Principal Security Incident Lead (Blue Team)
Kforce has a client that is seeking a Principal Security Incident Lead (Blue Team) in New York, NY or Boston, MA (on-site). The Opportunity: We are seeking a seasoned Blue Team leader to spearhead the evolution of our North American incident response program. This is a high-visibility, technical leadership role designed for an expert who excels in high-pressure situations and wants to define the response strategy for a scaling, cloud-native enterprise. You will act as the senior technical authority for major security events, bridging the gap between our 24/7 monitoring partners and internal engineering, infrastructure, and executive stakeholders. Key Responsibilities:
- Incident Command: Serve as the primary Incident Commander for high-severity events in the U.S. region, directing containment strategies and cross-functional response efforts through to resolution
- Executive Communication: Translate complex technical risks into clear, actionable updates for senior business leadership
- Advanced Forensics: Lead deep-dive investigations across a modern stack, including multi-cloud environments, SaaS platforms, identity providers, and hybrid infrastructure
- Strategic Leadership: Provide technical mentorship to a regional team of responders while collaborating with international counterparts to ensure global operational consistency
- Readiness & Validation: Own the development of response playbooks (Ransomware, Data Exfiltration, Identity Theft) and lead tabletop exercises to stress-test our collective response "muscle memory-
- Next-Gen Operations: Partner with Security Engineering to integrate AI-assisted workflows and automated orchestration (SOAR) into the live response lifecycle
- Continuous Improvement: Manage post-mortem processes to identify systemic gaps, influencing future budget and tooling investments
- Experience: 7+ years in dedicated Incident Response, SOC, or Blue Team environments with a focus on enterprise-scale defense
- Command Presence: Proven track record of managing high-severity incidents as a primary escalation lead
- Cloud Proficiency: Extensive experience investigating threats in cloud-forward and identity-centric architectures (AWS/Azure/GCP, Okta, etc.)
- Technical Depth: Hands-on expertise in evidence collection, attacker behavior analysis, and modern forensics
- Communication: Exceptional ability to remain calm and articulate under pressure, with experience managing managed security service provider (MSSP) relationships
- Experience in highly regulated sectors (e.g., Finance, Fintech, or Healthcare)
- Knowledge of Kubernetes/Container security and runtime protection
- Familiarity with the MITRE ATT&CK framework and threat-informed defense strategies
Recommended Jobs
Customer Service Representative (Full-Time)
What you’ll need to succeed as a Customer Service Representative at XPO Minimum qualifications: ~2 years of customer service experience ~ Strong computer, typing and 10-key skills ~ Experien…
Account Manager - Boston, MA
Job Description Job Description Description: About the Company As a life science company and a leading supplier to global research markets, we offer a comprehensive product portfolio along wi…
General Dentist
General Dentist We are seeking a qualified Dentist for an immediate opening. Our Client strongly believes that their practice sets itself apart from the rest not just because of how they treat pat…
Food Ingredient Buyer
Job Title: Food Ingredient Buyer Summary: The Food Ingredient Buyer is responsible for managing the procurement and inventory of raw materials necessary for the production of finished goods at …
HVAC- Laboratory Technician I (Westfield)
Scope of Position: Works under the direction and supervision of the Laboratory Manager in support of new product development and existing product improvement projects. Essential Duties and Re…
Front Desk Associate (Paid Training Provided)
Are you looking for a FUN and AMAZING place to work? Then look no further, because Aqua-Tots Swim Schools is where you want to be! Aqua-Tots is looking for a front desk staff member. Must be fr…
Account Executive, Enterprise High-Performance Storage
This is a great opportunity to engage with next-level enterprise storage software and work directly with some of the world's largest storage and data vendors , helping shape how the next generatio…
Tax Advisor - National Tax - Indirect Tax - Sales and Use Tax - Manager - Mult Pos - 1680287
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. At EY, you’ll have the chance to build a career as unique as you are…
Travel Registered Nurse Nurse Manager Job
Job Overview TLC Nursing Associates, Inc. is seeking an experienced RN – Nurse Manager for travel assignments in various healthcare settings. This leadership role involves supervising nursin…
Global Achievers Academy - 2026 USA - Activity Leader
About Global Achievers Academy Our academies offer students aged 13-17 from all over the world the opportunity to join us in prestigious locations renowned for their academic excellence, to ta…