Назад
Company hidden
10 дней назад

Manager, AI-Native Security Operations

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Manager, AI-Native Security Operations (AI/SaaS Security): Leading an AI-native security operations function across detection engineering, threat intelligence, threat hunting, and incident response with an accent on automating triage, building owned detection content, and defining authority boundaries for security agents. Focus on running live incident operations, developing intelligence-to-detection programs, and protecting AI-driven HR systems from prompt injection, tool abuse, and machine-identity risks.

Location: Utah, United States — hybrid with regular in-office days each week

Company

hirify.global builds a people intelligence and HR software platform designed to improve how organizations manage work and employee data.

What you will do

  • Lead and grow a security operations team covering security analysis, detection engineering, threat intelligence, threat hunting, and incident response.
  • Run daily security operations, including alert handling, shift coverage, on-call rotations, incident assignment, escalations, service-provider management, and operational metrics.
  • Serve as incident commander for most security incidents and coordinate executive and cross-functional communication during severe incidents.
  • Automate Tier-1 triage and expanding Tier-2 workflows through SOAR, runbooks, LLMs, and security agents.
  • Own the detection lifecycle from writing and testing through deployment, measurement, tuning, and retirement, with version control and CI validation.
  • Build threat intelligence and hypothesis-driven hunting programs that produce detections, hunt hypotheses, or control changes.

Requirements

  • 5+ years of experience in security operations, incident response, or detection engineering, including 2+ years managing security analysts or detection engineers.
  • Experience running a SOC or detection function in a SaaS or cloud-native company, preferably with a multi-tenant product and SOC 2 or ISO 27001 compliance requirements.
  • Hands-on experience writing, testing, tuning, and retiring detections, including detection-as-code practices with version control and CI validation.
  • Experience managing an MDR or MSSP relationship and automating SOC workflows through SOAR, runbook automation, or LLM- and agent-based triage.
  • Experience with security data lakes or lakehouses, direct telemetry querying, incident command, executive communication, and people leadership.
  • Must be available for on-call escalation and regular in-office work in Utah; employment requires passing background and credit checks.

Nice to have

  • Experience securing AI or agentic systems, including prompt injection, tool abuse, autonomous code, and non-human identities.
  • Experience establishing threat intelligence programs, transitioning detection capabilities in-house, or building LLM agents in production.
  • Background in HR, payroll, fintech SaaS, cyber resilience, or recovery testing.
  • Security certifications such as GCIA, GCIH, GCFA, GDAT, GCTI, OSCP, or CISSP.

Culture & Benefits

  • Hybrid work environment with a focus on thoughtful, sustainable growth and professional development.
  • Health, life, and disability insurance.
  • Four weeks of vacation, company holidays, parental leave, and volunteer time off.
  • 401(k) plan with up to a 6% company match.
  • Paid-Paid Vacation bonus, EAP access through Headspace, and workplace accommodations for qualified individuals.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →