On day one, we’ll expect you to bring a strong mix of incident leadership, operational maturity, and people leadership. You’ll have experience directly leading complex, multi-stakeholder security incidents in a SaaS, cloud, or enterprise environment, along with demonstrated success managing and developing senior security engineers, incident responders, and/or technical leads.
You’ll have strong executive communication skills, including the ability to translate incomplete technical information into clear decisions, risks, and next steps. You’ll have experience improving incident response programs through metrics, retrospectives, process design, readiness exercises, and cross-team influence, as well as hands-on familiarity with investigation workflows, detection and response tooling, log analysis, and operational coordination across globally distributed teams.
You should have experience deploying investigative AI tools and automation in security operations or incident response environments, including using automation to reduce analyst toil, improve triage quality, accelerate investigations, enrich cases, retrieve relevant knowledge, summarize findings, or orchestrate response workflows. You’ll also bring strong systems thinking: the ability to connect incidents to broader improvements in telemetry, detection logic, escalation paths, tooling, and operating models, together with calm, structured decision-making in ambiguous, high-pressure situations.