OpenLoop Logo

OpenLoop

Head of Security Operations

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Lead the Security Operations Center, manage incident response, develop security strategies, and oversee cyber intelligence programs to protect against threats.
The summary above was generated by AI

About the Role

  • Lead and manage the Security Operations Center (SOC) (internal and/or external MSSP), ensuring 24/7 security monitoring, incident detection, response, and escalation processes.
  • Develop and execute the security operations strategy, policies, and response playbooks, to include integrated third-party response and notification procedures.
  • Oversee real-time monitoring and analysis of security events from multiple data sources to detect and respond to threats.
  • Lead all aspects of incident response, including investigation, containment, remediation, and root cause analysis.
  • Develop and execute a cyber intelligence program to deliver an intelligence-driven and risk-prioritized security program (awareness/technologies/controls) and identification of key risks to the business.
  • Lead and enhance the Attack Surface Management (ASM) program to continuously identify, assess, and minimize external and internal exposures.
  • Establish and maintain ASM governance, policies, standards, and procedures.
  • Ensure the regular scanning, assessment, prioritization, and remediation of security vulnerabilities across the environment (application, infrastructure, cloud, API, etc.).
  • Collaborate with external threat intelligence sources, law enforcement, and government/industry organizations (e.g., FS-ISAC) to stay updated on evolving threats, vulnerabilities, and TTPs (tactics, techniques, and procedures).
  • Develop and maintain metrics, dashboards, and reports on SOC performance, attack surface exposure, and vulnerability management outcomes for senior leadership and the board.
  • Ensure regulatory compliance (e.g., PCI, HIPAA, HITRUST, NIST CSF) through effective security operations controls and processes.
  • Conduct security drills, tabletop exercises, and red/blue team assessments to test and improve operational readiness.
  • Manage, in coordination with Security Architecture & Engineering, the security technology stack, including SIEM, SOAR, ASM tools, IDS/IPS, EDR, DLP, and vulnerability scanning platforms.
  • Lead the SecOps team, including outsourced/contract support resources, fostering continuous growth, cross-training, and process optimization.
  • Other duties as assigned.

Who You Are

  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field is preferred.
  • 8+ years of experience in Information Security, with at least 5 years focused on Security Operations and Vulnerability Management.
  • 3+ years of leadership or management experience in Security Operations.
  • Strong experience in healthcare or digital health is preferred.
  • Experience working in a high growth company is required.
  • Applicable certifications a plus (e.g., Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), GIAC Certified Incident Handler (GCIH), Certified Ethical Hacker (CEH)).
  • Deep expertise in security operations, cyber intelligence, threat detection, incident response, attack surface management, and vulnerability management.
  • Strong understanding of cyber threat landscape, attack vectors, security technologies, and defensive tactics.
  • Familiarity with regulatory frameworks (HIPAA, HITRUST, NIST CSF).
  • Excellent leadership and communication skills with the ability to engage technical and non-technical stakeholders, including senior executives and the board.
  • Excellent organizational and documentation skills.
  • Ability to effectively collaborate and communicate with business partners, customers, third parties, and regulatory agencies.
  • Analytical and problem-solving abilities with a proactive, risk-based approach.
  • Strategic thinking and the ability to align security risks and initiatives with business objectives.
  • Detail-oriented with a strong focus on operational excellence and regulatory compliance.
  • Strong customer service orientation.
  • Adaptability to handle dynamic and challenging environments.
  • Energetic, resourceful, and appropriate work intensity to get the work done.
  • Strong people acumen and relationship skills.

About OpenLoop

OpenLoop was co-founded by CEO, Dr. Jon Lensing, and COO, Christian Williams, with the vision to bring healing anywhere. Our tele-health support solutions are thoughtfully designed to streamline and simplify go-to-market care delivery for companies offering meaningful virtual support to patients across an expansive array of specialties, in all 50 states.

 

Our Company Culture

We have a relatively flat organizational structure here at OpenLoop. Everyone is encouraged to bring ideas to the table and make things happen. This fits in well with our core values of Autonomy, Competence and Belonging, as we want everyone to feel empowered and supported to do their best work.

 

Our Benefits

In addition, for salaried positions you would also be eligible for:

  • Medical, Dental, and Vision plans
  • Flexible Spending/Health Savings Accounts
  • Flexible PTO
  • 401(k) + Company Match
  • Life Insurance, Pet insurance, and more

 

Sound like a good fit? We’d love to meet you.

 

 

Top Skills

Asm Tools
Dlp
Edr
Ids/Ips
SIEM
Soar
Vulnerability Scanning

Similar Jobs

8 Minutes Ago
Remote or Hybrid
Orlando, FL, USA
105K-135K
Senior level
105K-135K
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The PKI Engineer designs, implements, and maintains cryptographic infrastructures, manages certificate lifecycles, and ensures secure communications across various environments.
Top Skills: AesAws Certificate ManagerDigicertEccHashicorp VaultHsmsKeyfactorKmsMicrosoft AdcsRsaSha-2Tls 1.2/1.3TpmsVenafi
8 Minutes Ago
Remote or Hybrid
Orlando, FL, USA
Senior level
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The WAF Security Engineer will lead secure infrastructure design and implementation, manage cybersecurity budgets, guide technical teams, and ensure compliance with security protocols.
Top Skills: Cloud (Aws Preferred)CybersecurityEmail SecurityIdentity And Access Management (Iam)It Systems AdministrationNetwork Security
8 Minutes Ago
Remote or Hybrid
New York, NY, USA
Senior level
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
The Senior Cyber Infrastructure Engineer will lead security architecture, manage application security systems, improve security workflows, and mentor engineers while collaborating with various teams to enhance cybersecurity measures.
Top Skills: AWSAzureCrowdstrikeGCPPalo AltoPowershellProofpointPythonQualysSnykSplunk SiemWizZerofox

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account