Intuit - Charlotte, NC

posted 5 days ago

Full-time - Mid Level
Charlotte, NC
Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services

About the position

The Manager of Security and Risk Operations at Intuit will be responsible for owning and implementing the strategy for the detection operations program. This role involves establishing metrics to demonstrate continuous improvement towards target objectives, managing both in-house and outsourced detection teams, and ensuring world-class threat detection capabilities. The ideal candidate will possess strong leadership skills, technical proficiency in security investigations, and the ability to communicate effectively with organizational leaders.

Responsibilities

  • Own and implement the strategy of the detection operations program.
  • Establish metrics that demonstrate continuous maturity towards target state objectives.
  • Manage both in-house and outsourced detection teams.
  • Perform security investigations at scale, including endpoint, cloud, identity, network, and email threats.
  • Utilize Detection & Response tools for network, endpoints, cloud, and identity, as well as SOAR platforms.
  • Create and manage operational metrics to increase team efficiency and quality.
  • Participate in Cyber Incident Response Team (CIRT) rotation, which may involve non-traditional working hours.

Requirements

  • BA/BS degree or higher in Computer Science, Cybersecurity, or equivalent work experience.
  • 5+ years' industry experience in Incident Response or Security Operations activities.
  • 3+ years leadership experience in a SOC or similar role.
  • Proven track record of building scalable organizations with world-class threat detection capabilities.
  • Technical proficiency in performing security investigations at scale.
  • Hands-on experience with SIEM and Data Lake solutions (e.g., Splunk, Snowflake, S3).
  • Expertise with query languages (SQL, SPL, BigQuery).
  • Strong fundamentals of Linux, MacOS, and Windows operating system internals.
  • Deep understanding of attacker techniques, tools, and procedures.
  • Understanding of cloud environments such as AWS, GCP, and/or Azure.

Nice-to-haves

  • Admin or Architect level knowledge of a SIEM (Splunk, Azure Sentinel, QRadar, etc).
  • In-depth knowledge of security standard processes in large-scale environments.
  • Experience with software development or security automation.
  • CISSP or CISM certification preferred.

Benefits

  • Competitive salary range of $162K - $205K per year.
  • Opportunities for professional development and career growth.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service