Director, Investigations and Innovation

Lumen Inc
Harrisburg, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 203K

Job location

Remote
Harrisburg, United States of America

Tech stack

Artificial Intelligence
Software System Penetration Testing
Computer Security
Computer Forensics
Data Recovery
Digital Forensics
Emulators
Fraud Prevention and Detection
Red Team (Cyber Security)
Security Information and Event Management
Forensic Toolkit
Cyber Threat Analysis
Cybercrime
Purple Team (Cyber Security)
Encase
Nuix
Splunk

Job description

This Director-level role in Global Security Services leads and matures Lumen's Investigations and Innovation program - a primarily virtual team of 25 to 30 skilled advanced cyber investigators, certified digital forensics professionals, Red Team / Pen testers, and innovation engineers.

As an industry disrupter, Lumen sets the bar high. This leader drives the research and incubation of emerging security capabilities enterprise-wide, sustaining the established program while boldly leading in new directions; a security-practitioner background is preferred. The role is cross-functional, partnering with the Cyber Fusion Center, Cyber Incident Response Team, Black Lotus Labs, Fraud Management, Physical Security, Legal, and SMEs across IT, Network, and Product. The work is challenging and the pace intense, but trust is how we operate - so the right leader thrives where every challenge is a chance to innovate and we win together., 1. Advanced Cyber Investigations & Digital Forensics

  • Run a world-class digital investigations and forensics capability staffed by certified professionals.
  • Lead complex intrusion, insider-threat, and incident investigations across all Lumen environments.
  • Ensure forensically sound evidence acquisition, preservation, chain of custody, and data recovery.
  • Deliver clear, defensible findings and metrics to stakeholders.
  1. Litigation, Legal & Law Enforcement Support
  • Provide expert investigations and legal support: e-discovery, legal hold, and response to subpoenas and demands.
  • Serve as trusted liaison to Legal, HR, and external law enforcement.
  • Maintain evidentiary standards for legal, regulatory, and litigation proceedings.
  1. Innovation & Emerging Capabilities
  • Research, pilot, and prove emerging security technologies - AI/ML security, automation, and next-gen tooling - where bold ideas drive real innovation.
  • Incubate new detection, threat-hunting, and defensive capabilities into repeatable programs.
  • Partner with Security Engineering and the Cyber Fusion Center to operationalize innovations at scale.
  1. Threat Hunting
  • Mature a program of hypothesis-driven threat hunts.
  • Ingest new and emerging threats, including 0-day vulnerabilities.
  • Pivot rapidly based on real and hypothetical threat-actor activity.
  1. Red Team
  • Run Adversarial Cyber Emulation (ACE) engagements against Lumen's incident response teams.
  • Lead Purple Team exercises in collaboration with incident response.
  • Conduct penetration tests of targeted applications by risk or compliance.
  1. Engineering of Detection & Response Security Controls
  • Choose the right security technology with Security Architecture.
  • Cover Detection & Response across Endpoint, Network, and AI.
  • Configure the Lumen security stack for cross-platform cohesion.
  • Tune the log-ingest and SIEM platform so responders can 'defend Lumen.

Other Responsibilities:

  • Establish investigative processes, standards, and evidentiary rigor.
  • Develop a training and certification framework so the team can build, learn, and lead.
  • Drive tooling requirements and assess existing technologies.
  • Hire, develop, and grow team members with flexibility, care, and opportunity.
  • Lead Manager and Sr. Manager personnel; identify, develop, and delegate assigned projects.
  • Continually realign services with business and product needs, where every voice guides our future.
  • Advance the growing security operations organization - we win together.
  • Build strong relationships with colleagues, peers, clients, and vendors.

Requirements

  • Security platforms: Crowdstrike, Palo Alto, Tenable, Proofpoint, Extrahop, Splunk, Microsoft, RADIUS, and emerging AI.
  • Forensics platforms: Cellebrite, Magnet AXIOM, EnCase / FTK, Nuix, and e-discovery tooling.

Required:

  • Bachelor's degree in a related field plus 7 years relevant experience, or equivalent.

Preferred:

  • 10+ years in security, investigations, or operations
  • Relevant security or forensics certifications
  • Security clearance may be required
  • Security industry certifications (examples)
  • CISSP
  • CRISC
  • CISM
  • GCFA
  • GCFE
  • EnCE
  • Security+ CEH
  • ITIL Foundations

Benefits & conditions

This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.

Location Based Pay Ranges

$152,066 - $202,755 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY

$159,670 - $212,893 in these states: CO HI MI MN NC NH NV OR RI

$167,273 - $223,031 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA

Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.

Learn more about Lumen's:

Benefits (https://jobs.lumen.com/global/en/benefits-statement)

Bonus Structure

#LI-Remote

Requisition #: 342850

Life at Lumen

Life at Lumen is human and connected, even in a fast moving, AI-focused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes.

Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.

About the company

Lumen is the trusted network for the AI-powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high-performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities. At Lumen, you'll work on infrastructure customers rely on today and build for what's next, where performance, security, and resilience matter. This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you're ready to take ownership, deliver meaningful impact, and help shape the future of AI-ready connectivity, join us today., Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.

Apply for this position