Demo

Senior Director, Cybersecurity Operations

R.J. O'Brien
Chicago, IL Full Time
POSTED ON 2/8/2025
AVAILABLE BEFORE 5/8/2025

Job Title : Senior Director, Cybersecurity Operations

Business Unit : Technology

Location : Chicago

Reports To : Global Chief Information Security Officer (CISO)

Full Time / Part Time : Full Time

Hours : 8 : 00 a.m. - 5 : 00 p.m.

Position Summary :

The Senior Director of Cybersecurity Operations is responsible for managing activities relating to monitoring and responding to security events. Additionally, this position is responsible for developing and overseeing the Global Cybersecurity Operations program to ensure personnel are managed and operational efficiencies are maintained. In a leadership position, the Senior Director of Cybersecurity Operations works with multiple technology platforms and interfaces with other groups within Cybersecurity Engineering and Architecture, IT, partners, and other technology and business functions.

The role requires technical competence and experience managing diverse teams. Additionally, it requires familiarity with recent threats and adversarial techniques and the ability to quickly understand complex environments. Business and interpersonal skills are essential to managing risk to the business, interacting with other business units, and developing Cybersecurity Operations analysts. The Senior Director of Cybersecurity Operations contributes to the company's security strategy and roadmap and is an excellent communicator at the staff and executive levels.

This position reports directly to the Global CISO.

Duties & Responsibilities

Responsibilities include but are not limited to :

  • Manage a team of associates and onsite and offsite contractors to monitor for and respond to security events 24x7x365.
  • Plan and execute regular incident response and postmortem exercises, focusing on creating measurable benchmarks to show progress (or deficiencies requiring additional attention).
  • Automate repetitive tasks and drive efficiencies so analysts can work on more advanced tasks.
  • Manage security event investigations, partnering with other departments as needed.
  • Evaluate and update cybersecurity operations policies and procedures as appropriate.
  • Partner with the Cybersecurity Engineering and Architecture team to improve tool usage and workflow and with the advanced threats and assessment team to mature monitoring and response capabilities.
  • Manage career development for a team of associates, including training and mentoring, conducting performance reviews, and exhibiting behaviors to be modeled by team members.
  • Stay current with and remain knowledgeable about new threats. Analyze attacker tactics, techniques, and procedures (TTPs) from security events across an extensive heterogeneous network of security devices and end-user systems.
  • Manage security event investigations, partnering with other departments (e.g., IT) as needed.
  • Adhere to service level agreements (SLAs), metrics, and business scorecard obligations for ticket handling of security incidents and events.
  • Partner with the security engineering team to improve tool usage and workflow and with the advanced threats and assessment team to mature monitoring and response capabilities.
  • Maintain working knowledge of advanced threat detection as the industry evolves.
  • Maintain an up-to-date level of knowledge related to security threats, vulnerabilities, and mitigations to reduce the attack surface.
  • Support SOC automation initiatives leveraging playbooks while also using human analysis as needed.
  • Actively participate in threat-hunting tabletop exercises to hone and strengthen skills across the team.
  • Liaise with IT and security leadership to manage internal and external-facing systems and identify, track, and remediate system and application vulnerabilities.
  • Leverage knowledge in multiple security disciplines, such as Windows, Unix, Linux, data loss prevention (DLP), endpoint controls, databases, wireless security, and data networking, to offer global solutions for a complex heterogeneous environment.
  • Manage and maintain event and log collection according to reporting and compliance requirements.
  • Perform other duties as assigned.

Qualifications :

  • At least 10 years of experience in cybersecurity in one or more roles, including security analyst, administration, engineering, and management roles on SOC, IR, or other security teams.
  • 5 years of experience managing distributed team personnel.
  • Strong team and organizational management skills and track record of implementing and maintaining cybersecurity operations.
  • High level of integrity, trustworthiness, and confidence to represent the company and security leadership with the highest level of professionalism.
  • Capable of working with diverse teams and promoting a positive enterprise-wide security culture.
  • Demonstrated project management, multitasking, and organizational skills.
  • Ability to obtain and preserve credibility with the team and external constituents through sustained industry knowledge.
  • Ability to motivate teammates to achieve excellence and willingly share knowledge.
  • Experience driving measurable improvement in monitoring and response capabilities at scale.
  • Understanding of threats and vulnerabilities, as well as principles of incident response and chain of custody.
  • Experience managing security information and event management (SIEM) systems, threat intelligence platforms, security automation and orchestration solutions, intrusion detection, and prevention systems (IDS / IPS), data loss prevention (DLP), and vulnerability management tools.
  • Experience in investigations using formal chain-of-custody methods, forensic tools, and best practices.
  • Basic knowledge of adversary tactics, techniques and procedures (TTPs) and MITRE ATT&ACK principles.
  • CISSP, CISM, GCIH, GCIA, GCFE, and GCFA are preferable but not required.
  • It is the policy of RJO Technology, LLC to ensure equal employment opportunity without discrimination or harassment on the basis of race, color, religion, sex, sexual orientation, gender identity or expression, age, disability, marital status, citizenship, genetic information, or any other characteristic protected by law.

    Compensation Package :

  • Salary Range : a reasonable estimate for this position is $220,500.00 to $257,250.00 per year. This salary range complies with state transparency laws and reflects variations based on experience, qualifications, and geographical location. Final salary will be determined based on experience, expertise, and office location.
  • Other Compensation : this position is eligible for discretionary bonus
  • Benefits : R.J. O'Brien offers employees an attractive and competitive total rewards package. Some benefits options offered to eligible employees include but are not limited to; medical, prescription drug, dental, vision, 401(k), life, flexible spending accounts, auto / home, commuter / parking and legal services. In addition, eligible employees may participate in annual bonus plan; career development opportunities; and work / life satisfaction initiatives like generous parental leaves and paid time off, health club subsidy and service awards.
  • Search Firm Representatives please read carefully :

    R.J. O'Brien & Associates, LLC (RJO) is not seeking assistance or accepting unsolicited resumes from search firms for this employment opportunity. All resumes submitted by search firms to any employee at RJO via-email, the Internet or directly to hiring managers at RJO in any form without a valid written search agreement in place for this position will be deemed the sole property of RJO, and no fee will be paid in the event the candidate is hired as a result of the referral or through other means.

    LI-DNI

    Salary : $220,500 - $257,250

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Senior Director, Cybersecurity Operations?

    Sign up to receive alerts about other jobs on the Senior Director, Cybersecurity Operations career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $228,678 - $310,400
    Income Estimation: 
    $282,790 - $435,557
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $270,069 - $359,305
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Not the job you're looking for? Here are some other Senior Director, Cybersecurity Operations jobs in the Chicago, IL area that may be a better fit.

    Senior Analyst, Cybersecurity Operations

    McDonald's Corporation, Chicago, IL

    AI Assistant is available now!

    Feel free to start your new journey!