Summary
✨ AI‑Generated
A senior cybersecurity leadership role within a managed detection and response environment. You will lead analysts, oversee security monitoring and incident response, help reduce customer risk, improve operational processes, and provide technical guidance and coaching. Strong hands-on security expertise combined with leadership ability is required.
Highlights
Lead a security operations team focused on reducing cyber risk, combining hands-on threat detection and response expertise with team leadership, coaching, and operational ownership.
Description
Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide.
Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry’s most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience.
With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily.
The company has pioneered breakthrough innovations in antimalware, IoT security, behavioral analytics, and artificial intelligence and its technology is licensed by more than 180 of the world’s most recognized technology brands.
Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world.
For more information, visit https://www.bitdefender.comTeam Lead - Managed Detection and Response
Our mission at Bitdefender is to reduce risk to customers’ business to allow them to achieve their objectives.
We are focused on delivering real security value for an affordable price – no snake oil.
To help in this mission, we are looking for a Team Lead.
You will work in a tight knit, experienced team backed up by an international organization that’s been in business for 18 years.
About Us
The Managed Detection & Response service is a new line of business (think division, business unit, etc).
We are an experienced team having built successful Managed Security offerings in the past and staffed by a multitude of cybersecurity organizations and veteran cyber-warfare operators from the military and intelligence services.
We all got into this business to provide security services that make customers safer.
We must make some money to do that, but our primary goal is to provide services that secure, not just ones that sell.
Our team has been around the block together and operate in a 24x7 environment where we manage emergency situations for customers.
For this to work, we must trust each other.
As a leadership team, we focus on building that trust through accountability, processes and personal relationships.
We have plenty of experienced team members with and without families and understand that not all teams can be built outside of work, but we focus on teamwork to build authentic and meaningful engagement.
About the Role
You will lead the AMR Security Operations team – Level 1 Associate Security Analysts, Level 2 Security Analysts and Level 3 Senior Security Analysts – reporting to the Security Operations Manager.
You are accountable for how effectively the team monitors, identifies, analyzes and responds to security incidents, and for continuously improving the security posture we deliver to customers.
Lead, mentor and manage a team of L1, L2 and L3 Security Analysts
Conduct regular performance reviews and provide constructive feedback
Develop and implement training plans and career development programs for team members
Coordinate and allocate resources to ensure effective coverage and operational efficiency
Oversee the day-to-day operations of the security team and ensure timely detection, analysis and response to security incidents
Develop and maintain security monitoring and incident response processes, and ensure compliance with established security policies and procedures
Coordinate and lead incident response efforts, conduct post-incident analysis and develop improvement plans
Maintain comprehensive incident documentation and reporting
Provide technical expertise and guidance to team members, and ensure the implementation of security best practices
Assist in the development and enforcement of security policies and procedures, and conduct regular security audits and assessments
Work closely with other MDR teams (Customer Success, Defensive Infrastructure, CIFC and Product) to provide operational input to initiatives and products
Communicate effectively with senior management and provide regular updates on security posture
Stay current on the latest security threats, trends and technologies
About you:
Be able to demonstrate working knowledge and understanding of the following:
Bachelor’s degree in Computer Science, Information Technology or a related field
Minimum of 5 years of experience in information security, with at least 2 years in a leadership role
Relevant certifications such as CISSP, CISM or equivalent are preferred
Proven ability to manage and lead a team of security professionals
Strong understanding of security principles, practices and technologies
Cyber threats, vulnerabilities and current cyber threat trends
Current incident response methodologies and cyber investigative techniques
Experience with security monitoring and incident response tools
Security Information and Event Management (SIEM) tools – searching, aggregating and correlating data
Computer networking concepts and protocols, and network security methodologies
Analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs and intrusion detection system [IDS] logs) to identify possible threats to network security
Defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness)
Basic system administration, network and operating system hardening techniques across Windows, Unix and Linux
Virtualization and cloud computing
Hacking methodologies and the Cyber Kill Chain
Strong analytical and problem-solving skills
Ability to work under pressure and handle multiple tasks simultaneously
Excellent organizational and time management skills
Ability to communicate complex technical information to non-technical stakeholders
#LI-JW1