Director of Security Operations overseeing incident response tasks at Gartner. Leading a geographically dispersed team and improving capabilities for detecting and responding to threats.
Responsibilities
Drive operational excellence of a geographically dispersed Security Operations team.
Serve as the Incident Commander during the incident response process.
Continuously seek out opportunities to improve the team’s ability to rapidly and effectively respond to security incidents.
Work with key business stakeholders to detect, respond to, and remediate security issues.
Provide mentorship and guidance to team members, promoting a culture of open communication, continuous improvement, and operational excellence.
Drive automation initiatives, enhancing analyst capabilities and workflows while eliminating monotonous tasks.
Develop innovative and cutting-edge detection content aligned with ATT&CK, Cyber Kill Chain, and various other cyber security frameworks.
Bring your own ideas and solutions to a fast-paced, growing, and evolving team centered around operational excellence.
Ensure smooth handover of alerts and incidents between team members located in various geographic locations.
Requirements
Bachelor’s in Computer Science, Information Security, Engineering, or 6+ years of experience in Information security.
Previous experience leading a SOC, Hunt, and/or Incident Response Team or progressive growth in responsibilities in a SOC environment.
Demonstrated ability to prioritize and analyze security events, enabling swift decision-making on appropriate courses of action and initiating timely and proportional responses.
Expertise in conducting and driving analysis and investigation of cybersecurity incidents.
Experience articulating technical findings and creating detailed incident reports.
Extensive experience in leveraging security tools such as SIEM, EDR, web proxy and email security tools.
Experience driving security projects from requirements gathering to completion.
Ability to mentor, motivate, and coach team members, leading to operational excellence.
Passion for security and solving tomorrow’s problems.
Certifications like CISSP, GCIH, GCFA or equivalent are a plus.
Cloud experience (AWS, Azure, GCP).
Demonstrated ability to transform and shape teams.
Scripting or programming experience (Python, PowerShell, Bash).
Benefits
Competitive compensation.
Limitless growth and learning opportunities.
Ongoing mentorship and apprenticeship; Leadership courses, development programs, technical courses, certification opportunities and more!
A collaborative and positive culture - join a diverse team of professionals that are as smart and driven as you.
A chance to make an impact – your work will contribute directly to our strategy.
Enjoy the flexibility of working from home and the energy of collaborating with peers in our dynamic offices.
20+ PTO days plus holidays and floating holidays in your first year.
Extensive medical, dental insurance and vision plan.
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high - paced environment.
Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.
Security Engineer II at AvidXchange enhancing security operations and incident response. Collaborating with teams to develop, tune and improve security monitoring and automation capabilities.
Director leading security operations strategy and overseeing investigations at Ford Motor Company. Responsible for global investigations, crisis management, and team leadership.
Lead global Cyber Detect and Respond team at Assa Abloy, ensuring timely incident response and security compliance. Oversee operations while collaborating across IT and business functions for effective threat management.