Principal, Incident Response Lead
- Location
- Jersey City, NJ
- Work type
- Full Time · Hybrid
- Posted
- 2026-10-01
Job description
Job Description
Verisk is seeking a Principal, Incident Response Lead to join the Enterprise Incident Response team. The successful candidate will work as a team lead on the incident response team to identify and respond to information security incidents and proactively hunt for potential threats and intrusions to Verisk systems.
Responsibilities
Respond to security incidents while following the incident response cycle.
Investigate user reported and system generated alerts to identify potential security incidents.
Be able to serve as incident lead as needed on medium to high severity incidents.
Mentor junior members of the team throughout the incident response process.
Coordinate and lead incident response adjacent projects such as tabletop exercises with business leaders.
Follow through with the tracking, execution, and reporting of the lessons learned and post incident activities portion of the incident response cycle.
Assist in the tuning and improvement of incident response tools and processes.
Collaborate with and support other members of the larger Threat Management, Legal, and Privacy teams as needed.
Qualifications
Bachelor's degree in Information Systems, Cyber Security, or related sciences preferred.
5+ years of information security experience (with 2+ of those in incident response) or the equivalent combination of education, technical training, or work/military experience. Information Security certifications a plus.
Must have an understanding of operating systems, networking, information systems and technology, cloud and virtualization concepts as well as strong knowledge of common security tools including SIEM, EDR, IPS, email security, eDiscovery, and forensic tools.
Must have a thorough understanding of incident response processes and procedures.
Must be familiar with various threat actor methodologies, tactics, techniques, and procedures.
Must be able to multi-task and work independently, or as a team lead, on moderate to complex assignments using independent professional discretion and judgment as well as transition quickly between projects.
Demonstrated ability to communicate complex subjects regarding strategic and tactical processes of incident response to stakeholders of varying technical levels.