Manager, Threat Detection and Incident Response

Contentful Contentful · Enterprise · New York, NY · Security

Manager, Threat Detection and Incident Response at Contentful. This role focuses on leading and maturing security incident response and detection programs, including team development, strategy, and operational execution. The position requires hands-on involvement in detection engineering, incident response, and leveraging security technologies in cloud-native and traditional environments. A key responsibility includes accelerating the adoption of AI within security practices.

What you'd actually do

  1. Develop a team, providing coaching, mentorship, goal setting, and performance feedback.
  2. Mature effectiveness and efficiency by improving processes, tooling, and documentation.
  3. Collaborate with security leadership to execute business aligned, risk reduction roadmaps.
  4. Own execution and prioritization across projects and operations, using agile delivery practices.
  5. Shape work scope, sequencing, and success criteria in line with department and company needs.

Skills

Required

  • security operations
  • alert triage and investigation
  • incident response
  • team leadership
  • detection engineering
  • attacker techniques
  • cloud-native environments
  • AWS security services
  • Splunk
  • host analysis (Mac, Windows, Linux)
  • threat modeling
  • incident reporting

Nice to have

  • DevOps principles
  • agile delivery practices
  • modern engineering practices

What the JD emphasized

  • deep experience leading incident response and detection programs at scale
  • lead large-scale, cross-functional incident response efforts
  • 6+ years experience in security operations, including alert triage and investigation
  • 4+ years conducting large scale incident response activities with 2+ years leading
  • 2+ years managing people and security operations teams.