The Cyber Operations Manager over Threat Detection & Response is responsible for ensuring early and accurate detection, response, and containment of threats against clients. This technical management role requires deep security expertise, experience as a security practitioner, systems management skills, and proven service management abilities. The candidate should also be capable of mentoring staff and improving Security Operations services.
How you'll make an impact
- Lead 24x7 Threat Detection and Response Analysts, overseeing operational and strategic planning, resource allocation, and daily operations.
- Collaborate with customers on reporting, stewardship calls, and escalations.
- Enforce policies related to security, disaster recovery, standards, and service delivery.
- Refine detection, response, and incident management processes continually.
- Oversee security of client systems via the Advanced Fusion Center (AFC).
- Stay updated on vendor updates, expansion opportunities, and technology trends in the client environment.
- Work with other managers to advance Security Operations and Optiv's overall security posture.
- Improve processes and documentation.
- Manage staffing, including recruitment, supervision, scheduling, and performance evaluations.
- Create an educational environment for ongoing knowledge and performance improvement.
- Perform staff performance reviews.
- Report security gaps and vulnerabilities to clients promptly.
- Prepare metrics and trend reports on SLAs and KPIs for clients and support staff.
- Keep abreast of evolving risks, industry developments, and best practices.
- Attend security events and network with peers for risk mitigation insights.
- Oversee threat intelligence reporting.
- Normalize data from various security assessments and projects.
- Maintain communication with executives and other leaders about relevant activities.
- Mentor staff through training, development, and performance management; foster morale and motivation.
- Report to the Director of Security Operations.
Qualifications for success:
- 12+ years in IT and Information Security.
- 5+ years leading Threat Detection and Response teams.
- 5+ years in cyber operations centers.
- 3+ years in managed services.
- Certifications such as Security+, GSEC, CISSP, etc.
- Decision-making and problem-solving skills under pressure.
- Strong analytical skills and quick decision-making ability.
- Deep understanding of SIEM and EDR solutions.
- Knowledge of compliance standards like NIST, HIPAA, PCI, etc.
- Understanding of cybersecurity laws across regions.
- Familiarity with Security Orchestration, Automation, and Response.
- Experience with ticketing and knowledge management systems like ServiceNow.
- Knowledge of ITIL practices.
- Experience with analytics platforms like Kibana, reporting tools like PowerBI.
#LI-TW1
What you can expect from Optiv
- Commitment to Diversity, Equality, and Inclusion.
- Work/life balance.
- Training resources.
- Engagement in complex projects.
- Volunteer opportunities through “Optiv Chips In”.
- Remote work capabilities where applicable.
EEO Statement
Optiv is an equal opportunity employer. All qualified applicants will be considered without regard to protected characteristics. We respect your privacy; see our Applicant Privacy Notice for details.