Incident Response Engineer Jobs
Incident Response Engineer jobs are open across financial services, healthcare, technology, government contracting, and managed security services, from entry-level analyst roles to senior and principal positions, with specializations in digital forensics, threat hunting, and malware analysis. Find a role that fits from the openings below and apply directly.
Find JobsOverview
Showing 5 of 37+ Incident Response Engineer jobs











INTRODUCTION
Our Adobe Cyber Defense Center is seeking a highly skilled and experienced Staff Cyber Incident Responder. This senior role is pivotal in our incident response efforts, providing skilled forensic analysis and proactively defending our enterprise against evolving cyber threats. You will work with a multinational team, bringing to bear your extensive experience to improve our incident response capabilities and drive continuous improvement. If you excel in a challenging environment and are ready to contribute to our Incident Response program, we want to hear from you!
ROLE AND RESPONSIBILITIES
- Incident Response: Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations.
- Tool Development: Create and enhance scripts, tools, and methodologies to automate and improve our incident investigation processes.
- Leadership and Mentorship: Provide leadership and mentorship to the incident response team, acting as a resource and guide for other team members.
- Partner and Report: Partner with multiple internal and external organizations. Draft detailed reports, assign remediation actions, and implement improvements.
- Training and Presentations: Develop and present comprehensive reports, training sessions, and presentations for both technical and non-technical audiences.
- Tabletop Exercises: Participate in and help conduct tabletop exercises and incident simulations to ensure readiness.
- Threat Hunting: Collaborate with the Adobe Threat Hunting Team to conduct proactive and iterative hunts through cloud and enterprise networks, endpoints, and datasets to detect malicious or suspicious activities that have evaded existing detection tools.
BASIC QUALIFICATIONS
- Experience: 7+ years of proven experience in end-to-end incident response processes, including leading complex, multi-functional incidents.
- Investigative Skills: Strong investigative background with expertise in Windows analysis and forensics.
- Container Environments: Experience working in container environments such as Kubernetes and Docker.
- EDR Solutions: Hands-on experience with various Endpoint Detection and Response (EDR) solutions.
- System Internals: Deep understanding of the internals and constructs of Linux, MacOS, and Windows operating systems.
- Cloud Security: Extensive experience in administering, attacking, or defending cloud environments (AWS, Azure, GCP).
- Log Analysis: Deep understanding of logs from cloud, network, and endpoint devices.
- SIEM Expertise: Excellent skills in writing complex searches or analytics for popular Security Information and Event Management (SIEM) solutions.
- Programming Skills: Proficiency in bash and at least one interpreted programming language (Python, Ruby, etc.).
- Team Collaboration: Strong ability to promote a collaborative working environment that enhances teamwork, predictability, clarity, and a culture of innovation.
- Multitasking: Ability to handle multiple tasks in a fast-paced environment effectively.
- On-Call Rotation: Willingness to participate in an on-call rotation as required.
PREFERRED QUALIFICATIONS
- Innovation: Be part of a team that fosters a culture of experimentation, innovation, and continuous learning.
- Impact: Play a key role in safeguarding our enterprise from advanced cyber threats and improving our overall security posture.
- Growth: Opportunities for professional growth and development through challenging projects and ongoing training.
- Collaboration: Work in a collaborative environment that values relationships and teamwork.
ABOUT ADOBE
Adobe empowers everyone to create through innovative platforms and tools that unleash creativity, productivity and personalized customer experiences. Adobe’s industry-leading offerings including Adobe Acrobat Studio, Adobe Express, Adobe Firefly, Creative Cloud, Adobe Experience Platform, Adobe Experience Manager, and GenStudio enable people and businesses to turn ideas into impact, powered by AI and driven by human ingenuity. Our 30,000+ employees worldwide are creating the future and raising the bar as we drive the next decade of growth. We’re on a mission to hire the very best and believe in creating a company culture where all employees are empowered to make an impact. At Adobe, we believe that great ideas can come from anywhere in the organization. The next big idea could be yours.
LET’S ADOBE TOGETHER
At Adobe, we believe in creating a company culture where all employees are empowered to make an impact. Learn more about Adobe life, including our values and culture, focus on people, purpose and community, Adobe for All, comprehensive benefits programs, the stories we tell, the customers we serve, and how you can help us advance our mission of empowering everyone to create.
Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other protected characteristic. Learn more. Adobe aims to make our Careers website and recruiting process accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call +1 408-536-3015.
AI USE GUIDELINES FOR INTERVIEWS:
Our interviews are designed to reflect your own skills and thinking. The use of AI or recording tools during live interviews is not permitted unless explicitly invited by the interviewer or approved in advance as part of a reasonable accommodation. If these tools are used inappropriately or in a way that misrepresents your work, your application may not move forward in the process. At Adobe, we empower employees to innovate with AI — and we look for candidates eager to do the same. As part of the hiring experience, we provide clear guidance on where AI is encouraged during the process and where it’s restricted during live interviews. See how we think about AI in the hiring experience.
EXPECTED PAY RANGE
Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 - $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100. In Washington, the pay range for this position is $194,000 - $281,000. At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP). In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.
STATE-SPECIFIC NOTICES
California: Fair Chance Ordinances
Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and “fair chance” ordinances.
Colorado: Application Window Notice
If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.
Massachusetts: Massachusetts Legal Notice
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
See All 37+ Incident Response Engineer Jobs
Jump back to the full list of openings and apply to any incident response engineer role that fits.
Find JobsIncident Response Engineer Job Market
A snapshot from current openings nationwide, updated as new roles post.
Who's Hiring
- Charles River Associates9

- NTT DATA5

- Adobe3

- Ah Capital Management1

- Airbnb1

Top Industries Hiring
- Technology & Software14
- Consulting & Professional Services9
- Retail4
- Hospitality & Tourism2
- Investment & Asset Management2
What Employers Look For
The qualifications that appear most often in incident response engineer jobs.
- Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or IBM QRadar
- Proficiency in digital forensics and malware analysis using tools like Volatility, FTK, or EnCase
- Knowledge of network traffic analysis and packet inspection with Wireshark or similar tools
- Relevant certification such as GCIH, GCFE, Security+, or CySA+
- Familiarity with endpoint detection and response platforms including CrowdStrike, SentinelOne, or Carbon Black
- Bachelor's degree in cybersecurity, computer science, information systems, or equivalent practical experience
Tips for Your Incident Response Engineer Job Search
Tailor your resume to the incident lifecycle
Hiring managers scan for evidence you've worked through the full cycle: detection, containment, eradication, and recovery. List specific incidents you've handled, the tools you used at each stage, and the measurable outcome, even if the numbers are approximate.
Certify strategically before you apply
GCIH and GCFE carry the most weight with security teams hiring for incident response specifically. If you already hold Security+ or CySA+, lead with those while you pursue the GIAC certs, since many postings list both tiers.
Apply early to roles that fit
Migrate Mate lists incident response engineer openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Filter openings by your clearance level
A large share of incident response roles, especially in government contracting and defense, require an active Secret or TS/SCI clearance. Filter by clearance requirement before applying so you don't spend time on roles your current status can't support.
Prepare a hands-on technical portfolio
Interviewers routinely ask candidates to walk through a real investigation. Document two or three sanitized case studies showing your triage methodology, tools used, and how you communicated findings to stakeholders, even from lab or CTF environments.
Negotiate scope, not just compensation
During offer conversations, ask specifically about your on-call rotation structure, escalation authority, and tooling budget. Incident response roles vary dramatically in how much autonomy you actually have, and clarifying these upfront prevents surprises after you start.
Incident Response Engineer Jobs: Frequently Asked Questions
Which companies are hiring the most incident response engineers?
The companies hiring the most incident response engineers right now include Charles River Associates, NTT DATA, and Adobe, with the largest share of openings in New York, California, and Texas, based on current listings on Migrate Mate as of June 2026. Managed security service providers and large financial institutions consistently post the highest volume of openings year-round.
How many incident response engineer jobs are remote?
About 57% of incident response engineer openings are fully remote or hybrid as of June 2026, though on-site requirements are more common in roles tied to government, critical infrastructure, and classified environments. Threat intelligence and digital forensics sub-specializations tend to have the highest concentration of fully remote positions among all incident response roles.
How do you become an incident response engineer?
Start by building a foundation in networking, operating systems, and security fundamentals, then pursue a certification like Security+ or CySA+ to validate core knowledge. Gain hands-on experience through a SOC analyst or IT security role, and work toward GIAC certifications such as GCIH. Practice in lab environments, participate in capture-the-flag competitions, and document real investigations to demonstrate your methodology to employers.
Can you get hired as an incident response engineer with little experience?
Yes, entry-level incident response engineer roles exist, though most expect some prior exposure to security operations or IT support. Building a home lab, earning your first certification, and contributing to open-source threat analysis projects can substitute for direct professional experience. Positions at managed security service providers often serve as structured entry points because they handle high incident volume and train analysts on the job.
What does the incident response engineer interview process look like?
Most processes start with a recruiter screen focused on your experience and certifications, followed by a technical interview where you walk through how you'd triage a specific incident scenario. Later rounds typically include a hands-on exercise, such as analyzing a memory dump or reviewing a log sample, and a behavioral interview assessing how you communicate under pressure. Final rounds often involve a meeting with the security team lead.
Where can I find and apply to incident response engineer jobs?
You can find and apply to incident response engineer jobs on Migrate Mate, which lists current openings from across the United States. Find roles that match your experience level, specialization, and location preference, then apply directly to each listing without leaving the platform.
See All 37+ Incident Response Engineer Jobs
Jump back to the full list of openings and apply to any incident response engineer role that fits.
Find Jobs