Manager, Information Security Operations - Remote US
Malwarebytes · Remote (United States) · remote
Malwarebytes/ThreatDown is looking for...
An experienced and motivated security leader who is looking to take on the challenge of building and running Security Operations at a Security company. We’re looking for someone to lead and develop our global Security Operations team, owning 24x7 alert monitoring, SIEM management, vulnerability management, investigations, incident response, threat hunting, DLP, internal pentesting, security reviews, and AI tooling reviews. We’re looking for a security leader who can help take our SecOps program to the next level.
What You Will Do:
- Lead and develop a global team of Security Operations analysts and engineers, providing 24x7 coverage and protection for the company.
- Own 24x7 alert monitoring, ensuring timely triage, escalation, and resolution of security events.
- Manage the SIEM platform, including log ingestion, detection rule tuning, and coverage across the environment.
- Direct vulnerability management, including scanning, prioritization, and remediation tracking across systems and applications.
- Lead security investigations and incident response, acting as the primary point of escalation for the Security Operations team.
- Develop and mature proactive threat hunting capabilities to identify risks before they become incidents.
- Oversee Data Loss Prevention (DLP) tooling and policy enforcement to protect sensitive company data.
- Lead internal (non-product) penetration testing efforts to validate security controls and identify gaps.
- Conduct security reviews of new tools, vendors, and internal projects to assess and mitigate risk.
- Own the evaluation and review of AI tooling adopted across the company, ensuring alignment with security standards.
- Develop and implement Security Operations policies, procedures, and documentation to ensure consistent, high-quality service delivery.
- Collaborate with other departments — engineering, product management, research, threat intelligence, support, IT, finance, legal, and other corporate functions — to ensure security operations meet the broader needs and goals of the company.
- Conduct regular performance reviews of Security Operations staff and provide development guidance and feedback.
- Manage 3rd party providers for MSSP, MDR, and other security operations activities.
- Act as a senior point of escalation during active incidents, including outside standard business hours.
- Occasional on-call duties as requested.
Skills You'll Need to Have:
- 5-8 years of experience in information security ops as an individual contributor
- 2-5 years of experience managing and developing a Security Operations or SOC team, ideally across multiple regions and time zones
- SaaS, Software Development, Tech and/or Fintech experience is required.
- Some proven experience handling AI security
- Well-versed in SecOps best practices across SIEM management, vulnerability management, investigations, incident response, and threat hunting
- Experience owning or contributing to DLP, internal penetration testing, and security review programs
- Proven experience handling AI security, including risk assessment and governance of AI tools, models, and integrations used across the business
- Ability to work with teams across the organization to improve security in infrastructure, cloud and enterprise environments
- Effective in managing multiple priorities, projects, and a distributed team in a fast-paced environment
- Passionate about process improvements, documentation, and automation
- Strong oral and written communication skills, with the ability to present to stakeholders with varying levels of technological experience
- Skilled at coaching, mentoring, and developing talent, including conducting performance reviews and providing feedback
- Lead by example to improve communications and processes within and across teams
- Understand the value in your team having ‘measurable success’
Nice to Have Skills
- Experience using industry standard SIEM tools
- Experience working at a security product company
- An understanding of cloud technologies and infrastructure
- Experience managing or mentoring geographically distributed, global teams
- Current or former security leadership or technical certifications such as CISSP, CISM, SANS GPEN, CEH or similar are a plus
Perks & Benefit:
- Comprehensive medical, dental, and vision insurance coverage
- Employee Referral Bonus Program
- Wellness programs
- 401k and employer matching for (US Employees)
- Comprehensive Time Off policy
- An opportunity to do something great for yourself and the world!
(Benefits and Perks subject to change by country/region)
Legal Language:
(US Employees Only)
Applicants have rights under the Federal Employment Laws:
- Employee Polygraph Protection Act
- Know Your Rights: Discrimination is Illegal
- Family and Medical Leave Act (FMLA)
This is to affirm our policy of providing equal employment opportunities to all employees and applicants for employment in accordance with all applicable laws and regulations.
Our company will not discriminate against or harass any employee or applicant for employment because of race, color, creed, religion, national origin, sex, sexual orientation, gender identity, disability, age, marital status, familial status, membership or activity in a local human rights commission, or status regarding public assistance. We will ensure that all our employment practices are free of discrimination. Such employment practices include, but are not limited to, the following: hiring, upgrading, demotion, transfer, recruitment or recruitment advertising, selection, layoff, disciplinary action, termination, rates of pay or other forms of compensation, and selection for training, including apprenticeship. We will provide reasonable accommodation to applicants and employees with disabilities whenever possible.