Jobs and Careers
GS

Senior Director of Threat Detection and Response

GSK
Home Worker - USA, United Statesfull_timeVerifiedPosted 24 Jun 2024
💰 $267,950/yr($198,050/yr – $267,950/yr)

About the role

Please note this role can be based in USA or in Poznan, Poland.

The Senior Director of Threat Detection and Response will play the lead role in keeping information and technology-related systems safe and protected. This includes the monitoring, detection, coordinated response and management of potential incidents and cybersecurity threats to mitigate the impact of interruption of routine business operations. The metrics-driven leader will ensure incidents, trends and emerging threats are understood, identified and properly dispositioned through the utilization of threat intelligence and fusion analysis. Provide maturity and operational assessments and information about actual cyber threats to senior level leaders to demonstrate the efficacy of the overall operational program.

The role also involves a strong analytical component, requiring the individual to lead the team responsible for the creation and refinement of rules and algorithms to identify malicious activity across the company's networks and digital assets both from internal and external risks.

This role plays a critical part in maintaining the operational integrity, security, and resilience of GSK's information systems. The Senior Director will ensure effective incident response strategies are in place and that incidents are managed in a way that minimizes impact to the business.

Key Responsibilities:

  • Lead a global team of cybersecurity professionals to provide 24x7x365 cybersecurity operations

  • Ensure Security Operations Center is providing the appropriate level of Identification, Detection, Response, Recovery and Resumption activities

  • Leverage industry leading frameworks and methodologies to ensure consistency and cross-industry alignment with best practices

  • Implement standards and procedures that enable the appropriate cybersecurity posture throughout the organization

  • Deploy cybersecurity automation tools as a force-multiplier(s) in identifying, managing and dispositioning potential cybersecurity events

  • Identify and deploy machine learning (ML) and artificial intelligence (AI) to proactively recognize trends and anomalies across the environment

  • Proven ability to manage a cloud-based IT environment, extracting and ingesting threat information for appropriate situational awareness

  • Establish leading-edge fusion analysis to ensure information from a variety of sources is appropriately ingested to provide for a comprehensive protection and response posture

  • Enable a world-class incident response program for timely identification, response and remediation of cybersecurity incidents

  • Deploy comprehensive playbooks to ensure processes, roles and responsibilities are clearly articulated to enable a rapid response to a cybersecurity incident

  • Continually develop, assess and mature cybersecurity personnel to meet the challenge of an evolving threat landscape

  • Work with government, professional and industry groups and consortiums to ensure a diverse and well-understood approach to Threat Detection and Response

  • Monitoring targets to include internal and external sources, such as an internet forums, social media and alerts shared by other organizations.

  • The role is further responsible for the identification and analysis of new adversaries, attacks and threats to enable the tactical prioritization of cyber defense approach and resource deployment.

  • Conduct thorough post-incident analysis and reporting to identify root causes, lessons learned, and areas for improvement.

  • Work closely with the IT, cybersecurity, legal, and communications departments to prepare and execute effective incident communication plans both internally and externally.

  • Provide guidance and feedback in the maintenance of the Security Information and Event Management (SIEM) infrastructure, ensuring high-fidelity alerts and minimal false positives.

  • Conduct continuous threat hunting activities to proactively identify potential threats that evade existing controls.

  • Provide people leadership and talent development for team members.

Qualifications:

  • Bachelor or higher degree in computer science, engineering or similar.

  • Minimum of 10 years of experience in cybersecurity

  • 6 years' experience creating and presenting technical strategies and technical solution recommendations.

  • 4 years' experience leading cross-functional teams.

  • 7 years' experience in physical and/or digital information and/or incident handling

  • Clear ability to implement and have responsibility for end-to-end cybersecurity programs, with a strong predisposition towards execution and d

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GSK

View company profile →