Remote Cyber security Jobs · Incident Response

Job listings

US Unlimited PTO

  • Serve in the Oversight role on complex or high-severity engagements, reviewing findings and ensuring quality of analysis.
  • Lead on critical investigations (ransomware, APT, insider threat), and set the standard for client communication and investigative rigor.
  • Conduct advanced host forensics, network analysis, malware reverse engineering, cloud forensics, and threat actor attribution.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. Since its inception in 2011, GuidePoint has grown to over 1,200 employees and established strategic partnerships with leading security vendors.

$145,000–$155,000/yr

  • Participate in a rotating on-call, based on the number of team members.
  • Serve as a hybrid Incident Response (IR) and Digital Forensics (DFIR) function.
  • Perform forensic analysis on a variety of networks, hosts, digital media, and operating systems/environments.

Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. We pride ourselves on providing our employees with great benefits and career development opportunities and are committed to growing careers as we are to building world-class IT solutions.

  • Lead security incidents end-to-end, from detection and triage through containment and post-incident review, acting as incident commander.
  • Conduct hands-on investigations across cloud and endpoint environments to determine root cause and impact, and partner with Observability & Automation to improve detections and build automated playbooks.
  • Collaborate with Security, Infrastructure, and Product teams to identify gaps, strengthen the incident response lifecycle, and communicate effectively with both technical and non-technical stakeholders.

Affirm is reinventing credit to create honest and friendly financial products like buy now, pay later services without hidden fees. As a remote-first fintech company, they cultivate a collaborative and team-first culture for their skilled professionals.

$100,000–$155,000/yr

  • Assess customer's Falcon environment and ensure alignment with Falcon Complete standards.
  • Provide customers with security recommendations and create remediations to improve their security posture.
  • Partner with internal teams to troubleshoot issues and ensure customer satisfaction.

CrowdStrike is a global leader in cybersecurity with an AI-native platform designed to stop breaches. The company has a mission-driven culture that provides employees flexibility and autonomy, and it supports customers across all industries.

$70,158–$84,979/yr

  • Act as the technical lead and primary escalation point for Security Operations and Vulnerability Management, providing mentorship and driving team maturity.
  • Lead complex security investigations and incident response across cloud environments (AWS & Azure), identity systems, and SaaS infrastructure.
  • Develop and enhance detection logic, automation workflows, and security tooling while managing the end-to-end vulnerability lifecycle.

IFS provides AI-driven enterprise software solutions to help customers excel at their critical 'Moment of Service™.' It is a global company with over 7000 employees, fostering a flexible, innovative, and collaborative culture focused on making a positive worldwide impact.

  • Operate and improve security enterprise platforms through controls, monitoring, and incident response.
  • Configure IAM and access policies, manage MDM/EDR capabilities, and review third-party integrations for risk.
  • Drive the security awareness program, monitor emerging threats, and apply adversarial thinking to improve resilience.

RootstockLabs builds Bitcoin-secured DeFi infrastructure enabling companies and financial institutions to offer borrowing, lending, investment, and payment solutions at a global scale. It is a global, diverse team operating at the intersection of crypto infrastructure and institutional finance.

$125,500–$144,500/yr
US 12w maternity 12w paternity

  • Implement, support, and design security operations and technology related to assessments, network infrastructure, monitoring, and compliance.
  • Analyze security logs from various sources and perform security analysis utilizing SIEM technologies.
  • Provide support for Security Operations and Incident Response, including vulnerability scanning analysis and prioritization.

National Debt Relief is a consumer debt settlement organization that helps individuals manage and settle overwhelming debt to achieve financial stability. The company is team-oriented with a focus on employee growth and is certified as a Great Place to Work.

$165,000–$175,000/yr

  • Design, implement, and improve detection rules across SIEM, EDR, and cloud security platforms while leveraging AI to accelerate vulnerability detection.
  • Develop automated response playbooks to reduce MTTD and MTTR and integrate GenAI tools into SOC workflows for log analysis and threat triage.
  • Collaborate across security, engineering, and IT teams to embed scalable, AI-enhanced security practices into all operations and ensure secure, resilient access to services.

CentralReach is a leading provider of autism and IDD care software for Applied Behavior Analysis, multidisciplinary therapy, and special education. The company, trusted by over 200,000 users, is a market leader with a culture centered on impact, inclusion, and flexibility, fostering a fun and energetic environment where employees can make a meaningful difference.

$1,000–$2,000/mo

  • Monitor security alerts and analyze incidents to determine impact and severity.
  • Participate in the incident response process including identification, containment, and recovery.
  • Assist in vulnerability management by identifying, assessing, and remediating vulnerabilities.

Intelice Solutions is a cybersecurity firm focused on protecting client data and systems through monitoring, analysis, and incident response. The company fosters a dynamic and supportive environment for team members passionate about developing their cybersecurity skills.

$110,000–$140,000/yr

  • Perform systems administration, patching, vulnerability remediation, and manage security tools across AWS & GCP environments.
  • Implement hardening and compliance controls using CIS Benchmarks and DISA STIGs, and respond to incidents in a 24/7 on-call rotation.
  • Create documentation, support client communications, and mentor junior engineers while ensuring compliance with frameworks like FedRAMP and NIST 800-53.

Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation across Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT. With over 50 years of experience, it supports global clients in Defense, Intelligence, and Public Safety, fostering a collaborative and mission-driven culture.