> Markdown version of [/jobs/ext/2297960-manager-cyber-threat-intelligence-security-operations](https://www.wearedevelopers.com/jobs/ext/2297960-manager-cyber-threat-intelligence-security-operations). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager, Cyber Threat Intelligence & Security Operations - **Company:** TEKSYSTEMS INC. - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Salary:** $145,600.0 - $156,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing Security, Cyber Security, Fraud Prevention and Detection, Identity and Access Management, Intelligence Analysis, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Phishing, Security Information and Event Management, Systems Integration, Cloud Platform System, Software Security, Mitre Att&ck, Malware, Cyber Threat Analysis, Tanium Platform Expertise, Information Technology, Cybercrime, Cortex XSOAR Platform, Security Orchestration, Automation & Response - **Published:** August 29, 2026 - **Apply:** https://www.dice.com/job-detail/4a43d676-964a-4243-a623-39d7d45f1e80 ## About the Role 7-10 years of experience in Cyber Security with expertise in Security Operations, Threat Intelligence, Detection Engineering, and Incident Response Previous experience leading technical cybersecurity teams Proven experience managing enterprise Security Operations Centers Strong understanding of modern cyber threats, adversary tactics, and threat intelligence methodologies Experience leading major cyber incident investigations Hands-on experience with SIEM, SOAR, EDR, endpoint security, and threat intelligence platforms Strong understanding of enterprise networking, operating systems, identity technologies, cloud environments, and application security Excellent communication and leadership skills with the ability to influence technical and executive stakeholders Experience mentoring engineers and analysts while fostering technical growth Preferred Qualifications Experience with Google SecOps Experience with CrowdStrike Falcon Experience with Cortex XSOAR Experience with MISP or other Threat Intelligence Platforms Experience with Tanium Experience implementing threat hunting programs Familiarity with MITRE ATT&CK, Cyber Kill Chain, Diamond Model, and intelligence-driven defense methodologies Experience supporting regulatory investigations and compliance initiatives Experience building or maturing enterprise detection engineering programs Knowledge of automation and scripting using Python or PowerShell, Individual compensation offered for this position within this range will depend on many factors, including qualifications, skills, relevant experience, job knowledge, geographic location, internal equity, and other pertinent job-related factors. ## Description As the Manager, Cyber Threat Intelligence & Security Operations, you will lead a team of approximately 12 cybersecurity professionals across Threat Intelligence, Detection Engineering, Security Operations, and Incident Response. This is a hands-on technical management position responsible for the operational effectiveness of the Security Operations Center while driving the organization's threat intelligence program and continuously improving detection capabilities. You will work closely with Security Engineering, Identity & Access Management, Cloud Security, Enterprise Architecture, Legal, Privacy, Fraud Prevention, and Information Technology teams to ensure cyber threats are rapidly identified, investigated, and mitigated. Responsibilities: Leadership & Team Management Lead, mentor, and develop a multidisciplinary team consisting of: o Cyber Threat Intelligence Analysts o Detection Engineers o SOC Analysts o Incident Responders Foster a collaborative, high-performing culture focused on operational excellence and continuous learning Provide technical coaching, career development, and mentorship across the organization Establish operational priorities and coordinate security response activities across multiple teams Serve as the escalation point during significant security incidents Security Operations Center Leadership Lead day-to-day Security Operations Center activities including monitoring, investigation, containment, eradication, and recovery efforts Direct major cyber incident response activities from identification through post-incident review Ensure operational readiness for security events across cloud, on-premises, endpoint, identity, and application environments Drive continuous improvement of operational procedures, investigation methodologies, and response playbooks Partner with Security Engineering to improve operational supportability of security platforms Cyber Threat Intelligence Lead the enterprise Cyber Threat Intelligence program Oversee intelligence collection, analysis, enrichment, and dissemination Monitor emerging threat actors, campaigns, vulnerabilities, and industry trends Translate external intelligence into actionable defensive capabilities Manage Indicators of Compromise (IOCs), adversary tracking, and threat intelligence repositories Produce executive and technical threat intelligence briefings Partner with Fraud, Legal, Privacy, and business leadership regarding emerging cyber risks Detection Engineering Lead development and continuous improvement of enterprise detection capabilities Oversee SIEM content development and detection engineering Drive detection use-case development and continuous tuning Improve alert fidelity while reducing false positives Lead proactive threat hunting initiatives Develop new analytics based on adversary tactics, techniques, and procedures (TTPs) Ensure security content aligns with the MITRE ATT&CK framework and current threat landscape Security Platforms Provide technical leadership for security operations technologies including: Google SecOps CrowdStrike Falcon Cortex XSOAR MISP Threat Intelligence Platform Tanium Collaborate with Security Engineering regarding architecture, upgrades, integrations, and operational improvements across the enterprise security technology stack. Incident Response Lead enterprise cyber incident response activities Coordinate investigations involving malware, ransomware, insider threats, account compromise, phishing, and advanced attacks Direct technical response teams during high-severity incidents Conduct post-incident reviews and identify opportunities to strengthen defenses Develop and maintain incident response procedures, playbooks, and operational readiness Governance & Cross-Functional Collaboration Support regulatory investigations, internal audits, and security assessments Prepare executive summaries and threat reports for security leadership Partner closely with ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023)