Cyber Defense Incident Responder - Associate Director
We are seeking a Cyber Defense Incident Responder – Associate Director to lead the identification, investigation, containment, and resolution of sophisticated cybersecurity incidents. This role will provide senior-level technical direction during high-impact events, coordinate response activities across security, technology, risk, legal, and business teams, and help strengthen the organisation’s overall cyber resilience. The successful candidate will be comfortable operating in a fast-paced environment where sound judgment, clear communication, and decisive action are essential.
Responsibilities include managing the end-to-end incident response lifecycle, including detection triage, scoping, forensic investigation, threat containment, eradication, recovery, and post-incident review. You will analyse security alerts and telemetry from SIEM, endpoint detection and response, network monitoring, identity, cloud, and other security platforms. The role will lead investigations involving malware, ransomware, phishing, credential compromise, insider threats, data loss, cloud security events, and advanced persistent threats. You will develop and maintain incident response playbooks, improve operating procedures, support cyber exercises, and provide concise briefings and written reports for senior stakeholders. The position will also help mentor analysts and responders, coordinate third-party support when required, and contribute to threat hunting and proactive detection engineering.
Applicants should have substantial experience in cyber incident response, digital forensics, security operations, or a closely related discipline, including experience leading investigations or response teams. Strong knowledge of attack techniques, incident handling frameworks, network and host-based analysis, identity security, cloud environments, and common security tooling is required. Experience with scripting or automation, forensic utilities, and threat intelligence platforms is desirable. Relevant certifications such as CISSP, GIAC, GCIH, GCFA, or equivalent qualifications would be advantageous. You should demonstrate excellent analytical and problem-solving skills, the ability to prioritise under pressure, and confidence communicating complex technical issues to both technical and non-technical audiences. The role may involve participation in an on-call rota and responding to critical incidents outside standard working hours.
Cyber Defense Incident Responder - Associate Director
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...