INCIDENT RESPONSE ENGINEER

Montefiore Medical Center
Yonkers, NY

:

The Incident Response Engineer, with a specialization in Incident Response Tools Management, is a key leader within the cybersecurity team responsible for the deployment, configuration, and optimization of tools used to detect, investigate, and respond to security incidents. This role involves ensuring that the incident response tools are properly integrated, maintained, and leveraged to enhance the organization's ability to respond to threats effectively. The Incident Response Engineer collaborates with various teams to optimize the use of these tools, provide guidance on tool capabilities, and ensure the organization's incident response capabilities are cutting-edge.

In office 4-6 times a year, or as needed.

Key Responsibilities:

  • Oversee the selection, implementation, and management of incident response tools such as Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR) solutions, Intrusion Detection Systems (IDS), and forensic tools.
  • Ensure tools are configured to capture the necessary data for effective incident detection and response.
  • Regularly review and update tool configurations to align with emerging threats and organizational needs.
  • Lead the integration of incident response tools with other security systems and platforms within the organization.
  • Optimize the performance of these tools to enhance the detection and response to security incidents.
  • Develop and implement best practices for the use of incident response tools across the cybersecurity team.
  • Utilize incident response tools to detect, investigate, and respond to security incidents.
  • Conduct in-depth analysis using SIEM, EDR, and other tools to identify the root cause of incidents and determine the appropriate remediation actions.
  • Lead efforts to automate incident response processes using scripting and tool capabilities.
  • Ensure that all incident response tools are up-to-date with the latest patches, updates, and configurations.
  • Manage tool licenses, renewals, and vendor relationships.
  • Plan and execute upgrades or migrations to new tools as needed.
  • Work closely with security operations, vulnerability management, and IT teams to ensure the effective use of incident response tools.
  • Provide training and guidance to junior team members and other stakeholders on the use of these tools.
  • Stay informed on the latest developments in incident response technology and share insights with the broader cybersecurity team.
  • Continuously improve incident response processes by leveraging tool capabilities and identifying opportunities for automation.
  • Participate in post-incident reviews to evaluate the effectiveness of tools and make recommendations for improvements.
  • Develop and maintain documentation related to the configuration and use of incident response tools.
  • Ensure that the use of incident response tools complies with legal, regulatory, and organizational policies.
  • Generate reports on tool performance, incident response metrics, and tool effectiveness.
  • Assist in audits and assessments related to incident response tool management.
  • Required Skills and Knowledge:
  • Extensive experience with incident response tools such as SIEM (e.g., Splunk, QRadar, Microsoft Sentinel), EDR (e.g., CrowdStrike, Carbon Black), IDS/IPS (e.g., Snort, Suricata), and forensic tools (e.g., EnCase, FTK).
  • Strong understanding of cybersecurity concepts, including network security, endpoint security, and threat detection.
  • Proficiency in scripting languages (e.g., Python, PowerShell) for tool automation and integration.
  • Demonstrated experience in deploying, configuring, and managing incident response tools in a large, complex environment.
  • Ability to optimize tools for performance, including tuning alerts, refining rules, and integrating with other security systems.
  • Knowledge of best practices for incident response tool management and the ability to implement these practices across the organization.
  • Strong analytical skills to interpret data from various tools and identify patterns indicative of security incidents.
  • Ability to troubleshoot issues with tools and resolve them in a timely manner.
  • Experience in conducting root cause analysis and forensic investigations using incident response tools.
  • Excellent written and verbal communication skills, with the ability to explain complex technical concepts to non-technical stakeholders.
  • Strong collaboration skills to work effectively with cross-functional teams, including IT, legal, and compliance.
  • Ability to develop and deliver training on the use of incident response tools to team members and other stakeholders.
  • Proven ability to lead initiatives related to tool management and optimization within the incident response team.
  • Experience mentoring and guiding junior engineers in the use of incident response tools and best practices.

Required Experience:

Experience: 5-7 years of experience in cybersecurity, with a focus on incident response and incident response tool management.

Experience in Tool Management: Hands-on experience in managing, configuring, and optimizing incident response tools in a large-scale environment.

Experience in Incident Response: Extensive experience in responding to and managing complex security incidents using a variety of tools.

Education:

Bachelor's degree or equivalent experience in Computer Science, Information Security, Cybersecurity, or a related field.

Preferred: Master's Degree in Cybersecurity or related discipline.

Certifications (Preferred but not required):

Certified Incident Handler (GCIH)

Certified Computer Security Incident Handler (CSIH)

Certified Forensic Computer Analyst (CFCA)

GIAC Reverse Engineering Malware (GREM)

EC-Council Certified Incident Handler (ECIH)

EC-Council Certified Network Defender (CND)

SANS FOR508: Advanced Incident Response, Threat Hunting, and Digital Forensics

Certified Ethical Hacker (CEH)

Certified Information Systems Security Professional (CISSP)

GIAC Certified Forensic Analyst (GCFA)

Certified Information Systems Auditor (CISA)

Department: Montefiore Information Technology Bargaining Unit: Non Union Campus: YONKERS Employment Status: Regular Full-Time Address: 3 Odell Plaza, Yonkers Shift: Day Scheduled Hours: 8:30 AM-5 PM Req ID: 222410 Salary Range/Pay Rate: $127,500.00 - $170,000.00

For positions that have only a rate listed, the displayed rate is the hiring rate but could be subject to change based on shift differential, experience, education or other relevant factors.

To learn more about the “Montefiore Difference” - who we are at Montefiore and all that we have to offer our associates, please click here .

Montefiore is an equal employment opportunity employer. Montefiore will recruit, hire, train, transfer, promote, layoff and discharge associates in all job classifications without regard to their race, color, religion, creed, national origin, alienage or citizenship status, age, gender, actual or presumed disability, history of disability, sexual orientation, gender identity, gender expression, genetic predisposition or carrier status, pregnancy, military status, marital status, or partnership status, or any other characteristic protected by law.

SF-DICE-MIT; LI-SC1-REDIRECT

Posted 2026-06-24

Recommended Jobs

Neuromuscular Neurologist

Albany Medical Center
Albany, NY

Neuromuscular Neurologist – Albany Medical College The Department of Neurology at Albany Medical College is seeking Board Certified/Board Eligible Neurologists to join and expand our growing Neur…

View Details
Posted 2026-06-17

Senior Counsel, Litigation and IP

Sportradar
New York, NY

Senior Counsel, Litigation & IP Sportradar Group (NASDAQ: SRAD) Position: Senior Counsel, Litigation and IP Location: Manhattan, New York City (Onsite) Reports to: Senior Vice President,…

View Details
Posted 2026-06-15

Customer Support Reps

System One
Albany, NY

Job Title: Customer Support Reps Location: Albany, NY Type: Contract To Hire Compensation: $18.00 Contractor Work Model: Hybrid – onsite and remote Hours: 40.0 If interested reac…

View Details
Posted 2026-06-09

Retail Store Assistant Manager

The UPS Store #0647
New York, NY

The UPS Store is a network of individually owned and operated franchised service centers specializing in small business solutions. The Assistant Store Manager helps the Store Manager run the day-to…

View Details
Posted 2025-08-23

Construction Manager

New York, NY

job summary: We are looking for a Construction Manager (Remote/Travel). Join Our Client, a global tech leader shaping the future of AI! You bring a related Bachelor's, 5-7 years' experience, and st…

View Details
Posted 2026-06-24

Baker

LABO 4F
Brooklyn, NY

Now Hiring: Baker at L’Appartement 4F Location: Brooklyn, NY Type: Full-Time Hours: 7:30am-4pm Tuesday-Saturday Start Date: [ ASAP] L'Appartement 4f is a French bakery. We specialize in…

View Details
Posted 2026-06-20

Artisan Bread & Pastry Baker [Full Time]

Bread Alone Bakery
Boiceville, NY

Job Description Job Description Description: We’re looking for passionate, detail-oriented folks to join our baking team at the Boiceville Cafe-- 3962 NY-28 Boiceville, NY 12412 As part of …

View Details
Posted 2026-06-23

Dietary Aide

Confidence Management Systems
Cortland, NY

Job Description Job Description Description Dietary Aide Full-time and Part-time Positions Available! APPLY NOW!  Dietary Aide:        Day and Evening Shifts, Alternating Weekends, Holidays. …

View Details
Posted 2026-04-11

Project HSE Manager

Dynamics ATS
Root, NY

Project HSE Manager   JOB-10045941   Anticipated Start Date July 6, 2026   Location Linden, NJ   Type of Employment Contract Hire   Employer Info Our client is an engine…

View Details
Posted 2026-06-24