Manager, Cybersecurity - Process and Analytics

T-Mobile T-Mobile · Telecom · Overland Park, KS +1

Manager role focused on developing and implementing cybersecurity processes, analytics, automation, and AI-driven capabilities to enhance threat response teams (SOC and CIRT). The role leads a team to improve the effectiveness of security operations and ensures operational resilience. Success is measured by the delivery of processes and capabilities that improve threat response.

What you'd actually do

  1. Develops and implements cybersecurity operational processes and strategies, with a specific focus on building and standardizing processes that enable threat response teams to detect, investigate, and remediate incidents effectively
  2. Leads a team of cybersecurity professionals in enabling SOC capabilities, monitoring security operations, and enhancing detection and response protocols
  3. Drives SOC automation and AI integration initiatives to improve detection efficacy, response workflows, and operational efficiency across the security organization
  4. Builds and maintains security analytics frameworks and reporting capabilities to enable data-driven decision-making, threat visibility, and SOC performance measurement
  5. Leads and manages strategic cybersecurity projects, driving timelines, multi-functional collaborator alignment, and measurable security outcomes

Skills

Required

  • Bachelor's Degree plus 3 years of related work experience OR advanced degree with 1 year of related work experience OR combination of education and experience deemed equivalent(required)

Nice to have

  • Acceptable areas of study include Computer Science or Information Technology(preferred)
  • 4-7 years implementing and managing cybersecurity operations, SOC processes, and automation capabilities in a corporate environment(preferred)
  • 3-7 years leading a team of cybersecurity professionals in a SOC or security operations environment(preferred)
  • 4-7 years developing security analytics frameworks, dashboards, and SIEM/SOAR integrations to support data-driven security operations(preferred)
  • Artificial Intelligence (AI) and SOC Automation - Experience designing and implementing SOC automation workflows, SOAR playbooks, and AI/ML-based detection capabilities to improve efficiency and reduce analyst toil.
  • Cybersecurity - In-depth knowledge of cybersecurity principles, SOC operations, frameworks, and technologies to develop and implement security strategies and drive operational maturity.
  • Escalation Management - Proficiency in assessing and managing cybersecurity risks to protect organizational assets.
  • Give Feedback and provide coaching and development to team
  • Leadership and People Management - Ability to lead and manage a team of cybersecurity professionals, ensuring effective security protocols and team performance.
  • Security Incident Management - Strong analytical skills to evaluate security data, build metrics-driven reporting, and leverage platforms such as Splunk to surface actionable insights across SOC operations.
  • Security Strategy - Skill in designing, documenting, and continuously improving cybersecurity operational processes, with a focus on threat response team workflows including detection, investigation, escalation, and remediation runbooks and playbooks.
  • Partner Management - Excellent communication skills to effectively convey security-related concepts to a variety of participants.
  • Strategic Alignment - Capability to think strategically about security in the context of the business needs and technological landscape.

What the JD emphasized

  • required