Cyber Operations Manager- Threat Operations & Splunk
Join to apply for the Cyber Operations Manager- Threat Operations & Splunk role at Optiv.
The Cyber Operations Manager for Threat Detection & Response is responsible for ensuring early and accurate detection, response, and containment of threats against clients. This technical management role requires deep security expertise, experience as a security practitioner, systems management skills, and the ability to attract and retain talent. The role involves mentoring staff and improving Security Operations services.
How you'll make an impact
- Lead 24x7 Threat Detection and Response Analysts, overseeing operations, strategic planning, and resource management.
- Collaborate with clients on reporting, stewardship calls, and escalations.
- Enforce policies on security, disaster recovery, and service standards.
- Refine detection, response, and incident management processes.
- Oversee client system security via the Advanced Fusion Center (AFC).
- Stay updated on vendor products, expansion, and technology directions.
- Coordinate with other managers to advance Security Operations and Optiv's offerings.
- Improve processes and documentation.
- Manage staffing including recruitment, supervision, development, and evaluations.
- Foster an educational environment for staff growth.
- Perform staff performance reviews.
- Report security gaps and vulnerabilities to clients.
- Prepare reports on metrics, SLAs, and KPIs.
- Stay informed about evolving risks and industry best practices.
- Attend security events and network with industry peers.
- Oversee threat intelligence reporting.
- Normalize data from various security assessments and projects.
- Communicate with executives and other leaders about relevant activities.
- Develop staff through training and performance management, maintaining morale.
- Report to the Director of Security Operations.
Qualifications for success
- 12+ years in IT and Information Security
- 5+ years leading Threat Detection & Response teams
- 5+ years in cyber operations centers
- 5+ years with SIEM solutions, especially Splunk
- 3+ years in managed services
- Security or networking certifications (e.g., Security+, CISSP)
- Decision-making and problem-solving skills under pressure
- Deep understanding of SIEM and EDR solutions
- Knowledge of compliance standards (NIST, HIPAA, PCI, etc.)
- Understanding of cybersecurity laws across regions
- Experience with Security Orchestration, Automation, and Response (SOAR)
- Experience with ticketing and knowledge management systems like ServiceNow
- Familiarity with ITIL practices
- Experience with security analytics platforms like Kibana
- Experience with reporting tools like PowerBI and DOMO
What you can expect from Optiv
- Commitment to Diversity, Equity, and Inclusion
- Work/life balance
- Training resources
- Opportunity to work on complex projects
- Volunteer opportunities through "Optiv Chips In"
- Remote work capabilities where applicable
EEO Statement
Optiv is an equal opportunity employer, considering all qualified applicants without discrimination. We respect your privacy; see our Privacy Notice for details.
Additional details
- Senior level: Mid-Senior
- Employment type: Full-time
- Industry: Computer and Network Security