Manager, Security Operations; Hands On/Technical
Stamford, Fairfield County, Connecticut, 06925, USA
Listed on 2026-07-08
-
IT/Tech
Cybersecurity
About this role
This role supports Gartner’s growing Security Operations team as a Manager of Security Operations. You will lead day-to-day operations across US time zones to protect the organization’s reputation, customers, and information technology. The position is highly technical, leading the operational response to security events and incidents and providing a point of escalation. You will be deeply involved in planning and executing projects that impact the SOC and broader Security Operations practice.
Responsibilities- Drive operational excellence of a geographically dispersed Security Operations team.
- Serve as the Incident Commander during the incident response process.
- Continuously seek opportunities to improve the team’s ability to respond rapidly and effectively to security incidents.
- Work with key business stakeholders to detect, respond to, and remediate security issues.
- Provide mentorship and guidance to team members, promoting a culture of open communication and operational excellence.
- Drive automation initiatives to enhance analyst capabilities and workflows while eliminating repetitive tasks.
- Develop innovative detection content aligned with ATT&CK, the Cyber Kill Chain, and other security frameworks.
- Bring your own ideas and solutions to a fast‑paced, growing, and evolving team centered around operational excellence.
- Ensure smooth handover of alerts and incidents between team members located in various geographic regions.
- Bachelor’s in Computer Science, Information Security, Engineering, or 6+ years of experience in information security.
- Previous experience leading a SOC, Hunt, or Incident Response team, or progressive growth in responsibilities within a SOC environment.
- Demonstrated ability to prioritize and analyze security events, enabling swift decision‑making and timely response.
- Expertise in conducting and driving analysis and investigation of cybersecurity incidents.
- Experience articulating technical findings and creating detailed incident reports.
- Extensive experience with security tools such as SIEM, EDR, web proxy, and email security solutions.
- Experience driving security projects from requirements gathering to completion.
- Ability to mentor, motivate, and coach team members to achieve operational excellence.
- Passion for security and solving modern problems.
- Certification is a plus: CISSP, GCIH, GCFA, or equivalent.
- Cloud experience (AWS, Azure, GCP).
- Scripting or programming experience (Python, Power Shell, Bash).
- Competitive compensation.
- Limitless growth and learning opportunities.
- Ongoing mentorship and apprenticeship; leadership courses, development programs, technical courses, and certification opportunities.
- Collaborative and positive culture with diverse teams.
- Impactful work that directly contributes to strategic goals.
- Flexibility to work from home and collaborate in dynamic offices.
- 20+ PTO days plus holidays and floating holidays in the first year.
- Extensive medical, dental, and vision insurance.
- 401(k) with corporate match and immediate vesting.
- Health‑ and wellness‑related allowance programs.
- Parental leave.
- Tuition reimbursement.
- Employee Stock Purchase Plan.
- Employee Assistance Program.
- Gartner Gives Charity Match and other benefits.
The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to seek to advance the principles of equal employment opportunity.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).