Director, Cyber Detection & Response
$135.4k - $208.1kCardinal Health
What Cybersecurity Defense contributes to Cardinal Health
Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Cyber Detection & Response is responsible for establishing, leading, and continuously enhancing cybersecurity detection, monitoring, and incident response capabilities to protect the organization from evolving cyber threats. Furthermore, this leader oversees Security Operations Center (SOC) operations, cyber threat detection, incident response, threat intelligence, and security testing functions to enable rapid identification, containment, and remediation of cybersecurity threats. This role plays a critical role in driving proactive defense strategies, improving detection and response capabilities, and ensuring alignment with risk and resilience objectives.
Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)
Responsibilities
Develop and lead the cybersecurity detection and response strategy aligned with enterprise risk, threat landscape, and business priorities.
Establish governance frameworks and operating models for SOC, incident response, and threat management functions.
Serve as an advisor to leadership on threat trends, detection capabilities, and response readiness.
Drive continuous improvement of detection and response capabilities to address evolving threats and business needs.
Oversee SOC operations, including security logging, monitoring, alerting, and incident triage across the environment.
Oversee effective use of SIEM platforms to analyze correlated events, detect anomalies, and escalate potential incidents.
Lead the development and optimization of detection use cases, analytics, and monitoring strategies to improve visibility across the environment.
Oversee monitoring capabilities across IT and OT environments, ensuring coverage of critical systems and infrastructure.
Lead detection engineering and security tooling functions, including SIEM, SOAR, EDR, UEBA, and DLP capabilities.
Oversee the definition and implementation of use cases, rules, and configurations to improve automated detection, investigation, and response workflows.
Drive optimization and integration of security tools to enhance operational efficiency and reduce false positives.
Establish and lead threat intelligence capabilities to gather, analyze, and operationalize threat data from internal and external sources.
Oversee threat monitoring, analysis, and detection rule enhancement to proactively identify emerging threats.
Lead threat modeling activities to identify attack vectors, vulnerabilities, and control gaps across systems and processes.
Drive proactive threat hunting initiatives to identify hidden threats and indicators of compromise (IoCs) within the environment.
Lead enterprise incident response (IR) capabilities, including planning, testing, execution, and continuous improvement of IR processes.
Oversee incident response lifecycle activities including detection, triage, containment, eradication, and recovery.
Oversee incident response simulations and exercises to validate readiness and improve response effectiveness.
Enable effective coordination of incident response efforts across cybersecurity, IT, legal, and business stakeholders.
Manage breach notification processes and communication protocols for cybersecurity incidents.
Oversee digital forensics and investigative activities to determine the scope, root cause, and impact of cybersecurity incidents.
Ensure proper evidence collection, analysis, and documentation to support investigations and regulatory requirements.
Lead post-incident reviews and root cause analysis to strengthen detection and response capabilities.
Lead offensive and defensive security testing capabilities, including red teaming, penetration testing, and adversarial simulations.
Oversee blue team operations to detect, analyze, and respond to threats across enterprise environments.
Facilitate purple teaming activities to enhance collaboration between offensive and defensive teams and improve detection and response effectiveness.
Drive continuous improvement of security controls through testing, validation, and simulation exercises.
Collaborate with cybersecurity, IT, risk, legal, and business teams to integrate detection and response capabilities into enterprise operations.
Partner with architecture, engineering, and infrastructure teams to ensure detection and response requirements are embedded into system design and deployment.
Provide actionable insights and reporting to leadership on threat landscape, incident trends, and response effectiveness.
Support audit and regulatory activities by providing evidence and documentation related to detection and response processes
Define and track KPIs and KRIs related to detection, response, and operational performance.
Provide regular reporting to leadership on SOC performance, incident metrics, and threat trends.
Identify opportunities to enhance detection coverage, reduce response times, and improve operational efficiency.
Drive continuous improvement initiatives to mature detection and response capabilities.
Build and lead a high-performing cybersecurity detection and response team across SOC, IR, and threat management functions.
Develop team capabilities through training, mentoring, and structured career development initiatives.
Foster a culture of accountability, collaboration, and continuous improvement.
Ensure alignment of team capabilities with evolving threat landscape and organizational needs.
Qualifications
Ideally targeting individuals with 10+ years of experience in cybersecurity, with a strong focus on detection, incident response, and security operations.
Deep expertise in SOC operations, SIEM, incident response, and threat intelligence a plus.
Experience leading cybersecurity operations teams and managing complex incident response activities, a strong preference.
Strong understanding of cybersecurity frameworks (e.g., NIST CSF) and regulatory requirements required.
Demonstrated ability to communicate technical concepts and risk insights to executive leadership.
Strong leadership, analytical, and problem-solving skills.
Experience in highly regulated industries, a plus
Experience with advanced analytics, automation, and AI-driven security operations, a strong preference
#LI-LP
#LI-Remote
Anticipated salary range: $135,400 - $208,100
Bonus eligible: Yes
Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with myFlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click here (
$135.4k - $208.1k
...Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures... ...at Cardinal Health. The Director, Exposure Management is responsible... ...management initiatives with broader cyber defense and risk reduction strategies...CyberTemporary workLocal areaImmediate startRemote workFlexible hours$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident... ...the organization's ability to prevent, detect, and rapidly respond to sophisticated... ...management platforms integrated with SOC and cyber defense functions. Certifications such...CyberContract workWork experience placementWork at office- ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations... ...Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide...CyberContract workWork experience placementWork at officeShift work
$180k - $303.6k
...About the Role PagerDuty is seeking a Director of Pricing & Monetization to own the... ...Dutonian. People Leaders at PagerDuty are responsible for creating high performance... ...at its core, PagerDuty empowers teams to detect and resolve issues in real time, orchestrate...SuggestedLocal areaFlexible hours- ...business and government customers with responsibly architected security. More at . Role... ...customer environment, specifically endpoint detection and response. This consultant also... ...scale operational environments focusing on cyber defense along with experience performing...CyberFlexible hours
$120k - $230k
...in SIEM platform engineering, including log source onboarding, detection and correlation rule development, content management, performance... ..., CCIE Security or Relevant Professional certifications in Cyber Security OEMs Other Requirements ~ Completed Bachelor's Degree...CyberWork experience placementRemote workWorldwideFlexible hours- ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...more. Position Summary The Senior Manager, Events is responsible for strategic oversight, portfolio performance and team...CyberWork experience placementRemote work
- ...support of our vision of a safe and secure cyber world. Our globally recognized, award-... ...of the HR team. You will be solely responsible for developing and driving learning & development... ...the HR Business Partner and Senior Director, Human Resources, providing ideas for long...CyberWork experience placementRemote work
- ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... .... Learn more. Position Summary The Manager, Events is responsible for planning, executing, and delivering ISC2's Americas-based...CyberContract workWork experience placementRemote work
$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate... ...a Bachelor's degree in Computer Science, Information Science, Cyber Security, Computer or Electrical Engineering (or similar field)...CyberWork at officeRemote work$139.4k - $291.8k
...Oracle Cloud Infrastructure Abilene AI Data Center Director, On-Site Power Delivery Location: Preferred Abilene, Texas... ...also consider candidates for Texas Remote with 50% travel. Responsibilities Responsibilities: Lead regional utility power delivery...Permanent employmentTemporary workFor contractorsRemote workRelocationFlexible hours$150.92k - $176.1k
...I. Job Summary Responsible for identifying and controlling company liability and associated costs for groundwater and associated media, optimizing WM landfill capacity and development costs, and implementation of company-wide environmental protection programs and policies...Temporary workLocal areaRemote work- ...individual to lead our events strategy and manage the events team. The Senior Director of Events and Conferences will report directly to the SVP of Marketing & External Communications and is responsible for the strategy, planning, execution, and management of high-quality...Remote work
$186.88k - $233.6k
...Summary We are seeking a highly motivated and experienced Director, IT Supply Chain and Quality to play a pivotal role in our ongoing... ...to the Sr. Director of IT, this leadership position will be responsible for defining the strategic direction, leading the...WorldwideFlexible hours$186.49k - $278.88k
...Position Summary We are seeking an innovative and strategic leader to serve as the Director, U.S. Neuroscience Pipeline & Established Brand Marketing. This individual is responsible for supporting Otsuka's U.S. commercialization efforts, ensuring that pipeline assets...Temporary workLocal areaFlexible hours$105.6k - $178.75k
...experienced team is passionate about helping oncology practices navigate the future. Director, Revenue Cycle Management The Director, Revenue Cycle for medical oncology is responsible for overseeing all billing, collections, and accounts receivable (AR) operations...Temporary workWork at officeLocal areaImmediate startFlexible hours$221.7k - $266k
...apps they use every day, to the network and conference rooms that connect a globally distributed company. As Director of IT, you will lead the team responsible for Helpdesk, endpoint and AV experience, enterprise identity, core productivity applications, corporate networking...Full timeWork at officeRemote workShift work$117.6k - $161.7k
...in HashiCorp Vault administration. The ideal candidate will be responsible for the integration, configuration, and management of Vault in... ...cybersecurity issues and opportunities, in alignment with Humana's IT/Cyber IOP policies Ensure accurate documentation and compliance...CyberFull timeTemporary workFor contractorsApprenticeshipRemote workWork from homeHome office$45k - $55k
...in Pierre, SD, has an opening for a full time Faith Formation Director. The successful applicant will be part of a team of professionals... ...by the Diocese of Sioux Falls. The applicant will be responsible for running a program with the help of qualified adult volunteers...Full time- ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...Position Summary The Customer Success Account Manager is responsible for driving customer satisfaction, retention, and growth across...CyberWork experience placementWork at officeRemote work
$150k - $175k
...Technology, Inc. (WWT) is seeking a highly driven and experienced Cyber Security Specialist to join our dynamic Security Sales team.... ...expertise in selling security services and solutions. Responsibilities: Drive profitable revenue growth on all strategic ExtraHop...CyberFull timeRemote workShift work- ...levels of the organization, including senior leadership. Key Responsibilities Plan, lead, and execute risk‑based IT audits and advisory... ...in Computer Science, Information Technology, Information/Cyber Security, or a related business discipline from an accredited...CyberPermanent employmentRemote workFlexible hours
$169.22k - $253k
...and nutraceutical products for the maintenance of everyday health. As an Associate Director, Biostatistician, you will be a champion of Otsuka’s culture and values and will be responsible for providing statistical expertise/input in the drug development including...Temporary workInterim roleLocal areaRemote workWorldwideFlexible hours$89k - $143.75k
...controls and implementations into the medical field. You will be responsible for : Designing, implementing, and testing software... ...Performing software code reviews and design reviews with a cyber-lens. Performing periodic risk assessment of security vulnerabilities...CyberFull timeTemporary workWork at officeLocal areaRemote workNight shift$164.53k - $245.99k
...The Associate Director, Scientific Communications manages the execution of the core scientific and medical communications strategy... ...the Senior Director, CNS Medical Communications Lead. Key Responsibilities Include: Global Scientific Communication Strategy ~ Manage...Temporary workLocal areaFlexible hours$186.49k - $278.88k
...The Director, Corporate Counsel will provide strategic and pragmatic day-to-day legal support for one or more marketed pharmaceutical... ...to understand and apply legal risks within his/her areas of responsibility, and clearly and appropriately communicate those risks for...Contract workTemporary workFixed term contractLocal areaRemote workWorldwideFlexible hours$118.5k - $251.6k
...existing OCI systems. Capacity Management & Planning Forecast demand, plan supply, and manage contention Coordinate incident response and operational readiness for critical test events (e.g., launches, large-scale performance tests). Cost Reduction & Efficiency...Temporary workRelocation packageFlexible hours$137k - $235.75k
...are searching for the best talent for the role of Associate Director, Oncology Epidemiology . We have a preference for this position... ...of more senior members of the department. Primary responsibilities: Assist with identifying research study needs, drafting proposals...Full timeTemporary workLocal areaRemote work$100k - $172.5k
...lives, this could be perfect for you. Primary Duties and Responsibilities Being at the office in Danvers MA for a minimum of 3 days... ..., and improve product security processes. Act as a SME on cyber security matters and provide guidance to development teams....CyberFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week- ...across human resources, employee relations, community engagement, and government affairs to support safe, compliant, and socially responsible operations at the mine. This role serves as a trusted advisor to site leadership, a visible community representative, and a key...Hourly paySummer workInternshipWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Cyber Detection & Response. Be the first to apply!
- director lease administration Pierre, SD
- director of benefits Pierre, SD
- nonprofit director Pierre, SD
- director of video production Pierre, SD
- senior director it Pierre, SD
- director biotech Pierre, SD
- director m&a integration Pierre, SD
- director of innovation Pierre, SD
- director of community relations Pierre, SD
- senior director epidemiology Pierre, SD


