Senior Manager, Cybersecurity Operations
Listed on 2026-09-20
-
IT/Tech
Cybersecurity, Security Management & Operations
As a Senior Manager, Cybersecurity Operations at QXO, you ll be a key member of the Cybersecurity Team, providing operational leadership and direction for the company s detect and respond capabilities. This role is responsible for leading teams and working directly across multiple disciplines, technical levels, and business groups to ensure the continuous monitoring, threat detection, incident response, and threat intelligence functions that protect QXO s systems and information assets.
The senior manager ensures security operations teams execute with excellence, scales detect and respond capabilities and drives continuous improvement of QXO s security posture and incident response maturity.
QXO is a leading distributor and installer of building products serving an $800 billion market. The company s mission is to modernize the building products industry through advanced technology and a best-in-class customer experience. QXO is North America s largest distributor and installer of insulation, the second-largest distributor of roofing products, the second-largest publicly traded distributor of lumber and building materials, and the largest distributor of waterproofing products.
The company is targeting $50 billion in annual revenue within the decade through accretive acquisitions and organic growth. For more information, visit
- Lead and manage the Security Operations team, including team leadership, daily operations, alert triage, threat intelligence, incident detection and initial response.
- Lead incident response coordination, including triage, containment, remediation, and post-incident analysis with appropriate escalation to leadership and stakeholders.
- Oversee managed security services (MDR, SIEM, EDR, threat intelligence, etc.) to ensure effective delivery and alignment with QXO s security objectives.
- Own detection engineering and threat hunting activities to identify and elevate emerging threats, anomalies, and security incidents affecting QXO.
- Manage and develop high-performing cybersecurity analysts, emphasizing career growth, skill development, and retention through people-first leadership.
- Build and maintain threat intelligence programs, including tracking threat actors, TTPs, vulnerabilities, and malware trends relevant to QXO.
- Author and maintain security operations procedures, runbooks, playbooks, and standard work to ensure consistent and effective threat response.
- Prepare detailed incident reports and root cause analyses, documenting containment, remediation, and after-action reports (AARs) to drive continuous improvement.
- Develop and execute the detection and response roadmap, identifying capability gaps, recommending technology investments, and guiding maturation efforts.
- Openly support the management team and executive leadership during critical security incidents and organizational transitions.
- Partner with infrastructure, application security, and IT teams to validate security controls, coordinate remediation efforts, and drive risk mitigation.
- Report on security operations metrics, Key Risk Indicators (KRIs), and incident trends to leadership, translating technical findings into business context.
- Support security awareness and training initiatives, educating the organization on threats, phishing campaigns, and incident reporting procedures.
- Interface with legal, compliance, and risk management teams as needed to support investigations and operations.
- Collaborate with procurement and IT to evaluate and implement new detection and response technologies.
- Engage with external partners, industry peers, and vendors to stay current on threat landscape, detection technologies, and incident response best practices.
- Perform other duties as assigned.
Skills and Experience
- At least 7+ years’ experience in cybersecurity across detection, incident response, threat intelligence, and security operations.
- 3 or more years in a management or senior individual contributor role leading or influencing security operations teams.
- Deep hands-on expertise in SOC operations, SIEM platforms, EDR tools, and security information and event management.
- Expert-level knowledge of incident response methodologies, the Cyber Kill Chain, and intelligence-driven response practices.
- Strong background in threat intelligence, threat actor tracking, malware analysis, and Advanced Persistent Threats (APTs).
- Experience with digital forensic techniques, log analysis, and network traffic analysis.
- Demonstrated ability to lead and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).