×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Defense Manager

Job in San Diego, San Diego County, California, 92189, USA
Listing for: Jobgether
Full Time position
Listed on 2026-08-24
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 110000 - 170000 USD Yearly USD 110000.00 170000.00 YEAR
Job Description & How to Apply Below

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cyber Defense Manager based in United Kingdom.

As a Cyber Defense Manager, you will lead and strengthen a resilient security operations capability responsible for protecting a complex digital environment.

You will oversee detection engineering, SOC operations, incident response, and exposure remediation, ensuring threats are identified and contained quickly and effectively.

The role combines hands-on security expertise with people leadership, operational ownership, and continuous improvement.

You will establish strong detection and response practices while using threat intelligence and real-world incidents to strengthen defensive controls.

Working across IT, Platform, Product, GRC, Legal, and business teams, you will coordinate critical incidents and drive remediation of high-impact risks.

You will also build and develop a high-performing Cyber Defense team while providing clear visibility into security performance and risk posture.

This is an opportunity to shape a mature, threat-informed security function in a fully remote European environment.

Accountabilities
  • Own Cyber Defense operations across SOC activities, detection engineering, incident response, threat detection, and exposure remediation.
  • Lead alert-triage quality, escalation processes, incident command, and coordinated response activities to ensure threats are handled rapidly and effectively.
  • Establish and continuously improve incident response standards, runbooks, playbooks, and operational procedures.
  • Prioritize critical vulnerabilities and security exposures based on asset criticality, exploitability, business impact, and risk.
  • Manage Cyber Defense dashboards, operational metrics, remediation tracking, and follow-up processes to maintain clear visibility into the security posture.
  • Partner with IT, Platform, Product, GRC, Legal, and business stakeholders during security incidents, investigations, and remediation initiatives.
  • Lead and develop the Cyber Defense team, including hiring, onboarding, coaching, mentoring, performance management, and retention of security talent.
  • Improve detection coverage across the environment by designing, validating, tuning, and expanding detection capabilities.
  • Reduce false positives and improve detection quality while maintaining effective coverage against relevant attack scenarios.
  • Use threat intelligence, incident findings, and lessons learned to continuously strengthen detection logic, response playbooks, and security controls.
  • Report on Cyber Defense performance, major incidents, operational metrics, and overall risk posture to security leadership and relevant executive stakeholders.
  • Drive measurable improvements in metrics such as mean time to detect (MTTD), mean time to respond (MTTR), detection coverage, and exposure aging.
Requirements
  • 10+ years of professional experience in Information Security, Cybersecurity, or a closely related discipline.
  • 3+ years of experience in a security management or team-lead position with direct people-management responsibilities.
  • Hands-on experience managing SOC operations, leading incident command, coordinating response activities, and improving MTTD and MTTR.
  • Strong expertise in designing, validating, maintaining, and tuning detection logic across SIEM, EDR, and cloud environments.
  • Deep understanding of security runbook development, alert triage, incident response, and false-positive reduction.
  • Strong knowledge of common attack scenarios, including account takeover, credential theft, privilege escalation, and data exfiltration.
  • Ability to map detection strategies and coverage to threat models such as MITRE ATT&CK.
  • Experience prioritizing vulnerabilities and exposures using CVSS, asset criticality, exploitability, and business impact.
  • Hands-on experience with at least one enterprise SIEM platform such as Splunk, Microsoft Sentinel, Chronicle, or Elastic, as well as SOAR tooling.
  • Understanding of cloud-native security controls and monitoring across AWS, GCP, or Azure environments.
  • Strong knowledge of IAM, PAM, SSO, and identity-related attack vectors relevant…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary