Manager, Threat Detection and Incident Response

Contentful Contentful · Enterprise · New York, NY · Security

Manager for Threat Detection and Response at Contentful, focusing on operational and strategic direction of security incident response, team development, and capability maturity. The role involves hands-on detection engineering, incident response, and driving continuous improvement in cloud-native and corporate environments. A key responsibility is accelerating AI adoption within security practices.

What you'd actually do

  1. Develop a team, providing coaching, mentorship, goal setting, and performance feedback.
  2. Mature effectiveness and efficiency by improving processes, tooling, and documentation.
  3. Collaborate with security leadership to execute business aligned, risk reduction roadmaps.
  4. Own execution and prioritization across projects and operations, using agile delivery practices.
  5. Shape work scope, sequencing, and success criteria in line with department and company needs.

Skills

Required

  • security operations
  • alert triage
  • incident response
  • team management
  • cloud-native security
  • detection engineering
  • Splunk
  • AWS security services
  • host analysis (Mac, Windows, Linux)
  • threat modeling

Nice to have

  • AI adoption
  • DevOps principles
  • agile delivery practices
  • modern engineering practices

What the JD emphasized

  • 6+ years experience in security operations, including alert triage and investigation
  • 4+ years conducting large scale incident response activities with 2+ years leading
  • 2+ years managing people and security operations teams.
  • Expertise in attacker techniques in cloud-native and traditional environments.
  • Expert usage, data onboarding, and data administration within Splunk
  • Ability to design large-scale threat detection using diverse technologies and data sets