Incident Response Practice Lead (Hands-on)
Posted yesterday · 0 applicants
Saving, applying or scoring takes a few seconds to set up your free account.
The role in plain words
Extracted from the job description · kept up to date automatically
Who this suits
Full job description
Original listing · kept for referenceCompany Description Up Security (formerly Wake-up Cyber) provides execution-driven cybersecurity solutions for cloud-native and AI-forward organizations. The company replaces fragmented consulting with accountable CISO leadership and hands-on technical delivery. Services focus on securing cloud and application security environments, enabling global privacy and compliance readiness, and providing continuous incident response support. Up Security operates as a strategic partner, integrating deeply with client teams to deliver measurable risk reduction and resilient security operations.
At Up Security, we're building our next major cybersecurity capability and we're looking for the person who will lead it.
This is an opportunity to build and lead New Incident Response Practice while remaining deeply hands-on.
This isn't another Incident Response position inside an existing team.
You'll take ownership of complex cyber incidents across a growing portfolio of technology companies, define methodologies, build customer-facing IR services, and play a key role in shaping the future of the business.
As our first dedicated Incident Response leader, you'll combine technical excellence with ownership, working closely with our SecOps, Cloud Security, AppSec, AI Security, Privacy and GRC teams.
As the practice grows, you'll have the opportunity to build and lead your own team.
What you'll do?
• Lead complex cyber incidents end-to-end
• Drive containment, eradication, recovery and post-incident activities
• Perform digital forensics and technical investigations
• Conduct threat hunting and compromise assessments
• Investigate Windows, Active Directory/Entra ID, cloud environments, endpoints and identity-related attacks
• Work directly with customers, executives and technical teams during high-pressure incidents
• Build IR methodologies, playbooks, runbooks and service offerings
• Help establish and grow Up Security's Incident Response capability
What we're looking for?
• 5-9 years of cybersecurity experience
• 3-6 years of hands-on Incident Response / DFIR / CSIRT / CERT experience
• Experience leading real-world cyber incidents-not only SOC monitoring or alert triage
• Strong digital forensics and investigation skills
• Experience with EDR, SIEM and enterprise environments
• Solid understanding of MITRE ATT&CK, attacker TTPs and incident lifecycle
• Excellent communication skills with both technical and executive stakeholders
• Strong ownership and ability to perform under pressure
Nice to have
• Cloud Incident Response (AWS, Azure or GCP)
• Malware Analysis or Reverse Engineering
• Threat Hunting
• Python or PowerShell scripting
• Experience working with SaaS environments
• Consulting or Incident Response services background
Why join Up Security?
You'll join one of Israel's fastest-growing cybersecurity consulting companies, supporting nearly 100 technology-focused customers across Cloud Security, SecOps, AI Security, Application Security, Privacy and GRC.
This role offers a rare opportunity to own an entire technical domain from day one while staying hands-on and helping shape the company's future.
If you're looking for the next step beyond being a Senior Incident Responder-this is it.
Questions about this role
- This listing did not state a salary. We only show pay when the employer publishes it.