Tenet Healthcare Corporation Logo

Tenet Healthcare Corporation

Manager, Detection & Investigative Operations - Remote based in the US

Posted 2 Hours Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
120K-165K Annually
Senior level
Remote
Hiring Remotely in United States
120K-165K Annually
Senior level
Manages a 24x7 Detection and Response Center, overseeing analysts, engineers, security monitoring, alert triage, incident escalation, investigations, and threat intelligence. Leads SOC process maturity, automation, and AI adoption across SIEM/SOAR workflows; manages MSSP relationships, operational metrics, staff performance, security tools, and stakeholder collaboration. Provides cybersecurity guidance, supports incident response and threat hunting, and conducts after-action reviews to improve detection and response capabilities.
The summary above was generated by AI

Tenet Health is seeking a Manager of Detection & Investigative Operations with previous Information Security experience to work in our Dallas, TX corporate office on a hybrid schedule or remotely if outside DFW. Below is a brief outline of what Tenet is seeking for this role.

Reporting to the Director of Detection and Response within the enterprise Cybersecurity organization, the Manager of Detection & Investigative Operations will oversee the activities of the 24x7 Detection and Response Center and all analysts and engineers, ensuring that Detection and Response operations are performed in accordance to policy, standards and security best practices. This role has direct responsibility for the effective and efficient operations of the Detection and Response Center including security monitoring, detection, triage, initial response, escalation handoffs, and threat intelligence to the Incident Response team.

The position will be responsible for driving transformation and maturity of processes, workflows, and overall capabilities, process refinement and implementation, cross-team discipline collaboration, maintenance of internal and external stakeholder relationships, and supervision of staff. The Manager of Detection & Investigative Operations will work closely with the Managed Security Service Provider to ensure the continuous improvement of the Detection and Response capabilities and that SLAs, SOPs, Events and Alert Management are all in line with the standards of Tenet. The Manager of Detection & Investigative Operations will work closely with their peer, the Incident Response Manager, on investigations, incidents, and threat hunting as needed. Equally, the Manager of Detection & Investigative Operations will work to ensure there are clear processes and escalation points to hand off alerts/events from the Detection and Response team to the IR Team as deemed appropriate based on the security and scope of the event. The Manager of Detection & Investigative Operations will manage and mature the Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms. Lastly, the Manager of Detection & Investigative Operations will lead a transformative effort to embed automation and AI across the analyst and engineering workflows.

Responsibilities

Duties include but are not limited to the following: 

  • Lead Detection and Response team in support of all designated Security Operations and Incident Response investigations, as needed
  • Drive a transformation to embed AI into the triage, enrichment, and containment workflows of the Detection and Response Center
  • Embrace automation and AI across all areas including the analyst and SIEM/SOAR platform engineering teams
  • Analyze security indicators of compromise and alert data and take appropriate investigative actions
  • Develop and execute on strategic plans and projects to meet SOC goals and objectives and to mature, design, and implement improvements to the security operations program
  • Work with security engineering, infrastructure security, and security architecture to operationalize newly installed security tools
  • Maintain an understanding of the current threat intelligence, detective controls, vulnerabilities, response, and mitigation strategies used in security operations
  • Manage the resources in the SOC with regards to detection, response, mitigation, and reporting of cyber threats
  • Provide technical guidance to team members in areas of cyber security
  • Develop and track security operations metrics
  • Manage individual and team performance to consistently meet performance standards
  • Develop a deep understanding of operational risks and drive the response process in order to minimize the impact of these risks
  • Conduct after-action reviews to identify lessons learned and best practices
Qualifications

Skills, Experience & Competencies   

  • BS/BA in Computer Science, Computer Engineering, Network Security, Information Security, Information Technology or equivalent work experience
  • 3+ years leadership experience within a SOC or MSSP 
  • 5+ years of experience in information security
  • Experience in a leadership position within a Security Operations Center preferred 
  • Experience working with Security Information Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Endpoint Detection and Response (EDR), Email Security, Threat Intelligence, Firewalls, Web Application Firewalls, Incident Response, Digital Forensics, and/or Threat Modeling is preferred
  • Ability to develop and track key performance indicators (KPIs) and metrics for operational success
  • Proven leadership skills including effective oral and written communication, performance management, issue resolution, negotiation, motivating team members, forecasting, and planning
  • Experience in a security role with strong working knowledge and understanding of information security framework, incident management, operations and application security best practices
  • Possession of industry certifications preferred (GIAC, CISSP, CISA, CISM, etc.) 
  • Experience with staff performance plan development, situational leadership and management responsibilities
  • Must be a self-starter with the ability to lead and develop a team of analysts with minimal supervision

Compensation

  • Base pay: $120,000 - $165,000 annually. Compensation depends on location, qualifications, and experience. 
  • Position may be eligible for an Annual Incentive Plan bonus of 10%-50% depending on role level.
  • Management level positions may be eligible for sign-on and relocation bonuses.

Benefits

The following benefits are available, subject to employment status:

  • Medical, dental, vision, disability, AD&D, and life insurance
  • Manager Time Off – 20 days per year
  • Discretionary 401k match
  • 10 paid holidays per year
  • Health savings accounts, healthcare & dependent flexible spending accounts
  • Voluntary benefits include pet insurance, legal insurance, accident and critical illness insurance, long term care, elder & childcare, auto & home insurance.
  • For Colorado employees, paid leave in accordance with Colorado’s Healthy Families and Workplaces Act is available.

Similar Jobs

4 Minutes Ago
Remote or Hybrid
US
148K-234K Annually
Mid level
148K-234K Annually
Mid level
Cloud • Information Technology • Security • Software • Cybersecurity
Develops messaging, content, go-to-market strategies, and integrated campaigns for Cloudflare One’s cloud and AI security products. Conducts market research, customer interviews, and segmentation analysis; partners with product, sales, engineering, analyst relations, and marketing teams; enables sales positioning; launches new services; and uses AI to automate research and content workflows.
Top Skills: AICloud SecurityCloudflare OneIt SecuritySaseZero Trust
7 Minutes Ago
Remote or Hybrid
169K-200K Annually
Senior level
169K-200K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Partners with Sales to guide enterprise customers through cybersecurity solution discovery, design, demonstrations, proof-of-value engagements, and technical validation. Advises security, identity, infrastructure, risk, and executive stakeholders; translates platform capabilities into business outcomes; develops technical documentation and training; and supports evaluations, events, and complex sales cycles. The role requires strong cybersecurity and enterprise networking expertise, executive communication skills, and customer-facing presales experience.
Top Skills: ArmisDnsEnterprise NetworkingFirewallsIamIgaIomtIotLinuxNatNetflowNetwork SegmentationNetwork TelemetryOtPacket Capture BrokersPort MirroringPythonRoutingSaaSServicenowSpan PortsSubnettingSwitchingTapsVezaVlans
7 Minutes Ago
Remote or Hybrid
158K-209K Annually
Senior level
158K-209K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Leads customer success for healthcare cybersecurity accounts, managing ARR, retention risks, onboarding, adoption, risk reviews, compliance readiness, and executive relationships. Develops healthcare-specific playbooks covering medical device security, clinical network segmentation, protocols, incident response, and regulatory frameworks. Mentors Technical CSMs, coordinates cross-functional mitigations, gathers customer feedback, supports product improvements, and scales security practices across hospitals, laboratories, imaging centers, and clinical environments.
Top Skills: ArmisBacnetClarotyDicomDragosHl7/FhirIeee 11073ModbusNacNozomiVeza

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account