Director of Security Operations

  • Hidden Jobs 4 You
  • Philadelphia, PA United States
  • Aug 07, 2017
Full time

Job Description

Director of Security Operations The Director of Security Operations will be responsible for guiding the direction of security operations as service grows and evolves. The Director of Security Operations will help realize the vision of the SOC as well as govern the day-to-day operations of the Security Operations Center. As a leadership role, the specific tasks and functions will vary based on the current state of the business and service offering. The following high-level goals are expected to be met. Guide the Future Development of SOC Service The Director of Security Operations will work closely with leadership to ensure that the SOC service continues to be effective and successful. This will likely take many forms, from brainstorming new methods of detecting threats to evaluating the effectiveness of existing detective controls. Take Ownership of Incident Response and Forensic Analysis Service Offerings Incident Response and Forensic Analysis are natural extensions to the SOC service. The Director of Security Operations will own every aspect of these service offerings to ensure they are delivered effectively. Manage the Day-to-Day Operations of the Security Operations Centers The success of the program is contingent on the effectiveness of the day-to-day operations of its SOCs. The Director of Security Operations will provide oversight and mentorship to ensure that personnel are handling security events properly. This will include ensuring that proper coverage is maintained at all times and communicating any notable concerns to leadership. Be Responsible for Client Relationships A focus is to forge a trusted partnership with the clients. This comes from providing timely, expert security advice when handling security events as well as regular communication to ensure expectations are being met. The Director of Security Operations will be responsible for managing and maintaining client relationships. Develop and Maintain Deployment Processes The success is often dependent on ensuring the collection of meaningful security data from our clientsâ?? environments. Ensuring service is deployed successfully in a client environment is the first step towards accomplishing this. This role will work closely with the Project Manager to accomplish this. Provide Direct Management of Security Operations Center Personnel Security Operations Center personnel will report directly to the Director of Security Operations. As such, this role will be responsible for tasks such as conducting performance reviews, providing mentorship, approving training, and hiring. Take Charge of the Ongoing Design and Development of theSecurity Lab The Security Lab will be used for training and testing detective controls for the service. This role will be responsible for the ongoing design and development of this lab environment. Required Skills Strong understanding of the TCP/IP suite of protocols Difference between TCP and UDP Purpose of a subnet mask Role of TCP and UDP ports in network communication Professional experience with network and systems architecture Network segmentation (e.g., DMZ) Intrusion Detection Systems Web application architecture Active Directory Expert understanding of how major application layer protocols function (e.g., HTTP, SMTP, DNS, Kerberos) Advanced knowledge of categories of malware and how they function (e.g., rootkits, trojans, adware) Expertise related to vulnerabilities and attack vectors such as: SQL Injection Brute force attacks Portscans Malware infection vectors Phishing attacks Driveby/Redirection attacks Functional knowledge of programming/scripting (e.g., Perl, Python, Ruby) Comfortable in multiple operating systems (Windows, Linux, Unix, OSX) Prior experience with SIEM technologies Prior experience in a network or security operations center Optional Skills Certifications are always a plus, but not required: CISSP GCIH GCIA GSEC Network traffic analysis skills


$130,000 - $150,000

Job ID