What are the responsibilities and job description for the Senior Director, Cybersecurity Operations position at R.J. O'Brien?
Job Title : Senior Director, Cybersecurity Operations
Business Unit : Technology
Location : Chicago
Reports To : Global Chief Information Security Officer (CISO)
Full Time / Part Time : Full Time
Hours : 8 : 00 a.m. - 5 : 00 p.m.
Position Summary :
The Senior Director of Cybersecurity Operations is responsible for managing activities relating to monitoring and responding to security events. Additionally, this position is responsible for developing and overseeing the Global Cybersecurity Operations program to ensure personnel are managed and operational efficiencies are maintained. In a leadership position, the Senior Director of Cybersecurity Operations works with multiple technology platforms and interfaces with other groups within Cybersecurity Engineering and Architecture, IT, partners, and other technology and business functions.
The role requires technical competence and experience managing diverse teams. Additionally, it requires familiarity with recent threats and adversarial techniques and the ability to quickly understand complex environments. Business and interpersonal skills are essential to managing risk to the business, interacting with other business units, and developing Cybersecurity Operations analysts. The Senior Director of Cybersecurity Operations contributes to the company's security strategy and roadmap and is an excellent communicator at the staff and executive levels.
This position reports directly to the Global CISO.
Duties & Responsibilities
Responsibilities include but are not limited to :
- Manage a team of associates and onsite and offsite contractors to monitor for and respond to security events 24x7x365.
- Plan and execute regular incident response and postmortem exercises, focusing on creating measurable benchmarks to show progress (or deficiencies requiring additional attention).
- Automate repetitive tasks and drive efficiencies so analysts can work on more advanced tasks.
- Manage security event investigations, partnering with other departments as needed.
- Evaluate and update cybersecurity operations policies and procedures as appropriate.
- Partner with the Cybersecurity Engineering and Architecture team to improve tool usage and workflow and with the advanced threats and assessment team to mature monitoring and response capabilities.
- Manage career development for a team of associates, including training and mentoring, conducting performance reviews, and exhibiting behaviors to be modeled by team members.
- Stay current with and remain knowledgeable about new threats. Analyze attacker tactics, techniques, and procedures (TTPs) from security events across an extensive heterogeneous network of security devices and end-user systems.
- Manage security event investigations, partnering with other departments (e.g., IT) as needed.
- Adhere to service level agreements (SLAs), metrics, and business scorecard obligations for ticket handling of security incidents and events.
- Partner with the security engineering team to improve tool usage and workflow and with the advanced threats and assessment team to mature monitoring and response capabilities.
- Maintain working knowledge of advanced threat detection as the industry evolves.
- Maintain an up-to-date level of knowledge related to security threats, vulnerabilities, and mitigations to reduce the attack surface.
- Support SOC automation initiatives leveraging playbooks while also using human analysis as needed.
- Actively participate in threat-hunting tabletop exercises to hone and strengthen skills across the team.
- Liaise with IT and security leadership to manage internal and external-facing systems and identify, track, and remediate system and application vulnerabilities.
- Leverage knowledge in multiple security disciplines, such as Windows, Unix, Linux, data loss prevention (DLP), endpoint controls, databases, wireless security, and data networking, to offer global solutions for a complex heterogeneous environment.
- Manage and maintain event and log collection according to reporting and compliance requirements.
- Perform other duties as assigned.
Qualifications :
It is the policy of RJO Technology, LLC to ensure equal employment opportunity without discrimination or harassment on the basis of race, color, religion, sex, sexual orientation, gender identity or expression, age, disability, marital status, citizenship, genetic information, or any other characteristic protected by law.
Compensation Package :
Search Firm Representatives please read carefully :
R.J. O'Brien & Associates, LLC (RJO) is not seeking assistance or accepting unsolicited resumes from search firms for this employment opportunity. All resumes submitted by search firms to any employee at RJO via-email, the Internet or directly to hiring managers at RJO in any form without a valid written search agreement in place for this position will be deemed the sole property of RJO, and no fee will be paid in the event the candidate is hired as a result of the referral or through other means.
LI-DNI
Salary : $220,500 - $257,250