Director Security Operations & Engineering (Full Remote)
HolmanAbout the role
Holman is a family-owned, global automotive services organization anchored by our deeply rooted core values and principles that have enabled us to continue Driving What’s Right throughout the last century. Our teams deliver the Holman Experience by treating our customers and each other as we would like to be treated, and creating positive, rewarding relationships all around.
The automotive markets Holman serves include fleet management and leasing; vehicle fabrication and upfitting; component manufacturing and productivity solutions; powertrain distribution and logistics services; commercial and personal insurance and risk management; and retail automotive sales as one of the largest privately owned dealership groups in the United States.
Holman is currently accepting applications for the position of Director- Security Operations & Engineering.
This role is a Full Time position that also has been approved for a Full Remote work designation.
Principal Purpose of Position:
- Develops and maintains a security operations program and executes initiatives to protect, detect and respond to security threats and incidents. Areas of responsibility include technical assessments, security information event monitoring, endpoint security, web security, vulnerability management, network & web protection testing and threat hunting.
- Maintains security profiles, inventories, threats and risks for Holman companies.
- Recommends, implements and maintains tools and security platforms used to perform the security operations program.
- Advises management on best practices, current trends, and pertinent changes in internal/external threats in a timely manner. Present and influences to both technical and executive level management on threats and action plans.
- Develops new and proposed changes to policies and procedures to ensure adequate controls and protection levels.
- Provides security communication, awareness and training for audiences, which may range from junior staff to executive leadership.
- Manage a team of associates and potentially onsite and offsite contractors to monitor and respond to security events 24x7x365. This includes hiring, training and conducting performance reviews and coaching team members.
- Leads technical security and cyber investigations.
- Plan and execute regular incident response and postmortem exercises.
- Plans and conducts assessment including but not limited to security engineering, vulnerability management, endpoint protection, web protection, external systems protection, threat hunting and penetration testing.
- Develops metrics and scorecards to measure risk to the organization, as well as effectiveness and efficiency of SOC associates. Creates measurable benchmarks to show progress on deficiencies or areas requiring attention.
Relevant Work Experience:
- 5 + years of advanced Information Security experience.
- 5-10 years in a supervisor\leadership role.
- Strong experience in developing and executing security architecture and strategies. This includes strategic, tactical and project level plans.
- Strong experience managing security information and event management (SIEM) systems, threat intelligence platforms, security automation and orchestration solutions, vulnerability management platforms, intrusion detection and prevention systems (IDS/IPS), file integrity monitoring (FIM), data loss prevention (DLP) and other network and system monitoring tools.
- Strong experience with common information security frameworks. Examples include: International Standards Organization (ISO) 2700x, the IT Infrastructure Library (ITIL), NIST 800-53, Cloud Security Alliance and Center of Information Security Critical Security Controls.
- Breadth and depth of technical and or functional expertise in security operations and other related areas within information technology departments such as Infrastructure, Engineering, Networking or Development.
Education and/or Training:
- Four year college degree or demonstrated equivalent experience as determined by department management.
- Security certifications such as CISSP/CISMP/GIAC/SANS/CISA/CISM/ISACA is a plus.
# LI-BW1
# Remote
At Holman, we exist to provide rewarding careers and better lives for employees and their families. We hire, train, empower, and reward exceptional people. Our journey is guided by our desire to get it right every time and the acknowledgement that we have an opportunity to be better. To be better, we have to do better, and to do better we must know better. That’s why we are listening, open to learning
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s