Senior Director – Cyber Security Operations

Posted 8 hours ago

This is a fully remote position, open to applicants in California, +2 more states.

📋 Description

• Deliver first-level cyber defense by enhancing detection capabilities through innovative automation.

• Act as a subject matter expert in threat detection and response.

• Prepare for, identify, react to, and mitigate cyber threats to safeguard company data and assets.

• Lead a geographically diverse team of detection and response analysts who monitor, triage, and respond to security events across a 24/7 global network.

• Implement detection methodologies, establish baseline network traffic, and observe anomalous activities.

• Oversee operations of the Threat Detection and Response team, managing personnel, training, and mentoring.

• Utilize automation and orchestration solutions to streamline repetitive tasks.

• Collaborate with both internal and external teams and subject matter experts regarding cybersecurity challenges.

• Support projects and strategic initiatives aimed at enhancing workflows and monitoring and response capabilities.

• Assist with threat hunting, data collection and analysis, triage, containment, remediation, and documentation.

• Maintain process documentation, lessons learned, and internal response playbooks.

• Create and present metrics on team efficiency and effectiveness to leadership.

• Manage career development, performance evaluations, training, and mentoring for team members.

• Foster an inclusive, cohesive team culture with a focus on exceptional customer service.

• Stay updated on current cybersecurity trends, best practices, and technological advancements.

• Participate in mandatory weekly on-call rotations.


⛳️ Requirements

• Over 8 years of experience in Information Technology.

• Experience as a member of a Security Operations Center (SOC).

• At least 2 years as a Security Incident Response Analyst or in a similar role.

• Background in eDiscovery or a related position performing forensic functions.

• More than 6 years of experience in people management.

• At least 2 years in Information Security and Incident Response or a comparable field.

• Minimum of 2 years of experience with Linux/Unix, Mac, and Windows system analysis.

• Possession of at least one technical Cyber Security Certification, such as GCED, GCDA, or GDAT.

• BA/BS degree in Computer Science, Information Security, or Information Systems, or equivalent relevant work experience.

• Familiarity with managing security tools in a large enterprise environment, including IDS/IPS, advanced anti-malware, DLP, encryption, antivirus, firewalls, identity management, and NAC.

• Knowledge of NIST Cyber Security Framework, NIST SP800-61 R2, and ISO/IEC 27035.

• Proficient in threat modeling concepts, including threat indicators, threat actors, and attack surfaces.

• Understanding of network architecture and the placement of security infrastructure.

• Experience with SIEM technologies such as ArcSight, Splunk, or ELK Stack.

• In-depth technical expertise in Windows and Unix/Linux operating systems.

• Willingness to undertake some domestic and international travel.

• Availability 24/7 during weekly on-call rotations.

• Flexibility to work non-traditional hours, including weekends and holidays, as required.

• Ability to pass a criminal background check and obtain a U.S. government security clearance if necessary.

• Knowledge of malware and threat actor operations.

• Understanding of SIEM data sources and event-log analysis.

• Experience with containment, eradication, remediation, and preservation of forensic artifacts.

• Familiarity with security benchmarks and device hardening across both physical and cloud environments.

• Capability to develop detection rules and integrate API automation.

• Experience in participating in small and large-scale incident response activities.

• Ability to design dashboards, reports, and queries using query and scripting languages.

• Proficiency in reverse engineering network or endpoint compromises.

• Skill in creating organized incident notes and documenting timelines within ticketing systems.

• Excellent written and verbal communication skills in English.

• Strong customer service skills.


🏝️ Benefits

• Comprehensive medical, vision, dental, and mental health benefits for you and your family.

• Access to a health care concierge.

• Flexible or Health Savings Accounts (FSA or HSA).

• Complimentary concert tickets.

• Generous paid time off, including holidays, sick leave, and personal days.

• 401(k) plan with company matching.

• Stock reimbursement program.

• New parent programs, including caregiver leave and baby bonuses.

• Support for fertility, adoption, foster care, or surrogacy.

• Career and skill development programs through the School of Live.

• Tuition reimbursement.

• Student loan repayment assistance.

• Volunteer time off.

• Crowdfunding matching.

• Flexible and remote work arrangements as indicated by the job posting location.

People also viewed

Samsara9 hours ago

Senior Security Operations Engineer

US flagUnited States, +2 more locationsFull-timeSecurity Operations$135.5k – $227.7k/year
ApplyView job
Accendra Health13 hours ago

Security Incident Response Analyst

US flagNorth Carolina, +1 more stateFull-timeSecurity Operations$95k/year
ApplyView job
Axians Somnitec AG2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job
Axians2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job
Axians Somnitec AG2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job
Vi2 days ago

Security Operations Engineer – Microsoft Solutions

CH flagSwitzerland OnlyFull-timeSecurity Operations
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers