Manager, Threat Detection and Incident Response
Contentful
Use the employer link to read the full source listing and submit your application.
Listing data may include public employer ATS feeds and Jobs by Adzuna.
Before you apply
The decision-making details job seekers want first
We pulled the strongest signals from the listing so you can quickly judge fit, compensation, and what the company expects before opening the full source post.
Compensation
Salary & market context
Salary not listed
Requirements
Top requirements
- Candidates must be located in the eastern time zone.
- We believe that Security must be anchored by DevOps principles with strong repeatable processes.
- This role requires strong expertise in detection engineering, attacker techniques, and modern security practices, with the ability to apply these concepts in practical and scalable ways.
- What you need to be successful 6+ years experience in security operations, including alert triage and investigation 4+ years conducting large scale incident response activities with 2+ years leading 2+ years managing people and security operations teams.
Perks & setup
Benefits candidates care about
- We believe that our products and services benefit from our diverse backgrounds and experiences, and we are proud to be an equal opportunity employer.
Why candidates care
Benefits & perks
- We believe that our products and services benefit from our diverse backgrounds and experiences, and we are proud to be an equal opportunity employer.
Start here
Requirements
- Candidates must be located in the eastern time zone.
- We believe that Security must be anchored by DevOps principles with strong repeatable processes.
- This role requires strong expertise in detection engineering, attacker techniques, and modern security practices, with the ability to apply these concepts in practical and scalable ways.
- What you need to be successful 6+ years experience in security operations, including alert triage and investigation 4+ years conducting large scale incident response activities with 2+ years leading 2+ years managing people and security operations teams.
- Ability to support occasional off-hours incident response efforts Expertise in attacker techniques in cloud-native and traditional environments.
- Hands-on experience owning security technologies (e.g., EDR, AntiVirus, etc.) Expertise in AWS audit and security services to investigate cloud centric threats Expert usage, data onboarding, and data administration within Splunk Mastery of investigation methods and capable of handling complex and ambiguous cases Practical experience with cross-platform and hybrid environment investigations Ability to perform detailed host analysis on Mac, Windows, & Linux systems Proficient in correlating patterns across assets and environments to support investigation.
Responsibilities
What you'll do
- About the Opportunity Contentful strives to build a secure and safe service and commits considerable effort and resources to security.
- As the Manager of Threat Detection and Response, you will own the operational and strategic direction of security incident response, including team development, program strategy, and capability maturity in alignment with broader security and company objectives.
- You will remain hands-on, contributing to day-to-day detection and response activities while designing, building, and operating detection and response capabilities across cloud-native and corporate environments.
- You will lead large-scale, cross-functional incident response efforts, ensuring effective coordination, clear communication, and timely resolution of complex security events.
- You will drive continuous improvement across the Threat Detection and Response program and partner closely with security, IT, and cross-functional stakeholders to align priorities, execute shared initiatives, and ensure comprehensive risk mitigation while minimizing impact to end users across the organization.
- Own execution and prioritization across projects and operations, using agile delivery practices.
Role snapshot
About the role
Candidates must be located in the eastern time zone.
About the Opportunity
Contentful strives to build a secure and safe service and commits considerable effort and resources to security. Our Security team supports organization-wide information security management programs and collaborates closely with internal teams. We believe that Security must be anchored by DevOps principles with strong repeatable processes.
Source text