Principal Incident Response Engineer

Job not on LinkedIn

September 3

Apply Now
Logo of Sophos

Sophos

Cybersecurity • SaaS

Sophos is a leading cybersecurity company that specializes in protecting businesses against advanced cyber threats. The company offers a comprehensive suite of security solutions, including endpoint protection, managed detection and response (MDR), network security, and cloud security. With a prevention-first approach, Sophos aims to stop ransomware and other cyber threats before they cause harm. Sophos provides services such as threat research, security training, and operational support to ensure robust defense against cyberattacks. Their solutions cater to various industries including finance, healthcare, government, manufacturing, and retail. The Sophos Central platform delivers centralized security management, integrating seamlessly with existing IT infrastructure to enhance security posture.

1001 - 5000 employees

Founded 1985

🔒 Cybersecurity

☁️ SaaS

💰 Post-IPO Equity on 2021-08

📋 Description

• About Us • Sophos is a global leader and innovator of advanced security solutions for defeating cyberattacks. The company acquired Secureworks in February 2025, bringing together two pioneers that have redefined the cybersecurity industry with their innovative, native AI-optimized services, technologies and products. Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations. In addition to MDR and other services, Sophos’ complete portfolio includes industry-leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services. Sophos sells all these solutions through reseller partners, Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) worldwide, defending more than 600,000 organizations worldwide from phishing, ransomware, data theft, other every day and state-sponsored cybercrimes. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU). Sophos is headquartered in Oxford, U.K. More information is available at www.sophos.com. • Role Summary • The IR Incident Commander is a senior level consultant, who leads the response to our customers' major cybersecurity incidents, coordinating with customers, internal teams and partners to effect an expeditious and secure recovery of business operations. • This position requires up to 25% travel with possible extended assignments for large incidents.

🎯 Requirements

• Ability to travel on short notice, up to 25%. • 10+ years of experience in cybersecurity operations, with 3+ years leading incident response teams. • Strong executive communication skills (oral and written), including experience briefing senior leadership and customers during high-pressure situations. • Deep understanding of cyber threat actor tactics, techniques, and procedures (TTPs) with ability to design and deliver customized remediation plans. • Project/program management experience (minimum 3 years) coordinating cross-functional technical teams. • Bachelor’s degree in a technology or cybersecurity discipline, or 5+ years of equivalent documented experience in relevant roles. • Professional certifications strongly preferred (e.g., CISSP, CISA, CISM, GCFE). • Cybersecurity leadership background as a senior security executive or consulting leader in incident response. • Military or law enforcement service with exposure to large-scale cybercrime cases or cyber defense operations. • Direct experience managing and conducting IR investigations involving nation-state, organized crime, or hacktivist actors. • Track record of mentoring and leading technical teams in high-stakes environments. • Demonstrated success in building IR business and customer relationships. • Knowledge of international data privacy regulations and cybersecurity compliance frameworks.

🏖️ Benefits

• Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach. While we are a remote first organization, applicants must have legal authorization to work in the jurisdiction where the position is posted, without requiring employer sponsorship. • Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit • Employee-led diversity and inclusion networks that build community and provide education and advocacy • Annual charity and fundraising initiatives and volunteer days for employees to support local communities • Global employee sustainability initiatives to reduce our environmental footprint • Global fitness and trivia competitions to keep our bodies and minds sharp • Global wellbeing days for employees to relax and recharge • Monthly wellbeing webinars and training to support employee health and wellbeing

Apply Now

Similar Jobs

September 2

TEECOM

51 - 200

📡 Telecommunications

Principal Consultant leading large security engineering projects for TEECOM, a building technology consulting firm. Mentoring staff, managing clients, and delivering multi-discipline designs.

🇺🇸 United States – Remote

💵 $145k - $180k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

C++

PMP

September 2

LastPass

501 - 1000

🔒 Cybersecurity

☁️ SaaS

🤝 B2B

Principal Product Manager shaping LastPass identity and security products and secure access experiences. Driving strategy, cross-functional execution, and customer-focused roadmap.

🇺🇸 United States – Remote

💵 $165k - $200k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

August 29

LANXESS

10,000+ employees

🔬 Science

Sales Manager for Integrator Accounts in biosecurity; remote role driving strategic livestock integrator sales.\nLeads negotiations, builds pipeline, collaborates cross-functionally, and strengthens key accounts.

August 29

Highmark Health

10,000+ employees

⚕️ Healthcare Insurance

🤝 Non-profit

🌍 Social Impact

Oversees ISRM functions, aligns security with corporate goals, develops staff, and implements security solutions for Highmark Health's technologies and data.

🇺🇸 United States – Remote

💵 $108k - $201.8k / year

💰 $5M Grant on 2021-05

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

August 27

Extreme Networks

1001 - 5000

📡 Telecommunications

🏢 Enterprise

🔐 Security

Lead product lifecycle and compliance certifications for cloud/SaaS networking products at Extreme Networks. Manage FedRAMP, SOC 2, ISO, and other global certifications.

Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com