- Company Name
- KUBRA
- Job Title
- Manager, Security Operations
- Job Description
-
Job Title: Manager, Security Operations
Role Summary: Lead the strategic and operational direction of the Security Operations function, overseeing the implementation of cybersecurity programs, incident response, vulnerability management, and continuous monitoring to protect organizational data assets and maintain compliance with industry standards.
Expactations:
- Own end-to-end security strategy, plans, and standards across the organization.
- Engage cross‑functional stakeholders to embed security into product development and operations.
- Deliver measurable security improvements and demonstrate ROI through key performance indicators (KPIs).
Key Responsibilities:
- Develop, update, and enforce security operations standards, procedures, and guidelines.
- Design and lead a risk‑based Vulnerability Management Program covering infrastructure, applications, and CI/CD pipelines.
- Manage 24/7 security monitoring, incident response plans, and lead investigations, including coordination with law enforcement and forensics support.
- Establish and manage a Security Champions Program to embed security culture within engineering teams.
- Oversee deployment and maintenance of SOC technologies (SIEM, IDS/IPS, firewalls, IAM/IGA systems).
- Conduct tabletop and Purple Team exercises to test and improve incident response and detection logic.
- Report on security operations activities, incident trends, and KPI metrics to leadership.
- Ensure compliance with PCI DSS, NIST, ISO, and other relevant regulatory frameworks.
- Manage the Security Operations budget and vendor risk assessments for third‑party tools and integrations.
Required Skills:
- Strong leadership and team management, including hiring, coaching, and performance evaluation.
- Proficient in incident response, digital forensics, and threat intelligence integration.
- Experience with vulnerability management strategies, risk-based prioritization, and remediation workflows.
- Deep knowledge of SOC technologies (SIEM, IDS/IPS, firewalls), IAM/IGA, and network security controls.
- Familiarity with regulatory compliance frameworks (PCI DSS, NIST, ISO) and documentation requirements.
- Excellent communication skills for reporting, stakeholder collaboration, and cross‑departmental coordination.
- Ability to conduct tabletop exercises, Purple Team drills, and continuous security monitoring.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (Master’s preferred).
- Industry certifications such as CISSP, CISM, CISA, or equivalent in security leadership.
- Security Operations Center (SOC) or Incident Response certifications (e.g., GCIH, GCIA) are strongly preferred.