Senior Manager IT - Security Operations
Job Description
Job Description
The Senior IT Manager - Security Operations will report directly to the Sr. Director of Information Security and is responsible for overseeing, maturing, and operating the end‐to‐end Cyber Defense function. In this leadership role, you will direct the strategy, people, processes, and technologies responsible for threat detection, incident response, cyber threat intelligence, and security monitoring across on‐premises, cloud, SaaS, and OT environments. You will manage internal Cyber Defense analysts while governing our managed security service providers to ensure 24×7 protection, rapid response, reliable detection content, and continuous improvement of defensive capabilities. This role requires strong technical depth, excellent leadership presence, and the ability to drive measurable security outcomes across a highly distributed enterprise. You will partner closely with Infrastructure, Networking, Cloud, IAM, Applications, and business stakeholders to ensure our cyber defense posture meets industry standards and supports RCP’s strategic goals.
Cyber Defense Strategy & Program Leadership
- Develop and execute a Cyber Defense strategy covering detection, response, threat hunting, threat intelligence, cloud/identity security, and network/endpoint telemetry.
- Build and maintain a multi‐year roadmap for capabilities, tooling, automation, and maturity evolution.
- Establish measurable goals, KPIs, and operational metrics for the Cyber Defense program.
Team Leadership & Talent Development
- Lead, mentor, and develop Cyber Defense analysts and engineers.
- Oversee team performance, coaching, workload balance, career development, and succession planning.
- Build a strong culture of operational excellence, readiness, and continuous learning.
Threat Detection & Engineering
- Own the full lifecycle of detection engineering: backlog management, design, development, testing, deployment, tuning, and retirement of use cases.
- Maintain detection coverage mapped to frameworks such as MITRE ATT&CK, NIST CSF, and relevant threat models.
- Ensure onboarding, validation, and maintenance of log sources for SIEM, EDR, cloud, identity, network, OT, and SaaS platforms.
- Drive quality of alerts through false‐positive reduction, noise suppression, and telemetry enrichment.
Security Operations & Incident Response
- Serve as Incident Commander for high‐severity cyber incidents, directing technical response, triage, containment, and eradication activities.
- Lead executive communications, regulatory notifications (as needed), RCAs, and post‐incident remediation governance.
- Ensure IR plans, playbooks, tabletop exercises, and runbooks remain current, tested, and effective.
MSSP & SOC Governance
- Govern managed SOC(s) and related MDR/EDR service providers to ensure SLA/SLO compliance, detection accuracy, timely escalations, and service improvements.
- Lead weekly operational reviews and monthly/quarterly business reviews with MSSP partners.
- Validate tuning, content development, automation, detection gaps, and service recommendations.
Security Technology Ownership
- Serve as product owner for SIEM, EDR, SOAR, cloud security monitoring, digital forensics tools, and threat intelligence platforms.
Drive engineering oversight for:
- SIEM operations and architecture
- Endpoint detection and response
- SOAR playbooks and automation
- Cloud and identity security telemetry (Azure, AWS, M365, Entra ID/PIM)
- OT/ICS visibility tooling
- Lead major platform upgrades, migrations, and evaluations (e.g., SIEM modernization initiatives).
Cloud, Identity & SaaS Defense
- Oversee development and tuning of detections for cloud workloads, identity systems, OAuth/App Consent abuse, MFA anomalies, and SaaS platforms.
- Ensure protection and monitoring across multi‐cloud/hybrid environments with secure configuration baselines and telemetry
Qualifications
- Bachelor’s degree in Computer Science or similar area of study, or a directly related field with 10 or more years of work experience.
- 8+ years of work experience leading Cyber Defense Management.
- Exceptional ability to assess and communicate information security concepts and practices with both business and IT stakeholders.
- Prior experience supporting hybrid multi-cloud environments, including SaaS, PaaS, IaaS, and on-premises solutions.
- Proven experience in design, implementation, and operations of a cyber-defense program with heavy leverage of managed security service provider(s).
- Working knowledge of MITRE ATT&CK, NIST CSF, ISO 2700x and COBIT frameworks/standards in relation to a cyber-defense program.
- Ability to travel 5%.
Plus:
- ClSSP, CISA or Cloud security certification.
Company Description
We care about the success of each member of out team! We strive for long lasting partnerships where you can grow and expand your career.
Company Description
We care about the success of each member of out team! We strive for long lasting partnerships where you can grow and expand your career.
Recommended Jobs
Business Development Executive
Business Development Executive Location: Remote (U.S.) Reports to: Head of Business Development Type: Full-time or Contract-to-Hire Overview Voyage Advisory is a management consultin…
Master Certified Ford Service Technician
We're looking for Ford Certified Technicians to join our service team at Auffenberg Ford Belleville. Ideal candidates will be self-motivated, detail-oriented, and possess Ford OEM Service Certificatio…
Director of Finance
Position Summary : The Director of Finance will play a critical role in leading the finance function for a market‑leading family office membership organization by owning and elevating its core ac…
Climbing Arborist Trainee | West Chicago, IL
Job Description Job Description Company: The Davey Tree Expert Company Locations: West Chicago, IL Additional Locations: NA Work Site: On Site Req ID: 220968 Position Overview …
Future Opportunities - Join Our Talent Pipeline for Production Technician I (Multiple Shifts)
Company Description AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We striv…
Lead Electrical Engineer Substation Design
Job Description Job Description Job Opportunity: Lead Electrical Engineer – Substation Design About Us FindTalent, a leading recruitment agency, is seeking a Lead Electrical Engineer – Subst…
Director, Delivery Operations - Engineering Delivery Group
Company Description AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We striv…
Test Lead - Test Automation
Position Overview CONTRACTOR CONVERSION International is looking to add a Test Lead-Quality Assurance to their team in Lisle. The Test Lead-Quality Assurance will be responsible for p…
Business Banking Relationship Mgr (Small Business) - Greater Chicago/South Bend
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our …
CDL A Recent Graduate Truck Driver
Get started driving now and get on the list for the local openings available in your area while you are getting the required on the job experience for those local accounts. Some in as little as 3 …