Senior Manager - Cybersecurity Operations

Castelion

Torrance (CA)

On-site

USD 150,000 - 190,000

Full time

48 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Equity participation
Health benefits
Paid time off
Gym/fitness stipend
Onsite facilities

Job summary

Castelion is seeking a Senior Manager – Cybersecurity Operations to lead our defensive security operations, incident response and threat monitoring. You will protect our information systems, IP, and critical infrastructure while aligning security with business goals.

The role requires deep expertise in SOC leadership, SIEM/SOAR, threat hunting, and incident response within regulated environments. Strong communication and collaboration with IT, engineers, and government partners are essential.

Qualifications

  • 7+ years in cybersecurity with hands-on defensive operations.
  • 2+ years in a leadership or team lead capacity.
  • Experience in defense, aerospace, government, or critical infrastructure sectors.
  • Regulated environments (DoD, NIST 800-171, ISO 27001, etc.).
  • Proven monitoring, threat hunting, and incident response expertise.

Responsibilities

  • Lead SOC activities and ensure effective threat detection and response.
  • Direct threat hunting operations to identify and neutralize threats.
  • Lead incident response for security events affecting all information systems.
  • Develop and maintain playbooks, runbooks, and SOPs.
  • Coordinate with internal teams for exercises validating defenses.
  • Design defense-in-depth strategies aligned with NIST/DoD.
  • Evaluate and deploy SIEM/EDR/XDR/SOAR and threat intel platforms.
  • Create and maintain security architecture documentation.
  • Contribute to security roadmap planning.
  • Align threat intelligence with aerospace/defense threats.
  • Analyze TTPs using MITRE ATT&CK framework.
  • Produce threat intel reports for technical and executive audiences.
  • Collaborate with government agencies on threat information sharing.
  • Track emerging threats affecting defense/aerospace tech.

Skills

Threat hunting
Incident response
Defensive operations
SOC leadership
SIEM/SOAR
MITRE ATT&CK
NIST/DoD frameworks
Cloud security
Networking & forensics
Scripting (Python/PowerShell)

Tools

SIEM (various)
EDR/XDR
CrowdStrike
Carbon Black
Defender/ SentinelOne

Job description

Why Castelion, Why Now

Castelion is moving incredibly fast to develop and deliver advanced defense systems at a time when execution matters more than ever. We believe focus and technical excellence are decisive advantages - and we are building a team that can deliver real capability, not just concepts.

This is a rare opportunity to join at an early stage, where your work will directly shape critical systems, influence major technical decisions, and have immediate, real-world impact.

Senior Manager – Cybersecurity Operations

We are seeking an experienced Senior Manager – Cybersecurity Operations to join our cybersecurity operations team at Castelion. This critical role will lead defensive security operations, incident response, and threat monitoring, protecting our information systems, intellectual property, product development security, and critical infrastructure from common threat vectors as well as advanced persistent threats (APTs) and nation-state actors.

The ideal candidate will envision security to remain a business enabler and not a blocker, have deep expertise in defensive security operations, SOC leadership, proactive threat hunting, SIEM & SOAR, and incident response within highly regulated environments. Brings a practical, and up-to-date relevant technical understanding of protocols, encryption levels, patch levels, policy & procedure, etc., that are secure in the modern cybersecurity landscape.

Responsibilities
  • Contribute to and mature our Security Operations Center (SOC) activities and ensure effective threat detection and response
  • Direct threat hunting operations to proactively identify and neutralize threats before impact
  • Lead incident response efforts for security events affecting all our information systems
  • Develop and maintain defensive playbooks, runbooks, and standard operating procedures
  • Coordinate with additional internal teams to conduct exercises that validate defensive posture
  • Design and implement defense-in-depth strategies aligned with NIST, DoD, and intelligence community frameworks
  • Evaluate and deploy advanced security technologies (SIEM, EDR/XDR, SOAR, threat intelligence platforms)
  • Create and maintain security architecture documentation and network defense diagrams
  • Contribute to security roadmap planning
  • Establish and maintain threat intelligence program aligned to aerospace and defense sector threats
  • Analyze threat actor tactics, techniques, and procedures (TTPs) using MITRE ATT&CK framework
  • Produce threat intelligence reports and briefings for technical and executive audiences
  • Collaborate with government agencies and industry partners on threat information sharing
  • Track emerging threats and vulnerabilities relevant to defense systems and aerospace technology
  • Contribute to compliance with NIST 800-171, CMMC, ITAR, DFARS, and other applicable regulations
  • Support security audits, assessments, accreditation activities, and regular penetration testing
  • Partner with IT operations, engineering, and program management teams on security initiatives
  • Coordinate with government customers and oversight bodies on security matters
  • Function as a primary stakeholder and subject matter expert for changes to cyber controls and policies
Required Qualifications
  • 7+ years of hands-on experience in cybersecurity, with a focus in defensive operations
  • 2+ years in a leadership or team lead capacity
  • Proven experience operating in defense, aerospace, engineering, intelligence, government, or critical infrastructure sectors
  • Experience in regulated environments (DoD, CMMC, NIST 800-171, ISO 27001, etc.)
  • Demonstrated expertise in security monitoring, threat hunting, and incident response
  • Demonstrated understanding of advanced persistent threat (APT) tactics and techniques
  • Hands-on experience with enterprise security tools (SIEM, EDR, IDS/IPS, firewalls, proxies)
  • Expert knowledge of network protocols, security architecture, and system hardening
  • Expert proficiency as both a configurator and a consumer of security information and event management (SIEM) platforms
  • Strong understanding of Windows and Linux security and forensics
  • Experience with endpoint detection and response (EDR) solutions (CrowdStrike, Carbon Black, Defender, SentinelOne, etc.)
  • Proficiency with scripting and automation (Python, PowerShell, Bash)
  • Knowledge of cloud security (AWS, Azure, GovCloud)
  • Understanding of malware analysis, reverse engineering techniques, and penetration testing
  • Experience with threat intelligence platforms and indicator management
  • Deep understanding of security principles, threats, and frameworks (e.g., cyber kill chain, MITRE ATT&CK, NIST, CIS Controls).
  • Strong documentation, troubleshooting, and communication skills.
  • Ability to thrive in fast-paced, high-pressure environments with competing priorities.
  • Analytical mindset with strong problem-solving abilities
  • Commitment to staying current with evolving threat landscape
Preferred Qualifications
  • Active Security+, CISSP, GIAC, GSOC, GCIA, GCIH, GCFA, CISA, CEH, or similar senior-level certifications
  • Eligibility to keep and maintain a U.S. security clearance.
What We're Looking For
  • A proactive security professional who sees audits and compliance as opportunities to build better systems – not just check boxes.
  • A disciplined thinker who can balance security, business needs, and regulatory constraints.
  • A calm, solutions-oriented team member who leads by example during assessments, incidents, or high-pressure reviews.
  • A clear communicator who knows how to educate non-technical stakeholders without watering things down.
Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

Benefits And Perks
  • All full-time employees are granted meaningful long-term equity, sharing in the company's significant growth trajectory.
  • Four (4) weeks of paid time off.
  • Ten (10) company-paid holidays.
  • Comprehensive health benefits - including 100% employee-covered medical and strong dependent coverage, along with dental and vision plans.
  • Paid parental leave.
  • A $100 monthly fitness stipend to promote health and performance.
  • Onsite EV charging for convenience.
  • Perks like catered meals.
  • Company-covered food during high-demand periods.
  • A fully stocked kitchen to stay fueled throughout the day.
Affirmative Action/EEO Statement

Employment with Castelion is governed on the basis of competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager – Cybersecurity Operations
Senior Manager – Cybersecurity Operations

Cantos Ventures • Torrance (CA)

On-site
USD 180,000 - 240,000
Equity/Stock options
4 weeks PTO
10 company-paid holidays
+6
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Next Matter • Torrance (CA)

On-site
USD 85,000 - 120,000
Equity opportunities
Four weeks paid time off
Comprehensive health benefits
+3
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Next Matter • Torrance (CA)

On-site
USD 120,000 - 160,000
Long-term stock incentives
Comprehensive medical, vision, and dental insurance
Four weeks of paid time off per year
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Castelion • Torrance (CA)

On-site
USD 150,000 - 210,000
Generous benefits package
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Castelion • Torrance (CA)

On-site
USD 120,000 - 180,000
Product Security Architect, Embedded Systems
Product Security Architect, Embedded Systems

Castelion • Torrance (CA)

On-site
USD 180,000 - 240,000
Supervisor, Physical Security (Armed)
Supervisor, Physical Security (Armed)

Castelion • Rio Rancho (NM)

On-site
USD 85,000 - 115,000
Benefits package
Software Security Engineer
Software Security Engineer

Cantos Ventures • Torrance (CA)

On-site
USD 140,000 - 190,000
Stock incentives
Medical, Vision, Dental insurance
Paid time off
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

Next Matter • Torrance (CA)

On-site
USD 120,000 - 150,000
Long-term stock incentives
Comprehensive medical, vision, and dental insurance
Three weeks of paid time off per year
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

Castelion • Torrance (CA)

On-site
USD 120,000 - 180,000
Long-term stock incentives
Comprehensive medical, vision, and dental insurance
Three weeks of paid time off