Full-Time

Manager - IT Security Incident Response

Posted on 3/14/2026

University of Miami

University of Miami

No salary listed

Company Does Not Provide H1B Sponsorship

Miami, FL, USA

Hybrid

Hybrid in South Florida; some on-site days required.

Category
Engineering Management (1)
Required Skills
Linux/Unix
Requirements
  • Bachelor's degree from an accredited college or university in Computer Science, Mathematics, Statistics, or equivalent or a related field. A Master's degree is highly desirable.
  • 12+ years of Information Security experience or equivalent combination of education and work experience.
  • Prior experience in a 24x7x365 SOC operations environment.
  • 5+ years’ experience in incident response or similar role in a medium or large organization. Experience in Healthcare preferred.
  • In-depth experience in security incident management processes and tools.
  • Prior people management/leadership experience with proven experience to lead, motivate and direct a workgroup.
  • Ability to work in a high-pressure environment.
  • Strong project management, presentation, and communication skills.
  • Ability to maintain confidentiality.
  • Knowledge of business and management principles.
  • Knowledge of IT project management and change control principles.
  • Knowledge and expertise with the MITRE Attack framework.
  • Ability to direct, manage, implement, and evaluate department operations.
  • Ability to establish department goals, and objectives that support the strategic plan.
  • Ability to effectively plan, delegate and/or supervise the work of others.
  • Ability to lead, motivate, develop, and train others.
Responsibilities
  • Leads the security incident response operations, monitoring, and incident response activities.
  • Review and update incident response standards, policies, and procedures.
  • Performs necessary investigation, analysis, and evaluation to determine project feasibility.
  • Documents root cause analysis, security events, and incidents.
  • Develop and maintain the IT security incident response process, including all required supporting materials.
  • Develop functional requirements for roles that will be involved in the CSIRT program.
  • Work with business units, IT functions and external providers to ensure that the process is mutually understood and agreed on, and that responsibilities are clear and accepted.
  • Act as a liaison between the security incident response team, enterprise IT services, and business units as needed.
  • Initiate the IT security incident response process and execute decision authority to the extent of the role within that process.
  • Ensure execution of the incident response process to the resolution of the incident. Ensure generation, maintenance, and protection of required incident records, such as investigator journals.
  • Organize, participate in and, if required, chair post incident reviews for presentation to the senior management.
  • Experience with Unix/Linux, or work relating to OS internals or file level forensics.
  • The IR manager must have in-depth knowledge of the following methods and motivations adopted by hackers to attack IT platforms and automated information systems.
  • IT security incident management processes and tools.
  • IT operations and support organizations.
  • IT security risk assessment.
  • IT security forensic techniques, tools, and procedures.
  • Serve as a leader for the Cybersecurity Incident Response Team (CSIRT).
  • Coordinate all cross-team collaboration, communication, and documentation activities related to responding, containing, and remediating cybersecurity events and incidents.
  • Partnering closely with other functions within the cybersecurity and IT Management teams, and Collaborate with MSSP (Managed Security Services Provider) to ensure consistent and quality Incident Response services are provided to the organization.
  • Manage the day-to-day operations for event and Incident management activities.
  • Ensure deadlines are met incident response goals and initiatives are successfully implemented.
  • Oversee all people-management activities for direct reports, including responsibility for establishing goals and providing mentorship for team.
  • Develop KRIs, performance metrics and dashboards.
  • Regularly interact with senior leadership and other business units.
  • Knowledge of IT end-to-end problem management and root cause analysis, which is desirable.
  • As a Manager, IT Security of Incident Response you will be based in South, Florida. We pride ourselves on providing locational flexibility.
Desired Qualifications
  • Master's degree is highly desirable.
  • Certified Information Systems Security Professional (CISSP), preferred.
  • Certified Information Security Manager (CISM) or the equivalent preferred.
  • Cloud Computing Security Certification preferred
  • GIAC Certified Incident Handler (GCIH) preferred
  • Knowledge of IT end-to-end problem management and root cause analysis, which is desirable.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

INACTIVE