HimalayasHimalayas logo
Lumin DigitalLD

Manager, Incident Response

Lumin Digital is a cloud-native fintech company specializing in digital banking solutions, helping banks and credit unions build and deploy next-gen digital experiences. Founded in 2016, they offer a platform designed for innovation, data-driven insights, and speed to meet evolving user expectations.

Lumin Digital

Employee count: 201-500

Salary: 170k-190k USD

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

Basic Function:

The Incident Response Manager at Lumin Digital leads the organization’s response to cybersecurity threats impacting both corporate systems and hosted digital banking platforms serving millions of consumers globally. This role is responsible for directing all phases of the incident response lifecycle, including preparation, identification, containment, eradication, recovery, and post-incident review.
As the operational lead for security incidents, the Incident Response Manager provides decisive leadership during high-impact events, ensuring timely detection, effective containment, clear stakeholder communication, and measurable remediation outcomes. This position partners closely with SOC analysts, engineering teams, business leaders, and client stakeholders to strengthen response capabilities, enhance detection strategies, and continuously improve organizational resilience against evolving threats.

Essential Functions and Responsibilities:

Identify emerging industry threats, observed trends, and industry best practices guidelines to identify gaps and identify, plan, design, and enhance security controls in collaboration with other risk engineering teams.
Develop comprehensive and insightful fact-based reports on SOC metrics, such as MTTD, MTTR, and coverage, and trends, and present them to internal leadership and client security teams on a regular basis.
Produce and deliver job-specific education and training to SOC team members on emerging threats and technologies using structured approaches to threat and risk management.
Review the technical methods and output of the SOC team to ascertain the quality and fit of solutions, and provide constructive and detailed feedback to improve team members’ ability to perform their duties.
Lead formalized security incident response procedures as part of a team, including all phases of the incident handling lifecycle, from preparation through lessons learned.
Collect evidence of SOC activities to satisfy client due diligence requests as well as support internal and external audit activities
Perform other duties as assigned.

Physical Demands:

While performing the duties of this Job, the employee is regularly required to sit; use hands to type, handle, or feel and talk or hear.
Specific vision abilities required by this job include close visionAbility to occasionally lift/move up to 25 pounds.
Individuals with a disability who are otherwise able to perform the essential functions of the job may request reasonable accommodation through the Human Resources department.

Supervisory Responsibility:

Set clear expectations, offer direction, and ensure alignment with organizational goals while fostering a supportive environment that encourages collaboration, accountability, and growth.
Coach, mentor, and provide training opportunities to build team members’ skills, promote internal growth, and prepare staff for future roles and responsibilities.
Manage hiring, onboarding, performance evaluations, promotions, compensation, and terminations, ensuring fair and consistent application of policies and procedures.
Assess team performance regularly, address gaps, and ensure duties are completed efficiently and effectively in alignment with department and organizational objectives.

Position Specifications

Education:

Bachelor's degree in Information Assurance, Information Security, Cybersecurity, or related field is required; or equivalent combination of education and experience in cybersecurity with demonstrated command of key SOC concepts and technologies and proficiencies in threat modeling, detective and preventative controls, digital forensics, incident response, OSINT, network penetration testing, and other relevant technical security risk management domains.
Certifications relevant to security operations or management of SOC teams, such as the GCIH, CISSP, GCIA, GSOM, or CISM, are preferred.

Experience:

Minimum 5 years of hands-on technical experience directly working with detective security controls, including layer 3, 4, and 7 firewalls, log aggregation, endpoint detection and response, and public cloud security posture management required.
Minimum 3 years leading or driving incident response efforts within a SOC or equivalent function.
Minimum 2 years of experience in a formal management role within security operations, incident response, or a related cybersecurity function.
Experience serving in an incident command or incident coordination capacity during high-severity events.
Experience managing or administering enterprise EDR and SIEM platforms, including detection tuning, alert triage, investigation, and response.
Experience integrating and operationalizing threat intelligence feeds to enhance detection and response capabilities.
Experience operating in large-scale AWS environments.
Proficiency with Linux, Kubernetes, Git, and scripting languages.
Demonstrated experience analyzing and synthesizing security operations data to identify trends and communicate risk posture to leadership.
Experience in financial services or fintech environments preferred.

Knowledge, Skills, & Abilities:

Incident Leadership & Professional Attributes
Demonstrated ability to lead with confidence and composure under pressure and uncertainty.
Calm, decisive demeanor with appropriate sense of urgency during security events.
Strong teamwork and cross-functional collaboration skills.
Strong client orientation with a professional presence that builds trust and credibility internally and externally.
Ability to prioritize tasks, exercise sound judgment, and maintain strict confidentiality.
Ability to work effectively in a remote environment while sustaining high performance and team accountability.
Communication & Reporting
Strong written and verbal communication skills, including the ability to develop clear, data-driven reports and presentations using tools such as Google Docs and Slides.
Strong presentation delivery skills with the ability to confidently speak to underlying data, trends, and risk insights for both technical and executive audiences.
Ability to translate complex technical findings into actionable insights for business stakeholders and clients.
Data Analysis & Metrics
Excellent data analysis skills, including use of tools such as Excel and OpenSearch to customize reporting and measure key security metrics (e.g., detection effectiveness, response performance).
Ability to interpret trends in threats, vulnerabilities, and operational posture to inform strategic improvements.
Security Architecture & Risk Concepts
Working knowledge of network security concepts, including TLS inspection, connection fingerprinting, and intrusion detection techniques.
Working knowledge of cloud security principles, including the AWS shared responsibility model and AWS services such as GuardDuty, IAM Access Analyzer, Inspector, Macie, and Security Hub.
Working knowledge of application security concepts, including OWASP Top 10 and Common Weakness Enumeration (CWE), particularly as they relate to detecting anomalous HTTPS and WebSocket activity.
Working knowledge of vulnerability prioritization methodologies, including CVSS and EPSS.
Understanding of detection engineering principles and best practices to effectively advocate for SOC monitoring and telemetry requirements.
Security Operations Platforms & Tooling
Endpoint Detection & Response (EDR): Knowledge of EDR platforms with the ability to deploy, tune, and manage endpoint telemetry and detections; investigate alerts; and lead containment and remediation of endpoint-based incidents.
Security Information & Event Management (SIEM): Knowledge of SIEM architecture and log correlation with the ability to develop and optimize detection use cases and dashboards; analyze and correlate events to detect and respond to security threats.
Threat Intelligence Platforms: Knowledge of the threat intelligence lifecycle and supporting platforms with the ability to integrate and operationalize intelligence feeds and translate intelligence into actionable detection and prevention strategies.

Travel:

Minimal, generally 12 days or less per year

LIFE AT LUMIN DIGITAL

Lumin Digital is a trailblazer in digital banking solutions, driven by a unique approach to technology, service, and people. We empower credit unions and banks by creating cutting-edge digital experiences that continuously serve, engage, and grow their membership base. Lumin is 100% cloud-native, purpose-built to unlock the full advantages of the cloud for financial institutions and their users.
At Lumin, we thrive on curiosity and innovation. Our culture fosters trust - in our expertise and decisions, respect - for diverse perspectives and talents, and boldness - in pursuing innovative paths. These values guide us, shaping a workplace where collaboration thrives, ideas flourish, and new possibilities are discovered. Focused on continuous improvement and innovation, we encourage our team to explore, experiment, and put new ideas into action, challenging the usual way of doing things.
Lumin Digital is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender identity, or any other legally protected basis, in accordance with applicable law.
For more information, visit lumindigital.com.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Senior

Salary

Salary: 170k-190k USD

Education

Bachelor degree

Experience

5 years minimum

Experience accepted in place of education

Location requirements

Hiring timezones

United States +/- 0 hours

About Lumin Digital

Learn more about Lumin Digital and their company culture.

View company profile

We are Lumin Digital, a fintech company laser-focused on providing cutting-edge digital banking solutions. Our journey began in 2016, driven by a vision to empower financial institutions—banks and credit unions alike—to not just compete, but to thrive in the rapidly evolving digital landscape. We saw the challenges faced by these institutions in keeping pace with the technological demands and user expectations, and we set out to build a platform that would enable them to offer exceptional, next-generation digital experiences. Our core belief is that by combining innovation, robust data analytics, and speed, we can deliver a 'disruption-proof' platform. This platform is born in the cloud, designed for agility and scalability, ensuring our clients can stay ahead of the curve and meet the ever-changing needs of their retail and business banking users.

At Lumin, we pride ourselves on our client-centric approach. We don't just provide software; we build partnerships. Our team, a collective of like-minded visionaries, innovators, and builders with deep industry and SaaS expertise, works closely with each financial institution to understand their unique goals and challenges. This collaborative spirit is ingrained in our DNA, from our product development, which incorporates over 200 enhancements annually with zero downtime, to our 100% on-time client launches. We're committed to helping our clients optimize their digital banking ROI, foster strong digital relationships with their customers, and ultimately, drive growth. Our platform offers a comprehensive suite of tools, including solutions for retail and commercial banking, digital account opening, user engagement, administrative support, risk management, digital marketing, and data analytics. We are dedicated to reimagining the future of digital banking, creating a future unhindered by legacy technology and limited partnerships, where collective growth and success are exponentially realized for our clients, their employees, and the communities they serve.

Employee benefits

Learn about the employee benefits and perks provided at Lumin Digital.

View benefits

Free Food

Lumin Digital Benefits include Free Food.

Performance Bonus

Lumin Digital Benefits include Performance Bonus.

401k Matching

A robust benefits package that includes 401k matching.

Life Insurance

Lumin Digital Perks & Benefits include Life Insurance.

View Lumin Digital's employee benefits
Claim this profileLumin Digital logoLD

Lumin Digital

Company size

201-500 employees

Founded in

2016

Chief executive officer

Jeff Chambers

Employees live in

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

16 remote jobs at Lumin Digital

Explore the variety of open remote roles at Lumin Digital, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Lumin Digital

Remote companies like Lumin Digital

Find your next opportunity by exploring profiles of companies that are similar to Lumin Digital. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan