Skip to main content

Lead, Cyber Incident Response

Culver City , California; (Hybrid)

ID de la oferta JR114632 Postularse Ver Trabajos Guardados

Sony Pictures Entertainment (SPE) is seeking an experienced Lead Cyber Incident Response professional to help protect the company's people, intellectual property, productions, technology platforms, and business operations from cyber threats.


This role leads complex cybersecurity investigations, coordinates response activities during significant security incidents, and advances SPE's incident response capabilities. The successful candidate will serve as a senior technical resource within the Incident Response team, leading investigations across corporate, cloud, identity, SaaS, and production environments while partnering with Security Operations, Threat Intelligence, Engineering, Legal, Privacy, People & Organization (P&O), Corporate Communications, and business stakeholders.


Key Responsibilities

  • Incident Response and Investigations

    • Lead complex cybersecurity investigations from initial detection through containment, eradication, recovery, and post-incident review.
    • Serve as incident commander for assigned incidents, coordinating technical responders and business stakeholders throughout the response lifecycle.
    • Investigate ransomware, identity compromise, phishing, insider threats, data exposure, cloud security incidents, and other advanced cyber threats.
    • Conduct digital forensic investigations to determine root cause, scope, business impact, and remediation requirements.
  • Business and Asset Protection

    • Investigate threats affecting SPE intellectual property, content, productions, employees, technology platforms, third-party partners, and business operations.
    • Assess cyber events from both technical and business-risk perspectives, balancing risk reduction with operational continuity.
    • Partner with Legal, Privacy, People & Organization (P&O), Corporate Communications, and business leadership on sensitive investigations and response activities.
  • Security Operations and Continuous Improvement

    • Collaborate with Security Operations, Threat Intelligence, Detection Engineering, and Security Engineering to enhance detection and response capabilities.
    • Develop and improve incident response playbooks, runbooks, escalation procedures, investigative methodologies, and operational standards.
    • Drive automation and workflow optimization through SOAR, scripting, AI-enabled capabilities, and emerging technologies.
    • Lead post-incident reviews and translate lessons learned into measurable security and operational improvements.
  • Technical Leadership

    • Serve as a senior escalation point for complex investigations and high-severity incidents.
    • Mentor Incident Response analysts through case reviews, training, coaching, and knowledge sharing.
    • Provide clear technical updates, executive-ready summaries, after-action reports, and risk-informed recommendations.
    • Contribute to strategic initiatives that strengthen SPE cyber resilience and operational maturity.

Qualifications

Required

  • 8+ years of cybersecurity experience, with significant focus on incident response, digital forensics, threat hunting, or security operations.
  • Proven experience leading enterprise-scale cybersecurity investigations and incident response efforts.
  • Strong knowledge of modern attack techniques, threat actor behavior, digital forensics, and investigative methodologies.
  • Experience with cloud security, identity security, endpoint detection and response (EDR/XDR), SIEM, and SOAR platforms.
  • Excellent analytical, communication, and stakeholder-management skills, including the ability to explain complex technical issues to executive and non-technical audiences.

Preferred

  • Experience supporting global media, entertainment, technology, or other highly distributed enterprise environments.
  • Experience investigating incidents involving intellectual property, insider threats, data exposure, or third-party compromise.
  • Experience with Microsoft 365, Azure, AWS, modern SaaS environments, and identity platforms.
  • Knowledge of Python, PowerShell, or other scripting and automation technologies.
  • Relevant industry certifications such as CISSP, GCIH, GCFA, GCIA, GNFA, or equivalent.
The anticipated base salary for this position is $142,400 - $178,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.

Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.

SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.

To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.

Postularse

EMPLEOS PREMIERE

You have not recently viewed any jobs.

You have not saved any jobs.

Alertas de trabajo

Completa y envía el siguiente formulario para mantenerse actualizado sobre las últimas oportunidades de trabajo en Sony Pictures.

Me interesa:Selecciona una categoría a partir de la lista propuesta. Registre las primeras letras de un lugar y luego elija a partir de las sugerencias. Por último, haga clic en "Añadir" para crear su alerta.

  • Technology/InfoSec, Culver City, California, Estados UnidosBorrar

Ten en cuenta que todos los campos son obligatorios. Configura la categoría y ubicación antes de enviarlas.

Spider-Man: Homecoming