Guardian Offices as needed


Salary Range:

$118,980.00 - $195,465.00

The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.

Our Promise

At Guardian, you'll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.

Inspire Well-Being

As part of Guardian's Purpose - to inspire well-being - we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at www.guardianlife.com/careers/corporate/benefits. Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits.

Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday.

About Guardian Life Insurance

Guardian Life Insurance Careers

Join the Guardian Life Insurance team today and be part of a company that values growth, leadership, and innovation. As a leading provider in the insurance industry, Guardian Life Insurance offers a wealth of job opportunities that empower you to shape your future and strengthen your professional skills. Work You’ll Do At Guardian Life Insurance, you’ll collaborate with a diverse team of experts dedicated to providing exceptional service and innovative solutions to our clients. Our culture thrives on inclusivity and the shared ambition of our team members to drive positive change in the insurance sector. Explore a variety of career paths in areas ranging from customer service to financial advisement, each offering the potential to engage with transformative projects that impact lives. Our commitment to professional growth is evident in our robust training programs, including leadership development and diversity training, designed to enhance your skills and advance your career. Innovative Work Guardian Life Insurance is at the forefront of integrating cutting-edge technology and personalized service. Join us and contribute to initiatives that redefine industry standards and lead to more predictive and personalized customer experiences. Be Part of a Great Team Our team at Guardian Life Insurance is our strongest asset. We foster an environment where creativity and effectiveness are encouraged, making it a perfect place for those who seek to innovate and excel in their careers. With a focus on nurturing talent, we offer comprehensive benefits, competitive salaries, and a supportive atmosphere that advocates work-life balance. Future-Proof Your Career With Guardian Life Insurance, your career is future-proof. Dive into a range of employment opportunities that not only align with your current skills but also challenge you to grow and expand your capabilities. Whether you’re looking for a full-time position, an internship, or even leadership roles, Guardian Life Insurance is committed to helping you find the right path. Stay Connected Join Our Team Discover the job opportunities waiting for you at Guardian Life Insurance. We are continuously hiring and looking for individuals who are passionate, driven, and ready to contribute to our mission. Search open positions that match your skills and interests, and take the first step towards a rewarding career with us. Keep Up to Date Stay informed with the latest career tips, industry insights, and company news—all from the professionals who make Guardian Life Insurance a leader in the insurance industry. Our careers blog provides valuable information to help you prepare for your next interview, polish your resume, and enhance your networking abilities. Job Alert Emails Customize your experience by subscribing to job alerts and insider tips tailored to your preferences. Discover exciting and rewarding opportunities that await at Guardian Life Insurance, and see how you can contribute to our legacy of excellence and innovation. Join Guardian Life Insurance today and be part of a company that’s dedicated to your career growth and professional development.
Learn more about Guardian Life Insurance
Size
9,000 employees
Industry
Founded
1860

Similar Jobs

More Jobs at Guardian Life Insurance

More Information Technology Jobs

Find similar Lead Cyber Defense & Incident Response jobs: