Manager, Detection Engineering, Incident Response
Who We Are
Red Canary was founded to create a world where every organization can make its greatest impact without fear of cyber attack. Our combination of market-defining technology, processes, and expertise are preventing breaches every day. We are completely changing the way security is delivered and setting the new standard for security. If our mission resonates with you, let’s talk!
What We Believe In
- Do what’s right for the customer
- Be kind and authentic
- Deliver great quality
- Be relentless
Challenges You Will Solve
The Short-Term Engagements team extends Red Canary’s charge of making security better for every business to consulting organizations; where we augment our partners’ capabilities using a unique combination of operations, threat research, and engineering to deliver more effective engagements.
Your team is the front line response focused on disrupting cyber adversaries. You’ll be responsible for leading our short-term engagements analysts; working alongside our consulting partners during active breaches to identify and investigate threats in endpoint telemetry. Your involvement in our operations directly impacts our team's success in restoring business function to global organizations. This role has the responsibility of managing, coaching, and mentoring highly technical direct reports and championing operational initiatives that make your team most effective in delivering security answers. Your team is nimble and versatile; ready to take on any engagement that our consulting partners bring our way.
Adversaries are continually evolving and attacking businesses - and your team is the tip of the spear.
Who You Are
You live and breathe threat detection and response. Perhaps you’ve run a SOC team or two, or hung your hat as an incident response manager. You’re intimately familiar with the pain a bad indicator or a false positive storm brings on an operational team, and know how to scale a live response investigation.
Management isn’t suited for everyone, but it’s definitely for you. Working with a highly technical team excites you, and you’re confidently able to provide both investigative coaching and managerial feedback. You take pride in being able to build highly effective teams, using carefully crafted metrics as your guide to operational excellence. Your lever for operational scale has always been automation, and you’re laser focused on letting people tackle novel problems and letting machines handle the rest.
You’re also not afraid to lead a big initiative; managing and creating projects that require involvement across multiple teams is second nature.
Ultimately, you’re passionate about supporting talented analysts and ensuring that together with our consulting partners, we can respond to the most advanced compromises around.
What You'll Do
- Be the leader for our analyst team; responsible for delivery of incident response, security assessment, due diligence, and red team needs of our consulting partners.
- Manage, mentor, and coach technical direct reports
- Define and manage operational metrics for reporting to identify improvement opportunities.
- Act as a champion for our analyst’s platform needs gathered, rallying and leading multiple internal Red Canary resources to create change
- Build and maintain relationships across security operations, community, support, and our customers to ensure the best possible customer experience
- Lead root cause analysis for investigative quality issues, and directing next steps to address
- Escalation point for all customer issues related to analyst team deliverables
What You'll Bring
- 5+ years experience working in a Security Operations Center (SOC) or performing Digital Forensics and Incident Response (DFIR), at least 1 of which was operating in a managerial capacity
- Unshakeable desire to mentor, coach, and manage highly technical direct and indirect reports
- Proficiency creating and managing operational metrics that increase team efficiencies and quality
- Experience working within high-pressure environments and acting as an escalation for high-value customers
- Ability to manage effective relationships with organizational leaders and drive initiatives to completion
- Technical proficiency with performing endpoint investigations at scale
- Exceptional verbal and written communication skills
- Practical knowledge of Endpoint Detection & Response (EDR) tools
- Experience with speaking at conferences and/or research-driven reports preferred
- Digital Forensics and Incident Response (DFIR) experience preferred
- Ruby/Golang/Python chops preferred
Target base salary range: $125,000 - $160,000 depending on experience + bonus eligibility and equity
Why Red Canary?
Red Canary is where people embody our mission to improve security outcomes for all. People work hard to maintain a culture that encourages authenticity in order to do your best work. Our people are driven and committed to finding the best security outcomes, delivering real and actionable answers, and being transparent along the way.
At Red Canary, we offer a very rich benefits program to our full-time team members so they can focus on their families and improving our customers’ security. For a full list of benefits, please review our Benefits Summary:
https://redcanary.com/wp-content/uploads/2021/01/Benefit-Summary-Red-Canary.pdf
Individuals seeking employment at Red Canary are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.