## What Youll Do
### Security Incident Response & Management - Lead and evolve the global Incident Response program, optimizing processes from detection through post-mortem. - Partner with US teams to implement an end-to-end IR lifecycle, including triage, criticality determination, remediation, and lessons learned. - Define and implement improvements in detection, escalation, containment, and resolution through policies, procedures, and runbooks.
### Threat Hunting Program - Develop strategies and build global Threat Hunting initiatives integrated with Threat Intelligence. - Mentor staff on advanced tradecraft and best practices for proactive risk identification.
### Security Operations Leadership - Mentor and grow the 24/7 SOC team, ensuring continuous monitoring, analysis, and response. - Lead enterprise-wide SecOps projects to enhance IR and Threat Hunting capabilities.
### Process, Policy & Tooling - Own and mature IR processes, controls, policies, and metrics to ensure operational effectiveness. - Evaluate, implement, and optimize security tools (SIEM, EDR, IDS/IPS) for robust protection and efficiency.
### Stakeholder Communication & Compliance - Build relationships with executive and cross-functional partners to drive consistency with SecOps standards. - Communicate security status, risks, and incident reports to leadership and key stakeholders. - Support internal and external audits to ensure compliance with SOC 2, ISO 27001, GDPR, and related regulations.
## What Youll Bring
- Bachelors degree in Cybersecurity, Computer Science, or related field - 15+ years of cybersecurity operations experience, including IR, SOC, SIEM, and forensics (8+ preferred or 6+ with advanced degree) - Proven track record leading security operations teams and managing Incident Response programs - Industry certifications in Threat Hunting, Incident Response, or Computer Forensics (or equivalent expertise) - Mastery of security frameworks (NIST, ISO 27001, SOC II, PCI, GDPR) - Hands-on expertise with SIEM, EDR, IDS/IPS, vulnerability management, and cloud security (AWS, Azure, GCP) - Strong understanding of the Cyberattack Kill Chain, threat analysis, intelligence, and mitigation strategies - Exceptional analytical, organizational, and communication skills, with the ability to convey complex concepts to technical and non-technical audiences - Experience authoring detailed security incident reports and making urgent operational decisions under pressure - Confident, calm, and focused under pressure, with a high sense of urgency to identify and remediate operational risks - Budget management and vendor relationship experience to optimize security investments - Self-driven and adaptable, thriving in a fast-paced, high-growth technology environment

Keyskills: ip vulnerability management siem edr ids threat analysis security operations it security cloud security cyber security information security microsoft azure security framework vulnerability assessment cism gcp security operations management aws