Security Operations Manager
Core
Lead detection, response, and security monitoring for a self-clearing broker-dealer platform serving financial advisors.
Role type
Security Operations Manager (Team Lead)
Builds
24x7 security monitoring program, incident response capabilities, and detection engineering for a wealth management AI platform.
Domain
Financial Services / Wealth Management / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Security operations management, incident response, SIEM (Datadog/Splunk), EDR/MDR (CrowdStrike/SentinelOne), cloud telemetry (AWS), MDR/MSSP management, SOAR, detection engineering, threat intelligence ingestion, tabletop exercises, security metrics reporting.
Preferred skills
Regulated environment experience (SEC/FINRA), 24x7 SOC build-out, relevant certifications (CISSP, GCIH, GCIA, GCFA).
Technologies
AWS, Kubernetes, SIEM query languages, detection-as-code, Terraform, Datadog, Splunk, CrowdStrike, SentinelOne.
Responsibilities
Lead and mentor the security operations/detection & response team; own the 24x7 security monitoring strategy; run the end-to-end incident response program; define and report on SecOps metrics and SLAs; mature detection engineering and response automation; drive tabletop and purple-team exercises; own the security operations tooling stack roadmap.
Seniority
Manager, hands-on leadership