The Senior Manager of Security Operations Detection Engineering and Incident Response leads and enhances the company's security detection, threat intelligence, and incident response functions to proactively identify, analyze, and mitigate security threats across cloud, SaaS, and infrastructure environments.
Key Responsibilities
Lead and mature detection engineering and incident response functions, including threat detection, response workflows, incident triage, and automation.
Build and maintain a comprehensive detection inventory categorized by threat type, log source, MITRE mapping, and detection method.
Drive continuous validation of detections through red team, purple team, and atomic testing.
Own key SecOps metrics such as MTTD, MTTR, and alert quality to improve detection confidence.
Oversee ingestion of telemetry data from AWS, Azure, SaaS, endpoint, and network sources into security pipelines.
Automate, standardize, and improve incident response workflows to be repeatable and outcome-focused.
Lead post-incident reviews, root-cause analyses, and track corrective actions to closure.
Correlate threat intelligence, detection gaps, and hunt findings into prioritized security roadmaps.
Drive detection-to-remediation processes by collaborating with other security and infrastructure teams.
Produce dashboards linking technical security posture to business risk and ownership metrics.
Requirements
10 years in cybersecurity, including 5 years in detection, incident response, or SecOps leadership
Proven experience leading detection engineering and incident response teams at enterprise scale
Deep expertise with SIEM Splunk preferred, SOAR Tines, XSOAR, and EDR CrowdStrike
Experience with cloud telemetry and detection including CloudTrail, GuardDuty, VPC flow
Threat modeling, MITRE ATT&CK, and TTP-to-detection lifecycle knowledge
Experience with detection-as-code practices, version control, and CI/CD pipelines
Hands-on skills validating detections through replay, simulation, and log mining
Familiarity with frameworks such as CIS Controls, NIST 800-53, and SOC 2
Ability to translate complex security data into clear, executive-level insights
Proven cross-team collaboration with Infra, GRC, Product Security, and Application teams
Strong written and verbal communication skills with an emphasis on clarity and measurable outcomes
Work from the Santa Clara, CA office in compliance with company policies (in-office requirement)
Salary range of $225,000 to $338,000 USD (implying the need for experience commensurate with seniority and expertise)
Benefits & Perks
Salary range: 225,000 - 338,000 USD
In-office work environment in Santa Clara, CA
Flexible time off
Wellness resources
Company-sponsored team events
Potential incentive pay and/or equity
Inclusive and diverse workplace culture
Ready to Apply?
Join Pure Storage and make an impact in renewable energy