Detection and Response Manager
PNC Bank
Role Description
As a Detection and Response Manager within PNC's Tempus Technologies organization, you may be based in a remote location. This position may not be available in all geographic locations.
The Detection and Response Manager is responsible for overseeing and maturing the full detection and security incident response lifecycle to minimize organizational risk, ensure rapid containment, and drive timely and effective remediation. This role leads day‑to‑day SOC operations—including proactive monitoring, triage, investigation, and response—while ensuring 24/7 readiness through on‑call management, process rigor, and operational discipline.
Responsibilities include:
- Core Detection & Response Operations:
- Lead day‑to‑day Detection and Response activities, ensuring timely detection, triage, investigation, and response to security events.
- Ensure 24/7 incident response readiness by maintaining and managing the on‑call rotation, including scheduling, escalation paths, and service‑level expectations.
- Serve as the owner for incident response execution, including initial containment, escalation, incident declaration, and forensic coordination.
- Act as the primary technical lead and liaison during high‑severity incidents, collaborating with Infrastructure, Engineering, Legal, and Executive leadership.
- Detection Engineering & Threat Intelligence:
- Oversee the development, tuning, and continuous improvement of SIEM detections, alerting logic, and correlation rules.
- Drive integration of internal and external Threat Intelligence to enhance visibility and detection capabilities.
- Produce operational metrics and performance reporting focused on detection coverage, MTTD/MTTR, case handling quality, and tooling efficacy.
- Evaluate and implement new technologies, integrations, and automation opportunities to reduce manual workload and enhance response capabilities.
- Incident Response Program Management:
- Own and maintain incident response playbooks, SOPs, escalation paths, and response frameworks.
- Ensure regulatory, contractual, and internal stakeholder notifications are initiated and documented when required.
- Manage post-incident activities, including after-action reviews, corrective actions, and measurable improvements.
- Lead readiness activities such as tabletop exercises, red/blue/purple team scenarios, and simulation‑based training.
- Ensure incident response posture aligns with organizational risk appetite, audit requirements, and industry best practices.
- Leadership, Coaching & Continuous Improvement:
- Direct and mentor analysts in investigations, incident handling, and operational processes.
- Execute staffing decisions, performance evaluations, onboarding, and the professional development pipeline for analysts.
- Identify operational gaps and recommend technical or process improvements to mature the detection and response program.
- Champion a culture of continuous improvement, documentation discipline, and analytical excellence.
- Key Relationships:
- Security Operations & Application Security Teams
- IT Infrastructure Teams
- Development Teams
- Executive Leadership
- External Vendors & Incident Response Partners
Qualifications
- CCSP, CISSP, GCIA, GCIH, GCFA, CySA+ or equivalent certifications.
- Demonstrated ability to lead incident response activities from detection through containment, eradication, recovery, and post incident review.
- Experience performing root cause analysis, log analysis, and threat investigation.
- Exposure to compliance frameworks such as PCI DSS, SOC 2, HIPAA, and FedRAMP.
- Strong understanding of cybersecurity fundamentals, including networking, operating systems, endpoint security, cloud security, and identity access management.
- Hands-on experience with SIEM platforms (e.g., Elastic, Splunk), EDR tools, IDP/IPS, and other monitoring technologies.
- Expertise with incident handling methodologies and frameworks such as NIST 800 61, ISO 27035, and MITRE ATT&CK.
- Proficiency in incident management tools and ticketing systems (e.g., Jira, ServiceNow).
- Excellent ability to translate technical details into clear, actionable communication for both technical and non-technical stakeholders.
- Strong communication and interpersonal skills with the ability to manage stressful situations.
- Strong organizational skills with the ability to prioritize and manage multiple concurrent incidents and tasks.
- Excellent problem-solving, analytical, and decision-making skills.
Requirements
- Roles at this level typically require a university / college degree, with 5+ years of industry-relevant experience.
- At least 3 years of prior management experience is typically required.
- In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.
Benefits
- Medical/prescription drug coverage (with a Health Savings Account feature)
- Dental and vision options
- Employee and spouse/child life insurance
- Short and long-term disability protection
- 401(k) with PNC match, pension and stock purchase plans
- Dependent care reimbursement account
- Back-up child/elder care
- Adoption, surrogacy, and doula reimbursement
- Educational assistance, including select programs fully paid
- A robust wellness program with financial incentives
- Maternity and/or parental leave
- Up to 11 paid holidays each year
- 9 occasional absence days each year, unless otherwise required by law
- Between 15 to 25 vacation days each year, depending on career level and years of service
- ...Senior Midmarket Account Executive: Detection & Response Antigen Security is a rapidly growing Technology Services Distributor specializing... ...achieve superior security outcomes. As a Microsoft Top 150 Managed Partner and exclusive distributor for a growing number of SaaS...SuggestedWork experience placementRemote work
- ...Overview SonicWall is looking for a Senior Product Marketing Manager to own go-to-market strategy and execution for our Endpoint Detection and Response (EDR) and Threat Protection product lines, along with other assigned product lines across the SonicWall portfolio...SuggestedFull time
$225.4k - $281.8k
..., JD Sherman, among its board members. Role Overview Apollo is looking for a startup-minded Engineering Manager to lead our Security Detection & Response team. You’ll build and scale a team that ships detection systems, automations, and investigation tools at startup...SuggestedFull timeRemote workWorldwideFlexible hours$186k - $302k
...Cyber Risk. We’re looking for a Director, Product - Endpoint Detection & Response to be part of making this happen. LOCATION: This role is... ...the strategic goals of Arctic Wolf by enabling product management processes, fostering cross-functional collaboration, and driving...SuggestedFull timeLocal areaRemote workWorldwideFlexible hours$172k - $286.6k
...hear from you.Sr. Director, Cyber Threat Detection & ResponseLocation: Richmond, VA, USA -... ...OpportunityThe Sr. Director, Threat Detection and Response (TDR) is responsible for leading a... ...Lead selection, adoption, and lifecycle management of detection and response tooling and...SuggestedFull time$112.7k - $193.2k
...change lives. Ready to build the next breakthrough? Join us to start Caring. Connecting. Growing together.As a Principal Network Detection & Response Engineer within our Cyber Operations Group team, you will lead the architecture, deployment, and continuous optimization of...Minimum wageFull timeWork experience placementWork at officeLocal areaRemote work$10k
...you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it.About the RoleJoin our growing security team and help drive security detection and response initiatives across Ramp. This will include a focus on maturing our...Full timeWork experience placementWork at officeHome officeFlexible hours- ...Arctic Wolf is seeking a Director of Product Management for Endpoint Detection & Response (EDR). Remote-USA/Canada and hybrid San Antonio, Eden Prairie, or Waterloo options are available. You will drive product strategy, own backlog, and align with R&D, sales, marketing...Remote job
$151.2k - $204.6k
...and with that transformation comes the responsibility to get it right. The Amazon Responsible... ...regulations. We are looking for a Sr. Product Manager - Technical who wants to define the... ...risk classification, compliance gap detection, evidence generation) and define how ML...Flexible hours$100k - $120k
...meaningful results. This is a contingent position based upon contract win. SkyePoint Decisions is seeking a Incident Detection/Response Manager (SOC Manager) to join our team supporting the Department of Education's (DoED) Federal Student Aid (FSA) Cybersecurity...Contract workRemote workShift work- Role Description We're hiring a Detection & Response Lead to build and run our D&R capability from the ground up. You'll own the detection... ...traffic analysis, and post-incident reporting. ~Stakeholder management: able to coordinate across engineers, compliance, legal,...Full timeRemote workFlexible hours
- ...equity firms, Onex Partners, and led by a forward-thinking management team, ISC is combining the worlds of insurance and technology... ...is seeking a senior, hands‑on defender to build a detection and response function responsible for defensive security operations across...
$90k - $100k
...Description Position: Business Development Manager Division: Stratos K9 ( Location : Remote, with up... ...for Stratos K9 across the United States. The role is responsible for originating new explosive detection and firearms detection canine business nationally....Full timeContract workWork at officeRemote workShift work$192.6k - $260.5k
...Businesses Security team is seeking a Security Engineer Manager to lead our Specialized Detections team. This is a forward-driving leadership role: you... ...exploitable exposure across Amazon's estate.Key job responsibilities- Work backwards from our Business Security Team and...Remote workFlexible hours- ...Position Summary The Project Manager – Spill Response Operations & Field Health and Safety is responsible for overseeing the day-to-day operations of a nationwide spill response call and triage center, ensuring timely incident intake, staffing coordination, response...Temporary workFor subcontractorWork at officeRemote work
$258.6k - $387.8k
...of your career. About The Team Risk Detection is focused on providing a delightful experience... ...our vision of making Stripe’s risk management a feature that attracts and retains... ...directly to Stripe’s growth. Responsibilities Support the team in delivering a high...Work at officeLocal areaRemote workWork from homeRelocation$120k - $140k
...TTEC’s award-winning employment experience. As an Incident Response Manager working remote in the United States, you’ll be a part of bringing... ...Security team, you will manage the team that is responsible detecting, containing, and remediating cybersecurity threats. This...Work experience placementRemote workWork from home$65k - $70k
...seeking a high-performing Regional K9 Operations Manager to lead, scale, and elevate our Explosive Detection Canine (EDC) programs. This is a fully hands-on... .... Compensation: $65,000 - $70,000 yearly Responsibilities: What You’ll Do Operational Leadership & Compliance...Work at officeWork from homeShift workNight shiftRotating shift- ...also work hard to make a job at OCLC a meaningful part of a balanced life- not a substitute for one.Resumen del puestoLa persona responsable de Proyectos de Implantación para Clientes elaborará, en colaboración con el cliente, los planes de proyecto y las fases necesarias...Remote work
$148.7k - $201.2k
...is looking for a Sr. Technical Program Manager with experience in wireless/satellite communications... ...and define KPIs including mean time to detection, configuration drift incidents, fleet... ...Terminal Fleet Management team is responsible for delivering the complete operational...Permanent employmentRemote workFlexible hours- ...Apply now: Security Response Manager, location is Remote. The start date is ASAP for this 6 month Contract-to-Hire position. Job Title:... ...incident response while providing hands-on forensic investigation, detection engineering, and technical leadership to strengthen the...Contract workImmediate startRemote work
$175.1k - $236.9k
...Security team. As a security leader, you will own building and managing a team of incident managers and technical leaders, fostering... ...high level of ownership and accountability is a must.Key job responsibilities- Build and lead a high-performing team of security engineers,...Remote workFlexible hoursShift workNight shift- PingWind is actively seeking an Incident Manager to lead incident management for the FSA IAM systems, ensuring rapid detection, response, and resolution to minimize disruption for users, applications, and services. The role follows FSA incident and problem management processes...Remote job
- ...took home the 2024 CRN Products of the Year award. We’re proud to be named a Leader in the IDC MarketScape for Worldwide Managed Detection and Response Services and earning a Customers' Choice distinction from Gartner Peer Insights. Our Aurora Platform also received CRN’...Full timeWork at officeLocal areaRemote workWorldwideFlexible hours
- Horizon3 AI, Inc. is seeking a Senior/Staff Product Manager to lead the strategy, development, and evolution of NodeZero Tripwires, our threat detection and deception offering that turns attacker perspectives into defensive value. You will own the vision, roadmap, and...Remote job
$10k
The Bureau of Community Awareness, Action, Response, and Engagement (BCAARE)’s Community Response and Engagement Unit (CREU) is comprised... ...activities and initiatives. Participate in the design and management of evaluation plans for RET including the creation of tools and...Full timeFor contractorsWork at officeLocal areaWork from home2 days per week- ...Job Description: *Country location to be determined based on response. Children's lives can change in an instant in the wake of... ...come in: Job Purpose In line with the WVI Disaster Management Standards for global emergencies this position fills an essential...Contract workFixed term contractWork at officeLocal areaImmediate startRemote workShift work
- ...trust and safety solutions. You'll be responsible for developing region-specific go-to-market... ...closely with product management, engineering, and data science teams to... ...tech infrastructureKnowledge of fraud detection methodologies, malware, botnets, and threat...Work at officeLocal area
$110k - $140k
...program, we are seeking a Program Contracts Manager to build and own the contract... ...candidate verification platforms, and fraud detection tools (collectively, "Hiring Platforms")... ...your résumé, cover letter, work samples, responses to application questions, and any other...Full timeContract workFor subcontractorRemote workFlexible hours- ...appropriate actions based upon that analysis. Responsibilities include rapidly responding to... ...standards, and procedures Strong time management skills to balance multiple activities... ...the development of security operations detections, playbooks, and automations to ensure...Full timeWork at officeLocal areaRemote work1 day per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Detection and Response Manager. Be the first to apply!


