Manager, Security Operations | Remote, USA
Overview
The Manager of Operations Managed Detection and Response is responsible for ensuring early and accurate detection, response, and containment of threats against our clients. This technical management role requires deep security knowledge, experience as a security practitioner, systems management and administration skills, proven service management abilities, and talent retention capabilities. The role involves mentoring staff, developing security services, analyzing security incidents, and reporting on security activities.
Key Responsibilities
- Lead and manage the Security Operations Center (SOC).
- Provide 24/7 SOC coverage, including evening hours.
- Manage security event monitoring, management, and response.
- Oversee team resources, enforce quality standards, and initiate corrective actions.
- Ensure effective security alert triage, incident management, and client communication.
- Improve service efficiency through process enhancements.
- Drive responsiveness and monitor contractual service delivery.
- Review and update policies, SOPs, and protocols.
- Perform threat management, modeling, and develop security use cases.
- Create reports, dashboards, and metrics; present to senior management.
- Engage with cross-functional teams to meet stakeholder needs.
- Evaluate and improve technical capabilities and systems.
- Mentor staff, foster morale, and manage performance.
- Conduct post-incident reviews and implement lessons learned.
- Collaborate with security leadership on process improvements.
- Develop communication channels regarding evolving threats.
- Coordinate actions with clients and service departments.
- Perform additional duties as assigned, ensuring policy compliance.
Qualifications
- Bachelor’s Degree in IT, Security, Engineering, or related field.
- 10+ years in IT and Information Security.
- 5+ years in cyber operations centers.
- 3+ years in managed services.
- Strong decision-making and problem-solving skills under pressure.
- Excellent communication skills, including writing and verbal.
- Deep understanding of SIEM and Endpoint solutions (e.g., LogRhythm, QRadar, Splunk, CrowdStrike).
- Knowledge of compliance standards (NIST, SOX, HIPAA, etc.).
- Understanding of Security Orchestration, Automation, and Response (SOAR).
- Experience with ticketing systems like ServiceNow and ITIL.
- Certifications: Security+, CISSP, GSEC, GCIA, GCIH, PMP (preferred).
- Team-oriented with excellent interpersonal skills.
What We Offer
- Diversity and inclusion initiatives.
- Work/life balance and professional development resources.
- Volunteer opportunities.
- Remote work capabilities.
EEO Statement
Optiv is an equal opportunity employer, considering all qualified applicants without discrimination. We respect your privacy and process your personal information in accordance with our Privacy Notice.