Senior Manager, Detection and Response

Jobtailor

California (MO)

On-site

USD 200,000 - 260,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Jobtailor is seeking a senior leader to own and grow a Detection & Response program for a cloud infrastructure provider. You will shape threat management, incident response, and automation, aligning security outcomes with business impact.

You will build and mentor a high-performing team, define processes, run blameless post-incident reviews, and deliver data-driven insights to guide strategic investments in protections.

Qualifications

  • 10+ years of security experience.
  • 5+ years leading technical teams.
  • Experience defining and building security programs from the ground up.
  • Experience establishing team processes, technical frameworks, and cross-functional partnerships.
  • Ability to build automation-first security programs.
  • Understanding of securing a cloud infrastructure provider.
  • Ability to foster long-term, sustainable team culture.
  • Strong judgment in security response with business impact alignment.
  • Experience translating technical security work into executive metrics.
  • Experience building D&R programs at AI/ML companies.
  • Experience using AI/ML for security operations automation.
  • Experience scaling security during hypergrowth.
  • Hands-on contributions when needed.
  • Build-versus-buy decisions for security tooling.
  • Experience driving or providing evidence for compliance audits (SOC 2, ISO 27001, PCI-DSS, HIPAA/HITECH, FedRAMP).

Responsibilities

  • Lead the Detection & Response team reporting to the CISO.
  • Build, hire, and lead a high-performing team ensuring 24/7 operational excellence.
  • Define team processes, culture, and operating rhythms.
  • Conduct one-on-ones, provide feedback, and craft career paths.
  • Manage project priorities, deadlines, and deliverables.
  • Establish a blameless post-incident culture focused on systemic improvements.
  • Define threat management frameworks for proactive hunting and detection.
  • Establish automation standards to eliminate repetitive work.
  • Architect incident response processes, escalation frameworks, and triage protocols.
  • Guide security technology choices and pioneer AI-powered detection using LLMs.
  • Create data-driven insights to guide investments in preventative controls.
  • Partner with Product and Platform Engineering as infrastructure grows.
  • Lead cross-functional collaboration during critical events.
  • Executive reporting translating incidents into business impact.
  • Drive blameless post-incident reviews and weekly operations reviews.
  • Define sustainable on-call rotations for 24/7 coverage.
  • Set a six-month strategic roadmap for Detection & Response with measurable outcomes.

Skills

Threat management
Incident response
Automation-first security
Cloud security
Security tooling decisions
Data-driven insights
Project management
Cross-functional collaboration
Executive reporting
Post-incident reviews

Tools

AI-powered detection capabilities
LLMs
Security tooling standards
Automation standards

Job description


  • Lead the Detection & Response team, reporting to the CISO

  • Build, hire, and lead a high-performing team supporting 24/7 operational excellence

  • Define team processes, culture, and operating rhythms

  • Conduct one-on-ones, provide feedback, and create career development paths

  • Manage project priorities, deadlines, and deliverables

  • Establish a blameless post-incident culture focused on systemic improvements

  • Define threat management frameworks for proactive threat hunting and detection

  • Establish automation standards to eliminate repetitive work

  • Architect incident response processes, escalation frameworks, and triage protocols

  • Guide security technology choices and pioneer AI-powered detection capabilities using LLMs

  • Create data-driven insights to guide investments in preventative controls

  • Partner with Product and Platform Engineering teams as infrastructure grows

  • Lead cross-functional collaboration during critical events

  • Establish executive reporting translating technical incidents into business impact

  • Drive blameless post-incident reviews

  • Run weekly operations reviews and build institutional knowledge

  • Define sustainable on-call rotations and procedures maintaining 24/7 coverage

  • Establish a six-month strategic roadmap for comprehensive Detection & Response capabilities with measurable outcomes


Requirements


  • 10+ years of security experience

  • 5+ years leading technical teams

  • Proven ability to build and manage independently

  • Experience defining and building security programs from the ground up

  • Experience establishing team processes, technical frameworks, and cross-functional partnerships

  • Ability to build automation-first security programs

  • Understanding of the unique requirements of securing a cloud infrastructure provider

  • Ability to create sustainable team cultures where senior engineers thrive long-term

  • Strong judgment in security response and ability to calibrate actions proportionally to business impact

  • Track record translating technical security work into executive communications and business-aligned metrics

  • Ability to thrive in high-ambiguity, startup-paced environments

  • Experience building D&R programs at AI/ML companies

  • Experience using AI/ML for security operations automation

  • Experience scaling security during hypergrowth

  • Deep technical background for hands-on contribution when needed

  • Experience with build-versus-buy decisions for security tooling

  • Experience driving or providing significant evidence for compliance audits such as SOC 2, ISO 27001, PCI-DSS, HIPAA/HITECH, or FedRAMP

  • Must be willing and able to work from the Bellevue, San Francisco, or San Jose office 4 days per week


Core Competencies

Demonstrates extensive experience in leading security teams and building comprehensive Detection & Response programs, with a strong focus on automation and cloud security. Capable of translating technical incidents into business impact and fostering a sustainable team culture that supports long-term growth.


Highest-signal resume keywords


  • 10+ Years Security Experience

  • 5+ Years Leading Technical Teams

  • Experience Building Security Programs

  • AI/ML for Security Operations Automation

  • Compliance Audits Experience


Hard Skills


  • Threat Management Frameworks

  • Incident Response Processes

  • Automation-First Security Programs

  • Security Tooling Decisions

  • Data-Driven Insights

  • Project Management

  • Cross-Functional Collaboration

  • Executive Reporting

  • Post-Incident Reviews

  • Cloud Infrastructure Security


Soft Skills


  • Strong Judgment in Security Response

  • Ability to Thrive in High-Ambiguity Environments

  • Team Building and Leadership

  • Feedback and Career Development
  • Cultural Development


Certifications & Qualifications


  • SOC 2

  • ISO 27001

  • PCI-DSS

  • HIPAA/HITECH

  • FedRAMP


Industry Keywords


  • Detection & Response

  • Security Operations

  • Cloud Security

  • Hypergrowth Scaling

  • Technical Frameworks


Tools & Technologies


  • AI-Powered Detection Capabilities

  • LLMs

  • Security Technology Choices

  • Automation Standards

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead, Incident Response – Global CSIRT
Lead, Incident Response – Global CSIRT

Jobtailor • United States

On-site
USD 150,000 - 190,000
Health insurance
Senior Incident Response Analyst
Senior Incident Response Analyst

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Director of Cyber Security
Director of Cyber Security

Jobtailor • Concord (MA)

Hybrid
USD 180,000 - 260,000
Staff Corporate Security Engineer
Staff Corporate Security Engineer

Jobtailor • Lehi (UT)

On-site
USD 120,000 - 180,000
Detection and Response Platform Engineer
Detection and Response Platform Engineer

Jobtailor • Sunnyvale (CA)

On-site
USD 150,000 - 230,000
Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000
Information Security Manager – Configuration Management
Information Security Manager – Configuration Management

Jobtailor • Minnesota

On-site
USD 150,000 - 190,000
Director, Security Operations Enablement
Director, Security Operations Enablement

Jobtailor • New Jersey

On-site
USD 190,000 - 230,000
Security Operations Lead
Security Operations Lead

Jobtailor • Pennsylvania

On-site
USD 120,000 - 160,000
Senior Incident Responder, Global CSIRT
Senior Incident Responder, Global CSIRT

Jobtailor • United States

On-site
USD 120,000 - 180,000