
Senior Director – Cyber Security Operations
Posted 8 hours ago

Posted 8 hours ago
This is a fully remote position, open to applicants in California, +2 more states.
• Deliver first-level cyber defense by enhancing detection capabilities through innovative automation.
• Act as a subject matter expert in threat detection and response.
• Prepare for, identify, react to, and mitigate cyber threats to safeguard company data and assets.
• Lead a geographically diverse team of detection and response analysts who monitor, triage, and respond to security events across a 24/7 global network.
• Implement detection methodologies, establish baseline network traffic, and observe anomalous activities.
• Oversee operations of the Threat Detection and Response team, managing personnel, training, and mentoring.
• Utilize automation and orchestration solutions to streamline repetitive tasks.
• Collaborate with both internal and external teams and subject matter experts regarding cybersecurity challenges.
• Support projects and strategic initiatives aimed at enhancing workflows and monitoring and response capabilities.
• Assist with threat hunting, data collection and analysis, triage, containment, remediation, and documentation.
• Maintain process documentation, lessons learned, and internal response playbooks.
• Create and present metrics on team efficiency and effectiveness to leadership.
• Manage career development, performance evaluations, training, and mentoring for team members.
• Foster an inclusive, cohesive team culture with a focus on exceptional customer service.
• Stay updated on current cybersecurity trends, best practices, and technological advancements.
• Participate in mandatory weekly on-call rotations.
• Over 8 years of experience in Information Technology.
• Experience as a member of a Security Operations Center (SOC).
• At least 2 years as a Security Incident Response Analyst or in a similar role.
• Background in eDiscovery or a related position performing forensic functions.
• More than 6 years of experience in people management.
• At least 2 years in Information Security and Incident Response or a comparable field.
• Minimum of 2 years of experience with Linux/Unix, Mac, and Windows system analysis.
• Possession of at least one technical Cyber Security Certification, such as GCED, GCDA, or GDAT.
• BA/BS degree in Computer Science, Information Security, or Information Systems, or equivalent relevant work experience.
• Familiarity with managing security tools in a large enterprise environment, including IDS/IPS, advanced anti-malware, DLP, encryption, antivirus, firewalls, identity management, and NAC.
• Knowledge of NIST Cyber Security Framework, NIST SP800-61 R2, and ISO/IEC 27035.
• Proficient in threat modeling concepts, including threat indicators, threat actors, and attack surfaces.
• Understanding of network architecture and the placement of security infrastructure.
• Experience with SIEM technologies such as ArcSight, Splunk, or ELK Stack.
• In-depth technical expertise in Windows and Unix/Linux operating systems.
• Willingness to undertake some domestic and international travel.
• Availability 24/7 during weekly on-call rotations.
• Flexibility to work non-traditional hours, including weekends and holidays, as required.
• Ability to pass a criminal background check and obtain a U.S. government security clearance if necessary.
• Knowledge of malware and threat actor operations.
• Understanding of SIEM data sources and event-log analysis.
• Experience with containment, eradication, remediation, and preservation of forensic artifacts.
• Familiarity with security benchmarks and device hardening across both physical and cloud environments.
• Capability to develop detection rules and integrate API automation.
• Experience in participating in small and large-scale incident response activities.
• Ability to design dashboards, reports, and queries using query and scripting languages.
• Proficiency in reverse engineering network or endpoint compromises.
• Skill in creating organized incident notes and documenting timelines within ticketing systems.
• Excellent written and verbal communication skills in English.
• Strong customer service skills.
• Comprehensive medical, vision, dental, and mental health benefits for you and your family.
• Access to a health care concierge.
• Flexible or Health Savings Accounts (FSA or HSA).
• Complimentary concert tickets.
• Generous paid time off, including holidays, sick leave, and personal days.
• 401(k) plan with company matching.
• Stock reimbursement program.
• New parent programs, including caregiver leave and baby bonuses.
• Support for fertility, adoption, foster care, or surrogacy.
• Career and skill development programs through the School of Live.
• Tuition reimbursement.
• Student loan repayment assistance.
• Volunteer time off.
• Crowdfunding matching.
• Flexible and remote work arrangements as indicated by the job posting location.
Samsara
Accendra Health
Axians Somnitec AG
Axians
Get handpicked remote jobs straight to your inbox weekly.