Senior Manager, Cybersecurity Incident Response & Security Operations
$141,800–$212,800 year
Remote · United States or Northbrook, Illinois, United States
Job Summary
Senior Manager, Cybersecurity Incident Response & Security Operations leads enterprise incident detection and response, coordinates SOC functions across internal/external providers, defines incident assessment/escalation/management, partners with IT/infrastructure and external SOCs, and drives continuous improvement in detection, response, and operational maturity. Responsibilities include coordinating high-impact incident responses, leading post-incident reviews, overseeing security operations including monitoring and alert management, managing internal teams and MSSPs, establishing standards for triage/escalation/handling, driving automation/orchestration, ensuring coverage across Microsoft 365 GCC High environments, defining and governing multi-SOC operations, managing vendor relationships, improving detection fidelity, and delivering metrics, reporting, and readiness exercises. Qualifications emphasize a Bachelor’s degree or equivalent, 10+ years in cybersecurity with SOC/IR leadership, SIEM expertise, experience with MSSPs/external partners, knowledge of NIST frameworks, preferred security certifications (CISSP, GCIH, GCFA, CISM), and automation capabilities. The role also includes participating in governance, roadmaps, and continuous improvement initiatives, with total rewards including a compensation range of $141,800 - $212,800 and benefits. It requires strong communication skills to engage technical and executive stakeholders and experience with GCCH/microsoft environments.
Required Qualifications
- Bachelor’s degree in Information Systems, Computer Science, Information Security, or equivalent experience
- 10+ years of experience in cybersecurity with a focus on security operations, incident response, or SOC leadership
- Strong expertise in SIEM platforms, detection engineering concepts, and monitoring operations
- Experience leading enterprise incident response and security operations programs
- Experience managing MSSPs or external SOC/forensic partners
- Familiarity with NIST CSF, NIST 800-53, and NIST 800-171
- Certifications such as CISSP, GCIH, GCFA, CISM preferred
- Experience implementing automation, orchestration, and AI-enabled security operations capabilities
- Experience coordinating cybersecurity readiness activities and leading cross-functional initiatives
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.