Cyber Defense Team Lead

APi Group

Minneapolis (MN)

On-site

USD 127,000 - 191,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Comprehensive insurance coverage
Access to corporate fitness center
401(k) with employer match
Generous paid time off

Job summary

A leading security solutions provider in Minneapolis is seeking a Cyber Defense Team Lead to oversee the North America Cyber Defense team. This key role involves mentoring analysts, leading incident response, and improving security operations. Candidates should have a strong incident response background, experience with Azure security tools, and a proven ability to communicate effectively. The position offers a competitive salary range of $127,000 - $191,000, alongside comprehensive benefits and growth opportunities.

Qualifications

  • Experience as a Cyber Security Analyst or in an MSSP.
  • Strong judgment under pressure.
  • Ability to produce actionable recommendations.

Responsibilities

  • Lead and manage North America Cyber Defense analysts.
  • Serve as Lead Responder for security incidents.
  • Act as technical escalation point for investigations.

Skills

Incident response background
Mentoring junior analysts
Analytical skills
Communication skills

Education

Relevant certifications (AZ-500, SC-200)

Tools

Azure security stack
MSSP understanding
KQL or equivalent query languages

Job description

Cyber Defense Team Lead at APi Group.

This role is a key leadership position within our global Cyber Defense Operations function, leading the North American cyber defense team and providing day‑to‑day guidance, technical oversight, and clear direction across incident response, security operations, and analyst development.

Base Pay Range

$127,000.00/yr - $191,000.00/yr

What You Will Do
  • Team Leadership and People Management. Lead and manage North America Cyber Defense analysts, coach, hold regular 1:1s and performance reviews, and foster a collaborative team that delivers consistent results.
  • Incident Response Leadership. Serve as Lead Responder for security incidents, conduct post‑incident reviews, coordinate with IT, Legal, Audit, and DPO as required, and oversee the on‑call schedule.
  • Security Operations and Technical Oversight. Act as the technical escalation point, guide complex investigations, and partner with our global MSSP to improve alerting, tuning, and automation.
  • Metrics, Reporting and Briefing. Own North America’s contribution to the global Monthly Security Operations Brief and work with international counterparts for a consistent view.
  • NIST Cybersecurity Framework Progress. Support delivery of the organization’s NIST CSF targets, track actions, and coordinate remediation work.
  • Business Collaboration. Work with UK and France colleagues, build relationships with engineering, IT, HR, Legal, Audit, and other stakeholders, and represent North America in global discussions.
Required Skills and Experience
  • Previous experience as a Cyber Security Analyst or within an MSSP.
  • Strong incident response background with sound judgment under pressure.
  • Proven ability to mentor junior analysts in investigations.
  • Clear written and verbal communication for both technical and non‑technical audiences.
  • Experience with the Azure security stack (Defender, Sentinel, Purview) or comparable AWS, SIEM, or SOAR technologies.
  • Ability to work effectively with an MSSP and drive tuning, quality, and workflow improvements.
  • Strong analytical skills and ability to produce actionable, insight‑driven recommendations.
Highly Advantageous
  • Experience with Azure Security, Microsoft Sentinel, or the broader Microsoft Defender ecosystem.
  • Knowledge of Entra ID, Purview, or related cloud security tools.
  • Familiarity with KQL or equivalent query languages (Splunk, Elastic).
  • Relevant certifications (AZ‑500, SC‑200, GCIH, GCIA, GCED, AWS Security credentials).
  • Experience in improving incident response, automation, or detection engineering.
Personal Attributes
  • Calm and composed under pressure, making evidence‑based decisions.
  • Independent thinker with good judgment, knowing when to seek input.
  • Clear communicator, distilling complex issues into concise actions.
  • Pragmatic, outcome‑focused, and building trust across technical and non‑technical teams.
Benefits and Compensation

This role is based out of our New Brighton office. The pay range is $127,000 - $191,000, depending on skills, experience, and knowledge. The position is eligible for annual bonus and profit sharing based on company performance, plus benefits supporting overall well‑being.

  • Comprehensive insurance coverage: medical, dental, vision, and more.
  • Access to corporate fitness center.
  • Wellness program.
  • 401(k) with employer match.
  • Discounted company stock (Employee Stock Purchase Plan).
  • Profit sharing.
  • Generous paid time off.
  • Growth opportunities through company‑sponsored leadership development courses and training.
EEO Statement

APi Group is an equal opportunity employer. We are committed to creating an inclusive environment for all employees and applicants. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

This position is not eligible for sponsorship.

All offers of employment are expressly contingent upon the satisfactory completion, in accordance with Company policy, of a pre‑employment drug screening and background check.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Defense Team Lead
Cyber Defense Team Lead

APi Construction Company • New Brighton (MN)

On-site
USD 127,000 - 191,000
Comprehensive Insurance coverage
Access to corporate fitness center
401K with employer match
+2
Principal Network Evaluator 4 with TS/SCI + Poly
Principal Network Evaluator 4 with TS/SCI + Poly

Aperio Global • Fort Meade (MD)

On-site
USD 140,000 - 190,000
Health Care Plan
401(k) Retirement Plan with employer-m
Life Insurance
+3
Cyber Incident Response Manager
Cyber Incident Response Manager

Software Guidance & Assistance, Inc. (SGA, Inc.) • New York (NY)

On-site
USD 200,000 - 220,000
Cybersecurity Analyst
Cybersecurity Analyst

TurnPoint Services • Louisville (KY)

On-site
USD 70,000 - 100,000
Senior Cyber Threat Defense - Security Operations Engineer
Senior Cyber Threat Defense - Security Operations Engineer

Segment (Twilio) • Draper (UT)

On-site
USD 110,000 - 160,000
Competitive compensation
Comprehensive benefits
Flexible work environment
+1
Cyber Security Analyst - Lead
Cyber Security Analyst - Lead

Pyramid Consulting, Inc • North Carolina

Remote
Health insurance (medical, dental, vision)
401(k) plan
Paid sick leave
Head of Cyber Incident Response & Cyber Threat Mitigation Services
Head of Cyber Incident Response & Cyber Threat Mitigation Services

Software Guidance & Assistance, Inc. (SGA, Inc.) • New York (NY)

Hybrid
USD 200,000 - 220,000
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Cyber Defense - Incident Responder
Cyber Defense - Incident Responder

NorthMark Strategies • Dallas (TX)

On-site
USD 150,000 - 190,000
Lunch stipend
Employer-paid medical (HDHP)
Dental and Vision benefits
+4
Computer Network Defense Analyst
Computer Network Defense Analyst

Agecareers • Columbus (OH)

On-site
USD 85,000 - 98,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6