More jobs:
Detection and Response Manager - Tempus
Job in
Auburn, De Kalb County, Indiana, 46706, USA
Listed on 2026-07-31
Listing for:
PNC
Full Time
position Listed on 2026-07-31
Job specializations:
-
IT/Tech
Cybersecurity, Security Management & Operations
Job Description & How to Apply Below
* At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Detection and Response Manager within PNC's Tempus Technologies organization, you may be based in a remote location.
This position may not be available in all geographic locations.
Tempus Technologies, Inc. is the expert leader of secure payments at the point of interaction. For more than 25 years, innovation and producing high quality custom-ready solutions is at the forefront of everything we do. We're committed to developing exceptional point-of-sale payment integration technology and software solutions to meet the growing needs of our customers' business requirements. Our knowledgeable and friendly employees are passionately dedicated to delivering world-class support to every client.
We thrive in a transparent culture that understands the value of shared ideas, teamwork, and excellence in everything we do.
The Detection and Response Manager is responsible for overseeing and maturing the full detection and security incident response lifecycle to minimize organizational risk, ensure rapid containment, and drive timely and effective remediation. This role leads day‑to‑day SOC operations-including proactive monitoring, triage, investigation, and response-while ensuring 24/7 readiness through on‑call management, process rigor, and operational discipline.
The ideal candidate brings strong analytical and technical expertise, deep understanding of modern threat landscapes, and the leadership skills required to guide analysts through complex investigations. This role partners closely with Security Engineering, IT, Application teams, Compliance, and external stakeholders to coordinate response activities, facilitate clear communication, and ensure incidents are managed with consistency, transparency, and measurable improvements. In addition, the Detection and Response Lead drives continuous enhancement of SIEM detections, playbooks, automation, and readiness exercises, strengthening the organization's overall security posture and operational resilience.
Responsibilities include:
Core Detection & Response Operations:
- Lead day‑to‑day Detection and Response activities, ensuring timely detection, triage, investigation, and response to security events.
- Ensure 24/7 incident response readiness by maintaining and managing the on‑call rotation, including scheduling, escalation paths, and service‑level expectations.
- Serve as the owner for incident response execution, including initial containment, escalation, incident declaration, and forensic coordination.
- Act as the primary technical lead and liaison during high‑severity incidents, collaborating with Infrastructure, Engineering, Legal, and Executive leadership.
Detection Engineering & Threat Intelligence:
- Oversee the development, tuning, and continuous improvement of SIEM detections, alerting logic, and correlation rules.
- Drive integration of internal and external Threat Intelligence to enhance visibility and detection capabilities.
- Produce operational metrics and performance reporting focused on detection coverage, MTTD/MTTR, case handling quality, and tooling efficacy.
- Evaluate and implement new technologies, integrations, and automation opportunities to reduce manual workload and enhance response capabilities.
Incident Response Program Management:
- Own and maintain incident response playbooks, SOPs, escalation paths, and response frameworks.
- Ensure regulatory, contractual, and internal stakeholder notifications are initiated and documented when required.
- Manage post-incident activities, including after-action reviews, corrective actions, and measurable improvements.
- Lead readiness activities such as tabletop exercises, red/blue/purple team scenarios, and simulation‑based training.
- Ensure incident response posture aligns with organizational risk appetite, audit…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×