Reporting directly to the firm’s Cyber Incident Response Director, the successful candidate will serve as a senior technical escalation point for cyber incidents, using expertise in threat analysis, forensic investigations, detection engineering, and incident response to identify, contain, and remediate threats. They will collaborate with incident response, cyber threat intelligence, engineering, and business teams to strengthen AIG’s security posture.
This role will also help advance security capabilities through automation, SIEM and SOAR use cases, threat hunting, and AI-driven security solutions. The ideal candidate brings strong technical expertise, sound judgment, clear communication skills, and the ability to mentor analysts, establish best practices, and drive security improvements across teams.
Major Job Responsibilities:
- Leading complex incident investigations and serving as a senior technical escalation resource.
- Driving threat hunting, detection engineering, and security automation initiatives.
- Advancing AI and agentic security capabilities within Security Operations.
- Build and maintain runbooks to ensure operational readiness in a global, cloud-based environment
- Developing and improving SIEM, SOAR, and monitoring use cases.
- Partnering with stakeholders across technology, business, and security teams.
- Mentoring Tier 1 and Tier 2 analysts while promoting operational excellence.
- Identifying opportunities to improve security effectiveness through metrics, process optimization, and innovation.
Requirements:
- At least 7+ years of overall experience in Cyber or Information Security, consisting of a minimum of 5+ years’ recent experience in Cyber Security Operations or Cyber Incident Response
- Experience working in complex enterprises and global organizations. Insurance and financial services experience strongly encouraged.
- Strong Information Technology technical skills, with experience in coordination of technical teams and individual resources
- Able to work in high pressure environments, managing multiple workstreams simultaneously, both technical and non-technical
- Confident to command and instruct a variety of technical and non-technical stakeholders of all management levels
- Expertise in various types of cyber-attacks and Cyber Incident Handling
- An understanding of cyber security operations processes, procedures, guidelines and solutions, including practical experience of cyber kill chain principles
- Bachelor’s degree or equivalent practical experience is preferred.
- Excellent communication skills and the ability to collaborate effectively with cross-functional teams
- Proactive and self-motivated with the ability to work independently and manage multiple tasks simultaneously
#LI-PS1
At AIG, we value in-person collaboration as a vital part of our culture, which is why we ask our team members to be primarily in the office. This approach helps us work together effectively and create a supportive, connected environment for our team and clients alike.
Enjoy benefits that take care of what matters
At AIG, our people are our greatest asset. We know how important it is to protect and invest in what’s most important to you. That is why we created our Total Rewards Program, a comprehensive benefits package that extends beyond time spent at work to offer benefits focused on your health, wellbeing and financial security—as well as your professional development—to bring peace of mind to you and your family.
Functional Area:
IT - Information Technology
AIG Employee Services, Inc.