← all jobs

Incident Response Lead, Cyber Security

Work from home Full-time role Hiring

About The Role What if your hard-won experience in the SOC trenches could directly strengthen how organizations detect, respond to, and contain real threats? We're looking for a seasoned Incident Response Lead to independently evaluate SOC operations — reviewing detection workflows, stress-testing playbooks, and surfacing the gaps that keep security teams up at night. This is a fully remote, flexible contract engagement. If you've lived through real incidents, built response processes from scratch, or spent time hunting for what others missed — this is work that will feel both familiar and meaningful.

  • Type: Hourly Contract
  • Location: Remote
  • Commitment: Flexible

What You'll Do

  • Evaluate detection alert pipelines, triage workflows, and escalation pathways for quality and consistency
  • Assess the completeness and effectiveness of incident response actions across real or simulated timelines
  • Identify critical gaps in logging coverage, detection logic, and containment procedures
  • Review and validate incident response playbooks for clarity, accuracy, and operational feasibility
  • Summarize recurring incident patterns and pinpoint operational bottlenecks
  • Support ongoing assessments of SOC maturity and overall response readiness
  • Deliver structured, analytical documentation that drives actionable improvements

Must-Have Who You Are

  • Hands-on experience in SOC operations, incident response leadership, or cybersecurity operations
  • Strong working knowledge of detection engineering, response workflows, and incident lifecycle management
  • Sharp analytical thinking with the ability to translate findings into clear, structured written assessments
  • Comfortable working independently and delivering consistent, high-quality evaluations

Nice To Have

  • Familiarity with SIEM platforms (e.g., Splunk, Sentinel, Chronicle)
  • Experience with EDR tools and cloud-native detection systems
  • Background in threat intelligence, purple teaming, or adversary simulation
  • Relevant certifications such as GCIH, GCFA, CISSP, or equivalent

Why Join Us

  • Apply deep security expertise to work that has a real, measurable impact on organizational resilience
  • Fully remote and flexible — complete assessments on a schedule that works for you
  • Freelance autonomy with meaningful, structured task-based work
  • Engage with a diverse range of SOC environments, toolsets, and operational challenges
  • Potential for ongoing work and contract extension across new assessments and engagements

More open positions

Application Security Engineer - Fully Remote - Must Work HST Hours

Work from home Full-time role

Lead Cyber Security Engineer – Nuclear

Work from home Full-time role

Principal Security Engineer

Work from home Full-time role

Penetration Tester w/ Secret Clearance

Work from home Full-time role

Security Analyst (Remote)

Work from home Full-time role

[Remote] Business Development Associate

Work from home Full-time role

Technical Support Representative, Tier 3 (USA Remote)

Work from home Full-time role

Medical Scribe & Transcriptionist (Remote) Job at Imagine Learning in Tempe

Work from home Full-time role

Remote Supply Chain Solutions Manager

Work from home Full-time role

Online Trainer / Dozent (m/w/d) Umschulung Steuerfachangestellte:r

Work from home Full-time role

Foreclosure Specialist

Work from home Full-time role

Experienced Customer Service and Data Entry Specialist – Remote Opportunity at careerzynith

Work from home Full-time role

Executive Assistant - Texas Connections Academy

Work from home Full-time role

Technical Product Manager - Intelligence

Work from home Full-time role

Software Engineer, iOS Core Product - Lviv, Ukraine

Work from home Full-time role

LPN - Remote! (10:00am - 6:30pm Shift) *TN Only*

Work from home Full-time role

GIS Application Developer - remote at Urrly

Work from home Full-time role

Experienced Remote Medical Data Entry Specialist – Healthcare Revenue Cycle Management

Work from home Full-time role

Digital Marketing Data Analyst - Digital Channel Performance (REMOTE)

Work from home Full-time role

Telecommunications Tower Crew Foreman

Work from home Full-time role

Remote Data Entry Specialist – Accurate Typist for Confidential Records Management (Full‑Time, Flexible Shifts)

Work from home Full-time role