Role OverviewThe Senior Manager, Incident Response reports to the Senior Manager of Security Operations and serves as the senior-most technical leader within the Newell Brands Security Operations function. This role is the primary Incident Commander for the Cyber Security Incident Response Plan (CSIRP) — owning end-to-end response coordination for high-severity and critical security incidents across Newell's global environment.
What You Will Do
The Senior Manager sets the technical direction for Security Operations, leading detection engineering, automation and control-improvement initiatives while directing the team's day-to-day operational execution. This is a hands-on leadership role: the right candidate pairs deep, current IR and engineering expertise with the operational judgment to run a modern SOC and translate lessons learned into durable, scalable process improvements.
Why It Might Be a Fit
The right candidate will have 10+ years of experience in cyber security, with a minimum of 6 years in a dedicated Incident Response or Security Operations role. They will have experience leading the technical operations of a SOC or Security Operations team, including setting priorities, mentoring analysts and driving measurable operational improvement.
Requirements
- Bachelor’s degree in Information Security, Computer Science, Information Management Systems or a related field
- 10+ years of experience in cyber security
- 6 years in a dedicated Incident Response or Security Operations role
- Experience leading the technical operations of a SOC or Security Operations team
- Demonstrated experience serving as an Incident Commander or leading response efforts for high-severity incidents
- Proven experience managing cross-functional response teams under pressure
- Experience managing and directing external IR retainer engagements and third-party forensic vendors
- Hands-on expertise with endpoint and network-based forensic investigation, malware analysis and log-based intrusion analysis
- Practical security engineering experience: SIEM detection content development, SOAR playbook authoring and security automation scripting
- Demonstrated ability to provide security control recommendations and architecture guidance across endpoint, network, cloud and identity environments
- Strong knowledge of network protocols, OS internals and application-layer vulnerabilities, along with corresponding risk mitigations
Benefits
- Equal Opportunity Employer
- Comply with applicable employment laws
- Encouraged to apply
]]>