Senior Associate, Security Operations
Listed on 2026-05-27
-
IT/Tech
Cybersecurity, Information Security
Application Notice
We encourage you to apply thoughtfully by selecting one position that best matches your qualifications and interests. You may submit up to two active applications at a time. Please consider your location choice carefully—we recommend applying where you envision building your future.
The FirmUnlock the Boundless Horizons of Tax, Valuation, and Business Expertise with Andersen!
At Andersen, we don’t just offer a career; we provide a thrilling expedition into the world of Tax, Valuation, and Business Advisory. We stand as a trailblazing force with the most extensive global presence among professional services organizations. You’ll embark on a journey that transcends the ordinary, working with extraordinary clients spanning every industry, regardless of their size, because at Andersen, we are free from independence-related constraints that may hinder other firms.
But that’s not all; we’re more than just a company; we’re a community that thrives on diversity, inclusivity, and collaboration. Our focus is on your development helping you flourish as leaders, colleagues and trusted advisors. We equip you with world‑class education, immersive experiences, and invaluable mentorship to support your rise to the top.
We believe in your potential and invest in it to build a legacy that extends beyond your wildest dreams. Bring your ambition, your entrepreneurial spirit, and your burning desire to be the best. Your future mirrors the limitless possibilities of our future. Join us at Andersen, and together, let’s write the story of your success!
The RoleAndersen’s information security function is expanding, and this role sits at the operational core of that effort. The Senior Associate, Security Operations serves as the firm’s internal hub for day‑to‑day security operations, owning the relationship with our managed detection and response provider, triaging and coordinating incident response, managing security vendor relationships, and executing client security due diligence. This role requires a candidate who is equally comfortable analyzing a threat escalation and drafting a vendor risk assessment.
The Senior Associate reports to the Head of Security Engineering & Architecture, with dotted‑line accountability to the Senior Manager, Governance, Risk & Compliance for client diligence and vendor risk.
After‑hours availability is a firm requirement of this role; high‑severity incidents do not observe business hours.
The Senior Associate, Security Operations Can Expect To Incident Response- Serve as the firm’s internal incident response coordinator, working alongside the managed detection and response provider during active security events
- Execute, test, and continuously improve IR playbooks through regular tabletop exercises, lessons learned, and evolving threat intelligence
- Coordinate internal stakeholder communication during incidents, escalating at appropriate severity thresholds
- Produce post‑incident reports that are clear, factual, and actionable for both technical and executive audiences
- Serve as the primary day‑to‑day liaison to the firm’s MDR provider; review threat reports, detection summaries, and alert trends, and hold the provider accountable to SLAs
- Triage MDR escalations – assess severity, validate findings, and initiate the appropriate internal response workflow
- Coordinate detection rule tuning and alert threshold adjustments to reduce false positives and improve signal quality
- Maintain a working knowledge of the MDR’s detection logic and coverage gaps, flagging concerns proactively to the Head of Security Engineering & Architecture
- Execute responses to client security questionnaires and due diligence requests accurately and on time, drawing on the response library maintained by the Senior Manager, GRC
- Ensure questionnaire responses reflect the firm’s current control posture and active certifications, escalating discrepancies or coverage gaps immediately
- Manage the intake and tracking of diligence requests, flagging new or unusual questions to the Senior Manager, GRC to drive updates to the approved response framework
- Support the Head…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).