Strategic Security Ops & Engineering Lead

Envista Holdings Corporation

Brea (CA)

On-site

USD 156,000 - 191,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical/dental/vision benefits
401K match

Job summary

Envista Holdings Corporation is seeking a strategic Security Operations and Engineering Lead to drive enterprise cybersecurity operations, detection engineering, incident response, and security platform capabilities. This leader will own the SOC, incident response program, detection lifecycle, and security tooling ecosystem to build scalable, threat-informed, and measurable security operations.

The role emphasizes 24x7 monitoring, cross‑functional collaboration, and leadership of SOC/ENG teams

Qualifications

  • Bachelor's degree or equivalent industry experience and leadership experience are valued.
  • 7+ years of experience in cybersecurity, security operations, detection engineering, incident response, or security engineering.
  • 5+ years leading security operations, engineering, SOC, or incident response teams.
  • Experience operating security capabilities across cloud, SaaS, endpoint, identity, and enterprise environments.
  • Experience managing MSSP, MDR, SOC-as-a-Service, or strategic security service providers.
  • Hands-on experience with SIEM platforms (Microsoft Sentinel, Splunk, QRadar, Chronicle, etc.).
  • Experience in Azure, AWS, or GCP environments.
  • Understanding of Zero Trust security principles and modern detection strategies.
  • Ability to communicate technical risks to executive leadership and business stakeholders.
  • Experience coordinating investigations across security, IT, legal, privacy, HR, and executive stakeholders.

Responsibilities

  • Lead enterprise security operations including monitoring, triage, investigation, escalation, and response.
  • Oversee SOC and MSSP/MDR partnerships including SLAs, alert quality, escalation paths, and performance metrics.
  • Establish 24x7 monitoring aligned to enterprise risk.
  • Define KPIs/KRIs including MTTD, MTTR, alert fidelity, detection coverage, and response effectiveness.
  • Lead lifecycle management of SIEM, SOAR, EDR/XDR, CSPM, DLP, identity security, and cloud security platforms.
  • Drive automation across triage, enrichment, containment, and reporting workflows.
  • Define enterprise logging and telemetry strategy including onboarding, parsing, normalization, retention, and coverage standards.
  • Ensure tools are integrated, cost‑effective, and aligned to risk priorities.
  • Own incident response program including playbooks, exercises, breach workflows, and communications.
  • Lead major incidents through containment, eradication, recovery, and root cause analysis.
  • Ensure post‑incident reviews drive durable control improvements.
  • Coordinate with Legal, Privacy, HR, IT, and Communications.
  • Build detection engineering lifecycle: hypothesis to development to testing to tuning to deployment to validation to retirement.
  • Develop behavior‑based and threat‑informed detections aligned to MITRE ATT&CK.
  • Expand monitoring across endpoint, identity, cloud, SaaS, network, and critical applications.
  • Identify and close detection gaps via red team, pentest, and vulnerability insights.
  • Support exposure management, asset inventory visibility, and attack surface monitoring.
  • Drive continuous control monitoring and validation of key security controls.
  • Improve vulnerability remediation workflows and risk reduction outcomes.
  • Build and lead high‑performing security operations and engineering teams.
  • Establish clear roles, operating model, and accountability.
  • Provide executive reporting on threats, incidents, control gaps, and maturity.
  • Partner with GRC, Audit, IT, Architecture, and business leadership.

Skills

Security operations leadership
Incident response leadership
Detection engineering
Executive communication

Education

Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Systems, Business, Engineering, or related fields

Tools

Microsoft Sentinel
Splunk
QRadar
Chronicle

Job description

Envista Holdings Corporation is seeking a strategic Security Operations and Engineering Lead to drive enterprise cybersecurity operations, detection engineering, incident response, and security platform capabilities. This leader will own the SOC, incident response program, detection lifecycle, and security tooling ecosystem to build scalable, threat-informed, and measurable security operations.

The role emphasizes 24x7 monitoring, cross‑functional collaboration, and leadership of SOC/ENG teams

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Strategic Security Operations Lead
Strategic Security Operations Lead

Empyreal Logistics • Englewood (CO)

On-site
USD 110,000 - 170,000
Security Ops Lead for Mission-Critical Space & GovSec
Security Ops Lead for Mission-Critical Space & GovSec

Industrious Ventures • Torrance (CA)

On-site
USD 120,000 - 150,000
Security Operations Lead — Incident Response & Detection
Security Operations Lead — Incident Response & Detection

enVista • Carmel (IN)

Hybrid
USD 120,000 - 150,000
Competitive pay bonuses
Comprehensive health coverage
PTO and sabbatical programme
+3
Senior Director of Security Operations
Senior Director of Security Operations

Code Red Partners • United States

On-site
USD 180,000 - 280,000
Envista Security Operations & Engineering Lead (Brea, CA)
Envista Security Operations & Engineering Lead (Brea, CA)

Envista Holdings Corporation • Brea (CA)

On-site
USD 156,000 - 191,000
Medical/dental/vision benefits
401K match
SOC Manager
SOC Manager

HW3 • Jacksonville (FL)

On-site
USD 120,000 - 180,000
Senior Security Operations Lead — SIEM/IR, Hybrid
Senior Security Operations Lead — SIEM/IR, Hybrid

enVista Corp. • Carmel (IN)

Hybrid
USD 140,000 - 190,000
Life Insurance
Short/Long Term Disability
401k with Company Matching
+2
Senior SOC Lead: Threat Detection & Incident Response
Senior SOC Lead: Threat Detection & Incident Response

RB Global Inc. • Westchester (IL)

On-site
USD 140,000 - 190,000
Global SOC Manager: 24x7 Security Operations Leader
Global SOC Manager: 24x7 Security Operations Leader

HW3 • Jacksonville (FL)

On-site
USD 120,000 - 180,000
Security Operations Engineer: Incident Response & Threat Detection
Security Operations Engineer: Incident Response & Threat Detection

Vertex Inc. • United States

On-site
USD 91,000 - 119,000