Cyber Security Operations Manager
Listed on 2026-06-03
-
IT/Tech
Cybersecurity, IT Project Manager, Information Security, Network Security
Overview
Manager, Cybersecurity Operations.
Location:
HYBRID, Tempe, 4 days in office. This role reports to the Director of Cybersecurity and owns several core security programs, including the Security Operations Center (SOC), vulnerability management, and data loss prevention (DLP). The role is roughly an even split between hands-on technical work and leadership. You will lead incidents end to end, make fast containment and quarantine decisions, and report on vulnerabilities and remediation across internal teams and partners.
This is a small, collaborative team with no room for ego. You will step in, lead, and help structure the environment as the company moves through a Google to Microsoft migration with an AI-forward approach. You will partner closely with a third-party management company that handles first-line SOC triage, stepping in to handle, escalate, and lead when necessary.
Responsibilities- Oversee the SOC, vulnerability management, and DLP programs, ensuring the confidentiality, integrity, and availability of critical systems and data
- Lead incident response from detection through resolution, including triage, escalation, containment, and post-incident reporting
- Manage security across both cloud and on-prem environments
- Partner with a third-party SOC provider on alerts and first-line triage, stepping in to handle and escalate as needed
- Know when to bring in upper leadership, legal, and other stakeholders during high-severity incidents
- Take on program management duties to help structure the security environment and drive strategy
- Report on incidents, vulnerabilities, and risk across internal teams and external partners
- Lead, mentor, and develop a small internal security team alongside dedicated third-party analysts
- Bachelor's degree (BA/BS) in a related field, or 4 additional years of related experience
- Minimum of 6 years in information security roles spanning areas like software development, infrastructure, operations, and incident response
- Proven experience managing a SOC and implementing vulnerability management and DLP
- Strong knowledge of cybersecurity technologies including MDR, EDR, SIEM, SOAR, and vulnerability management tools
- Hands-on experience with tools such as Microsoft XDR, Crowd Strike, and Rapid7
- Solid understanding of SOX, CCPA, PCI, NIST, and CIS
18 - Experience with incident management and severity handling, including phishing and ransomware response
- Experience in SaaS-heavy environments along with vendor management
- Deep experience with risk management, threat modeling, and vulnerability assessment
- Familiarity with cloud security frameworks and controls across AWS, Azure, and Google Cloud
- Ability to lead without direct authority and develop a high-performing, collaborative team
- CISM or CISSP certification preferred
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).