Talent.com
Senior Manager of Cybersecurity Detection Engineering and Response

Senior Manager of Cybersecurity Detection Engineering and Response

Cox AutomotiveEast Point, GA, United States
Hace 5 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

We are seeking a dynamic and experienced Senior Manager of Cybersecurity Detection Engineering to spearhead our team of Detection Engineers. In this critical role, you will drive the design, implementation, and maintenance of cutting-edge detection capabilities to protect our organization from emerging cyber threats. You will play a pivotal part in enhancing our Cyber Defense practice, enabling swift threat responses and automated remediation.

Your responsibilities will include developing a robust strategy for the Detection Engineering program, establishing metrics to showcase continuous improvement, and ensuring our detection systems remain optimized for performance and effectiveness. The ideal candidate will have expert-level knowledge in SIEM implementation, SOAR, Incident Response, Threat Intelligence, and the ability to analyze data-driven decisions while showcasing strong communication and leadership skills.

Key Responsibilities :

  • Develop and define the detection engineering strategy, roadmap, and objectives for the team.
  • Design and implement advanced threat detection techniques utilizing tools such as SIEM, EDR, NDR, and SOAR platforms.
  • Create innovative custom detection rules, automated remediation processes, playbooks, and alerts tailored to our threat landscape.
  • Utilize industry-standard MITRE frameworks to assess detection coverage and address any gaps.
  • Continuously monitor and enhance detection systems for performance and scalability.
  • Collaborate with the Threat Detection and Response team to bolster our cybersecurity capabilities in managing and responding to threats effectively.
  • Conduct attack simulation testing to evaluate use case efficacy while working with the Vulnerability Management team.
  • Manage and maintain SIEM and log ingestion infrastructure in collaboration with Cyber Defense Engineering.
  • Assess, tune, and refine detection capabilities as necessary.
  • Maintain comprehensive operational guidelines, diagrams, and documentation for security detection and response.

Incident Response Collaboration :

  • Work closely with the incident response team for rapid detection and containment of cyber threats.
  • Provide technical expertise to develop detection use cases during high-severity security incidents.
  • Enhance detection and response processes based on insights gained from past incidents.
  • Offer off-hour support when needed for security administration, detection, and response activities.
  • Threat Intelligence Integration :

  • Leverage threat intelligence to improve detection capabilities and proactively mitigate risks.
  • Analyze new and emerging threat vectors to refine detection strategies.
  • Stakeholder Collaboration :

  • Partner with Cybersecurity, Engineering, and Product teams to align detection strategies with our organizational goals.
  • Effectively communicate detection capabilities and findings to both technical and non-technical stakeholders, including executive leadership.
  • Governance and Compliance :

  • Ensure that all detection processes and tools comply with regulatory requirements and industry standards such as GDPR, PCI-DSS, and NIST.
  • Document detection strategies, processes, and configurations comprehensively.
  • Professional Technology Skills :

  • Deep experience building scalable organizations focused on world-class threat detection capabilities.
  • Technical proficiency in executing security investigations across endpoints, cloud, identity, network, and email threats.
  • Collaborate with internal IT teams and external MSSPs for developing and operationalizing Detection Engineering use cases.
  • Hands-on experience with Detection & Response tools related to network, endpoints, cloud, and identity.
  • Utilize security Threat Intelligence to uncover new threats.
  • Lead initiatives to enhance security monitoring and response capabilities.
  • Possess a solid background in security engineering and architecture to implement effective monitoring.
  • Strong knowledge of Linux, MacOS, and Windows operating systems.
  • Communicate security issues effectively with management and various stakeholders.
  • Maintain operational metrics that foster team efficiency and quality, along with detection use case configurations and standards.
  • Passionate about mentoring individuals aspiring to grow in detection engineering careers.
  • Build and manage relationships with organizational leaders, establish a roadmap, and drive initiatives to completion.
  • Understand Machine Learning concepts as they relate to predictive analytics.
  • Qualifications :

  • Bachelor's degree in Computer Science or equivalent with 8+ years of relevant industry experience, or other combinations of education and experience.
  • Demonstrated multi-cloud security experience across AWS, Azure, and GCP.
  • Expert knowledge in Detection Engineering and Security Operations.
  • 3+ years of management or leadership experience with direct people management responsibilities.
  • Strong background in Information Security, Network Security, Security Monitoring, and Incident Response.
  • Experience developing SIEM / SOAR detection and automation use cases.
  • Proficient with industry-standard security technologies such as Threat Intelligence, Firewalls, SASE, IPS, Endpoint Security, DLP, and Data Lakes.
  • In-depth understanding of the attack kill chain and diamond model.
  • 5+ years of experience in Incident Response or Security Operations.
  • 3+ years of leadership experience within a SOC or similar environment.
  • Located within commuting distance to North Hills NY or Atlanta GA, with availability to work onsite 3 times a week.
  • U.S. work authorization without sponsorship required.
  • Desirable Qualifications :

  • Relevant professional certifications such as GSEC, GCIA, GFE, GCFA, CISA, CISSP, CISM, or CIA.
  • Experience in Development, Dev Ops, Engineering, Networking, or System Administration.
  • Compensation : The base salary for this role ranges from $173,900.00 to $289,800.00, with potential additional compensation through an incentive program.

    Benefits : We offer eligible employees flexible vacation time, seven paid holidays, and up to 160 hours of paid wellness time annually. Additional paid time off is available for bereavement leave, voting, jury duty, volunteer activities, military leave, and parental leave.

    Crear una alerta de empleo para esta búsqueda

    Manager Of Engineering • East Point, GA, United States

    Ofertas relacionadas
    • Oferta promocionada
    Senior Director, Cyber Security Enablement & Secure DevOps

    Senior Director, Cyber Security Enablement & Secure DevOps

    Global Payments Inc.Alpharetta, GA, United States
    A tiempo completo
    Senior Director, Cyber Security Enablement & Secure DevOps.Join to apply for the Senior Director, Cyber Security Enablement & Secure DevOps role at Global Payments Inc. The Senior Director, Cyber Se...Mostrar másÚltima actualización: hace 4 días
    • Oferta promocionada
    Director of Nursing

    Director of Nursing

    Orthopaedic South Surgical Center (11780)MCDONOUGH, Georgia, United States
    A tiempo completo
    Orthopaedic South Surgical Center is hiring a Director of Nursing Full time.Welcome to Center for Orthopaedic South Surgical Center. Orthopaedic South Surgical Center is a state-of-the-art Ambulator...Mostrar másÚltima actualización: hace 6 días
    • Oferta promocionada
    Director of Operations

    Director of Operations

    Good Landing RecoveryDacula, GA, US
    A tiempo completo
    The Company -Good Landing Recoveryis a collection of substance abuse treatment facilities that provide the full American Society of Addiction Medicine (ASAM) continuum of care.Our facilities are fu...Mostrar másÚltima actualización: hace 15 días
    • Oferta promocionada
    • Nueva oferta
    Lead Integrated Cybersecurity Architect

    Lead Integrated Cybersecurity Architect

    Cox AutomotiveBrookhaven, GA, United States
    A tiempo completo
    A Lead Integrated Cybersecurity Architect plays a crucial role in promoting established cybersecurity architectural principles, standards, and design patterns across engineering teams.The focus is ...Mostrar másÚltima actualización: hace 8 horas
    • Oferta promocionada
    Senior Manager of Cybersecurity Detection Engineering

    Senior Manager of Cybersecurity Detection Engineering

    Cox AutomotiveSandy Springs, GA, United States
    A tiempo completo
    The Senior Manager of Cybersecurity Detection Engineering will lead a team of Detection Engineers in designing, implementing, and maintaining advanced detection capabilities to safeguard the organi...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Director of Field Operations

    Director of Field Operations

    HOODS UNLIMITED, INCWoodstock, GA, US
    A tiempo completo
    Woodstock, GA (On-Site & Hybrid Work, Full-Time).COO, leading all aspects of daily operations and field performance for Hoods Unlimited. This role bridges the gap between strategic leadership an...Mostrar másÚltima actualización: hace 25 días
    • Oferta promocionada
    Engineering Manager

    Engineering Manager

    TRC Talent SolutionsLawrenceville, GA, US
    A tiempo completo
    Job Title : Industrial Engineering Manager.Location : On-site in Dallas, TX.Our client, a 3PL and warehouse provider, is looking for an Industrial Engineering Manager. This role is fully on-site and 4...Mostrar másÚltima actualización: hace 14 días
    • Oferta promocionada
    VSOC - (Vehicle Security Operations Center) Analyst

    VSOC - (Vehicle Security Operations Center) Analyst

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : VSOC - (Vehicle Security Operations Center) Analyst Duration : 12 – 24 Month Project Engagement Role Summary : The vSOC Analyst is a specialized role focused on vehicle security operations...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Lead Cybersecurity Architect

    Lead Cybersecurity Architect

    Cox AutomotiveDoraville, GA, United States
    A tiempo completo
    As a Lead Cybersecurity Architect, you will play a crucial role in promoting and implementing robust cybersecurity architectural principles, standards, and design patterns.You will provide expert g...Mostrar másÚltima actualización: hace 13 días
    • Oferta promocionada
    • Nueva oferta
    Cybersecurity Architecture Lead

    Cybersecurity Architecture Lead

    Cox AutomotiveHapeville, GA, United States
    A tiempo completo
    The Cybersecurity Architecture Lead plays a critical role in promoting and implementing established cybersecurity architectural principles, standards, and design patterns.This position offers an ex...Mostrar másÚltima actualización: hace 8 horas
    • Oferta promocionada
    Security Operations Administrator (Endpoint Security Lead)

    Security Operations Administrator (Endpoint Security Lead)

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : Security Operations Administrator (Endpoint Security Lead) Duration : 12 – 24 Month Project Engagement Role Summary : The Security Operations Admin is a specialized role focused on the str...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Lead Application Security Engineer - 19562

    Lead Application Security Engineer - 19562

    Cox AutomotiveMableton, GA, United States
    A tiempo completo
    The Lead Application Security Engineer will partner with Security Engineering Enablement and Security Architecture to design and ship secure software : secure code reviews and help define requiremen...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Security Architect Lead

    Security Architect Lead

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : Security Architect Lead Duration : 12 – 24 Month Project Engagement Role Summary : The Architecture, Cloud, and Engineering Lead provides strategic guidance and direct leadership for the s...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Security Architect

    Security Architect

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : Security Architect Duration : 12 – 24 Month Project Engagement Role Summary : The Architecture, Cloud, and Engineering Lead provides strategic guidance and direct leadership for the securi...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    • Nueva oferta
    FT Lead Rad Tech 2

    FT Lead Rad Tech 2

    Wellstar Health SystemAustell, Georgia, United States
    A tiempo completo
    How would you like to work in a place where your contributions and ideas are valued? A place where you can serve with compassion, pursue excellence and honor every voice? At Wellstar, our mission i...Mostrar másÚltima actualización: hace 17 horas
    • Oferta promocionada
    Senior Lead Cloud Security Architect

    Senior Lead Cloud Security Architect

    Cox AutomotiveLithia Springs, GA, United States
    A tiempo completo
    The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cl...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    AppSec Analyst DAST (Application Security)

    AppSec Analyst DAST (Application Security)

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : AppSec Analyst DAST Duration : 12 – 24 Month Project Engagement Role Summary : The AppSec Analyst DAST is responsible for finding and remediating security vulnerabilities in Client's runni...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    Datamtx LLCPeachtree City, GA, US
    A tiempo completo
    Job Title : Security Engineer Duration : 12 – 24 Month Project Engagement Role Summary : The Security Engineer is a hands-on technical expert responsible for implementing, maintaining, and optimizing ...Mostrar másÚltima actualización: hace 10 días