Hiring.Camp

Incident Response Manager & Lead Threat Hunter

Bullhorn

·

Jun 4, 2026

Salary
$130k – $170k
Location
Remote NOAM - Massachusetts, United States of America
Workplace
Remote
Type
Full-time
Department
Human Resources
Seniority
Lead
Experience
5+ years
Source
Workday

Description

Bullhorn's core purpose is to create an incredible customer experience, and the organization has a sharp focus on delivering very high quality products and services to its customers. The company culture is shaped by five Core Values: Ownership, Energy, Speed & Agility, Service, and Being Human. Each value, and its underlying definition, serves as a behavioral guide for employees as they interact with customers and fellow coworkers and is an embedded way of operating across our organization.

Bullhorn is a fast-paced and dynamic environment where hard work and outstanding results are rewarded and celebrated. We value those that exhibit an eagerness to learn and a strong natural desire for continuous improvement and we encourage team members to stretch themselves, acknowledge challenges and learn from them. With a strong focus on growth, we provide ample opportunities for career development and prioritize promoting from within. We believe that leaders should care deeply about the development of their employees at all levels, emphasizing emotional intelligence and accountability. Our leaders collaborate closely to ensure the success of their teams, and we work together to achieve shared goals, creating a challenging and rewarding workplace for everyone.

About the Role

This role leads proactive, intelligence-driven hunting to uncover advanced threats while managing critical Incident Response (IR) activities. The Lead will develop hypotheses based on MITRE ATT&CK, analyze logs/EDR data to minimize dwell time, and mentor staff to strengthen the overall security posture and detection capabilities. The Lead will examine new AI tools and determine which if any, bring value to the process and help implement any approved solutions.

A typical day will include...

  • Proactive Threat Hunting: Develop and execute hypothesis-driven hunts using EDR, SIEM, and network traffic analysis to find threats bypassing existing defenses.

  • Incident Response Leadership: Lead complex investigations and CSIRT activities, providing technical expertise during containment, eradication, and post-incident analysis.

  • Threat Intelligence Integration: Analyze adversary Tactics, Techniques, and Procedures (TTPs) and integrate intelligence feeds to drive targeted hunting scenarios.

  • Detection Engineering: Collaborate with security engineering to convert hunting discoveries into permanent actionable alerts, reducing future risk.

  • Mentorship & Strategy: Mentor junior analysts, define the technical standards for hunting workflows, and report findings to stakeholders.

This job might be a fit if you have...

  • Experience: 5-8 years of experience in security operations, threat hunting, or incident response.

  • Technical Skills: Proficiency in EDR tools ( CrowdStrike, NeuVector, SIEM platforms (XSIAM), and network forensics.

  • Frameworks: Deep understanding of the MITRE ATT&CK Framework and cyber kill chain.

  • Languages: Strong query skills (SQL, KQL) and scripting ability (Python, PowerShell) for automation.

  • Cloud Security: Knowledge of AWS, Azure, and/or GCP security logging and controls (e.g., GuardDuty, CloudTrail). Bullhorn also is a heavy Wiz user in cloud environments.

The annual base salary range for this position is $130,000 - $170,000. In addition, this role is eligible for an annual target bonus & a comprehensive benefits package.

Compensation and Transparency Statement

The posted range represents the good-faith estimate of what we expect to pay for this role at the time of this posting. We may ultimately pay more or less than the posted range, and the range may be modified in the future. Actual pay within the range will be based on factors such as, but not limited to, experience, skills, qualifications, geographic location, internal equity, and business or organizational needs and affordability. In accordance with state and local pay transparency laws we disclose salary ranges in all job postings and provide additional information upon request.

What we offer...

  • Benefits eligibility effective DAY ONE including Medical, Dental, Vision, 401(k), 401(k) Match, and more

  • Unlimited Planned Paid Time Off

  • Global Mental Health Support

  • On-Demand Learning & Development

  • Quarterly paid volunteer days

  • Lucrative Employee Referral Program (eligible for prior to your first day)

  • Company-wide mentor program

Bullhorn's core purpose is to create an incredible customer experience, and the organization has a sharp focus on delivering very high quality products and services to its customers. The company culture is shaped by five Core Values: Ownership, Energy, Speed & Agility, Service, and Being Human. Each value, and its underlying definition, serves as a behavioral guide for employees as they interact with customers and fellow coworkers and is an embedded way of operating across our organization.

We are a people-first culture where everyone’s contribution is valued and respected. We're looking for smart, forward-thinking individuals who aren't afraid to challenge the status quo and bring fresh perspectives to the table.  If you're someone who thrives in a casual, yet fast-paced and agile environment, we'd love to have you join us.

Skills

PythonAWSAzureGCPSQLSIEM

Similar Jobs

30

Manager, Incident Response

Ancestry · Remote, United States of America · Remote

Yesterday

Manager, Incident Response

Pondurance · McLean, VA · Remote

2 weeks ago

Manager, Incident Response

Fluidstack · San Francisco, CA +1 · Onsite

1 month ago

Incident Response Manager

Crowe Careers · Sarasota, United States of America +4

1 month ago

Incident Response Manager

Depository Trust Company · Manila, Philippines · Remote, Hybrid, Onsite

7 months ago

Incident Response Manager

Speedcast is · Australia - Tasmania

1+ year ago

IT/OT Security Engineer & Incident Response Manager

1440 Foods Manufacturing · New York, NY, US · Remote

5 days ago

Senior Manager, Incident Response (R-19624)

Dun & Bradstreet · Warsaw - Poland · Hybrid

1 week ago

Product Security Incident Response Manager (m/f/d)

Job Listings · Glasgow, United Kingdom +1

3 weeks ago

Sr. Service Delivery Manager (Incident Response)

Trendmicro · Tokyo, Japan

3 weeks ago

Technical Program Manager, Incident Response

Harvey · San Francisco · Hybrid

1 month ago

Technical Program Manager, Incident Response

Harvey · New York · Hybrid

1 month ago

Disaster Recovery and Major Incident Response Manager

HSS - Hospital for Special Surgery · HSS 777, United States of America · Hybrid

1 month ago

Senior Cyber Defense Manager - Incident Response

Boyd Gaming · Las Vegas, United States

3 months ago

Incident Response Manager - Product & Engineering

Anthropic · New York City, NY; San Francisco, CA | New York City, NY; Seattle, WA +1 · Onsite

3 months ago

Product Security Incident Response Manager (m/f/d)

Job Listings · Gratkorn, Austria +3

3 months ago

Project Manager (Incident Response)

MOXFIVE · Remote · Remote

5 months ago

Senior Manager, Incident Response

Sophos · Japan · Remote

6 months ago

Cyber Incident Response Manager

Bbh · Boston, United States of America +1

9 months ago

Security Operations Center and Incident Response Manager

Pwc · Makati - 29th Floor Philamlife Tower, Philippines

1+ year ago

Security Operations Center and Incident Response Manager

Pwc · Makati - 29th Floor Philamlife Tower, Philippines

1+ year ago

Incident Response Assistant Manager (1LOD Risk Management)

LSEG · Charlotte, United States, United States of America

2 days ago

Maintenance Manager (Roadway, Incident Response, & Fleet)

Ferrovial · USA - CINTRA - Concession - I-66 - CI66-Manassas VA (VA0103), United States of America

1 week ago

Cybersecurity Program Manager (PgM) & Incident Response (IR) Lead

ShorePoint · Albuquerque, New Mexico

1 week ago

Manager, Security Incident Response

hubinternational · Chicago - IL - 200 N. La Salle St - Suite 1700, United States of America · Hybrid

1 week ago

Digital Forensics and Incident Response, Senior Manager

Booz Allen Hamilton · USA, DC, Washington (1201 I St NW), United States of America

2 weeks ago

Cyber Security Incident Response - Assistant Manager

LON3 London - 51 Lime Street · Madrid, Comunidad de Madrid, Spain, ES

1 month ago

Senior Manager, Cyber Incident Response Team

Adobe · Lehi, United States of America +2

2 months ago

US Cyber Monitoring & Incident Response Team Manager

Depository Trust Company · Tampa, FL, United States, US

3 months ago

Incident Response (IR) Manager

Edgewaterit · Bethesda, MD, US · Remote

1+ year ago