<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>86fc5e64-9f1</externalid>
      <Title>Incident Manager - Detection &amp; Response</Title>
      <Description><![CDATA[<p>We&#39;re looking for an experienced Technical Program Manager to own and evolve incident management within the Detection &amp; Response (D&amp;R) team. The role involves maturing and scaling our incident response lifecycle, from detection and triage through containment, remediation, and post-incident review. You&#39;ll be responsible for driving clear coordination across executive, engineering, security, legal, and other appropriate stakeholders. Your goal will be to ensure that we get meaningfully better after each incident.</p>
<p>Responsibilities:</p>
<ul>
<li>Own the end-to-end D&amp;R incident management program: detection workflows, response processes, escalation paths, communication standards, and remediation tracking.</li>
<li>Serve as incident commander for security incidents, driving clear coordination across executive, engineering, security, legal, and other appropriate stakeholders.</li>
<li>Establish and run incident commander rotations within D&amp;R, ensuring clear ownership and effective coordination during incidents of varying severity.</li>
<li>Drive post-incident accountability by defining how action items are captured, assigned, tracked, and completed across teams,ensuring follow-through on both tactical fixes and strategic improvements.</li>
<li>Gather, analyse, and report on incident trends and patterns to surface systemic risks, recurring root causes, and areas where the organisation is most vulnerable.</li>
<li>Translate trend analysis into actionable cross-functional initiatives: partner with engineering, infrastructure, security, and product teams to prioritise and implement broad fixes and preventive improvements that address root causes rather than symptoms.</li>
<li>Lead incident review forums (post-mortems, retrospectives) and ensure learnings are captured, socialised, and acted upon across the organisation.</li>
<li>Develop and maintain D&amp;R incident response documentation, playbooks, runbooks, and training materials; keep them current as the threat landscape and our systems evolve.</li>
<li>Partner with detection engineering to improve alert fidelity, reduce noise, and shorten time-to-detection for security events.</li>
<li>Define, develop, and track incident management KPIs and report regularly to D&amp;R and Security leadership.</li>
<li>Support broad cross-functional training and initiatives to uplevel security awareness across the company (e.g. Tabletop exercises, training, talks).</li>
</ul>
<p>You may be a good fit if you:</p>
<ul>
<li>Have 7+ years of experience in technical program management, incident management, or security operations, with significant time spent in a detection &amp; response or security incident response context.</li>
<li>Have led or built incident response programs at a technology company, ideally in a high-growth or security-intensive environment.</li>
<li>Have a demonstrated track record of turning incident data into organisational improvements,not just writing post-mortems, but driving the cross-functional work to implement systemic fixes.</li>
<li>Are comfortable participating in on-call responsibilities and leading incident response during high-severity security events, including off-hours.</li>
<li>Have experience building and scaling operational processes from the ground up in environments where structure didn’t previously exist.</li>
<li>Excel at driving accountability and follow-through across multiple teams without direct authority,you know how to influence, track, and close the loop.</li>
<li>Have strong analytical skills and experience with incident trend analysis, metrics reporting, and data-driven prioritisation.</li>
<li>Are highly organised with a knack for bringing structure to ambiguous, fast-moving situations.</li>
<li>Have excellent communication skills, especially under pressure and when coordinating across technical and non-technical stakeholders, including executive leadership.</li>
<li>Thrive in fast-paced environments where priorities shift and you’re often working with incomplete information.</li>
</ul>
<p>The annual compensation range for this role is $320,000-$405,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$320,000-$405,000 USD</Salaryrange>
      <Skills>Technical Program Management, Incident Management, Security Operations, Detection &amp; Response, Cross-functional Team Leadership, Communication, Analytical Skills, Data-driven Prioritisation, Incident Trend Analysis, Metrics Reporting</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic&apos;s mission is to create reliable, interpretable, and steerable AI systems. It is a company that works on developing beneficial AI systems.</Employerdescription>
      <Employerwebsite>https://anthropic.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5176481008</Applyto>
      <Location>San Francisco, CA | New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>0962c409-5f6</externalid>
      <Title>Incident Manager - Detection &amp; Response</Title>
      <Description><![CDATA[<p>We&#39;re looking for an experienced Technical Program Manager to own and evolve incident management within the Detection &amp; Response (D&amp;R) team. This is a senior-level specialization on the Technical Program Manager ladder, focused on how we detect, respond to, and learn from security and operational incidents.</p>
<p>You&#39;ll be the driving force behind maturing and scaling our incident response lifecycle,from detection and triage through containment, remediation, and post-incident review. Critically, some of the highest-impact work in this role happens after the immediate response: gathering data on incident trends, reporting on patterns and root causes, and working cross-functionally across engineering, security, infrastructure, and product teams to ensure that broad fixes and systemic improvements are actually implemented.</p>
<p>Responsibilities:</p>
<ul>
<li>Own the end-to-end D&amp;R incident management program: detection workflows, response processes, escalation paths, communication standards, and remediation tracking.</li>
<li>Serve as incident commander for security incidents, driving clear coordination across executive, engineering, security, legal, and other appropriate stakeholders.</li>
<li>Establish and run incident commander rotations within D&amp;R, ensuring clear ownership and effective coordination during incidents of varying severity.</li>
<li>Drive post-incident accountability by defining how action items are captured, assigned, tracked, and completed across teams,ensuring follow-through on both tactical fixes and strategic improvements.</li>
<li>Gather, analyze, and report on incident trends and patterns to surface systemic risks, recurring root causes, and areas where the organization is most vulnerable.</li>
<li>Translate trend analysis into actionable cross-functional initiatives: partner with engineering, infrastructure, security, and product teams to prioritize and implement broad fixes and preventive improvements that address root causes rather than symptoms.</li>
<li>Lead incident review forums (post-mortems, retrospectives) and ensure learnings are captured, socialized, and acted upon across the organization.</li>
<li>Develop and maintain D&amp;R incident response documentation, playbooks, runbooks, and training materials; keep them current as the threat landscape and our systems evolve.</li>
<li>Partner with detection engineering to improve alert fidelity, reduce noise, and shorten time-to-detection for security events.</li>
<li>Define, develop, and track incident management KPIs and report regularly to D&amp;R and Security leadership.</li>
<li>Support broad cross-functional training and initiatives to uplevel security awareness across the company (e.g. Tabletop exercises, training, talks).</li>
</ul>
<p>You may be a good fit if you:</p>
<ul>
<li>Have 7+ years of experience in technical program management, incident management, or security operations, with significant time spent in a detection &amp; response or security incident response context.</li>
<li>Have led or built incident response programs at a technology company, ideally in a high-growth or security-intensive environment.</li>
<li>Have a demonstrated track record of turning incident data into organizational improvements,not just writing post-mortems, but driving the cross-functional work to implement systemic fixes.</li>
<li>Are comfortable participating in on-call responsibilities and leading incident response during high-severity security events, including off-hours.</li>
<li>Have experience building and scaling operational processes from the ground up in environments where structure didn’t previously exist.</li>
<li>Excel at driving accountability and follow-through across multiple teams without direct authority,you know how to influence, track, and close the loop.</li>
<li>Have strong analytical skills and experience with incident trend analysis, metrics reporting, and data-driven prioritization.</li>
<li>Are highly organized with a knack for bringing structure to ambiguous, fast-moving situations.</li>
<li>Have excellent communication skills, especially under pressure and when coordinating across technical and non-technical stakeholders, including executive leadership.</li>
<li>Thrive in fast-paced environments where priorities shift and you’re often working with incomplete information.</li>
</ul>
<p>The annual compensation range for this role is $320,000-$405,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$320,000-$405,000 USD</Salaryrange>
      <Skills>Technical Program Management, Incident Management, Security Operations, Detection &amp; Response, Cross-functional Team Leadership, Communication, Analytical Skills, Data-driven Prioritization, Incident Trend Analysis, Metrics Reporting</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic&apos;s mission is to create reliable, interpretable, and steerable AI systems. It is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5176481008</Applyto>
      <Location>San Francisco, CA | New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
  </jobs>
</source>