Hiring.Camp

Incident response Lead

Ringcentral

·

Aug 12, 2026

Location
Spain Valencia
Type
Full-time
Seniority
Lead
Source
Workday

Description

RingCentral is a global leader in agentic voice AI–powered business communications, delivering an integrated platform for business phone, SMS, contact center, workforce engagement management, video collaboration, and messaging. As the communications layer connecting businesses and customers, RingCentral is the front door of business communication and is in the advantageous position to apply AI at every phase of the conversation journey — before, during, and after each interaction. Our agentic AI portfolio includes autonomous voice-first AI agents that automate calls, assist in the moment, and analyze every interaction – enabling businesses to work smarter, respond faster, and connect more meaningfully with their customers.

Role mission

Protect the organisation, its customers, and its services by ensuring that potential and confirmed cybersecurity incidents are identified, assessed, contained, investigated, communicated, and resolved in a timely, disciplined, and evidence-based manner.

Responsibilities

  • Incident Leadership & Control: Ensure major security incidents are led with absolute clarity, authority, and control, establishing a structured response environment from declaration to resolution.

  • Declaration, Scoping & Technical Analysis: Ensure security incidents are identified and declared consistently, while accurately assessing incident scope, attacker behavior, and technical impact.

  • Threat Containment, Eradication & Recovery: Contain active security threats before additional harm occurs, eradicate root causes, and safely restore impacted production services.

  • Stakeholder Facilitation & Multi-Audience Communication: Deliver transparent, decision-useful reporting to executives, governance teams and cross-functional partners throughout the incident lifecycle.

  • Root Cause Analysis (RCA) & Problem Management: Facilitate meaningful Root Cause Analyses that look beyond surface-level symptoms to produce tangible, long-term security improvements.

  • Corrective Action & Continuous Capability Improvement: Ensure corrective actions are fully completed and verified—not merely recorded—to continuously elevate the overall incident response capability.

Required experience

  • Significant professional experience in cybersecurity, incident response, security operations, digital forensics, threat detection, or a closely related discipline.

  • Demonstrated experience leading complex cybersecurity incidents involving multiple technical and business teams.

  • Experience coordinating containment, eradication, recovery, and impact assessment activities.

  • Experience communicating security incidents to senior leadership.

  • Experience leading or facilitating root cause analyses.

  • Experience tracking corrective actions through completion.

  • Practical experience working with modern production environments, such as cloud platforms, containers, enterprise identity systems, networks, or customer-facing applications.

  • Ability to participate in an on-call or major-incident escalation arrangement.

  • Experience responding to incidents involving customer data or personal data.

  • Experience developing incident response playbooks, severity models, reporting standards, and tabletop exercises.

  • Strong written and spoken English.

Would be a plus

  • Familiarity with NIST incident response guidance, ISO/IEC 27035, SANS incident handling practices, MITRE ATT&CK, or comparable frameworks.

  • Relevant certifications may include GCIH, GCFA, GCFE, CISSP, CISM, or equivalent practical experience.

What we offer

  • Well-coordinated professional team;
  • Breakfast in the office 4 days a week;
  • Cutting edge technologies, interesting and challenging tasks, dynamic project, great opportunities for self-realization, professional and career growth;
  • Flexible working hours and opportunity for a hybrid work;
  • Job placement and payment of salary take place according to the labor code, as well as vacation; sick lists are paid at 100% of full pay;
  • Medical Insurance, including Dental and Vision;
  • Life Insurance;
  • Vacation 23 days.

Skills

CybersecurityCISSP

Similar Jobs

30

Incident Response Lead

Toyota·Plano, US

1d ago

Incident Response Lead

Harbor It·Remote·Remote

5d ago

Incident Response Lead

Parsons Corporation·USA MD Linthicum, US·Onsite

2w ago

Incident Response Lead

Leidos·9356 Washington DC Non-specific Customer Site, US +1

1mo ago

Incident Response Lead

B&H Photo·440 9th Ave, New York

1mo ago

Incident Response Lead

Whoop·Boston, MA·Onsite

2mo ago

Incident Response Lead

Adobe·Bucharest, Romania

4mo ago

Incident Response Lead

Whoop·Boston, MA·Onsite

6mo ago

Principal, Incident Response Lead | Principal, Incident Response Lead

Verisk Careers | Verisk·Jersey City, NJ·Hybrid

Today

Production Support & Incident Response Lead

" Nimbyx Philippines, Inc."·Makati City, NCR

6d ago

Cyber Defense Incident Response Lead

Keybank·4910 Tiedeman Road, OH +1·Remote

4w ago

Production Support & Incident Response Lead

Evismart·Taguig, BGC +1·Onsite

4w ago

Incident Response Lead/Advisor

Anavationllc·Reston, VA·Onsite

1mo ago

Incident Response Lead Specialist, Vice President

Mufgub·Watermark - 410 North Scottsdale Road, US

2mo ago

Cybersecurity Incident Response Lead

Caa·London, UK

4mo ago

IT Security Specialist (Pre-Incident Consulting & Incident Response Lead)

Mirazon·Louisville, Kentucky

7mo ago

Senior Information Security Incident Response Lead

Nttlimited·Jakarta, Indonesia·Onsite

1y+ ago

Incident Response & DFIR Lead

JustMarkets·Europe

1d ago

Lead, Cyber Incident Response

Spe·Culver City, CA·Hybrid

6d ago

Cybersecurity Program Manager (PgM) & Incident Response (IR) Lead

ShorePoint·Albuquerque, New Mexico

1mo ago

Incident Response Team Lead

Agile Defense·Reston, VA·Hybrid

7mo ago

Senior/Lead Cyber Security - Incident Response Engineer

Fico·Work from Home, US·Remote

1mo ago

SOC Technical Lead – Threat Hunting & Incident Response

Thales·Madrid Emilio Vargas, Spain·Hybrid

2mo ago

Lead Consultant - FortiGuard Incident Response - Kuwait

Fortinet·Kuwait City, KW·Hybrid

4mo ago

Lead, Digital Forensics & Incident Response Investigator

Globe·NCR - WGC, Philippines

5mo ago

Cyber Incident Response Leader

Harman·PL_Lodz_Ogrodowa, Poland

2w ago

Global Incident Response Business Development Leader

Booz Allen Hamilton·Washington, DC +16

1mo ago

Incident Response & Threat Intelligence Lead​

Sophos·Japan·Remote

6mo ago

Red Team Leader (H/F) - Cybersecurity : Audit & Incident Response – CDI

Wavestone·Puteaux, IDF

3mo ago

Incident Response and Security Operations Technical Leader (L4)

Armor·Pune, Maharashtra

3mo ago
Incident response Lead at Ringcentral | Hiring.Camp