Security Operations Manager
Core
Foundational leader of a new internal InfoSec operational function, managing security monitoring, incident response, compliance, and global team enablement for a 550+ employee workforce.
Role type
Senior IC Security Operations Manager
Builds
Security monitoring processes, incident response playbooks, compliance frameworks (SOC 2, ISO 27001), and a scalable company security framework.
Domain
Cloud Security (GCP, Azure, AWS) and SaaS Security (Google Workspace, Salesforce, Slack)
Required skills
Security Operations management, SIEM/EDR/XDR administration, Cloud Security (GCP/AWS/Azure), IAM policy enforcement, Vulnerability management, GRC platform management, Python/PowerShell/Bash scripting, Security awareness training
Preferred skills
CISSP/CISM/CCSP/GCIA certifications, Google Cloud Professional Cloud Security Engineer certification, Google Cybersecurity Certificate, Managed services/consulting firm experience, Building internal security teams from scratch
Technologies
Splunk, Google SecOps, SentinelOne, CrowdStrike, Rippling, Okta, Entra, Drata, SafeBase, KnowBe4, Google Workspace, GCP, Azure, AWS, Salesforce, Slack
Responsibilities
Build and manage daily operations of security toolset (SIEM, EDR, Cloud Security); Lead incident response for security alerts and conduct post-mortems; Develop and maintain security playbooks and SOPs; Conduct continuous vulnerability scanning and coordinate patching cycles; Operationalize Zero Trust and IAM policies; Train global teams on Tier 1 security triage and lead security awareness campaigns; Lead technical GRC buildout and evidence gathering for audits; Track and report on key SecOps metrics
Seniority
Senior, hands-on IC with management responsibilities