Manager, Detection & Investigative Operations - Remote based in the US

Posted Yesterday
Be an Early Applicant
Hiring Remotely in United States
Remote
120K-165K Annually
Senior level
Healthtech • Biotech
The Role
Manages a 24x7 Detection and Response Center, overseeing analysts, engineers, security monitoring, alert triage, incident escalation, investigations, and threat intelligence. Leads SOC process maturity, automation, and AI adoption across SIEM/SOAR workflows; manages MSSP relationships, operational metrics, staff performance, security tools, and stakeholder collaboration. Provides cybersecurity guidance, supports incident response and threat hunting, and conducts after-action reviews to improve detection and response capabilities.
Summary Generated by Built In

Tenet Health is seeking a Manager of Detection & Investigative Operations with previous Information Security experience to work in our Dallas, TX corporate office on a hybrid schedule or remotely if outside DFW. Below is a brief outline of what Tenet is seeking for this role.

Reporting to the Director of Detection and Response within the enterprise Cybersecurity organization, the Manager of Detection & Investigative Operations will oversee the activities of the 24x7 Detection and Response Center and all analysts and engineers, ensuring that Detection and Response operations are performed in accordance to policy, standards and security best practices. This role has direct responsibility for the effective and efficient operations of the Detection and Response Center including security monitoring, detection, triage, initial response, escalation handoffs, and threat intelligence to the Incident Response team.

The position will be responsible for driving transformation and maturity of processes, workflows, and overall capabilities, process refinement and implementation, cross-team discipline collaboration, maintenance of internal and external stakeholder relationships, and supervision of staff. The Manager of Detection & Investigative Operations will work closely with the Managed Security Service Provider to ensure the continuous improvement of the Detection and Response capabilities and that SLAs, SOPs, Events and Alert Management are all in line with the standards of Tenet. The Manager of Detection & Investigative Operations will work closely with their peer, the Incident Response Manager, on investigations, incidents, and threat hunting as needed. Equally, the Manager of Detection & Investigative Operations will work to ensure there are clear processes and escalation points to hand off alerts/events from the Detection and Response team to the IR Team as deemed appropriate based on the security and scope of the event. The Manager of Detection & Investigative Operations will manage and mature the Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms. Lastly, the Manager of Detection & Investigative Operations will lead a transformative effort to embed automation and AI across the analyst and engineering workflows.

Responsibilities

Duties include but are not limited to the following: 

  • Lead Detection and Response team in support of all designated Security Operations and Incident Response investigations, as needed
  • Drive a transformation to embed AI into the triage, enrichment, and containment workflows of the Detection and Response Center
  • Embrace automation and AI across all areas including the analyst and SIEM/SOAR platform engineering teams
  • Analyze security indicators of compromise and alert data and take appropriate investigative actions
  • Develop and execute on strategic plans and projects to meet SOC goals and objectives and to mature, design, and implement improvements to the security operations program
  • Work with security engineering, infrastructure security, and security architecture to operationalize newly installed security tools
  • Maintain an understanding of the current threat intelligence, detective controls, vulnerabilities, response, and mitigation strategies used in security operations
  • Manage the resources in the SOC with regards to detection, response, mitigation, and reporting of cyber threats
  • Provide technical guidance to team members in areas of cyber security
  • Develop and track security operations metrics
  • Manage individual and team performance to consistently meet performance standards
  • Develop a deep understanding of operational risks and drive the response process in order to minimize the impact of these risks
  • Conduct after-action reviews to identify lessons learned and best practices
Qualifications

Skills, Experience & Competencies   

  • BS/BA in Computer Science, Computer Engineering, Network Security, Information Security, Information Technology or equivalent work experience
  • 3+ years leadership experience within a SOC or MSSP 
  • 5+ years of experience in information security
  • Experience in a leadership position within a Security Operations Center preferred 
  • Experience working with Security Information Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Endpoint Detection and Response (EDR), Email Security, Threat Intelligence, Firewalls, Web Application Firewalls, Incident Response, Digital Forensics, and/or Threat Modeling is preferred
  • Ability to develop and track key performance indicators (KPIs) and metrics for operational success
  • Proven leadership skills including effective oral and written communication, performance management, issue resolution, negotiation, motivating team members, forecasting, and planning
  • Experience in a security role with strong working knowledge and understanding of information security framework, incident management, operations and application security best practices
  • Possession of industry certifications preferred (GIAC, CISSP, CISA, CISM, etc.) 
  • Experience with staff performance plan development, situational leadership and management responsibilities
  • Must be a self-starter with the ability to lead and develop a team of analysts with minimal supervision

Compensation

  • Base pay: $120,000 - $165,000 annually. Compensation depends on location, qualifications, and experience. 
  • Position may be eligible for an Annual Incentive Plan bonus of 10%-50% depending on role level.
  • Management level positions may be eligible for sign-on and relocation bonuses.

Benefits

The following benefits are available, subject to employment status:

  • Medical, dental, vision, disability, AD&D, and life insurance
  • Manager Time Off – 20 days per year
  • Discretionary 401k match
  • 10 paid holidays per year
  • Health savings accounts, healthcare & dependent flexible spending accounts
  • Voluntary benefits include pet insurance, legal insurance, accident and critical illness insurance, long term care, elder & childcare, auto & home insurance.
  • For Colorado employees, paid leave in accordance with Colorado’s Healthy Families and Workplaces Act is available.

Skills Required

  • Bachelor’s degree in Computer Science, Computer Engineering, Network Security, Information Security, Information Technology, or equivalent work experience
  • At least 3 years of leadership experience within a SOC or MSSP
  • At least 5 years of information security experience
  • Experience in a leadership position within a Security Operations Center
  • Experience with SIEM, SOAR, EDR, Email Security, Threat Intelligence, Firewalls, Web Application Firewalls, Incident Response, Digital Forensics, and/or Threat Modeling
  • Ability to develop and track KPIs and operational performance metrics
  • Proven leadership skills, including communication, performance management, issue resolution, negotiation, motivation, forecasting, and planning
  • Strong working knowledge of information security frameworks, incident management, security operations, and application security best practices
  • Industry certifications such as GIAC, CISSP, CISA, or CISM
  • Experience developing staff performance plans, applying situational leadership, and managing personnel
  • Ability to lead and develop a team of analysts with minimal supervision
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dallas, Texas
43,105 Employees

What We Do

Tenet Healthcare Corporation (NYSE: THC) is a diversified healthcare services company headquartered in Dallas. Our care delivery network includes United Surgical Partners International, the largest ambulatory platform in the country, which operates ambulatory surgery centers and surgical hospitals. We also operate a national portfolio of acute care and specialty hospitals, other outpatient facilities, a network of leading employed physicians and a global business center in Manila, Philippines. Our Conifer Health Solutions subsidiary provides revenue cycle management and value-based care services to hospitals, health systems, physician practices, employers, and other clients. Across the Tenet enterprise, we are united by our mission to deliver quality, compassionate care in the communities we serve. For more information, please visit www.tenethealth.com.

Similar Jobs

Remote or Hybrid
14 Locations
289097 Employees

Block Logo Block

Software Engineer

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
264K-395K Annually

Block Logo Block

Global Operations Excellence & Business Operations Lead

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
123K-223K Annually

Block Logo Block

Growth Manager, Activation & Habituation

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
136K-245K Annually

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees
Vitalize Thumbnail
Artificial Intelligence • Healthtech • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account