Director of Security Operations responsible for strategic leadership and operational excellence in security at Abridge. Leading teams focused on preventing, detecting, and responding to security threats.
Responsibilities
Define and continuously evolve the strategy, vision, and roadmap for the Security Operations function, ensuring alignment with overall business objectives and risk tolerance.
Manage the Security Operations budget, including forecasting expenditures for security tools, managed service providers, and personnel resource allocation.
Define, track, and report on key performance indicators (KPIs) and security metrics such as Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), operational effectiveness, and alert fidelity.
Serve as a motivating people leader for a growing, globally-distributed team, providing career development, mentorship, and regular performance feedback.
Develop a team to lead and manage the 24/7 threat detection and response function, overseeing incident triage, escalation, and coordination for all security events and incidents.
Develop a team that takes point on technical investigations and digital forensics. Establish and maintain digital forensics capabilities and chain-of-custody procedures.
Oversee the lifecycle of all detection-as-code, security alerts, rules, and logic. Drive the development and implementation of advanced threat detection content based on the MITRE ATT&CK framework.
Establish a formal Threat Intelligence program, including collection, analysis, enrichment, and dissemination of relevant threat information to inform detection and response strategies.
Develop a team to lead and define the architecture, deployment, and optimization of core security infrastructure, including the SIEM system and SOAR platform.
Drive the development and implementation of security automation across the organization to reduce manual effort and enforce security policy compliance at scale.
Own the management of the Red Team and Purple Team programs. Oversee and coordinate internal and external penetration testing engagements, translating findings into actionable remediation plans.
Develop a team to lead the security architecture, engineering, and operations of the corporate IT infrastructure.
Develop a team to lead and manage the physical security / life safety program for all corporate offices, including access control systems and video surveillance.
Lead the overall security response during major incidents and crises, serving as the senior-most security leader in cross-functional crisis management exercises and real-world events.
Requirements
10+ years of senior leadership experience in security, with a minimum of 7+ years specifically in Security Operations, leading security teams, programs, or large-scale initiatives with a focus on threat detection engineering and incident response for a global SaaS company.
Demonstrated experience running security as a business unit, including budget management, strategic forecasting, and translating technical risk into clear business impact (ROI) for executive leadership and the board.
Deep technical expertise in operating and securing enterprise environments, including hands-on familiarity with SIEM/SOAR technologies and cloud security principles (GCP, AWS, or Azure).
Proven experience operating in highly regulated industries, with strong knowledge of relevant security and privacy frameworks (e.g., NIST 800-53 / 800-171, FedRAMP, HIPAA, NIS2, etc.).
Exceptional communication and presentation skills, with the ability to convey complex security issues and operational risks to both highly technical teams and non-technical audiences, including executives, boards, customers, and government agencies.
Benefits
Generous Time Off: 14 paid holidays, flexible PTO for salaried employees, and accrued time off for hourly employees
Comprehensive Health Plans: Medical, Dental, and Vision coverage for all full-time employees and their families.
Generous HSA Contribution: If you choose a High Deductible Health Plan, Abridge makes monthly contributions to your HSA.
Paid Parental Leave: Generous paid parental leave for all full-time employees.
Family Forming Benefits: Resources and financial support to help you build your family.
401(k) Matching: Contribution matching to help invest in your future.
Personal Device Allowance: Tax free funds for personal device usage.
Pre-tax Benefits: Access to Flexible Spending Accounts (FSA) and Commuter Benefits.
Lifestyle Wallet: Monthly contributions for fitness, professional development, coworking, and more.
Mental Health Support: Dedicated access to therapy and coaching to help you reach your goals.
Sabbatical Leave: Paid Sabbatical Leave after 5 years of employment.
Compensation and Equity: Competitive compensation and equity grants for full time employees.
Lead the Local Vodafone Business Service Operations Centre in Athens, Greece. Focus on delivering managed security, cloud, and SaaS services with operational excellence.
Associate SOC Analyst at NCC Group monitoring security incidents and collaborating with a cybersecurity team. Contributing to the organisation's cybersecurity posture through analysis and threat mitigation.
SOC Analyst responsible for monitoring threats and vulnerabilities in IT systems. Engaging with clients and providing incident remediation documentation and recommendations.
Security Analyst managing network security tools to protect systems at Riachuelo. Collaborating with teams to ensure operational resilience and security compliance.
Intermediate Security Operations Centre Analyst involved in IT security operations for a dynamic IT provider. Collaborating with internal teams for incident detection and response across various platforms.
Security Operations Centre Analyst for Long View's IGS branch, focused on incident detection and response. Collaborating with teams to monitor, identify, and remediate security incidents.
SOC Engineer at Replit monitoring and assessing emerging threats in cloud infrastructure and AI coding environments. Conducting investigations and collaborating with teams for mitigation strategies.
Security Operations Lead overseeing global SOC operations and AI product integration at Replit. Leading monitoring and incident response across multi - cloud environments and AI workloads.
Cybersecurity Incident Response Engineer in Comcast's Security Incident Response Team mitigating threats and restoring environments following incidents. Working with advanced technologies to safeguard customers and infrastructure.