Cyber Defense Incident Manager
Location: Remote
Compensation: To Be Discussed
Reviewed: Fri, Sep 04, 2026
This job expires in: 30 days
Job Summary
Leading incident management and response efforts, the full-time Cyber Defense Incident Manager will drive the operational maturity of the Security Operations Center, overseeing the entire incident lifecycle from detection to recovery while based in Stockholm with some remote flexibility.
Key responsibilities
- Lead end-to-end cyber incident response activities, ensuring effective management and communication during high-severity incidents
- Drive the maturity of SOC operations by defining metrics, improving response workflows, and ensuring quality assurance with managed SOC providers
- Own detection engineering capabilities, translating threat intelligence into actionable detection use cases and automating response processes
Required qualifications
- Minimum 8 years of experience in security operations, cyber defense, or incident response roles
- Strong hands-on experience leading high-severity cyber incidents in complex enterprise environments
- Deep understanding of SOC operations and incident response frameworks such as NIST and MITRE ATT&CK
- Experience with security technologies including SIEM, SOAR, EDR, and cloud security monitoring
- Relevant bachelor's or master's degree in Cybersecurity, Computer Science, or a related field
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 44,563 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee