Cyber Incident Response Manager
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Information Security
Overview
At BBH, Partnership is more than a form of ownership—it’s our approach to business and relationships. We know that supporting your professional and personal goals is the best way to help our clients and advance our business. We take that responsibility seriously. With a 200-year legacy and a shared passion for what’s next, this is the right place to build a fulfilling career.
CyberIncident Response Manager
Background: The Business Continuity and Disaster Recovery (BD/DR) team is a team within the Protect Pillar in Systems. The Protect Pillar is a unique BBH-construct designed for clear, centralized and coordinated accountability: to protect against physical and logical security risks; to safeguard stakeholder assets; and to detect, prepare for, and respond effectively to security events. To that end, the Protect Pillar encompasses the following areas:
- Business Continuity and Disaster Recovery
- Cybersecurity
- Enterprise Data Protection and Data Governance
- Global Security
- Information Security Management (ISM)
Given that technology is an integral component of the Pillar’s control measures and a key asset to safeguard, the Protect Pillar sits within BBH’s Systems organization.
Role: Reporting to the Governance head within the Cybersecurity Team, we are seeking an experienced Cyber Incident Response Manager to lead and enhance our cyber incident response program.
Responsibilities include:
- Serving as the point of contact for cyber systems events to manage communications and coordination
- For cyber breaches by vendors, work closely with the Cyber team and serve as the BBH contact vis-à-vis vendors in gathering details on the cyber breach, including root cause; applying lessons learned to the BBH cyber environment; documenting and reporting on the events
- For client cyber breaches, work closely with the Cyber team, Anti-Fraud and other stakeholders in gathering, coordinating responses, documenting and reporting on the events
- For internal cyber events, coordinate the cyber incident response process from initial detection to resolution, ensuring timely and effective action and communicating with relevant stakeholders appropriately
- Enhance incident response documentation (tracking of incidents, updating procedures, updating playbooks, etc.)
- Serve as the point of escalation for the cyber incident management team and foster collaboration and cross-training
- Participate in cyber-related tabletop exercises
- Conduct social engineering exercises to raise employee awareness of social engineering risks
- Stay abreast of latest cybersecurity threats and trends and proactively train relevant groups accordingly
- Respond to client DDQs and participate in client due diligence meetings
- Minimum 8+ years of experience in cyber security and incident management, preferably within financial services
- Strong understanding of cyber incident response frameworks (e.g., NIST, ISO), DFS Part 500 regulations, DORA, and industry practices
- Technical proficiency of IT systems, infrastructure and applications
- Ability to lead and foster collaboration
- Ability to prioritize effectively to meet deadlines and manage multiple incidents
- Excellent analytical and communication skills
- Strong PowerPoint and Excel skills
Salary Range
$150,000 - $180,000
BBH’s compensation program includes base salary, discretionary bonuses, and profit-sharing. The anticipated base salary range(s) shown above are only for the indicated location(s) and may differ in other locations due to cost of living and labor considerations. Base salaries may vary based on factors such as skill, experience and qualification for the role. BBH's total rewards package recognizes your contributions with more than just a paycheck—providing you with benefits that enhance your experience at BBH from long-term savings, healthcare, and income protection to professional development opportunities and time off, our programs support your overall well-being.
Diversityand Inclusion
We value diverse experiences. We value diverse experiences and transferable skillsets. If your career hasn’t followed a traditional path, includes alternative experiences, or doesn’t meet every qualification or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).