Talent.com
CSOC Incident Response Lead
CSOC Incident Response LeadSherwin-Williams • Cleveland, Tennessee, USA
CSOC Incident Response Lead

CSOC Incident Response Lead

Sherwin-Williams • Cleveland, Tennessee, USA
2 days ago
Job type
  • Full-time
Job description

Description

The Cybersecurity Security Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional responsible for overseeing and coordinating the response to all security incidents within the organization acting as the primary decision-maker during a breach by leading the incident response team assessing the situation implementing response plans and communicating updates to stakeholders throughout the incident lifecycle with the primary goal of minimizing risk and restoring operations quickly and safely. This role requires a strategic thinker with strong leadership and technical skills capable of making quick and informed decisions in high-pressure situations. Ability to support the IR lifecycle using our Security Information and Event Monitoring (SIEM) and Security Orchestration and Automated Response (SOAR) technologies.

This role reports directly to the CSOC manager.

Responsibilities

Serve as the primary point of contact and decision-maker during cybersecurity incidents.

Assist in utilization of full CSOC toolset in support of IR (i.e. SIEM / SOAR sandbox email security End Point Detection and Response etc.)

Lead and coordinate incident response efforts within the Triage & Response team including mobilizing resources assessing the situation and implementing response plans.

Collaborate with internal and external stakeholders to gather information assess impact and prioritize response actions.

Provide clear and timely communication to stakeholders including executive leadership throughout the incident lifecycle.

Implement and refine the analysis and forensics process.

Implement and refine incident response procedures protocols and playbooks to enhance effectiveness and efficiency.

Conduct monthly post-incident reviews to help identify lessons learned areas for improvement and enforce consistent action item remediation with analysts engineers and relevant stakeholders.

Stay abreast of emerging cyber threats vulnerabilities and best practices in incident response through collaboration with Vulnerability management and Cyber Threat Intelligence teams.

Hold monthly workshops with stakeholders from Information Technology and Operational Technology to discuss on-going and future initiatives related to Incident Response.

Collaborate with security engineers to enhance detection and playbook automation.

Lead tabletop exercises with CSOC team members and internal stakeholders to facilitate training identify gaps and support continuous improvement.

Assist with managing the IR database to ensure adherence to audit and compliance requirements.

Support CSOC manager with vendor management of the IR retainer(s).

Oversee formal / informal IR training. Identify training opportunities with unused IR retainer credits.

Qualifications

Formal Education & Certification

Bachelors degree in computer science Information Technology or related field (or equivalent experience).

Relevant certifications such as the GIAC Incident Handler (GCIH) are preferred.

Knowledge & Experience

8 years IT / Cybersecurity experience. Proven experience leading and coordinating IR efforts in a fast-paced environment.

Strong technical knowledge of network security malware analysis intrusion detection and related technologies.

Excellent communication and interpersonal skills with the ability to interact effectively with stakeholders at all levels and explain technical information to non-technical stakeholders.

Ability to remain calm and focused under pressure with a commitment to delivering results.

Understanding of various operating systems (z / OS Window UNIX Linux AIX etc.).

Preferred Experience

Previous experience with IR and handling

Deep understanding of cybersecurity concepts including incident response methodologies and threat intelligence

Familiarity with relevant cybersecurity frameworks and regulations (e.g. NIST GDPR)

SIEM / SOAR solutions such as Splunk and Sumo Logic.

CSOC or working with a Managed Security Service Provider.

Threat Intelligence Platform (TIP) and importance of integrating into the SIEM in support of IR and Indicators of Compromise.

Exposure to Incident Response in the Operational Technology domain.

Personal Attributes

Strong analytical conceptual and problem-solving abilities.

Strong written and oral communication skills.

Strong presentation and interpersonal skills.

Ability to conduct research into database issues standards and products.

Ability to present ideas in user-friendly language.

Able to prioritize and execute tasks in a high-pressure environment.

Ability to work in a team-oriented collaborative environment.

Strong commitment to inclusion and diversity.

Curiosity and willingness to learn about systems tools and networking.

Ability to step in and lead others in the absence of direction.

Key Skills

Children Activity,Apprentice,Advertising,Gallery,IT Software,Barista

Employment Type : Full Time

Experience : years

Vacancy : 1

Create a job alert for this search

Csoc Incident Response Lead • Cleveland, Tennessee, USA

Related jobs
Family Centered Treatment Specialist

Family Centered Treatment Specialist

Health Connect America • Cleveland, TN, United States
Full-time
IMMEDIATE INTERVIEW OPPORTUNITIES AVAILABLE.Join Our Impactful Team at Health Connect America!.Before you get started on your journey with. Across every program, we are committed to providing compas...Show more
Last updated: 30+ days ago • Promoted
Speech Pathologist Home Health Full Time

Speech Pathologist Home Health Full Time

Amedisys • Dalton, GA, United States
Full-time
Are you looking for a rewarding career in homecare? If so, we invite you to join our team at Amedisys, one of the largest and most trusted home health and hospice companies in the U.A full benefits...Show more
Last updated: 2 days ago • Promoted
United States Customs and Border Protection Officer

United States Customs and Border Protection Officer

U.S. Customs and Border Protection • Lakesite, Tennessee, United States
Full-time
Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show more
Last updated: 30+ days ago • Promoted
Therapy - SLP

Therapy - SLP

Functional Pathways of Tennessee, LLC • Cleveland, TN, United States
Full-time
Functional Pathways of Tennessee, LLC.Variable 8 / 10 / 12 (40 hours per week).Pay ranges are calculated using gross pay and do not account for potential PTO requests or facility closures.Traveler Bene...Show more
Last updated: 30+ days ago • Promoted
Travel MRI Tech - $1216.28 / Week

Travel MRI Tech - $1216.28 / Week

FlexCare • Dalton, GA, US
Full-time
FlexCare is seeking an experienced MRI Tech for an exciting Travel Allied job in Dalton, GA.Shift : 4x8 hr nights Start Date : 01 / 05 / 2026 Duration : 13 weeks Pay : $1216. Why Clinicians Choose FlexCare....Show more
Last updated: 1 day ago • Promoted
Travel MRI Tech - $1665 / Week

Travel MRI Tech - $1665 / Week

LRS Healthcare - Allied • Dalton, GA, US
Full-time
LRS Healthcare - Allied is seeking an experienced MRI Tech for an exciting Travel Allied job in Dalton, GA.Shift : Inquire Start Date : 01 / 05 / 2026 Duration : 13 weeks Pay : $1665 / Week.Ready to start ...Show more
Last updated: 7 hours ago • Promoted • New!
DCS CASE MANAGER 1 • - EG - 04012025-66745

DCS CASE MANAGER 1 • - EG - 04012025-66745

State of Tennessee • Dayton, TN, United States
Full-time +1
State of Tennessee Job Information.LOCATION OF (350) POSITION(S) TO BE FILLED : DEPARTMENT OF CHILDREN'S SERVICES, CHILD AND FAMILY MANAGEMENT DIVISION, STATEWIDE. The DCS Case Manager 1 • position ha...Show more
Last updated: 1 day ago • Promoted
Community Liaison - Hospice

Community Liaison - Hospice

BrightSpring Health Services • Dalton, GA, United States
Full-time
US-GA-LAWRENCEVILLE | US-GA-DALTON.Your work will reflect the quality and heart of our care, helping ensure patients receive the support they need when they need it most. Ready to be the bridge betw...Show more
Last updated: 22 days ago • Promoted
DCS CASE MANAGER 1 • - EG

DCS CASE MANAGER 1 • - EG

State of Tennessee • Dayton, TN, United States
Full-time +1
State of Tennessee Job Information.Opening Date / Time 04 / 01 / 2025 12 : 00AM Central Time Closing Date / Time 12 / 31 / 2025 11 : 59PM Central Time Salary (Monthly) $3,687. Job Type Full-Time City, State Locatio...Show more
Last updated: 28 days ago • Promoted
Regional Client Liaison

Regional Client Liaison

Talent Find Professional • Dalton, GA, us
Full-time
Quick Apply
A New Path for People Who Know They’re Meant for More.Every now and then, a person realizes they’ve outgrown their current environment. They’re capable, dependable, hardworking — but stuck in a role...Show more
Last updated: 2 days ago
United States Border Patrol Agent

United States Border Patrol Agent

U.S. Customs and Border Protection • Cohutta, Georgia, US
Permanent
Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show more
Last updated: 30+ days ago • Promoted
Internal Medicine

Internal Medicine

CompHealth • Dalton, Georgia, US
Full-time
Internal Medicine physician job in Georgia : Dalton is nestled at the base of the picturesque, impressive North Georgia Mountains. This four-season community offers outdoor enthusiasts many choices ...Show more
Last updated: 30+ days ago • Promoted
Side Hustle Project Lead

Side Hustle Project Lead

Finance Buzz • Georgetown, Tennessee, US
Full-time +1
We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...Show more
Last updated: 30+ days ago • Promoted
Master-at-Arms

Master-at-Arms

U.S. Navy • Dayton, TN, United States
Full-time
ABOUT Masters-at-Arms (MAs) are the Navy’s security and law enforcement professionals.They perform antiterrorism, force protection, physical security, and police duties both ashore and at sea.MAs m...Show more
Last updated: 14 hours ago • Promoted • New!
Special Agent

Special Agent

FBI • Ringgold, GA, United States
Full-time
JOB DESCRIPTION The position advertised has been exempted from the federal civilian hiring freeze.As an FBI special agent, you'll directly impact national security. By harnessing your background to ...Show more
Last updated: 2 days ago • Promoted
Travel MRI Tech - $1428 / Week

Travel MRI Tech - $1428 / Week

Cynet Health • Dalton, GA, US
Full-time
Cynet Health is seeking an experienced MRI Tech for an exciting Travel Allied job in Dalton, GA.Shift : 4x8 hr nights Start Date : 12 / 15 / 2025 Duration : 13 weeks Pay : $1428 / Week.Ranked #5 Best Trave...Show more
Last updated: 2 days ago • Promoted
Travel Oncology Infusion RN - $2,268 per week

Travel Oncology Infusion RN - $2,268 per week

GHR Healthcare - Travel Division • Dalton, GA, United States
Full-time
GHR Healthcare - Travel Division is seeking a travel nurse RN Oncology for a travel nursing job in Dalton, Georgia.Job Description & Requirements. GHR Healthcare - Travel Division Job ID #74371342....Show more
Last updated: 2 days ago • Promoted
Registered Nurse Case Manager - Hospice

Registered Nurse Case Manager - Hospice

BrightSpring Health Services • Dayton, TN, United States
Full-time
Registered Nurse Case Manager - Hospice.US-TN-COALFIELD | US-TN-HARRIMAN | US-TN-KINGSTON | US-TN-DAYTON | US-TN-PIKEVILLE | US-TN-LENOIR CITY. Adoration Home Health and Hospice.Adoration Home Healt...Show more
Last updated: 30+ days ago • Promoted