Senior Manager – Cybersecurity Operations
On-siteTorrance, California, United States
Job Summary
Lead defensive security operations, incident response, and threat monitoring to protect information systems and critical infrastructure from APTs and nation-state actors. Direct threat hunting to proactively identify and neutralize threats, while developing defensive playbooks, runbooks, and standard operating procedures. Design defense-in-depth strategies aligned with NIST, DoD, and intelligence community frameworks, and evaluate advanced security technologies including SIEM, EDR/XDR, and SOAR. Establish and maintain a threat intelligence program tracking emerging threats relevant to aerospace and defense, producing briefings for technical and executive audiences. Collaborate with government agencies, industry partners, and internal teams to validate defensive posture through exercises and support compliance with NIST 800-171, CMMC, ITAR, and DFARS.
Required Qualifications
- 7+ years of hands-on experience in cybersecurity, with a focus in defensive operations
- 2+ years in a leadership or team lead capacity
- Proven experience operating in defense, aerospace, engineering, intelligence, government, or critical infrastructure sectors
- Experience in regulated environments (DoD, CMMC, NIST 800-171, ISO 27001, etc.)
- Demonstrated expertise in security monitoring, threat hunting, and incident response
- Demonstrated understanding of advanced persistent threat (APT) tactics and techniques
- Hands-on experience with enterprise security tools (SIEM, EDR, IDS/IPS, firewalls, proxies)
- Expert knowledge of network protocols, security architecture, and system hardening
- Expert proficiency as both a configurator and a consumer of security information and event management (SIEM) platforms
- Strong understanding of Windows and Linux security and forensics
- Experience with endpoint detection and response (EDR) solutions (CrowdStrike, Carbon Black, Defender, SentinelOne, etc.)
- Proficiency with scripting and automation (Python, PowerShell, Bash)
- Knowledge of cloud security (AWS, Azure, GovCloud)
- Understanding of malware analysis, reverse engineering techniques, and penetration testing
- Experience with threat intelligence platforms and indicator management
- Deep understanding of security principles, threats, and frameworks (e.g., cyber kill chain, MITRE ATT&CK, NIST, CIS Controls)
- Strong documentation, troubleshooting, and communication skills
- Ability to thrive in fast-paced, high-pressure environments with competing priorities
- Analytical mindset with strong problem-solving abilities
- Commitment to staying current with evolving threat landscape
Desired Qualifications
- Active Security+, CISSP, GIAC, GSOC, GCIA, GCIH, GCFA, CISA, CEH, or similar senior-level certifications
- Eligibility to keep and maintain a U.S. security clearance
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.