Security Operations Manager in New York at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Operations Manager based in United States.
This is a leadership role responsible for overseeing day-to-day cybersecurity operations and strengthening the protection of sensitive business and client information.
You will lead security monitoring, threat detection, incident response, vulnerability management, and continuous improvement of security controls.
The role combines hands-on cybersecurity expertise with strategic planning, operational leadership, and cross-functional collaboration.
You will work closely with IT, Infrastructure, Compliance, Privacy, Legal, Risk, and executive stakeholders to manage security risks and respond effectively to emerging threats.
A key focus will be protecting sensitive and regulated information while maintaining strong security practices across cloud, endpoint, identity, network, and SaaS environments.
You will also lead and develop security operations personnel, establish effective escalation processes, and manage security technology and external security partners.
This opportunity is ideal for an experienced cybersecurity leader who combines investigative curiosity, technical depth, sound judgment, and a strong commitment to continuous improvement.
- Lead the Security Operations function, overseeing security monitoring, threat detection, investigation, escalation, containment, remediation, and recovery activities.
- Manage and optimize security technologies and processes covering Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), email security, vulnerability management, and threat intelligence.
- Develop and maintain security alerts, detection rules, dashboards, use cases, monitoring standards, and escalation procedures.
- Lead cybersecurity incident response activities, including investigation, containment, recovery, root-cause analysis, and post-incident reviews.
- Maintain, test, and continuously improve cybersecurity incident response plans, procedures, and supporting playbooks.
- Lead the vulnerability management lifecycle across servers, endpoints, applications, cloud environments, and network infrastructure.
- Establish risk-based vulnerability prioritization and remediation standards to ensure security weaknesses are addressed according to business impact and threat level.
- Monitor emerging cybersecurity threats and coordinate proactive threat-hunting activities to identify and mitigate potential risks.
- Assess and respond to threats involving ransomware, phishing, business email compromise, credential theft, insider threats, and sensitive healthcare data theft.
- Strengthen identity and access security through effective controls covering privileged access, multifactor authentication (MFA), conditional access, and account monitoring.
- Support security monitoring and incident response across cloud platforms, SaaS environments, endpoints, networks, and other technology infrastructure.
- Support compliance with applicable security and regulatory frameworks, including HIPAA, HITRUST, SOC 2, PCI DSS, and client-specific security requirements.
- Partner with Privacy, Compliance, Legal, and Risk teams on investigations involving sensitive, confidential, or regulated information.
- Lead, mentor, and develop Security Operations personnel while establishing clear performance expectations and opportunities for professional growth.
- Establish effective on-call procedures, incident escalation paths, and after-hours response processes.
- Manage relationships with security technology vendors, managed security service providers, and incident response partners.
- Develop operational dashboards and executive reports covering security performance, risks, incidents, and control effectiveness.
- Track and communicate key security and risk indicators, including incident response times, vulnerability remediation, endpoint coverage, phishing trends, and security control performance.
- Identify opportunities to improve security operations, strengthen controls, increase operational efficiency, and enhance the organization’s overall cybersecurity maturity.
Requirements:
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field, or an equivalent combination of education and relevant experience.
- At least 8 years of progressive cybersecurity or information security experience.
- At least 3 years of experience leading security operations, incident response, security engineering, or a comparable cybersecurity function.
- Demonstrated experience managing cybersecurity incidents across multiple technical and business teams, from initial investigation through containment and recovery.
- Strong working knowledge of Security Information and Event Management (SIEM), security monitoring, Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), incident response, vulnerability management, identity and access security, network security, email security, AI security, threat intelligence, and security logging.
- Experience operating security programs in environments that handle sensitive, confidential, or regulated information.
- Knowledge of common cyberattack techniques, tactics, and frameworks such as MITRE ATT&CK.
- Strong analytical, investigative, organizational, and problem-solving skills, with the ability to assess complex security events and determine appropriate actions.
- Strong understanding of security risk management and the ability to balance technical priorities with business requirements.
- Excellent communication skills, with the ability to explain complex cybersecurity risks, incidents, and recommendations clearly to both technical and non-technical stakeholders.
- Strong organizational and strategic planning capabilities, with the ability to manage multiple priorities, deadlines, and complex security initiatives.
- Demonstrated leadership skills and the ability to mentor, develop, and motivate security professionals.
- A highly curious and investigative mindset, with a passion for cybersecurity and a commitment to staying current with emerging threats, technologies, and attack techniques.
- Ability to work effectively in a fast-paced, performance-driven environment while maintaining sound judgment, accuracy, and accountability.
- Strong collaboration skills and the ability to work effectively with IT, Infrastructure, Compliance, Legal, Privacy, Risk, and executive leadership.
- Ability to balance technical depth with strategic thinking and translate security findings into practical business actions.
Benefits:
- Competitive annual salary of $130,000–$153,000.
- Comprehensive medical, dental, and vision plan options.
- Company-paid Basic Life and Accidental Death & Dismemberment (AD&D) insurance.
- Short-term and long-term disability coverage.
- 401(k) retirement plan with company matching contributions.
- Paid time off (PTO) accruing from the first day of employment.
- Flexible benefit options designed to support individual and family needs.
- Full-time employment with remote work flexibility within the United States.
- Opportunity to lead and develop a cybersecurity operations function with significant responsibility for security monitoring, incident response, threat management, and security maturity.
- Cross-functional exposure to technology, compliance, privacy, legal, risk, and executive leadership.
- Up to 10% travel as needed for meetings, business activities, or other operational requirements.
- Opportunity to work on cybersecurity challenges involving sensitive and regulated information while continuously developing expertise across modern security technologies and practices.