Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Cyber Incident Response Lead (Remote) image - Rise Careers
Job details

Cyber Incident Response Lead (Remote)

Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create digital marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realise their financial goals and help them to save time and money.

We operate across a range of markets, from financial services to healthcare, automotive, agrifinance, insurance, and many more industry segments.

We invest in people and new advanced technologies to unlock the power of data and to innovate. A FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 23,300 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.

Job Description

As a member of Experian's Global Security Office (EGSO)/Cyber Fusion Center (CFC), you will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Center according to Experian's Incident Response Plan. As an individual contributor, you will join a growing team of specialized, advanced responders to support escalations of complex and prioritized matters from Experian's existing 24x7 security monitoring and response functions. You will work with end-users, technical support teams, and management to ensure remediation and recovery from these threats.

You will report to the Senior Manager, Global Incident Response. You will have a regular Monday – Friday schedule, with the expectation to participate in an on-call schedule or work outside of normal work hours to respond to cybersecurity incidents.

You'll have the opportunity to:

  • Conduct advanced incident response activities to investigate and contain complex or larger-scale cybersecurity matters.
  • Orchestrate workstreams across teams (Forensics and Cyber Threat Hunting) and explain the CFC's overall understanding of the timeline of attacker activity.
  • Respond to cybersecurity events and alerts associated with threats, intrusions, or compromises per any applicable SLOs.
  • Manage multiple cases related to security incidents throughout the incident response lifecycle, including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
  • Coordinate successful conclusion of security incidents according to Process & Procedures, and escalate severe incidents according to Experian's Incident Response Plan.
  • Maintain case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
  • Maintain assigned caseload and move incidents through each phase of the IR Lifecycle, handing off cases as needed for progress.
  • Maintain an understanding of common Operating Systems (Windows, Linux, Mac OS), Security Technologies (Anti-Virus, Intrusion Prevention), Cloud Security investigations and response tools, and Networking (Firewalls, Proxies).
  • Interpret device and application logs from a variety of sources (Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures) to identify the root cause and determine the next steps for containment, eradication, and recovery.
  • Support overall direction for the CFC and input to the security strategy.
  • Mentor and provide advanced support to analysts (Logs review, IP Block question).

Qualifications

Your background:

  • 8+ years of experience working within cybersecurity or information technology roles, at least 4+ of which includes working as an investigator, analyst, or leader in a Cyber Incident Response Team.
  • Bachelor's Degree in Computer Science, Computer Engineering, Information Systems, Information Security, or a related field. 11+ years of experience working within a Security Operations Center, Incident Response Team, law enforcement, or military experience may be accepted in lieu of this requirement.
  • Knowledge of network protocols (TCP/IP, UDP, ICMP), standard protocols (HTTP/S, DNS, SSH, SMTP, SMB), wireless networking, networking infrastructure, and network topologies (DMZ, VPN, WAN) and network technologies (WAF, IPS, Routers, or Firewalls).
  • Experience with commercial and open-source SIEMs, full packet capture tools, and network analysis tools (Splunk, Wireshark, SOF-ELK).
  • Exhibit skills using common Incident Response and Security Monitoring applications such as SIEM (Splunk), EDR (MDE), Tanium, WAF, IPS.
  • Preference for candidates to have at least one certification involving incident response, ethical hacking, cyber security (GCIH, E CEH, E CIH), or network forensics (GIAC Network Forensic Analyst (GNFA), NICCS Certified Network Forensics Examiner (CNFE)).
  • Hold one Security Management certification (ISC2 CISSP, CISM) or obtain such certification within the first two years as a Cyber Incident Response Lead.
  • Preference for candidates based in Mountain or Pacific Time Zone. Candidates in other U.S. time zones will also be considered.

Additional Information

Benefits/Perks:

  • Great compensation package and bonus plan.
  • Core benefits including medical, dental, vision, and matching 401K.
  • Flexible work environment, ability to work remote, hybrid or in-office.
  • Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
  • Explore all our exciting benefits here: https://yourexperianbenefits.com/cand-index.html.

Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.

Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education. You will be also eligible for a variable pay opportunity.

Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities. Innovation is an important part of Experian's DNA and practices, and our inclusive workforce allows everyone to succeed and bring their whole self to work. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

#LI-Remote

This is a remote position.

Experian Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Experian DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Experian
Experian CEO photo
Jennifer Schulz
Approve of CEO

Average salary estimate

$165000 / YEARLY (est.)
min
max
$140000K
$190000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Experian logo

What it's like to work at Experian

Read Reviews
Similar Jobs
Photo of the Rise User
Experian Hybrid United States, United States, United States, United States
Posted 16 hours ago

At Experian's Innovation Lab, a Senior Data Scientist will develop advanced machine learning and deep learning prototypes to unlock data value and accelerate product innovation across multiple domains.

Photo of the Rise User
Experian Hybrid United States, United States, United States, United States
Posted 16 hours ago

Work with Experian's Innovation Lab to design and prototype advanced machine learning and generative AI solutions that unlock value from diverse datasets.

Posted 14 hours ago

Toyota Financial Services is hiring a Global Information Security Analyst to own global service delivery dashboards, budgets, and communications that support information security across international teams.

Photo of the Rise User
Posted 4 hours ago

Senior Information Security Engineer to lead deployment of advanced security controls, run incident response, and influence secure architecture at WHOOP.

Photo of the Rise User

A Summer 2026 IT Business Analyst Internship at Nelnet offering hands-on experience analyzing and testing business systems in an Agile software development environment.

Posted 4 hours ago

Versana seeks an experienced Azure Cloud Architect to lead cloud architecture, identity management, observability, and DevOps practices for its real-time syndicated loan data platform.

Photo of the Rise User
Posted 15 hours ago

An early-career IT Business Analyst at Truist who will analyze business processes, gather and document requirements, and coordinate small to medium technology initiatives between LOBs and delivery teams.

SciTec Hybrid No location specified
Posted 3 hours ago

SciTec is hiring a Senior Data Center Engineer in Boulder, CO to architect, operate, and secure on-premises and hybrid infrastructure supporting DoD and U.S. Government programs.

Experienced cyber operations professional wanted to support SPACEFOR-SOE at USSOCOM, driving space-focused red/blue operations, capability development, and validation of emergent cyber requirements.

Photo of the Rise User

Weber State University is hiring a senior IT leader to set strategy and manage enterprise systems, cybersecurity, and technology services for its multi-campus environment.

Photo of the Rise User
NBCUniversal Hybrid 4805 Amon Carter Blvd., Fort Worth, TEXAS
Posted 15 hours ago

Lead and manage the technology operations for NBC Studios DFW, delivering technical leadership across broadcast, production, and enterprise IT to support local news and programming.

UMD Hybrid University of Maryland College Park
Posted 6 hours ago

The Junior Workday HCM Analyst will support and configure Workday recruiting and core HCM processes, working with business owners and ERP teams to deliver functional solutions and excellent service across campus.

Photo of the Rise User
Posted 8 hours ago

Juniper Square is hiring an onsite IT Helpdesk Specialist in San Francisco to deliver desktop support, asset management, and secure endpoint operations for a fast-growing, values-driven fintech team.

Photo of the Rise User
NBCUniversal Hybrid 904 Sylvan Ave, Englewood Cliffs, NEW JERSEY
Posted 14 hours ago

NBCUniversal's Versant Cyber organization is hiring a Senior Incident Responder to lead detection, threat hunting, and forensic response across enterprise and cloud environments.

Photo of the Rise User

BHHC is hiring a mid-level DevOps Engineer to build, automate, and operate hybrid cloud infrastructure (Azure preferred) and improve CI/CD, containerization, and monitoring across the organization.

We pride ourselves on being certified as a Great Place To Work and firmly believe that creating a positive company culture is less about ping pong tables and more about transparency, connection, and "work with purpose." The unique perspective of e...

81 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
September 10, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!