Director, Security Operations
White Plains, NY, United States
Full Time Executive-level / Director Clearance required USD 185K - 250K
Atlas Air
Overview
This position is responsible for the oversight of continuous cyber defense operations and leading continuous development of programs and capabilities to enable Atlas to operate in a variable and evolving cyber threat environment. The successful candidate will be highly knowledgeable in the cybersecurity landscape and ensure Atlas’ cybersecurity program continually adapts to the ever-changing internal and external threat environment. Primary areas of responsibility for this position include monitoring, vulnerability management, threat and incident management, and security awareness training.
Responsibilities
- Leads a team of highly experienced individual contributors and technical managers including hiring, career development and performance reviews with a focus on enhancing leadership effectiveness
- Forms part of the Extended Technology Leadership team and works collaboratively across the group
- Leads technical leaders including hiring, mentorship, career development, and performance reviews with a focus on enhancing leadership effectiveness.
- Provides leadership, mentoring and coaching for all staff and fosters a culture of accountability, innovation and team building.
- Forms part of the Extended Technology Leadership team and works collaboratively across the group
- Develops and oversees the Threat Management and Incident Management functions, including analysis, triage and escalation of security events, coordination and tracking of response activities, and communication to company leadership
- Accountable for all phases of Vulnerability Management including scanning, assessment reporting, and remediation tracking. Collaborates with internal stakeholders and managed service vendors to drive timely remediation
- Develops and matures formal programs in the areas of Vulnerability Management, Incident Management, Threat Management, and Security Awareness
- Develops and implements training and succession plans to develop internal staff and expand technical and leadership capacity within the team
- Coordinates and conducts cybersecurity tabletop exercises with stakeholders in the broader organization including senior leadership
- Continuously identifies and executes on opportunities to improve the efficiency and effectiveness of the IT Security operations team and processes
- Develops threat models, including relevant threat scenarios, attack methods and likely targets in order to drive threat simulation and hunting exercises.
- Works collaboratively with internal technical teams as well as Disaster Recovery, Emergency Response and Business Continuity teams to clarify roles/responsibilities.
- Establishes and maintains cybersecurity incident response plan and playbooks, acquire required skill sets, identify gaps and deploy required tools, technologies and vendor alliances
- Develops appropriate communications to end users including threat advisories and cybersecurity best practices
- Maintains strong relationships with industry peers, partners, vendors, external agencies, and regulatory bodies
- Performs other duties as assigned
Qualifications
- Bachelor’s degree or relevant work experience required.
- Minimum 15 years of enterprise IT experience with 10 years of progressive leadership experience in the information security domain.
- Minimum 5 years’ experience in cyber incident response
- Well-developed people leadership skills and substantial leadership experience with a proven record of motivating staff, working collaboratively, coaching direct reports in a team environment with accountability.
- Experience adapting leadership styles to effectively manage teams with varying levels of expertise and professional development
- Experience in cybersecurity incident management and the ability to take charge and act calmly in a high pressure/stress situations is required
- Experience in Vulnerability Management is required
- Excellent verbal and written communication skills.
- Must be able to translate technical security concepts into lay terms
- Must be comfortable presenting in front of technical and non-technical audiences
- Ability to communicate situations to all levels including senior management is required
- Ability to work within a demanding, dynamic work environment and be part of a larger management team focused on performance and speed to value.
- Demonstrated change mindset with the ability to see the big picture.
- Strong understanding of the relevant legal and regulatory requirements as it relates to data privacy and cybersecurity incident reporting strongly desired
- Understanding of NIST standards for Information Security strongly desired
- The ability to obtain and maintain a US Government security clearance is required
- CISSP, GIAC or similar security certifications desired but not required.
#GH19 #LI-Hybrid #LI-20
Salary Range: $185,500 - $250,500
#GHSalarySalary Range: $185,500 - $250,500 Range: $185,500 - $250,500 19 #LI-Hybrid #LI-20
Financial offer within the stated range will be based on multiple factors to include but not limited to location, relevant experience/level and skillset.
The Company is an Equal Opportunity Employer. It is our policy to afford equal employment opportunity to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, national origin, citizenship, place of birth, age, disability, protected veteran status, gender identity or any other characteristic or status protected by applicable in accordance with federal, state and local laws.
If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law document at http://www1.eeoc.gov/employers/poster.cfm.
To view our Pay Transparency Statement, please click here: Pay Transparency Statement
“Know Your Rights: Workplace Discrimination is Illegal” Poster
The "EEO Is The Law" Poster
“Know Your Rights: Workplace Discrimination is Illegal” Poster | U.S. Equal Employment Opportunity Commission
The "EEO Is The Law" Poster
Tags: CISSP Clearance Cyber defense GIAC Incident response Monitoring NIST Privacy Security Clearance Vulnerability management
Perks/benefits: Career development Team events Transparency
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.