Head of Cyber Defense (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Head of Cyber Defense (Cybersecurity): Leading managed Cloud Detection and Response (CDR) and forensic investigations across cloud, SaaS, and AI environments with an accent on intelligence-led threat hunting and automation. Focus on building scalable detection capabilities, leading S1/S2 forensic investigations, and driving AI adoption in SOC workflows.
Location: Must be based in the US (essential for customer engagement and time zone alignment)
Company
is a security vendor providing a panoramic forensic system that connects Cloud, SaaS, AI, and Identity to stop attacks mid-flight and ensure zero impact.
What you will do
- Lead the managed CDR service, monitoring and responding to detections across cloud, SaaS, AI, and identity environments.
- Design and execute proactive, intelligence-driven threat hunting campaigns using MITRE ATT&CK and CISA intelligence.
- Direct end-to-end S1/S2 forensic investigations, including scoping, evidence collection, and executive-quality reporting.
- Act as the primary technical authority for enterprise customers during sales cycles, QBRs, and EBRs.
- Partner with Engineering to systematically automate CDR and IR workflows using agentic SOC tooling and LLMs.
- Hire, develop, and mentor a global team of 5 security analysts, responders, and hunters.
Requirements
- 8+ years of hands-on experience in cloud incident response, threat hunting, or security operations.
- Deep expertise in AWS, Azure, GCP, and SaaS platforms such as Salesforce, GitHub, Okta, Microsoft 365, and Google Workspace.
- Strong command of attacker TTPs (MITRE ATT&CK for Cloud/SaaS) and log-based investigation methodology.
- Proven experience designing detection logic, hunting playbooks, or automation workflows.
- Track record of high-quality customer engagement with both technical practitioners and C-suite stakeholders.
- Experience managing and mentoring technical teams and building operational processes.
Nice to have
- Published security research, media coverage, or conference presentations in cloud/AI/SaaS security.
- Proficiency in Python, KQL, SPL, or Databricks for investigative data analysis.
- Experience implementing AI-assisted tooling or agentic workflows in a security operations context.
- Background working within a high-growth security vendor.
Culture & Benefits
- Comprehensive health insurance including medical, dental, and vision.
- 401k plan with company match.
- Unlimited PTO.
- Cell phone reimbursement and top-of-the-line equipment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →