Demo

OT Incident Response Lead

Bench
Hunt Valley, MD Full Time
POSTED ON 12/15/2025 CLOSED ON 1/15/2026

What are the responsibilities and job description for the OT Incident Response Lead position at Bench?

OT Incident Response Lead

📍 Location: Hunt Valley, MD (Hybrid)

đź•’ Employment Type: Full-time (40 hours/week)

đź“… Start Date: January 2026


About the Role

We are seeking an experienced OT Incident Response Lead to join the Cybersecurity Threat Management team. Reporting to the Sr. Manager of Threat Detection & Response, this role will lead threat detection, incident response, and threat hunting activities within Operational Technology (OT) environments, ensuring timely detection, containment, and remediation of cybersecurity incidents.

This is a high-impact, onsite role based in Hunt Valley, MD, working closely with IT, OT, and Cybersecurity teams.


Key Responsibilities

  • Lead and execute cybersecurity incident response activities in OT environments
  • Perform threat detection and proactive threat hunting across OT networks
  • Analyze incidents and provide actionable recommendations to prevent recurrence
  • Collaborate with Threat Detection teams to onboard and monitor critical OT log sources
  • Develop and maintain OT incident response plans, playbooks, and documentation
  • Partner with IT, OT, and Cybersecurity teams to improve response readiness
  • Lead and participate in tabletop exercises and incident simulations
  • Communicate technical incidents and business impact to non-technical stakeholders


Key Skills

  • OT Incident Response & Threat Hunting
  • ICS / SCADA / PLC / HMI Security
  • OT Network Monitoring & Detection
  • NIST SP 800-82, IEC 62443, Purdue Model
  • SIEM Tools (Splunk, Microsoft Sentinel)
  • Incident Response Playbooks & Runbooks
  • Root Cause Analysis & Remediation
  • Cross-functional Collaboration (IT, OT, Cybersecurity)
  • Executive & Stakeholder Communication


Required Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or related field
  • (or equivalent hands-on OT security experience)
  • 6 years of experience in OT incident response or threat hunting
  • Strong experience securing OT environments and industrial protocols
  • Ability to translate technical incidents into business risk


Preferred Certifications

  • GICSP
  • GFCA
  • GNFA
  • Other relevant OT or cybersecurity certifications

Salary.com Estimation for OT Incident Response Lead in Hunt Valley, MD
$92,114 to $117,579
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a OT Incident Response Lead?

Sign up to receive alerts about other jobs on the OT Incident Response Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$186,685 - $265,377
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$115,647 - $153,495
This job has expired.
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other OT Incident Response Lead jobs in the Hunt Valley, MD area that may be a better fit.

  • DigiFlight Columbia, MD
  • Responsibilities: - Serves as hunt and incident response subject matter expert (SME), applying in-depth knowledge of threat actor (TA) tools, techniques, a... more
  • 12 Days Ago

  • Allied Universal Hagerstown, MD
  • Allied Universal®, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While work... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!