We're looking for a highly experienced and technically proficient Cybersecurity Fusion Center Lead to join our team. The senior-level role is critical to enhancing the cyber resiliency of our organization, and will report directly to the Head of SecOps. You will be a hands-on leader, guiding a team of cybersecurity engineers while also contributing directly to our cybersecurity operations, threat analysis, and capability development.
The ideal candidate is a Senior Incident Response Officer (SIRO) with extensive experience in the incident response process. You should be a technical expert with a passion for all things cybersecurity, capable of providing guidance and expertise across a wide range of domains. A key part of your responsibility will be to provide the Head of SecOps with a clear, concise overview of the organization's cyber posture and the effectiveness of its security controls.
Key Responsibilities
- Technical Leadership & Mentorship: Lead, mentor, and guide a team of cybersecurity engineers. Provide technical direction and ensure the team remains current with the latest advancements in cybersecurity technologies and practices.
- Threat Intelligence & Analysis: Identify key threats, perform technical risk analysis, and develop effective mitigation strategies. Collaborate with internal and external stakeholders, regulators, and security partners to implement and operate cybersecurity solutions.
- Vulnerability & Risk Management: Conduct comprehensive assessments of IT and OT systems to identify vulnerabilities and potential security risks. Provide recommendations to de-risk technology adoption for internal programs and initiatives.
- Incident Response & Security Operations: Lead and manage the Security Operations Center (SOC) team. Monitor and track suspicious network and application behavior, investigate breaches, and lead the analysis and response to security incidents. This includes gathering evidence and analyzing security logs and access reviews.
- Framework & Compliance: Engage in the enhancement, assessment, and implementation of cybersecurity frameworks like the NIST Cybersecurity Framework (CSF). Evaluate the security maturity and vulnerability of IT products and applications to ensure compliance with our security standards. You should also be familiar with other frameworks such as CCoP, ISO 27001 and PCI DSS.
- Strategic Advisory & Reporting: Provide a comprehensive overview of the organization's cyber posture and the effectiveness of our security controls to the Head of SecOps. Deliver expert insights on the cybersecurity implications of disruptive and emerging technologies and their impact on the organization's security posture. Create management reports that clearly communicate evolving threats, maturity assessments, and the progress of security initiatives.
- Project Execution: Lead and execute security projects across the organization, such as data classification, DLP, and Breach and Attack Simulation (BAS).
Key Requirements
- Experience: 8-10 years of hands-on cybersecurity experience, with at least 3 years in a technical leadership role.
- Education: Bachelor’s or Master’s degree in Computer Science, Engineering, Cybersecurity, Information Security, or a related field.
- Technical Expertise: Extensive experience with cloud and native security solutions.
- Proven experience in incident response related to cyber events.
- Experience with SOC (Security Operations Center) teams, including using SOC tools and technologies to monitor and manage security incidents in real-time.
- Hands-on experience in investigating breaches, gathering evidence, and analyzing security logs/access reviews.
- Experience with vulnerability management, Tabletop Exercises (TTX), and attack simulation.
- Certifications: Professional certifications like CISSP, CISM, or GIAC are a plus.
- Framework Knowledge: Strong knowledge of common security frameworks, including CCoP, NIST CSF, ISO 27001, PCI DSS, CIS, COBIT, and C2M2.
- Skills: Excellent problem-solving, analytical, and critical thinking skills. Strong communication and presentation skills, with the ability to effectively convey complex technical information to both technical and non-technical stakeholders, including senior management. Proven track record of leading and mentoring technical teams.