Senior Manager Security Services
NavanAbout the role
In October 2021, TripActions announced its Series F funding of $275M at a post-money upround valuation of $7.25B to help accelerate future growth plans. In April 2021, TripActions and Visa announced an expanded strategic partnership. Through the new partnership with Visa, TripActions will accelerate the growth of its next-generation corporate card offering, increasing access to flexible payment methods with built-in policy controls
The Sr. Manager, Security Detection and Response will lead a team of experts to monitor, detect and respond to the TripActions cybersecurity threats. This role is hands-on, carrying the responsibility of running the day-to-day security operations tasks including management of SIEM, detection engineering platform and incident response. This also includes developing and delivering security performance and operational metrics.
Reporting into the Director, Security Detection & Response, the ideal candidate will maintain and enhance a consistent and reliable operational security environment and take a proactive security monitoring approach. The candidate must be a highly skilled and technical individual who is able to lead and manage a technical team, collaborate cross-functionally to remediate security challenges and has the ability to adapt in a dynamic security landscape.This is a hands-on leadership role requiring advanced technical skills, strong communication skills, and mature leadership and management abilities.This role has high visibility and requires a strong technical leader who can partner with stakeholders and cross-functional teams (Engineering, Product, SRE, IT, Legal, etc).
What You’ll Do:
- Lead and manage our Detection & Response teams, which involves hiring, developing & retaining personnel, workload assignments and process development
- Responsible for security event monitoring, management and response, workflows and tasks
- Identify opportunities to improve security monitoring and operational tasks by developing measurement capabilities and metrics to track and communicate performance, coverage and risk
- Evaluate existing SIEM rules, filters, events and use cases and adapt them to meet the business requirements
- Lead the maturity of the security operations; drive integration of new log sources, tools and services
- Create, maintain and manage a library of automated playbooks to address new threats and tactics employed by attacker
- Ensure compliance to SLA, process adherence and process improvisation to achieve operational objectives
- Build and maintain tools to proactively monitor and respond to emerging threats
- Assist the Security Incident Response Program with related matters resulting from security investigations
- Participate in key security initiatives as the Subject Matter Expert to ensure alignment with strategies and roadmap
- Develop standard operating procedures and other appropriate documentation to enforce quality and consistency of services being delivered
- Establish key performance indicator (KPI) metrics; track and report on performance; provide reporting to senior management on operations performance and status of initiatives
- Support ongoing security compliance, audit, and certification programs (e.g., PCI, HIPAA, SOC2)
What We’re Looking For:
- Bachelor's degree in Information Security, Computer Science, Computer Engineering, or equivalent work experience
- Minimum of 7 years of consistent detection & response experience performing triage/incident response in enterprise SaaS environments
- Exceptional leadership skills, able to lead, manage and grow a 24x7 global cyber security operations center and incident response program
- Expert knowledge of the cyber threat landscape – able to articulate and incorporate into program understanding of major threat categories, motivations, and intent of adversaries against enterprise assets
- Experienced in driving monitoring and automation in cloud environments, preferably including knowledge of AWS and Azure native capabilities
- Experienced in managing and actively engaging third party relationships to include MSS SOC, cloud security contacts, incident response/threat hunting services
- Strong understanding of advanced persistent threats, attacker methodologies, attack lifecycle, cyber kill chain, and the MITRE framework
- 5+ years of people management experience
- Understanding of digital forensics techniques and closely related areas
- Exceptional collaboration skills and communication skills, with the ability to engage with partners and stakeholders with a variety of perspectives and technical understanding
- GIAC security certification such as GCIA, GCIH, GREM, GPEN (or equivalent), multiple preferred
- SaaS / FinTech / anti-fra
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s