Sr Manager Cybersecurity Defense - CSIRT

Target

Minneapolis (MN)

Hybrid

USD 150,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Target is seeking a Senior Manager - CSIRT to lead a shift of analysts responsible for alert intake, triage, and response. You will drive incident response operations, develop frameworks, and coach a high-performing team from Target HQ MN in a hybrid work arrangement.

The role requires deep security expertise, collaboration with partner teams, and the ability to translate complex threats into actionable decisions for senior leadership.

Qualifications

  • 4-year degree or equivalent in a related field.
  • 5+ years' of SOC/IR experience.
  • 1-3 years building and leading cyber security teams with direct reports.
  • Cyber security certification (e.g. GIAC, Offensive Security, ISC2).
  • Deep understanding of monitoring, detection, incident response, artifact collection and analysis, cloud environments and attacker mindset.
  • Ability to lead CSIRT effectively during a high-severity security incident.
  • Lifelong learner passionate about continuous improvement and developing both your and your team's skills and capabilities.
  • Ability to convey technical information clearly and concisely.

Responsibilities

  • Lead Incident Response Operations: Direct all phases of the incident response lifecycle, including analysis, containment, eradication, recovery, and post-incident analysis.
  • Develop and Maintain Response Frameworks: Establish and regularly update incident response policies, procedures, playbooks, and escalation workflows in alignment with industry best practices.
  • Coordinate Cross-Functional Response: Serve as a central point of contact during major security incidents, coordinating efforts in collaboration with our partner teams
  • Report on Incident Trends: Develop and present incident metrics, threat trends, and risk insights to senior leadership to support strategic decision-making.
  • Train and Mentor Response Team Members: Provide leadership, coaching, and technical guidance to incident responders and analysts to build a high-performing team.
  • Test and Validate Response Readiness: Contribute to regular tabletop exercises, red team engagements, and technical simulations to assess and strengthen response capabilities.
  • Integrate Threat Intelligence: Leverage internal and external threat intelligence to inform response strategies and anticipate emerging attack vectors.
  • Automate and Streamline Response Processes: Identify opportunities for automation and process optimization using tools such as SOAR platforms.

Skills

SOC/IR experience
Team leadership
Incident response lifecycle
Threat intelligence integration
SOAR platforms
Communication skills
Automation

Education

Bachelor's degree or equivalent in related field

Job description

Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.

The Senior Manager is responsible for a managing a shift composed of CSIRT analysts that are responsible for alert intake, triage, and response. This role is accountable for leading the personnel, developing processes, expectations, and coaching to ensure the success of the shift in supporting our overall mission. The Sr. Manager will collaborate with partner teams to drive the maturity of the CFC organization, will support declared incidents, and get hands on when needed in our response. Success in this role will require strong and innovative approaches to problem solving, great technical leadership, excellent communication (written and verbal, formal and informal), flexibility, accountability and a self-motivated working style with attention to detail.

About You

As a Senior Manager - CSIRT, you will:

  • Lead Incident Response Operations: Direct all phases of the incident response lifecycle, including analysis, containment, eradication, recovery, and post-incident analysis.
  • Develop and Maintain Response Frameworks: Establish and regularly update incident response policies, procedures, playbooks, and escalation workflows in alignment with industry best practices.
  • Coordinate Cross-Functional Response: Serve as a central point of contact during major security incidents, coordinating efforts in collaboration with our partner teams
  • Report on Incident Trends: Develop and present incident metrics, threat trends, and risk insights to senior leadership to support strategic decision-making.
  • Train and Mentor Response Team Members: Provide leadership, coaching, and technical guidance to incident responders and analysts to build a high-performing team.
  • Test and Validate Response Readiness: Contribute to regular tabletop exercises, red team engagements, and technical simulations to assess and strengthen response capabilities.
  • Integrate Threat Intelligence: Leverage internal and external threat intelligence to inform response strategies and anticipate emerging attack vectors.
  • Automate and Streamline Response Processes: Identify opportunities for automation and process optimization using tools such as SOAR platforms.

Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs.

Basic Qualifications:

  • 4-year degree or equivalent experience in a related field
  • 5+ years' of SOC/IR experience
  • 1-3 years of building and leading high performing cyber security teams with direct reports
  • Cyber security certification (e.g. GIAC, Offensive security, ISC2)
  • Deep understanding of and experience with monitoring and detection, incident response, artifact collection and analysis, cloud environments and attacker mindset
  • Ability to lead CSIRT effectively during a high-severity security incident
  • Lifelong learner passionate about continuous improvement and developing both your and your team's skills and capabilities
  • Ability to convey technical information clearly and concisely

Desired Qualifications:

  • An understanding of and experience with any combination of digital forensics, reverse engineering, threat intelligence, threat hunting and SOAR
  • Experience with various operating systems and host-based security controls
  • Experience with network-based security controls, network infrastructure and protocols
  • Experience working in a Cyber Fusion Center with highly collaborative, cross-functional teams

This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target's needs. A Hybrid/Flex for Your Day work arrangement means the team member's core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Click here if you are curious to learn more about Minnesota

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Manager Cybersecurity Defense(Remote Or Hybrid)
Sr Manager Cybersecurity Defense(Remote Or Hybrid)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Comprehensive health benefits
401(k)
Employee discount
+1
Senior CSIRT Leader — Incident Response (Hybrid)
Senior CSIRT Leader — Incident Response (Hybrid)

Target • Minneapolis (MN)

Hybrid
USD 150,000 - 210,000
Cybersecurity Analyst - CSIRT
Cybersecurity Analyst - CSIRT

Target • Brooklyn Park (MN)

Hybrid
USD 69,000 - 126,000
Medical
Vision
Dental
+8
Cybersecurity Analyst - CSIRT
Cybersecurity Analyst - CSIRT

Roundel • Brooklyn Park (MN)

Hybrid
USD 69,000 - 126,000
Health benefits
401(k)
Employee discount
+2
Cybersecurity Analyst, CSIRT — Hybrid 24x7 SOC Role
Cybersecurity Analyst, CSIRT — Hybrid 24x7 SOC Role

Target • Brooklyn Park (MN)

Hybrid
USD 69,000 - 126,000
Medical
Vision
Dental
+8
Sr Engineer - Incident Response Engineering
Sr Engineer - Incident Response Engineering

Target • Brooklyn Park (MN)

Hybrid
USD 98,000 - 176,000
Health Insurance
401(k)
Employee Discount
+2
Senior Engineering Manager – SOAR UI Development
Senior Engineering Manager – SOAR UI Development

Dev • Brooklyn Park (MN)

On-site
USD 124,100 - 223,400
Comprehensive health benefits
401(k)
Employee discounts
+1
Senior CSIRT Defense Lead — Remote/Hybrid
Senior CSIRT Defense Lead — Remote/Hybrid

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Comprehensive health benefits
401(k)
Employee discount
+1
Senior Engineer - Red Team Operator
Senior Engineer - Red Team Operator

Target • Brooklyn Park (MN)

Hybrid
USD 98,000 - 176,000
Lead Engineer Cyber AI - Cybersecurity
Lead Engineer Cyber AI - Cybersecurity

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Employee discount