Manager, Threat Detection and Incident Response
Tasks
- Analyze host and endpoint events
- Build and operate detection use cases
- Collaborate on threat modeling
- Conduct incident tabletop exercises
- Coordinate cross-functional incident response
- Define incident response metrics
- Design detection engineering capabilities
- Develop threat detection programs
- Drive continuous program improvement
- Improve incident response processes and tooling
- Improve security tool automation and integrations
- Lead incident response
- Perform alert triage and investigation
- Write incident and threat reports for executives
Perks/Benefits
- N/A
Skills/Tech-stack
AWS | Alert triage | Antivirus | Cloud Security | Data Administration | Data Onboarding | Detection engineering | EDR | Endpoint Security | Host Analysis | Incident Response | Mitre Attack | Security analytics | Splunk | Tabletop Exercises | Threat detection | Threat modeling
Education
N/A
Related jobs
-
Access Security Operations Center - Manager USD 87K-87KAccess Control | Alarm systems | Camera systems | Database Query | Emergency responseMid-level Full TimeMiami, FL, United States7h ago
-
Splunk Architect Lead USD 131K-216KBackup | Capacity Planning | Case management | Case management tools | Change ManagementSenior-level Full TimePortland, OR, United States7h ago
-
SOC Tier 2 Analyst USD 85K-104KAccess Management | Alert triage | Application Security | Cloud Security | Correlation rulesMid-level Full TimePortland, OR, United States7h ago
-
Security Engineer USD 125K-178KAccess Management | Automation | CIS Controls | Cloud Security | Configuration ManagementSenior-level Full TimePortland, OR, United States7h ago
-
SOC Chief USD 170K-230KAlert triage | Case management | Cybersecurity governance | Detection engineering | EDRExecutive-level Full TimePortland, OR, United States7h ago
-
Identity and Endpoint Services Manager - SME USD 134K-175KAWS | Access Control | Access Management | Audit Readiness | AuthenticationMid-level Full TimeFAIRFAX, VA, United States7h ago
-
Information Security Engineer USD 108K-140KAPIs | Access Management | Authentication | Automation | Cloud Security401k match | Company holidays | Dental benefits | Employee discount | Medical benefitsMid-level Full TimeMerriam, KS, United States7h ago
-
AlgoSec Resident Engineer, Americas USD 120KAWS | Ansible | Application Connectivity | Azure | Change ManagementCollaborative culture | Home office arrangement | Travel opportunitiesSenior-level Full TimeUnited states, New Jersey, US11h ago
-
Staff Security Engineer USD 128K-214K800-53 | 8021X | Architecture Diagrams | Assessment and Authorization | Authority to OperateSenior-level Full TimeUSA-VA-Chantilly11h ago
-
Regional Security Operations Lead, Cloud USD 171K-257KAccess Control | Crisis management | Critical Infrastructure | Critical Infrastructure Protection | CybersecurityTravelSenior-level Full TimeGuam13h ago
-
Manager, IT Cybersecurity Operations USD 63K-86KAccess Control | Communication Protocols | Cybersecurity | Governance frameworks | IEC 27001401k program | Discounts | Employee assistance program | Health benefits | Pet insuranceMid-level Full TimeFort Worth, TX, US16h ago
-
Alert triage | Antivirus | DNS | Data Loss Prevention | Data loss401k matching | Flexible time off | Higher education/training reimbursement | Hybrid work | Medical Dental Vision and Life Insurance coverageMid-level Full TimeWashington D.C., DC 20530, USA1d ago
-
Team Leader - Security Engineering USD 62K-90KAgile | Change Management | Cloud Security | Email Security | Enterprise Platforms401k retirement plan | Dental insurance | Disability insurance | Employee assistance program | Flexible spending accountSenior-level Full TimeMissouri, St. Louis, United States1d ago
-
Manager - Business Information Security Office USD 121K-213KAI RMF | AI Risk | AI risk management | Application Security | CSA STARMid-level Full TimeUS - North Carolina - HQ, …1d ago
-
VP, Product Management, AI Data Security USD 146K-190KAI | Architecture | Capacity Based Pricing | Cloud Native | Cloud SecurityCommunity Outreach Days | Employee recognition | Flexible work environment | Global collaboration and networking | Learning and developmentExecutive-level Full TimeSunnyvale, CA, United States R1d ago
-
AWS | Azure | Bash | Cloud Security | Cloud platformAdoption leave | Employee networks | Paid parental leave | Professional development | Vacation and holidaysMid-level Full TimeUSA FL Remote, United States R1d ago
-
Senior Detection and Response Engineer USD 243K-295KAlert triage | Cloud Security | Container Security | Data Pipelines | Detection engineeringEquity compensation | Health and wellness benefits | Onsite/Hybrid scheduleSenior-level Full TimeSan Mateo, CA, United States R1d ago
-
Mid-Level Security Engineer USD 131K-170KAccess Management | Amazon Web Services | CI/CD | Cause analysis | CheckmarxCareer growth opportunities | Health and wellness support | Hybrid work model | In-office work model | Inclusive cultureMid-level ContractColorado Springs, CO; Brazil1d ago
-
Security Services Specialist USD 110K-160K24 7 monitoring | AI Security | AI security automation | Access Management | CISFull-time employment | Remote/hybrid workSenior-level Full TimeRemote (United States) R1d ago
-
Sr. Security Engineer 1 (Customer Trust) USD 145K-193K800-53 | AWS | CASB | CCSP | CI/CD401k match | Dental insurance | Flexible time off | Health insurance | Life insuranceSenior-level Full TimeBellevue, WA, USA R1d ago
-
Security Services Specialist USD 110K-160K24x7 monitoring | API Security | Application Security | CIS | CSPMSenior-level Full TimeChicago, IL R1d ago
-
Director, Information Security Promotion USD 186K-233KAccess Management | Cloud Security | Compliance Management | Control Systems Security | Cybersecurity401k match | Career development | Dental insurance | Employee assistance program | Medical insuranceExecutive-level Full TimeSouthfield, MI, United States1d ago
-
Security Architect - Northeast region USD 110K-160KAccess Management | Cloud Security | DLP | Data Loss Prevention | Data lossCorporate holidays | Dental insurance | Flexible time off | HSA | Health allowanceSenior-level Full TimeRemote R1d ago
-
AI Security | Application Security | Cloud Security | Configuration Drift | Configuration Drift Detection401k | Medical/Dental/Vision insurance | Paid time off | Short term incentive program eligibleMid-level Full TimeCharlotte, NC, United States R1d ago
-
Security Engineer USD 83K-175KAWS | Azure | CI/CD | Containerization | DHCPEmployee Assistance Program (EAP) | Tuition assistance | Tuition reimbursement | Wellness benefitsMid-level Full TimeMcLean, Virginia1d ago