Turn this role into an interview — a resume and cover letter built around what this employer wants.
Insight Global is seeking a senior Lead for Cybersecurity Operations to direct day-to-day monitoring, detection, and response activities across our security program.
You will act as the primary escalation point for complex investigations and own the incident response lifecycle, coordinating with leadership and the SOC to translate strategy into actionable work.
Job Description
Lead Cybersecurity Operations Execution & Quality
Oversee day-to-day security monitoring, detection, and response activities, ensuring high-quality investigations and timely remediation of security events and incidents.
Serve as Primary Technical Escalation Point
Act as the go-to escalation resource for analysts, providing hands‑on guidance for complex investigations and ensuring consistency and depth in investigative outcomes.
Own Incident Response Lifecycle & Stakeholder Coordination
Lead and coordinate complex security incidents end‑to‑end, while acting as a liaison between leadership and the SOC—translating strategic direction into actionable tasks and delivering clear, meaningful updates.
Drive Detection & Response Maturity (SIEM & Tooling)
Lead SIEM‑driven operations and continuously improve detection capabilities through use‑case development, tuning, telemetry optimization, and enhanced coverage across security domains.
Coordinate SME Programs & Operational Initiatives
Break down strategic cybersecurity objectives into actionable workstreams, track progress, remove blockers, and ensure successful execution of team initiatives.
Develop & Optimize Playbooks, Processes, and Automation
Create and refine incident response playbooks, SOPs, and automation opportunities to improve consistency, efficiency, and scalability of operations.
Leverage Metrics & Threat Insights to Drive Improvement
Track key operational metrics (MTTD, MTTR, alert fidelity) and conduct advanced threat analysis to inform decisions, strengthen defenses, and continuously improve security posture.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent practical experience).
Security+, GCIH, GCIA, GCED, or equivalent certifications.
5–8+ years of experience in cybersecurity operations or SOC environments
Proven experience leading or coordinating incident response activities
Hands‑on experience with SIEM platforms and building detection‑driven operations
Strong familiarity with security technologies such as EDR, NDR, email security, WAF, and identity/security monitoring tools