Overview
Manager – Cyber Security Defense Jobs in Chicago, IL at Request Technology, LLC
Title: Manager – Cyber Security Defense
Company: Request Technology, LLC
Location: Chicago, IL
Manager, Cyber Security Defense
SALARY: $175k – $185k
LOCATION: CHICAGO, IL
HYBRID 3 days onsite and 2 days remote
You will manage 4-6 people in incident management, security analysis, security monitoring, SOAR. splunk, symantic/Netskope DLP crowdstrike. Incident response playbook implements automation and AI solutions
This role implements automation and AI solutions to streamline threat detection processes, serves as Tier 3 support for incident response investigations, ensures regulatory compliance, and delivers actionable security metrics to leadership.
Primary Duties and Responsibilities:
Incident Management and Security Analysis:
- Lead cyber security incident responders in response activities including investigation, coordination, review, closure, and reporting.
- Oversee technical analysis of security events while coordinating incident response activities with internal and external teams.
Security Monitoring & Analysis:
- Tier-3 support of alerts and validating tuning requests.
- Alert tuning and reduction.
- Lead Automation/AI efforts to optimize security operations effort.
- Ensure accurate documentation.
Supervisory Responsibilities:
- Lead 4-6 employees and contingent labor professional for the cyber monitoring and analysis function within Cyber Defense.
- Manage team effectively in delivery of incident resolution, project tasks, compliance milestones, and systems implementations.
- Perform talent management functions, including performance reviews, direct feedback, and other administrative functions as required.
- Confer with and advise subordinates on administrative policies and procedures, technical problems, priorities, and methods.
- Promote employee development by conducting career-planning sessions with staff and selecting and scheduling employee training classes, conferences, and seminars
- Review with management, scheduling and training opportunities that fulfill role requirements for team members.
Qualifications:
- Experience in SOAR, Splunk, Symantec/Netskope DLP, CrowdStrike. Ability to create/tune alerts/rules independently.
- Effective and excellent oral and written communication, analytical, judgment and consultation skills.
- Ability to work independently and possess strong project management skills.
- Advance usage of Splunk SIEM, Splunk SOAR, CrowdStrike, Symantec/Netskope DLP.
- Incident Response playbook development managing incident analysis and remediation.
- Security Orchestration and Automated Response tools and concepts.
Some experience:
- Scripting and development activities to appropriately leverage Application Programing Interfaces (APIs) to optimize integrations between disparate security monitoring and analysis devices.
- Knowledge of Generative and Prompt A.I.
Education and/or Experience:
- Minimum five years hands-on security operations experience including interdisciplinary experience with four or more of the following: Cyber Threat Analysis, Digital Computer Forensics, Incident Response, Application Security, Operating Systems Security, Cryptographic Controls, Networking, Programming languages, Incident Response.
- Shift work and working in an on-call response capacity is required including availability for 24 x 7 on-call support responsibilities.