Director Cybersecurity - Ai/ml/automation (cyber Threat Analytics)

AT&T AT&T · Telecom · Charlotte, NC

Director of Cybersecurity focused on leading the technical management, creation, and delivery of Cyber Threat Analytical platforms and programs. This role involves setting AI/ML and automation strategy, owning the delivery of advanced threat analytics, deploying production-grade ML/DL pipelines, directing automation and orchestration programs, and operationalizing AI-enabled investigation capabilities. The position also requires managing model risk and operational risk governance for AI/ML-driven detections, partnering across the telemetry pipeline, and providing people leadership for a multi-disciplinary team.

What you'd actually do

  1. Set and drive the AI/ML + Automation strategy and multi-quarter roadmap for Cyber Threat Analytics, aligning outcomes to a centralized logging & monitoring environment, autonomous monitoring, and rapid response objectives.
  2. Own delivery of advanced threat analytics capabilities by developing and operationalizing AI/ML approaches that improve detection of sophisticated threats and measurably reduce analyst burden (through automation and higher-fidelity analytics).
  3. Lead production-grade ML/DL pipeline deployment for prioritized threat use-cases (e.g., botnet detection, IPv6 scan detection, and malicious activity in encrypted traffic), ensuring repeatable model training, daily/continuous execution at scale, and sustained detection performance.
  4. Direct automation and orchestration programs that turn detections into action—driving complex automations and orchestrations for threat detection and rapid response, including playbook-centric execution and operational workflow integration.
  5. Operationalize AI-enabled investigation/assistant capabilities to accelerate triage and investigation, leveraging agent/assistant patterns that can plan and execute multi-step investigative tasks and return validated outputs quickly.

Skills

Required

  • 10+ years of relevant experience or equivalent combination of education and work experience.
  • Demonstrated foundational experience working with associated agile and various reporting technologies (e.g. JIRA, MS Project, MS PowerPoint, PowerBI).
  • Expert level understanding of security logs and the ability to rapidly search, report, and troubleshoot within various datasets.
  • Strong understanding of compliance, controls, risk, change management, and CI/CD pipelines.
  • Expert understanding of Cloud architecture & technologies
  • Excellent analytical, problem-solving, organizational, and communication skills.

Nice to have

  • Master's degree (MS/MA) desired in Computer Science or Cybersecurity.

What the JD emphasized

  • AI/ML + Automation strategy
  • production-grade ML/DL pipeline deployment
  • AI/ML approaches
  • automation and orchestration programs
  • AI-enabled investigation/assistant capabilities
  • agent/assistant patterns
  • AI/ML analytics enablement
  • AI/ML and automation at scale
  • engineering rigor for AI/ML
  • model risk + operational risk governance for AI/ML-driven detections
  • AI/ML-driven detections
  • AI/ML and security concepts

Other signals

  • production-grade ML/DL pipeline deployment
  • operationalize AI-enabled investigation/assistant capabilities
  • AI/ML strategy and roadmap
  • model risk + operational risk governance