Overview

Manager – Cyber Security Defense Jobs in Chicago, IL at Request Technology, LLC

Title: Manager – Cyber Security Defense

Company: Request Technology, LLC

Location: Chicago, IL

Manager, Cyber Security Defense

SALARY: $175k – $185k

LOCATION: CHICAGO, IL

HYBRID 3 days onsite and 2 days remote

You will manage 4-6 people in incident management, security analysis, security monitoring, SOAR. splunk, symantic/Netskope DLP crowdstrike. Incident response playbook implements automation and AI solutions

This role implements automation and AI solutions to streamline threat detection processes, serves as Tier 3 support for incident response investigations, ensures regulatory compliance, and delivers actionable security metrics to leadership.

Primary Duties and Responsibilities:

Incident Management and Security Analysis:

  • Lead cyber security incident responders in response activities including investigation, coordination, review, closure, and reporting.
  • Oversee technical analysis of security events while coordinating incident response activities with internal and external teams.

Security Monitoring & Analysis:

  • Tier-3 support of alerts and validating tuning requests.
  • Alert tuning and reduction.
  • Lead Automation/AI efforts to optimize security operations effort.
  • Ensure accurate documentation.

Supervisory Responsibilities:

  • Lead 4-6 employees and contingent labor professional for the cyber monitoring and analysis function within Cyber Defense.
  • Manage team effectively in delivery of incident resolution, project tasks, compliance milestones, and systems implementations.
  • Perform talent management functions, including performance reviews, direct feedback, and other administrative functions as required.
  • Confer with and advise subordinates on administrative policies and procedures, technical problems, priorities, and methods.
  • Promote employee development by conducting career-planning sessions with staff and selecting and scheduling employee training classes, conferences, and seminars
  • Review with management, scheduling and training opportunities that fulfill role requirements for team members.

Qualifications:

  • Experience in SOAR, Splunk, Symantec/Netskope DLP, CrowdStrike. Ability to create/tune alerts/rules independently.
  • Effective and excellent oral and written communication, analytical, judgment and consultation skills.
  • Ability to work independently and possess strong project management skills.
  • Advance usage of Splunk SIEM, Splunk SOAR, CrowdStrike, Symantec/Netskope DLP.
  • Incident Response playbook development managing incident analysis and remediation.
  • Security Orchestration and Automated Response tools and concepts.

Some experience:

  • Scripting and development activities to appropriately leverage Application Programing Interfaces (APIs) to optimize integrations between disparate security monitoring and analysis devices.
  • Knowledge of Generative and Prompt A.I.

Education and/or Experience:

  • Minimum five years hands-on security operations experience including interdisciplinary experience with four or more of the following: Cyber Threat Analysis, Digital Computer Forensics, Incident Response, Application Security, Operating Systems Security, Cryptographic Controls, Networking, Programming languages, Incident Response.
  • Shift work and working in an on-call response capacity is required including availability for 24 x 7 on-call support responsibilities.

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.