Apply now: Security Response Manager, location is Remote. The start date is ASAP for this 6 month Contract-to-Hire position.
Job Title:
Security Response Manager Location-Type:
Remote Start Date Is:
ASAP Duration:
6 month
Contract-to-Hire Compensation Range:
$50-$55/hour
Job Description:
Lead enterprise security incident response while providing hands-on forensic investigation, detection engineering, and technical leadership to strengthen the overall security response function.
Day-to-Day Responsibilities:
Triage and manage security incident tickets. Lead high-pressure incident response bridges across the organization. Coordinate response efforts across technical teams, business stakeholders, and multiple levels of leadership. Perform deep forensic analysis of endpoints, logs, web activity, and operating-system artifacts. Develop and tune custom detections using CrowdStrike and Microsoft Defender. Improve detection logic, investigative processes, and response playbooks. Identify security tooling and process gaps and recommend improvements. Drive post-incident reviews and continuous service improvement initiatives. Mentor and train Tier 1/Tier 2 security analysts. Collaborate with a 20-person security organization across multiple specialties. Partner with international/EU stakeholders while maintaining GDPR awareness. Support security tooling enhancements and other security initiatives as needed.
Requirements:
Must-Haves:
11 years of overall IT experience. 3 years of direct security incident response experience. Significant hands-on experience within an Incident Response function. Proven experience personally leading major security incidents from initial triage through resolution and post-incident improvement. Strong incident-command and leadership experience, including leading high-pressure response calls with technical teams, executives, and cross-functional stakeholders. Ability to navigate different levels of leadership during security incidents and clearly communicate decisions, risks, and next steps. Advanced log analysis and digital forensics experience, including: Web logs OS-level analysis Endpoint artifacts Deep investigative/root-cause analysis Strong hands-on experience with EDR and security tooling, including: CrowdStrike Microsoft Defender / Defender for Endpoint ServiceNow Orca Experience with endpoint detection and response, identity security, vulnerability management, and threat intelligence. Demonstrated ability to build or tune detections and improve investigative capabilities. Experience driving post-incident improvements and continuous service improvement. Proven ability to mentor and develop junior security analysts. Experience working with EU stakeholders and awareness of GDPR considerations. Strong enterprise communication, political awareness, and stakeholder-management skills.
Nice-to-Haves:
Red team/offensive security experience. Blue team/security defense experience. Purple team experience combining offensive and defensive security practices. Experience using Maltego or similar investigation/intelligence tools.
Benefits:
This role is eligible to enroll in both Mondo's health insurance plan and retirement plan. Mondo defers to the applicable State or local law for paid sick leave eligibility
Review key factors to help you decide if the role fits your goals.