Specialist Director, Threat Management
$169,005–$370,530 year
On-siteSeattle, Washington, United States
Job Summary
Set the strategy and roadmap for Threat Management and MDR services, including detection engineering, threat hunting, threat intelligence, incident response enablement, automation, and service modernization. Lead security platform operations across endpoint, network, cloud, data, email, SIEM, and SOAR technologies, ensuring governance, service reliability, and 24x7 operational readiness. Improve cyber defense outcomes through integrated security telemetry, enhanced detection capabilities, streamlined triage, and response automation. Build and mature managed security services by establishing operating models, onboarding frameworks, governance processes, runbooks, playbooks, and automation workflows. Serve as a trusted advisor to executive and client stakeholders on security operations strategy, platform health, service performance, and cyber defense outcomes. Lead, mentor, and develop high-performing teams of analysts, engineers, threat hunters, and service delivery professionals. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment.
Required Qualifications
- Minimum of eight years of cybersecurity experience
- Leadership in security operations, MDR, threat management, cyber defense, or managed security services
- Proven ability to scale enterprise security capabilities
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline from an accredited college or university
- CISSP, CISM or GIAC and relevant security platform certifications
- Deep experience leading or maturing NDR capabilities
- Experience with detection engineering
- Experience with network telemetry analysis
- Experience with IDS/IPS
- Experience with SIEM/SOAR integration
- Experience with threat-informed defense strategies
- Experience managing 24x7 security operations or managed services
- Experience with incident response support
- Experience with service reliability
- Experience with escalation governance
- Experience with change management
- Experience with SLA/KPI performance management
- Strong executive stakeholder management skills
- Experience advising CISOs and senior leaders
- Experience driving alignment across business, engineering, architecture, and delivery teams
- Expertise in MDR and threat management operations
- Expertise with MITRE ATT&CK-aligned detection engineering
- Expertise with EDR/XDR
- Expertise with NDR
- Expertise with SIEM
- Expertise with SOAR
- Expertise with data security
- Expertise with email security
- Expertise with cyber service delivery operations
- Travel as needed to support client, business, and team objectives
- Authorization to work in the U.S. without the need for employment-based visa sponsorship
Desired Qualifications
- Experience with detection engineering
- Experience with network telemetry analysis
- Experience with IDS/IPS
- Experience with SIEM/SOAR integration
- Experience with threat-informed defense strategies
- Experience managing 24x7 security operations or managed services
- Experience with incident response support
- Experience with service reliability
- Experience with escalation governance
- Experience with change management
- Experience with SLA/KPI performance management
- Strong executive stakeholder management skills
- Experience advising CISOs and senior leaders
- Experience driving alignment across business, engineering, architecture, and delivery teams
- Expertise in MDR and threat management operations
- Expertise with MITRE ATT&CK-aligned detection engineering
- Expertise with EDR/XDR
- Expertise with NDR
- Expertise with SIEM
- Expertise with SOAR
- Expertise with data security
- Expertise with email security
- Expertise with cyber service delivery operations
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.