Source Job

$125,000–$145,000/yr
US

  • Own end-to-end security operations including SOC, monitoring, and detection capabilities.
  • Act as technology incident commander for security events and incidents.
  • Own the operational lifecycle of vulnerability management including scanning, prioritization, and remediation tracking.

SIEM EDR Vulnerability Management Threat Detection Incident Response

20 jobs similar to Director of Security Operations

Jobs ranked by similarity.

$180,000–$230,000/yr
US 12w maternity 12w paternity

  • Manage and optimize security tools such as email security, DLP, SIEM, IDS/IPS, EDR, threat intelligence platforms, and other tooling
  • Design and implement AI-enabled workflows to scale enterprise security and threat operations
  • Monitor and manage security alerts and incidents, analyze data, and respond to security events

Valon is building the AI-native operating system for regulated finance, starting with mortgage servicing. They are a Series C company backed by a16z, transforming industries that others have written off as too complex to innovate.

US

  • Serve as trusted advisor as part of the security division’s leadership team, actively shaping the program direction.
  • Build and mature incident response runbooks, procedures, and capabilities.
  • Foster a defense first mindset through actionable incident retrospective mitigations to close defense gaps, making GitLab a hard target for attackers.

GitLab is the intelligent orchestration platform for DevSecOps. They enable organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. GitLab values a high-performance culture driven by values and continuous knowledge exchange.

$93,824–$125,479/yr
Canada

  • Identify and respond to security incidents on a global scale.
  • Act as an incident commander to drive incidents through the entire response lifecycle.
  • Conduct threat hunting activities, anticipate future threats, and maintain forward-thinking strategies for tools/technology/processes that combat sophisticated threat actors.

Mozilla Corporation is a non-profit-backed technology company that has shaped the internet for the better over the last 25 years. With more than 225 million people around the world using their products each month, they’re shaping the next 25 years of technology and helping to reclaim an internet built for people, not companies.

US

  • Manage event and information intake, including intelligence reports and monitoring ticket queues.
  • Triage alerts and correlate and analyze events to determine the scope of cybersecurity incidents.
  • Provide 24x7 on-call support and monitor and manage security incidents using SIEM, SOAR, and DLP tools.

Brightspeed provides fast, reliable internet connections and an awesome customer experience in twenty states throughout the Midwest and South. Backed by funds managed by Apollo Global Management, they are accelerating the upgrade of copper to fiber optic technologies.

Europe

  • Respond to security incidents according to the security incident response policy and procedures
  • Communicate investigation findings to relevant stakeholders to help improve the information security posture
  • Monitor relevant information sources to stay up to date on current attacks and trends

REWE Group Austria develops innovative IT products and services for its corporate divisions in Austria and abroad. With over 700 employees, they set the tone for modern trade and have a family-friendly culture with flexible hours and remote options.

$98,400–$147,600/yr
US Canada UK

  • Reduce operational toil by experimenting with AI and automation in security workflows, building simple tools that make your team's work easier, and sharing what you learn.
  • Build trust across engineering and cloud teams by responding to security requests with genuine care, clear communication, and reliable follow-through.
  • Own alert triage and incident response with thoroughness and accuracy, ensuring security findings are investigated quickly, escalated at the right time to the right people, and documented clearly for the whole team to learn from.

Jane is a founder-led, high-growth SaaS company that builds products and tools that thousands of clinics rely on every day to run their businesses, care for their patients, and grow their communities. They are a team of more than 700 people working remotely across Canada, the US, and the UK.

US Unlimited PTO

  • Serve as the primary Incident Commander for critical security events.
  • Orchestrate response efforts across multiple teams.
  • Conduct post-incident reviews and drive improvements.

GitLab is the intelligent orchestration platform for DevSecOps. They enable organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. GitLab has more than 50 million registered users and is trusted by more than 50% of the Fortune 100*, which reflects a high-performance culture driven by their values and continuous knowledge exchange.

US

  • Play a key role in the strategic and hands-on protection of our enterprise systems.
  • Responsible for hardening infrastructure and integrating security systems into deployments.
  • Manage SIEM operations, incident response, and vulnerability reviews.

CBN Secure Technologies Inc. is an award-winning provider of secure Driver & Vehicle solutions to US States. They are a subsidiary of Canadian Bank Note (CBN) Company, Limited, designing and developing industry-leading solutions for various domains like Driver & Vehicle and Border Security.

$163,500–$274,250/yr
US Unlimited PTO 12w maternity

  • Lead the Cyber Fusion Center and Security Operations function.
  • Drive the strategy and roadmap for modern security operations.
  • Build systemic improvements across security operations processes, tooling, and capabilities.

Upwork connects businesses with global, AI-enabled talent across every contingent work type. They are transforming workforces for the age of AI and facilitated more than $30 billion in total transactions.

Europe

  • Support the OLX Security Operations Center (SOC) by assisting with the incident response and its lifecycle.
  • Contribute to incident response training for the organization.
  • Participate in improving our threat intelligence system.

OLX builds marketplace sustainable ecosystems that millions of people depend on every month to buy and sell cars, find homes, land jobs, and trade secondhand goods. They foster a culture that's ambitious, fast-moving, and built on trust, with over 50 nationalities and 8+ markets.

$100,000–$130,000/yr
US

  • Monitor client environments performing Incident Detection, Validation, and Reporting.
  • Responsible for the implementation and maintenance of cloud-based SIEM Solutions.
  • Partner with client Security to continuously improve and enhance Managed Security support.

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, they help enterprises deliver on the promise of digital transformation. They prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard.

Global

  • Lead and execute security incident response, leveraging your deep expertise to manage and mitigate threats across Ivanti’s global footprint.
  • Uncover both known and unknown threats using advanced incident response techniques, threat hunting, threat intelligence, and a strong understanding of attacker TTPs.
  • Conduct thorough investigations involving external attacks, insider threats, and digital forensics, ensuring stakeholders stay informed with comprehensive reporting.

Ivanti's mission is to elevate human potential within organizations by managing, protecting and automating technology for continuous innovation. It is through diverse and inclusive hiring, decision-making, and commitment to our employees and partners that they will continue to build and deliver world-class solutions for their customers.

Global

  • Own the strategy and maturity roadmap for corporate security engineering and operations.
  • Manage and develop System Security Engineers and Security Operations Analysts.
  • Strengthen configuration enforcement, vulnerability remediation, monitoring quality, and detection coverage.

Onebrief is collaboration and AI-powered workflow software designed specifically for military staffs. Founded in 2019, today, Onebrief’s team spans veterans from all forces and global organizations, and technologists from leading-edge software companies.

$120,000–$160,000/yr

  • Lead complex security investigations and drive automated response workflows.
  • Perform host-based triage and forensic analysis across Windows, Linux, and macOS, and conduct cloud-native IR across AWS and Azure.
  • Integrate threat intelligence into active investigations and operationalize it proactively.

VERSANT is a leading force in news, sports and entertainment and is home to iconic and trusted brands. As an independent, publicly traded company, VERSANT brings together powerhouse cable networks with dynamic digital and direct-to-consumer brands, fueled by innovation.

$97,406–$134,430/yr
US 4w paternity

  • Designing, implementing, and operating systems that actively defend our environment from cyber threats.
  • Translating threat intelligence and technical findings into prioritized, measurable risk reduction across the organization.
  • Working closely with IT, compliance, and business units to integrate secure practices and enable proactive defense strategies.

Vail Health is the world’s most advanced mountain healthcare system. Vail Health consists of an updated 520,000-square-foot, 56-bed hospital providing exceptional care to patients, with beautiful views and a central location in Vail.

South America

  • Monitor security events through SIEM and other security tools, performing initial triage and correlating signals across multiple sources.
  • Execute Incident Response activities, including detection, investigation, containment, remediation, and documentation of security incidents.
  • Analyze alerts and security anomalies to identify legitimate threats, false positives, and areas requiring escalation.

Pismo provides a comprehensive processing platform for banking, card issuing and financial market infrastructure and helps customers innovate and build the next generation of banking and payment solutions. Pismo’s 500+ employees are located in more than 10 countries around the world.

US

  • Lead a globally distributed cyber defense team.
  • Own enterprise incident response strategy and playbooks.
  • Drive hypothesis-based threat hunting aligned to adversary behaviors.

FNF is an Equal Opportunity employer. They are committed to creating a diverse and inclusive workplace where all employees feel valued and respected.

India

  • Investigate intrusion attempts and perform in-depth analysis of exploits
  • Monitor and analyze network traffic and alerts
  • Provide network intrusion detection expertise to support timely and effective decision making of when to declare an incident

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, they help enterprises deliver on the promise of digital transformation. At AHEAD, they prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard.

EMEA

  • Embed security into CI/CD pipelines and own secure controls.
  • Lead the process of vulnerability and patch management, automating discovery.
  • Strengthen cloud and Kubernetes environments through secure configurations.

Alpaca is a US-headquartered self-clearing broker-dealer and brokerage infrastructure provider for stocks, ETFs, options, crypto, fixed income, and more. They are a dynamic team of 230+ globally distributed members committed to opening financial services to everyone.

US

  • Lead the organization’s cybersecurity strategy, governance, and operational security programs.
  • Protect company systems, networks, and data by developing security policies and managing risk.
  • Oversee security operations and lead incident response efforts.

Lightcast is a global leader in labor market insights with headquarters in Moscow, ID (US) and offices in the United Kingdom, Europe, and India. They drive economic prosperity and mobility by providing insights to build and develop people, institutions, companies, and communities.