Tech Stack
CloudCyber SecurityFirewalls
About the role
- Provide leadership and mentorship to a team of analysts and engineers to cultivate technical excellence, accountability, and continuous learning.
- Enhance and maintain standardized SOC procedures to ensure consistent threat detection and response; optimize workflows and incident management using data.
- Develop and maintain a performance measurement framework using operational metrics to assess SOC effectiveness, identify gaps, and drive improvements.
- Encourage proactive security engineering practices and continuous security technology improvement by defining metrics to evaluate control effectiveness and aligning team capabilities to address threats.
- Direct the research, deployment and adoption of key security capabilities—including attack surface management, endpoint and data protection, cloud, email, and network security—while ensuring safe adoption of AI and agentic solutions.
- Research and assess emerging security trends, threats, and technologies; direct engineering teams to evaluate, recommend, and implement solutions that enhance security posture.
- Provide strategic leadership by setting and communicating unified goals; empower team members and evaluate performance and resource utilization.
- When necessary, actively participate in incident response efforts, coordinating cross-functional teams and ensuring timely resolution and communication.
- Drive integration of security into DevOps workflows, enabling secure-by-design practices across cloud and hybrid environments.
- Provide expert technical and functional leadership and problem resolution to teams.
- Assign and review work; allocate resources to ensure projects are completed on time and within budget and integrated with other software applications.
- Prepare budget input, monitor performance, and forecast expenditures; oversee departmental budget.
- Coordinate and oversee recruiting, interviewing, hiring, performance management, and team communication.
Requirements
- Bachelor's Degree (accredited) in Computer Science, MIS, Business Administration or similar area of study, or in lieu of degree High School Diploma or GED (accredited) and 4 years of relevant experience.
- 8 years or more years previous experience (in addition to education requirement)
- Preferred Qualifications: Minimum of 8 years of experience leading a high-performing and effective Security Operations Center (SOC) function; extensive experience managing a security program with vendors and managed service providers as a unified team to execute daily operations and drive long-term improvements.
- Strong analytical and strategic thinking skills, with a track record of solving complex problems and aligning security initiatives with business objectives.
- Deep understanding of cybersecurity principles, threat landscapes, risk management frameworks, and regulatory compliance standards such as NIST, ISO, and CIS.
- Demonstrated proficiency in a wide range of security technologies, including endpoint detection and response (EDR), firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM platforms, data protection, encryption, and cloud/SaaS security.
- Familiarity with AI/ML-driven security solutions and their implications for threat detection, incident response, and decision-making workflows.
- Ability to communicate complex technical concepts clearly and effectively to both technical teams and non-technical stakeholders, including executive leadership.
- Professional certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.