Senior Director, Security Threat
$168.4k - $252.6kEcolab
Job Summary: The Director of Threat Management is responsible for leading the enterprise detection and response function, owning the reactive side of security: identifying, investigating, and containing threats across a global Fortune 500 environment. This role provides leadership for the Security Operations Center (SOC), Cyber Threat Intelligence (CTI), Detection Engineering, and Incident Response (IR), and is accountable for the speed and quality of threat detection, triage, investigation, and response across the enterprise.The Director of Threat Management leads a 24x7 monitoring and response organization while advancing the detection engineering pipeline, maturing threat intelligence integration, and driving measurable improvement in mean time to detect and mean time to respond. The role combines strategic direction, operational accountability, and organizational leadership to reduce enterprise risk from active and emerging threats, partnering closely with the platform engineering team that owns the underlying security tooling.What You Will Do:Strategy, Governance, and LeadershipDefine and own the enterprise threat detection and response strategy, roadmap, and operating model aligned to cybersecurity, risk, and business objectives.Mature the threat management program through formal governance, playbooks, standards, metrics, and leadership reporting.Present detection and response posture, incident trends, risks, and investment needs to security leadership and executive stakeholders.Establish and monitor KPIs such as mean time to detect (MTTD), mean time to respond (MTTR), detection coverage, and alert quality.Lead prioritization decisions across the SOC, threat intelligence, detection engineering, and incident response functions.Security Operations and MonitoringLead a 24x7 Security Operations Center responsible for monitoring, alert triage, escalation, and initial investigation across the enterprise.Own the detection content lifecycle within the SIEM, and define data source onboarding, log storage, and retention requirements for the platform-owning team.Drive continuous improvement in alert quality, triage efficiency, and analyst workflow to reduce noise and analyst fatigue.Establish tiered operating models, shift coverage, and escalation paths that ensure consistent 24x7 response readiness.Oversee SOC performance metrics, service levels, and quality assurance across monitoring and triage activities.Detection EngineeringLead the detection engineering function responsible for building, tuning, and maintaining detection content across SIEM and security telemetry sources.Drive a detection-as-code approach with version control, testing, peer review, and measurable detection coverage mapped to MITRE ATT&CK.Prioritize detection development against threat intelligence, red team findings, incident learnings, and emerging adversary techniques.Establish metrics for detection coverage, efficacy, and false-positive rates, and drive continuous tuning based on outcomes.Partner with engineering and platform teams to ensure high-quality, well-structured log and telemetry sources feed detection pipelines.Cyber Threat IntelligenceLead the Cyber Threat Intelligence function responsible for strategic, operational, and tactical intelligence supporting detection and response.Operationalize threat intelligence by driving indicator enrichment, threat actor tracking, and intelligence-led detection and hunting priorities.Deliver executive and stakeholder threat briefings that translate the threat landscape into business-relevant risk and action.Establish threat hunting programs that proactively search for adversary activity across the environment ahead of alerting.Manage intelligence sources, sharing partnerships, and integration of intelligence into SIEM, SOAR, and detection workflows.Incident ResponseOwn the enterprise incident response process across detection, triage, containment, eradication, recovery, and post-incident review.Lead major incident coordination, serving as an escalation point and driving cross-functional response during significant events.Establish and maintain incident response playbooks, runbooks, and tabletop exercises to ensure organizational readiness.Drive post-incident reviews and lessons-learned processes that feed detection improvements and control gaps back into the program.Partner with legal, communications, IT, and business stakeholders to ensure coordinated response and regulatory notification where required.Tooling and Automation RequirementsDefine detection and response requirements, use cases, and priorities for the SIEM, SOAR, and log storage platforms owned and operated by the platform engineering team.Partner with the platform-owning team to shape roadmap, data onboarding, retention, and automation priorities that serve detection and response needs.Specify SOAR automation use cases for triage, enrichment, and response, and validate that delivered automations meet analyst workflow requirements.Provide feedback on tooling performance, gaps, and integration needs to drive a unified, efficient analyst workflow across detection, intelligence, and response.Use modern tools including AI-assisted workflows to accelerate investigation, analysis, documentation, and decision-making across the team.Organizational and People LeadershipLead and develop a distributed threat management organization consisting of managers, analysts, detection engineers, threat intelligence analysts, and incident responders.Build organizational clarity across the SOC, threat intelligence, detection engineering, and incident response functions.Provide leadership in talent development, succession planning, coaching, performance management, and team engagement.Manage staffing strategy across full-time employees, partners, and contingent resources, including managed detection and response providers where applicable.Oversee third-party vendors and consulting partners supporting threat management programs and services.Minimum QualificationsBachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline; equivalent experience may be considered.12+ years of progressive experience in cybersecurity, security operations, threat detection, incident response, or threat intelligence.5+ years of leadership experience managing multi-team security operations or threat functions at the Senior Manager or Director level.Demonstrated success leading detection and response programs across SOC operations, detection engineering, threat intelligence, and incident response.Experience managing 15+ person organizations including managers, analysts, and engineers with varied technical specializations.Experience leading major incident response and driving measurable improvement in detection coverage and response times.Experience building or standing up new detection, intelligence, or response capabilities, teams, or services.Technical and Functional QualificationsStrong knowledge of SIEM and log management platforms and log storage technologies such as Elasticsearch or Splunk, including data onboarding, retention, and detection content management.Strong knowledge of security orchestration, automation, and response (SOAR) platforms such as Swimlane or Cortex XSOAR.Strong knowledge of detection engineering practices, detection-as-code, and detection coverage mapped to MITRE ATT&CK.Experience with the cyber threat intelligence lifecycle, threat actor tracking, and intelligence-led detection and hunting.Experience with incident response frameworks, forensic investigation concepts, and major incident coordination.Understanding of threat detection across cloud (Azure, AWS, GCP), endpoint, network, and identity telemetry sources.Familiarity with security frameworks and models such as MITRE ATT&CK, NIST CSF 2.0, and the cyber kill chain.Preferred QualificationsExperience in a Fortune 500, global, manufacturing, or industrial environment with complex, heterogeneous technology estates.Prior experience standing up or transforming a SOC, threat intelligence, detection engineering, or incident response function.Experience with threat detection and response in operational technology (OT) or industrial control system (ICS) environments.Familiarity with platforms such as Elastic, Splunk, Swimlane, Cortex XSOAR, CrowdStrike, or Microsoft Sentinel.Relevant certifications such as CISSP, CISM, GCIH, GCIA, GCTI, or GCFA.Leadership CompetenciesStrategic thinker with the ability to set direction and translate strategy into operational execution.Decisive leader who operates effectively under pressure and makes sound calls during active incidents and competing priorities.Delivery-oriented leader with a strong focus on accountability, measurable outcomes, and service quality.Effective communicator able to translate complex threat and incident topics for executives, stakeholders, and technical teams.Strong collaborator with the ability to influence across infrastructure, cloud, application, legal, and business teams.Proven people leader with the ability to coach talent, build teams, and develop future leaders.Additional InformationThe role leads a 24x7 operation and may require off-hours availability for major incidents, escalations, and key initiatives.Travel up to 10% may be required for site assessments, team collaboration, and vendor engagements.The role may require coordination across global teams, including off-hours support for key initiatives, escalations, or major incidents.Annual or Hourly Compensation RangeThe base salary range for this position is $168,400.00 - $252,600.00. This position is eligible for annual bonus and long-term incentives based on performance, per plan terms. Many factors are taken into consideration when determining compensation, such as experience, education, training, geography, etc. We comply with all minimum wage and overtime laws.BenefitsEcolab strives to provide comprehensive and market-competitive benefits to meet the needs of our associates and their families. Click here to see our benefits. If you are viewing this posting on a site other than our Ecolab Career website, view our benefits at jobs.ecolab.com/working-here.Potential Customer Requirements NoticeTo meet customer requirements and comply with local or state regulations, applicants for certain customer-facing roles may need to:- Undergo additional background screens and/or drug/alcohol testing for customer credentialing.Americans with Disabilities Act (ADA)Ecolab will provide reasonable accommodation (such as a qualified sign language interpreter or other personal assistance) with our application process upon request as required to comply with applicable laws. If you have a disability and require accommodation assistance in this application process, please visit the Recruiting Support link in the footer of each page of our career website. SummaryLocation: USA - Minnesota - Saint Paul; USA - Illinois - NapervilleType: Full time
$161.5k - $299.7k
...of all aspects of the enterprise cyber threat detection and escalation processes within... ...Defense & Investigation ecosystem. As the Director of CFC, the person in this role is... ...constantly improve the organization’s Cyber Security Posture, ensuring the CFC is operating effectively...SeniorFull time$137.4k - $206.2k
Job Summary: The Director of Identity is responsible for maturing the enterprise Identity... ...operations, architecture, and emerging identity security capabilities. This role provides... ...managing multi-team IAM functions at the Senior Manager or Director level.Demonstrated...SuggestedHourly payMinimum wageFull timeLocal area$129.91k - $190.45k
...team that is a force for good. Primary Responsibilities The Security Operations Manager leads and actively contributes to the... ...guardrails, and acceptable-use guidance. Stay current on the threat landscape and help the program adapt to new risks and use cases...SuggestedFull timeTemporary workWork at officeLocal areaRemote workMonday to FridayFlexible hoursShift workDay shift$137.4k - $206.2k
Job Summary: The Director of Security Engineering is responsible for leading enterprise security architecture... ...that harden the environment before threats land.The Director of Security... ...managing multi-team security functions at the Senior Manager or Director level.Demonstrated...SuggestedHourly payMinimum wageFull timeLocal area$101.4k - $152.1k
The Senior Offensive Security Engineer, Commercial Products will perform hands-on offensive security testing across Ecolab’s commercial digital... ...business impact, and practical remediation paths.Support product threat modeling, secure architecture reviews, application security...SeniorHourly payMinimum wageFull timeLocal areaFlexible hours- RR Donnelley & Sons in Warrenville, IL seeks a senior financial professional to develop, interpret, and implement financial concepts for planning, forecasting, modeling, and internal controls. You will perform in-depth analyses to determine current and future financial...Senior
- ...RXO in Naperville, IL, seeks a Senior Recruiter to lead the hiring process for Last Mile and Freight Forwarding teams. You will collaborate with business leaders to develop effective recruiting strategies and manage a high volume of job openings. This hybrid role offers...Senior
- ...have built our culture around Joy, and we want that message to infuse all levels of our process and client experience. As a Senior Designer at FBC you will be working with an Interior Designer to create designs, present multiple design concepts, close plan reviews...SeniorContract work
- ...A trusted home protection provider seeks a Senior HR Business Partner in Naperville, IL. This hands-on role requires aligning HR strategies with business objectives, providing employee solutions, and driving organizational effectiveness. Candidates should have a Bachelor...SeniorWork at office
- Sikich LLC is seeking a Tax Principal in Naperville, IL, to manage client relationships and develop actionable strategies. You must have a BA/BS degree, with a CPA certification strongly preferred, and ten years of relevant experience. The role involves strategic client...SeniorFlexible hours
- Endeavor Health is seeking a highly experienced Financial Analyst Senior to join our finance team in Warrenville, IL. This role provides advanced financial analysis, strategic insights, and decision support to drive hospital financial performance. The ideal candidate has...SeniorFull time
- ...of cybersecurity infrastructure within the organization. It involves developing and implementing security strategies, tools, and technologies to defend against cyber threats and vulnerabilities. The role is distinguished by its focus on proactive risk identification and...SeniorFull timeTemporary workPart timeWork experience placementLocal areaFlexible hours
- ...A leading consulting firm in Naperville, IL is seeking a Senior HR Business Partner to develop and implement strategic HR solutions. In this critical role, you will act as a trusted advisor, managing all aspects of the employee life cycle while championing diversity and...SeniorWork at office
- talented it inc is seeking an SAP Basis Administrator with expertise in HANA to manage SAP upgrades, installations, and support. You will be responsible for implementing and monitoring SAP HANA in diverse environments, ensuring performance, and managing migration activities...SeniorLong term contract
- V3 Companies in Woodridge, IL is seeking an experienced Project Manager to lead water, sanitary, and stormwater infrastructure projects. Ideal candidates will have over 10 years of experience in the Chicagoland area and a strong network in the industry. The role involves...Senior
- ...Endeavor Health in Naperville, IL seeks an Executive Assistant II to support senior leaders, manage complex schedules, and ensure efficient office operations in a fast-paced healthcare environment. The role requires five years of executive support, a Bachelor's degree...SeniorFull time
- Bachelor’s Degree in Civil or Environmental Engineering, Environmental Sciences, Hydrogeology, Geology, or related from an accredited university. 5-10+ years of Geology, Hydrogeology, Engineering, or related environmental consulting experience. Strong background/experience...SeniorWork at office
- ...Our client is a well-established global manufacturing organization seeking a Senior Tax Accountant to join its corporate tax team. This position offers broad exposure to federal and state tax compliance, tax provision work, tax research, and special projects while partnering...Senior
- ...Overview Highly regarded and respected global company based in the Woodridge area is seeking a Senior Accountant due to continued growth. The Senior Accountant will have exposure to month end close process, financial reporting, and special projects. Responsibilities Consolidations...SeniorWork at office
$110k
Role Overview Innovative Werks, Inc. is seeking a Senior PLC / Automation Engineer to design and deploy PLC and SCADA integration solutions for power generation and critical infrastructure systems. This role supports automation and modernization projects for utility, municipal...SeniorFull timeFlexible hours$55k - $65k
A casual Italian restaurant is seeking a hardworking Sous Chef to oversee kitchen operations and create exceptional culinary experiences. The ideal candidate has at least 1 year of experience, Food Safety certification, and strong leadership skills. Competitive salary ...SeniorCasual work$90k - $120k
...Looking for a Tax Senior opportunity where you'll gain exposure to a wide variety of tax work, build strong client relationships, and continue developing your career? We're partnering with a well-established public accounting firm seeking a Tax Senior to join its growing...SeniorCasual workWork at office- ...RR Donnelley & Sons is seeking a Senior Proofreader who will ensure the accuracy and compliance of complex documents and data. This role involves rigorous verification of numerical data and alignment of visual elements with source materials. Ideal candidates will hold...SeniorRemote work
$42.4k
...RR Donnelley is seeking a Senior Proofreader to ensure the accuracy and compliance of complex technical documents. This position involves rigorous verification of numerical data, ensuring alignment between visual data and source materials. The candidate will primarily...SeniorRemote work- CapinCrouse LLP in Naperville, Illinois, is seeking an experienced audit professional who will provide high-level service to clients and drive firm growth. Responsibilities include managing multiple engagements, building client relationships, and participating in business...Senior
- Plymouth Tube Co, based in Warrenville, IL, is seeking a Senior Manager, Environment, Health & Safety (EHS) to drive safety and environmental performance across multiple sites. The ideal candidate will have over 7 years of experience in EHS within manufacturing and a strong...Senior
- Job Title Work weeks per year: 40 Hours per day: 6 Shift hourly rate: $21.07 Annual shift stipend: N/A This position is governed by a collective bargaining agreement and is eligible for insurance benefits. Spanish speaking highly preferred DuPage County ROESeniorHourly payShift workDay shift
- ...The Senior Tax Accountant will prepare and review multiple tax projects in order to provide quality tax services and deliverables for our clients. Objective The Senior Tax Accountant will prepare and manage a variety of tax projects for clients. This position requires...SeniorWork experience placementLocal areaFlexible hours
$90k - $110k
...supporting key business decisions.Working closely with the Controller, Director of Finance, and CFO, you will contribute to monthly and... ....Comfortable working cross-functionally and collaborating with senior finance leadership.Continuous improvement mindset with a passion...SeniorFull timeContract workWork at office- ...lead complex builds for national repeat clients. This is an incredible opportunity for career growth, with potential to evolve into a senior-level leadership role. Ideal Candidate Profile: At least 5 years of experience managing mission-critical data...SeniorContract workFor contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Director, Security Threat. Be the first to apply!
- senior manager tax Naperville, IL
- senior international accountant Naperville, IL
- senior vmware engineer Naperville, IL
- senior resident engineer Naperville, IL
- senior performance engineer Naperville, IL
- senior storage engineer Naperville, IL
- senior director diversity & inclusion Naperville, IL
- senior construction accountant Naperville, IL
- senior manager Naperville, IL
- remote senior project manager Naperville, IL



