Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Manager, Incident Response image - Rise Careers
Job details

Manager, Incident Response

Basic Function

The Security Operations Center (SOC) team at Lumin Digital is responsible for all phases of the security incident lifecycle, including preparation, identification, containment, eradication, recovery, and reviewing lessons learned.  This team is responsible for these lifecycle activities, both for internal corporate IT systems as well as the digital banking solutions that Lumin Digital develops and hosts to serve millions of consumers across the globe.  This role serves as the leader of this function: overseeing incident response operations, driving improvements in threat detection and response capabilities, and coordinating across technical and business teams to ensure active monitoring, timely escalation, and measurable outcomes.


Essential Functions and Responsibilities:

Identify emerging industry threats, observed trends, and industry best practices guidelines to identify gaps and identify, plan, design, and enhance security controls in collaboration with other risk engineering teams

Develop comprehensive and insightful fact-based reports on SOC metrics, such as MTTD, MTTR, and coverage, and trends, and present them to internal leadership and client security teams on a regular basis

Produce and deliver job-specific education and training to SOC team members on emerging threats and technologies using structured approaches to threat and risk management

Review the technical methods and output of the SOC team to ascertain the quality and fit of solutions, and provide constructive and detailed feedback to improve team members’ ability to perform their duties

Lead formalized security incident response procedures as part of a team, including all phases of the incident handling lifecycle, from preparation through lessons learned

Collect evidence of SOC activities to satisfy client due diligence requests as well as support internal and external audit activities

Perform other duties as assigned.


Supervisory Responsibility:

Set clear expectations, offer direction, and ensure alignment with organizational goals while fostering a supportive environment that encourages collaboration, accountability, and growth.

Coach, mentor, and provide training opportunities to build team members’ skills, promote internal growth, and prepare staff for future roles and responsibilities.

Manage hiring, onboarding, performance evaluations, promotions, compensation, and terminations, ensuring fair and consistent application of policies and procedures.

Assess team performance regularly, address gaps, and ensure duties are completed efficiently and effectively in alignment with department and organizational objectives.


Position Specifications


Education: 

Bachelor's degree in Information Assurance, Information Security, Cybersecurity, or related field is required; or equivalent combination of education and experience in cybersecurity with demonstrated command of key SOC concepts and technologies and proficiencies in threat modeling, detective and preventative controls, digital forensics, incident response, OSINT, network penetration testing, and other relevant technical security risk management domains.

Certifications relevant to security operations or management of SOC teams, such as the GCIH, GCIA, GSOM, or CISM, are preferred.


Experience:

5 years of hands-on technical experience directly working with detective security controls, including layer 3, 4, and 7 firewalls, log aggregation, endpoint detection and response, and public cloud security posture management required.

3 years of experience leading or driving incident response efforts within a Security Operations Center (SOC) or equivalent function required. Experience may include mentoring teammates, coordinating cross-functional responses, or owning end-to-end incident management processes, preferably in financial institutions or fintech environments.

Experience with large-scale AWS operating environments, Linux, Kubernetes, Git, and scripting languages required.

Experience analyzing and summarizing security operations information to characterize trends in threats, vulnerabilities, and posture to internal management teams is required.  Applicants are invited to provide an example or excerpt of a report or presentation they solely developed, with any confidential information redacted, in their cover letter that illustrates this experience and skill.


Knowledge, Skills, & Abilities:

Excellent teamwork skills, including the ability to lead with command and confidence under pressure and uncertainty

Excellent data analysis skills, including using tools like Excel and OpenSearch, to customize and report on key metrics specifically useful for the company and relevant to the current threat environment and organizational needs of the company

Strong written and verbal communication skills, including the ability to develop clear, data-driven reports and presentations using Google Docs, Slides, or R

Strong presentation delivery skills, including the ability to speak confidently to underlying data and data-driven insights to internal teams, and, as needed, to clients’ technical or management teams

Ability to read, comprehend, and contextualize technical details contained in vulnerability assessments and penetration testing reports accurately

Ability to respectfully challenge norms and appropriately question assumptions and approaches to uncover and critically evaluate operational blind spots or procedural weaknesses

Working knowledge of network security concepts, including TLS termination and introspection, connection fingerprinting, and intrusion detection tools and techniques

Working knowledge of cloud security concepts, including the AWS shared responsibility model and AWS security services such as GuardDuty, IAM Analyzer, Inspector, Macie, and Security Hub CSPM

Working knowledge of application security concepts as they relate to detecting anomalous and threatening HTTPS and WebSocket activity, including those covered by the OWASP Top 10 and the Common Weakness Enumeration

Working knowledge of vulnerability prioritization methods, including through the Common Vulnerability Scoring System (CVSS) and the Exploit Prediction Scoring System (EPSS)

Working knowledge of detection engineering principles and best practices to effectively articulate and advocate for the needs of the SOC as an internal customer of supporting risk engineering teams 

Calm and serious attitude, technical aptitude, appropriate sense of urgency, and communication skills to effectively coordinate with internal team members to remediate vulnerabilities and reduce security risks

Must have strong client orientation and demonstrate professional demeanor that earns the trust and respect of individuals inside and outside Lumin Digital

Ability to prioritize tasks, exercise sound judgment, and maintain confidentiality with sensitive information

Ability to work remotely while maintaining a high level of productivity and effectiveness, managing a highly performing team with limited or no supervision


Travel: 

Minimal, generally 12 days or less per year



$170,000 - $190,000 a year
LIFE AT LUMIN DIGITAL

Lumin Digital is a trailblazer in digital banking solutions, driven by a unique approach to technology, service, and people. We empower credit unions and banks by creating cutting-edge digital experiences that continuously serve, engage, and grow their membership base. Lumin is 100% cloud-native, purpose-built to unlock the full advantages of the cloud for financial institutions and their users.

At Lumin, we thrive on curiosity and innovation. Our culture fosters trust - in our expertise and decisions, respect - for diverse perspectives and talents, and boldness - in pursuing innovative paths. These values guide us, shaping a workplace where collaboration thrives, ideas flourish, and new possibilities are discovered. Focused on continuous improvement and innovation, we encourage our team to explore, experiment, and put new ideas into action, challenging the usual way of doing things.

All qualified applicants, including those with arrest or conviction records, will be considered for employment. Any conditional offer will include a notice regarding the review of the candidate’s criminal history as part of the hiring process.

For more information, visit lumindigital.com.
Lumin Digital Glassdoor Company Review
4.9 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Lumin Digital DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Lumin Digital
Lumin Digital CEO photo
Jeff Chambers
Approve of CEO

Average salary estimate

$180000 / YEARLY (est.)
min
max
$170000K
$190000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Posted 18 hours ago

Experienced network engineering leader needed to design and implement a comprehensive wired and wireless network infrastructure for government customers while coordinating with stakeholders and vendors.

Photo of the Rise User

HCSO is hiring an entry-level Technical Support Specialist to deliver desktop and field IT support, assist with GIS mapping tasks, and help maintain agency hardware and software systems.

Photo of the Rise User
Truist Hybrid Winston-Salem, NC
Posted 10 hours ago

Truist is looking for a seasoned IT Business Analyst III in Winston-Salem to lead requirements, process design, and stakeholder collaboration for business-technology solutions.

Photo of the Rise User
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Empathetic
Mission Driven

Scholastic is hiring a Deskside and Field Support Manager to lead distributed IT support teams, manage operations and budgets, and ensure timely resolution of deskside incidents across corporate and field locations.

Photo of the Rise User
Posted 8 hours ago

Experienced SOC analyst wanted to join Long View’s IGS team supporting 24x7 security operations, incident response, and SIEM platform management across Denver, Houston, or Dallas.

Posted 21 hours ago

Experienced Functional Analyst (Skill Level 2) needed to perform RMF-based functional analysis and support system security planning and testing for government and defense clients in Maryland.

An Experienced Windows Desktop Technician is sought to deliver onsite PC support, imaging, and troubleshooting across Electric Boat’s Groton and regional campuses supporting the NNPP network.

Photo of the Rise User
Posted 3 hours ago

Experienced systems security administrator needed to implement and maintain RBAC, user provisioning, and access recertification for federal financial and asset management systems in the Washington, D.C. area.

Photo of the Rise User
Posted 21 hours ago

Experienced DB2 for z/OS systems programmer needed to lead database administration, upgrades, tuning and migration work for Ensono's mainframe clients in a remote, customer-facing role.

Photo of the Rise User
Posted 3 hours ago

PrizePicks is hiring a Senior Security Engineer - DevSecOps to lead cloud and infrastructure security, embed controls into CI/CD, and automate protection across cloud-native environments.

PAE Hybrid US-CA-Santa Ana
Posted 1 hour ago

Amentum seeks a hands-on Tier 2 IT Support Technician in Santa Ana to troubleshoot Windows environments, Active Directory, backups, VTC, and networked devices while supporting DHS facilities.

Photo of the Rise User
Posted 24 hours ago

Support and advance Delinea’s Salesforce instance as a hands-on Salesforce Administrator focused on user support, data quality, and operational improvements.

Photo of the Rise User

WGU is hiring a Solution Administrator to administer LMS and education-technology systems, manage integrations and vendor relationships, and ensure security, compliance, and operational continuity for the university.

Our mission is to build a dynamic digital banking platform that helps financial institutions preserve and grow their consumer relationships in today’s evolving market.

4 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
September 4, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!