Capital Group Logo

Capital Group

Cyber Security Incident Response Team Manager

Posted 2 Days Ago
Be an Early Applicant
In-Office
3 Locations
147K-304K Annually
Senior level
In-Office
3 Locations
147K-304K Annually
Senior level
Lead the Incident Response Team, manage cybersecurity incidents, enforce policies, and improve response processes in a high-pressure environment.
The summary above was generated by AI

“I can succeed as a Cyber Security Incident Response Team Manager at Capital Group.”

We are seeking a highly technical and hands-on Incident Response Manager to lead our 24/7 global team of analysts responsible for monitoring, detecting, and responding to cybersecurity incidents. This role combines leadership, technical expertise, and operational excellence in a fast-paced environment. You will manage incident response activities, enforce playbooks and policies, and serve as a point of escalation during critical events.

The ideal candidate is a strong leader with advanced technical skills, coding ability, and experience in security operations and incident response. You will work closely with cybersecurity leadership, IT, and business stakeholders to ensure incidents are prioritized, investigated, and remediated effectively.

“I am the person Capital Group is looking for.” 

  • Lead and mentor a globally distributed team of security analysts and engineers responsible for initial detection, triage, containment, and advanced investigation of security incidents.

  • Serve as incident commander and escalation point for high-severity incidents, including ransomware, account compromise, phishing, and data leakage.

  • Architect and automate Integrate AI/ML-driven threat detection and behavioral analytics into IR processes. Design incident response workflows using SOAR platforms and custom scripting (Python, PowerShell, Bash, etc.) to improve mean time to respond (MTTR).

  • Implement and enforce IR playbooks, policies, and best practices aligned with NIST and MITRE ATT&CK frameworks.

  • Coordinate cross-functional response with IT, developers, legal, privacy, and business continuity teams.

  • Analyze and prioritize complex incidents, ensuring adherence to SLAs and regulatory/privacy requirements.

  • Continuously improve detection, response, and reporting processes through metrics, trends, KPIs, KRI’s and post-incident reviews

  • Conduct tabletop exercises and oversee vulnerability and penetration testing assessments to identify gaps.

  • Stay current with emerging threats, attacker TTPs, and integrate threat intelligence into response strategies.

  • Foster a culture of learning and technical excellence, supporting team certifications and hands-on development.

Qualifications:   

  • 7+ years in cybersecurity (SOC and IR), including 3+ years in a leadership role.

  • Bachelor’s degree in Cybersecurity, Computer Science, or related field preferred.

  • Certifications such as GCIH, GCFA, GCFE, CISSP, OSCP, or equivalent highly desirable.

  • Proven ability to lead distributed teams under pressure and in high-stakes environments.

  • Hands-on coding in Python (preferred), PowerShell, Bash, or similar languages.

  • Proven expertise with traditional and Next-Generation SIEM platforms such as Splunk, Sentinel, QRadar, Exabeam, and CrowdStrike Falcon.

  • Strong proficiency in SQL and query optimization across modern data lake platforms (e.g., Snowflake, Databricks, Azure Data Lake).

  • Familiarity with Cribl LogStream, data normalization, and enrichment strategies for high-fidelity alerting.

  • Advanced knowledge of attacker methods (escalation, lateral movement, TTPs).

  • Familiarity with cloud IR (AWS, Azure) and hybrid environments.

  • Strong understanding of forensic analysis, malware reverse engineering, and threat hunting.

  • Exceptional organizational, communication, and decision-making abilities.

  • Proven ability to foster team well-being, prevent burnout, and support professional growth.

  • Ability to remain calm under pressure and manage team well-being.

  • Experience in building dashboards, metrics, and reporting frameworks.

‎ 

Southern California Base Salary Range: $179,273-$286,837

‎ 

San Antonio Base Salary Range: $147,378-$235,805

‎ 

‎ 

New York Base Salary Range: $190,040-$304,064

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

‎ 

 ‎ 

 ‎

 ‎

In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital’s annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings.

You can learn more about our compensation and benefits here.

* Temporary positions in Canada and the United States are excluded from the above mentioned compensation and benefit plans.


We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS/HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.

Top Skills

Azure Data Lake
Bash
Crowdstrike Falcon
Databricks
Exabeam
Powershell
Python
Qradar
Sentinel
Snowflake
Splunk
SQL
HQ

Capital Group Los Angeles, California, USA Office

333 South Hope Street, Los Angeles, CA 90071, US, Los Angeles, CA, United States, 90071

Capital Group Irvine, California, USA Office

6455 Irvine Center Drive , Irvine, CA, United States, 92618

Similar Jobs

An Hour Ago
In-Office
Seal Beach, CA, USA
5-5 Annually
Senior level
5-5 Annually
Senior level
Aerospace • Information Technology • Cybersecurity • Defense • Manufacturing
Develop and maintain data analysis tools, architect and lead software projects, ensure compliance with standards, and collaborate with teams to enhance software solutions.
Top Skills: Ci/CdJavaJavaScriptKubernetesLinuxPythonReact
An Hour Ago
In-Office
Santa Ana, CA, USA
30-40 Hourly
Junior
30-40 Hourly
Junior
Consumer Web • eCommerce • Machine Learning • Professional Services • Software • Sports • Analytics
Assist the Accounting department with month-end closing processes, general bookkeeping, reconciliations, and ad hoc analysis.
Top Skills: BlacklineExcelGoogle SuiteNavisionNetSuite
An Hour Ago
In-Office
Santa Ana, CA, USA
28-30 Hourly
Mid level
28-30 Hourly
Mid level
Consumer Web • eCommerce • Machine Learning • Professional Services • Software • Sports • Analytics
The Continuous Improvement Lead will spearhead operational improvement efforts, document new procedures, and collaborate across various teams to enhance processes.
Top Skills: Google DocsGoogle SheetsGoogle SlidesLucidchartsMonday.Com

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account