
Senior Manager, Global Security Operations
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Oversee frontline security operations for the US Security Operations Center (SOC) across all shifts.
• Take ownership of, define, monitor, and analyze SOC operational metrics and KPIs, including Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), alert quality, false-positive rates, detection coverage, and adherence to SLAs.
• Utilize operational data to guide resource distribution, workflow management, threat mitigation, and enhancement initiatives.
• Provide coaching, mentoring, and development for analysts and incident handlers, facilitating career progression from Level 1 to Level 3.
• Establish regular operating rhythms such as shift transitions, quality assessments, and performance reporting.
• Identify challenges and spearhead process enhancements, tool optimization, and automation opportunities in SIEM/SOAR.
• Offer support to senior management in Global Security Operations across operations in the US, Ireland, and India.
• Report on operational performance and improvement results through dashboards and reports targeted at technical teams and senior leadership.
• Enhance SOC operations efficiency, improve detection coverage, ensure accurate alerting, maintain reliable SLA performance, and foster talent development and retention through impactful improvement projects.
• Prior leadership experience in a Security Operations Center (SOC), with direct experience managing operations on the floor.
• At least 6 years of experience in security operations, incident response, or a related field in cybersecurity.
• Minimum of 4 years of experience in people management, overseeing analysts, and coordinating a global team.
• Proven experience in developing, maintaining, and analyzing operational metrics, KPIs, and SLAs.
• Demonstrated ability to lead operational improvement initiatives from identification to delivery of quantifiable results.
• Advanced technical expertise in network and endpoint security, common attacker methodologies, and SIEM/SOAR detection-and-response tools.
• Experience in defining and managing metrics, dashboards, and reporting for a 24/7 operational service.
• Experience in supporting or coordinating operations on a global scale, including scheduling, turnover, and team integration.
• Familiarity with automation and process-improvement strategies that minimize analyst workload and expedite response times.
• Proven track record of developing individual contributors into proficient operators and future leaders.
• One or more industry certifications such as CISSP, CISM, GCIH, GCIA, or equivalent are preferred.
• Required background investigation.
• Allstate generally does not sponsor individuals for employment-based visas for this position.
• A dedicated private workspace free from distractions when working from home is required.
• Reliable internet connection with minimum speeds of 50 MB download and 5 MB upload is necessary.
• Comprehensive technology setup, including a laptop, monitors, headset, keyboard, and mouse.
• Monthly connectivity reimbursement to assist with internet expenses.
• Flexible remote work arrangement.
• Opportunities to cultivate talent in security operations and management skills.
• Chance to challenge existing norms and influence the future of security protection.
• Support for causes that are important to employees.
SafelyYou
SafelyYou
Arctiq
Get handpicked remote jobs straight to your inbox weekly.