Director siem & detection operations | Greenwood Village, CO

Detailed Information

  • Location: Greenwood Village, CO

you’ll enjoy the freedom to support causes that matter to you and experience a truly inclusive work environment. Your future starts now. As the Sr Manager of Security Detection and SIEM Operations, you will contribute to security innovation and the evolution for our teams.

You will be a security advocate and will advise key stakeholders and service owners on our operations and how to effectively balance security and business requirements. You will manage a team who are responsible for monitoring, detect and analysis of security events, as well as establish and audit security operational functions, and provide technical security recommendations and solutions. The ideal candidate must demonstrate

excellent communication skills and have a passion for security. What you will do: Manage the day-to-day responsibilities of asset discovery, identification, monitoring, analysis for the identification of cyber security alerts, incidents, and events; and to continuously manage & improve our detection processes.

Develop SIEM platform and the overall detection program working alongside with team members and stakeholders. Training and enabling teams for successful adoption of the SIEM platform. Competency to lead a growing security function with previous leadership experiences building, guiding, and growing threat intelligence and detection program. Expert knowledge of the cyber threat landscape

– able to articulate and incorporate into program understanding of major threat categories, motivations, and intent of adversaries against corporate assets – strong influential skills help organization see threats around the proverbial corner.

Oversee security event correlation and reporting, including additional support incident response staffs or relevant sources to determine and remediate risk to the business Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information. Ability to lead a highly technical environment interacting with multiple stakeholders across all levels.

Proven ability to distill complex technical information into clear, concise yet comprehensive communication material. Leverage offensive security experience to coordinate the execution of cybersecurity solutions to benefit security engagements and mitigate cyber threats. Improve operational efficiency by building and evaluating workflow processes, procedures, checklists, automation, and tooling. Enable success of security initiatives by overseeing initial project development surrounding security or technology capabilities and creating operations-based documentation.

Manage the analysis of security logs to detect unauthorized access and malicious activity. Manage security services including, but not limited to SIEM, XSOAR, IDS/IPS, and application firewalls. What you will bring: Minimum of 7 years previous information technology security operations, engineering, and architectural experience. 5+ years of management experience. Experience in highly complex technical environment, preferably within the financial services sector. Previous experience should include security operations and monitoring, incident response, security system design, deployment, and delivery, performing extensive security planning, and conducting comprehensive security implementations.

Familiar with Risk Based Alerting (RBA) frameworks and implementation. Experience architecting, planning, deploying, and using SIEM and/or UEBA platforms. Information security technologies, tools, and best practices with significant experience with SIEM, IDS/IPS, firewall, web application, and security event correlation. Bachelor s Degree (Computer Science or Information Systems) or equivalent applicable experience CISSP and CISM, GCPN, GWEB or OSCP What will set you apart: Prior experience applying relevant technical knowledge in at least one of the following areas: managing a Security Operations Center; engineering security solutions; consulting with other teams on best practices for security services, configurations, deployments, monitoring, and response.

Understanding of log collection methodologies and aggregation techniques. Experience managing third party providers as part of a comprehensive security program. Demonstrated working knowledge of information systems security standards and practices (e. g. access control and system hardening, system audit and log file monitoring, security policies, and incident handling).

Understanding of security models and frameworks such as MITRE ATT&CK, cyber kill chain, and NIST CSF. Excellent organizational skills, including the ability to re-prioritize in a fast-paced changing environment. Proven track record of taking initiative and delivering results required. Strong written and verbal communications skills with the ability to effectively communicate and influence at multiple levels within the organization required. This job description is not intended to be an exhaustive list of all duties, responsibilities and qualifications of the job.

The employer has the right to revise this job description at any time. You will be evaluated in part based on your performance of the responsibilities and/or tasks listed in this job description. You may be required perform other duties that are not included on this job description. The job description is not a contract for employment, and either you or the employer may terminate employment at any time, for any reason. Applicants must be authorized to work for any employer in the U. S. We are unable to sponsor or take over sponsorship of an employment visa at this time, including CPT/OPT.

What we offer you We offer an array of diverse and inclusive benefits regardless of where you are in your career. We believe that providing our employees with the means to lead healthy balanced lives results in the best possible work performance. Medical, dental, vision and life insurance Retirement savings – 401(k) plan with generous company matching contributions (up to 6%), financial advisory services, potential company discretionary contribution, and a broad investment lineup Tuition reimbursement up to $5,250/year Business-casual environment that includes the option to wear jeans Generous paid time off upon hire – including a paid time off program plus ten paid company holidays and three floating holidays each calendar year Paid volunteer time — 16 hours per calendar year Leave of absence programs – including paid parental leave, paid short- and long-term disability, and Family and Medical Leave (FMLA) Business Resource Groups (BRGs) - internal networks that rally around common interest, experiences and identities such as race, ethnicity, gender, ability, military status and interactionual orientation.

BRGs play a vital role in educating and engaging our people and advancing our business priorities.

Base Salary Range $130,000.00 - $188,500.00 The salary range above shows the typical minimum to maximum base salary range for this position in the location listed. Non-sales positions have the opportunity to participate in a bonus program. Sales positions are eligible for sales incentives, and in some instances a bonus plan, whereby total compensation may far exceed base salary depending on individual performance. Actual compensation offered may vary from posted hiring range based upon geographic location, work experience, education, licensure requirements and/or skill level and will be finalized at the time of offer.

Equal opportunity employer • Drug-free workplace We are an equal opportunity employer with a commitment to diversity. All individuals, regardless of personal characteristics, are encouraged to apply. All qualified applicants will receive consideration for employment without regard to age (40 and over), race, color, national origin, ancestry, interaction, interactionual orientation, gender, gender identity, gender expression, marital status, pregnancy, religion, physical or mental disability, military or veteran status, genetic information, or any other status protected by applicable state or local law.

For remote and hybrid positions you will be required to provide reliable high-speed internet with a wired connection as well as a place in your home to work with limited disruption. You must have reliable connectivity from an internet service provider that is fiber, cable or DSL internet. Other necessary computer equipment, will be provided. You may be required to work in the office if you do not have an adequate home work environment and the required internet connection. Want the latest money news and views shaping how we live, work and play?

Sign up for Empower’s free newsletter and check out The Currency. Workplace Flexibility: Remote For more details: jobs-search. org/finance_greenwood-village-c426797/director-siem-detection-operations-greenwood-village_i1974665128

View Jobs by Category >>

Related Jobs