An application made for this job — a tailored resume and cover letter that speak straight to the posting.
KPMG R.G. Manabat & Co. is seeking a Senior Security Leader to define and drive the Managed Detection & Response strategy.
You will lead cross-functional teams, orchestrate complex security incidents, and shape offerings for enterprise clients in a 24/7 security operations context. The role requires 10+ years in enterprise security, L3 SOC leadership, and strong cloud/on-prem knowledge with relevant certifications.
Formulate and define the strategic direction for Managed Detection & Response as a managed service. Grow pipeline of the solution by working closely with internal and external channels. Identify and create pull through opportunity for other managed services and consulting services. Keep abreast of industrial, technology and business trends. Perform investigation and orchestration for complex/high severity security alerts, threats or incidents. Provide the people, process and technology background to ensure timely detection, identification and alerting of possible attacks/intrusions, anomalous activities, intrusion attempts/compromises, malicious behavior, insider risk, and misuse activities to distinguish these incidents from benign activities. Isolate, triage and eradicate malicious behaviors. Serve as the lead point of contact facilitating incident response orchestration with client. Lead research, analysis and correlation efforts across a variety of all source data sets/collectors, log collectors and threat feeds to inform and guide the strategic direction of the offering. Monitor competitive landscape in pricing, capabilities and offerings to analyze and report system security posture trends. Direct technical product managers in developing new or modified solutions for Managed Detection and Response. As a leader of a team, ensure that the right things are being worked on at the right time, and ensure quality throughout. Working with value architect to create pricing for opportunities. Provide ongoing strategic context for your team and clients, educating, sharing and capturing qualitative and quantitative metrics that corroborate decision making. Develop and maintain materials to communicate offering, value proposition and customize it to individual opportunity. Analysis of alerts from Security Event and Information Management tools, ideally Azure Sentinel (not required). Create and develop SOC processes and procedures, lead strategy development, methodology and execution of Use Case Catalog working with Level 1, Level 2 and Level 3 Analysts.
Formulate and define the strategic direction for Managed Detection & Response as a managed service
Grow pipeline of the solution by working closely with internal and external channels
Perform investigation and orchestration for complex/high severity security alerts, threats or incidents
Serve as the lead point of contact facilitating incident response orchestration with client
Lead research, analysis and correlation efforts across a variety of all source data sets/collectors, log collectors and threat feeds
Direct technical product managers in developing new or modified solutions for Managed Detection and Response
Ensure that the right things are being worked on at the right time, and ensure quality throughout
Create and develop SOC processes and procedures, lead strategy development, methodology and execution of Use Case Catalog
Analysis of alerts from Security Event and Information Management tools
Develop and maintain materials to communicate offering, value proposition and customize it to individual opportunity
At least 10+ years of experience leading Enterprise Security Operations Centers or Managed Detection and Response analyst or incident response teams
Experience in lead security operations center analyst (L3), threat hunting, penetration testing, digital forensics, incident response
Knowledge of on-prem, hybrid and cloud security concepts and protocols
Certifications: CEH, GIAC, OSCP, CREST, GCIH, CCIA, GPEN, Platform Certifications (Microsoft, Splunk, Sentinel, etc.)
Experience with Cyber-Security solutions, Security Operation Center, Threat Intelligence Management, Vulnerability Research, Digital Forensics, Incident Response, Endpoint Management, Network Security
Product Management experience with Software as a Service (SaaS) or Infrastructure as a Service (IaaS) offerings for enterprises
Experience in the enterprise software market and with services / product companies
Knowledge of a global, 24/7, high availability and high trust operation aspects of managed services
3+ years Level 3 SOC Analyst experience
Master's or Bachelor's degree; or an equivalent experience in lieu of degree
HMO with 2 Free Dependents
Communication Allowance
Rice Allowance
Clothing Allowance
Christmas/Holiday Gift (Christmas Cash Gift)
Group Personal Accident Insurance
Life Insurance with coverage
Flexi-ben reimbursement (Medical/Dental/Optical)
Bereavement Assistance
Retirement Plan
Leave Privileges
Firm-wide holiday shutdown on last 2 weeks of the year
Company work suspensions during extreme weather conditions