Global Information Security Operations Manager
Listed on 2026-10-11
-
IT/Tech
-
Management
The Global Information Security Operations Manager provides leadership and operational ownership for the organization’s global cybersecurity and information security operations. Reporting to the Global Information Security Director/CISO, this role leads a growing team of approximately eight security professionals and coordinates security operations across a complex, globally distributed enterprise.
This leader is accountable for the reliable execution, integration, measurement, and continuous improvement of a mature security technology and service environment. The role will strengthen operational discipline, improve security tooling effectiveness, lead major incident response, develop talent, manage key service providers, and translate security data into clear priorities and measurable risk reduction.
The successful candidate will combine strong people leadership with broad technical credibility. This is not primarily a hands‑on engineering position or a build-from-scratch security role. It is an opportunity to lead, optimize, and scale an established security operations capability while ensuring the program remains resilient, responsive, and aligned with business objectives.
DUTIES & RESPONSIBILITIES:1. Global Security Operations Leadership
- Lead, coach, and develop a growing global security operations team, establishing clear responsibilities, priorities, decision rights, and accountability.
- Translate security strategy and risk priorities into executable operational plans, objectives, service expectations, and measurable outcomes.
- Establish consistent operating rhythms for workload management, escalation, performance review, and continuous improvement.
- Support workforce planning, hiring, succession planning, skills development, and sustainable on‑call or incident coverage.
- Promote a culture of collaboration, ownership, sound judgment, and disciplined execution.
- Own the day‑to‑day performance of global security operations, including monitoring, detection, investigation, containment, recovery support, and operational follow‑through.
- Define and monitor service levels, key performance indicators, key risk indicators, case‑management standards, and escalation thresholds.
- Coordinate work across Information Security, global IT, infrastructure, identity, cloud, applications, manufacturing technology, legal, privacy, business teams, and external partners.
- Ensure operational issues, recurring control failures, and coverage gaps are assigned, tracked, escalated, and driven to verified closure.
- Develop and maintain clear operating procedures, playbooks, workflows, and handoff requirements.
- Serve as incident commander, or designate an appropriate incident commander, for significant cybersecurity events.
- Coordinate technical response, containment, evidence preservation, business communication, executive escalation, recovery support, and post‑incident improvement activities.
- Maintain and exercise incident response plans, playbooks, communication protocols, decision authorities, and global escalation procedures.
- Lead tabletop exercises and simulations to validate readiness and identify improvement opportunities.
- Ensure lessons learned result in documented corrective actions, accountable owners, target dates, and validated closure.
- Provide operational governance for a mature and broad security technology portfolio spanning monitoring, endpoint, identity, network, cloud, data protection, vulnerability management, and automation capabilities.
- Drive effective integration, telemetry coverage, alert quality, use‑case maturity, platform health, adoption, automation, and lifecycle management.
- A…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).