Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Global Director of Autonomous Cyber Defense and Security Event Triage (SOC)

MUFG

Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.The Global Director of Autonomous Cyber Defense and Security Event Triage leads the strategy, execution, and continuous improvement of a 24/7 global cyber defense and security event triage function. This role is accountable for globally protecting enterprise assets and services by driving outcomes across detection engineering, automated response, incident triage, and threat hunting. The director oversees global cyber operations performance, operating rhythms, and service delivery across multiple environments and partners, while owning budget planning and financial stewardship for the function. Additionally, the role advances autonomous defense capabilities by applying AI/ML and LLM-enabled workflows to improve alert quality, reduce time to detect/respond, and standardize decisioning, documentation, and remediation at scale. The director also ensures continuous validation of controls and detections through purple team execution aligned to adversary behaviors.Major ResponsibilitiesDirect and mature a 24/7 global cyber operations model for security event monitoring, triage, incident response partnership, and threat hunting across multiple environmentsOwn functional strategy, multi-year roadmap, and KPI/OKR outcomes for autonomous cyber defense and security event triage (e.g., MTTD/MTTR, false-positive reduction, containment SLAs)Work with the Global Head to define the vision for Autonomous Cyber Defense and Security Event Triage, and execute against that vision in alignment with the strategic designOversee budget planning, vendor management, and financial governance for global cyber operations tooling, services, and staffing; optimize spend to risk reduction and service performanceLead, mentor, and scale high-performing global teams (employees and partners); define operating rhythms, coverage models, escalation paths, and on-call expectationsServe as a lead escalation contact in a 24/7 environment; guide appropriate resources to resolutionProvide executive-level oversight for audit, risk, and regulatory engagements related to cyber operations; ensure processes, evidence, and metrics meet policy and compliance requirementsDeliver leadership reporting on cyber operations health, emerging threats, and risk posture; translate technical findings into business impact and prioritized actionsDrive AI/ML/LLM-enabled autonomous defense initiatives, including alert enrichment, case summarization, analyst co-pilots, automated containment, and continuous learning to improve signal-to-noiseEstablish governance for detection engineering, triage decisioning, playbooks, and automation (SOAR/EDR/SIEM) to standardize response, reduce gaps, and improve response timesLead critical incident triage and escalation governance; partner with incident response, infrastructure, identity, and application teams to coordinate containment and recoveryOversee monitoring of third-party security service providers and managed tooling to ensure coverage, quality, and alignment to enterprise standards and SLAsBuild an operations analytics program to measure and continuously improve triage accuracy, response efficiency, backlog health, and automation effectiveness across regions and shiftsSponsor and execute a purple team program (red/blue collaboration) to validate detections and response through adversary emulation aligned to MITRE ATT&CK; track gaps to closureOversee proactive threat hunting and continuous control validation to identify adversary behaviors, reduce dwell time, and harden critical servicesProvide global operational leadership during cyber events by coordinating communications, handoffs, and technical execution across regions, functions, and time zonesIntegrate threat intelligence, vulnerability insights, and attacker TTP research into detection logic, triage guidance, and autonomous response workflowsProduce and govern recurring and ad-hoc reporting on threats, trends, and program performance; ensure consistent narratives and decision support for stakeholdersChampion innovation and modernization of cyber defense tooling and techniques, including evaluation and adoption of new capabilities that measurably reduce riskPartner with technology, product, and business leaders to align cyber operations priorities, drive remediation ownership, and embed security-by-design practicesQualificationsBachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline or equivalent work experience7+ years of experience working in the Cybersecurity Operations or Information SecurityRelevant technical and industry certifications, such as CISSP, ISSMP, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferredExperience in one or more security domains including Security Governance and Oversight, Security Risk Management, Network Security, Threat and Vulnerability Management, or Incident Response and Forensics preferredExperience with information security risk management, including information security audits, reviews, and risk assessmentsDesired SkillsExperience with security data collection, analysis and correlationWell-developed analytic, qualitative, and quantitative reasoning skills Demonstrated creative problem-solving abilitiesSecurity event monitoring, investigation, and overall incident response processStrong time management skills to balance multiple activities and lead junior analysts as neededUnderstanding of offensive security to include common attack methodsUnderstanding of how to pivot across multiple datasets to correlate artifacts for a single security event A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.Detailed knowledge and experience in security and regulatory frameworks (ISO 27001, NIST 800 series, FFIEC, SOC2, FedRAMP, STAR, etc.)Ability to guide and mentor junior analysts in investigationsUnderstanding of enterprise detection and response technologies and processes (advanced threat detection tools, intrusion detection/prevention systems, network packet analysis, endpoint detection and response, firewalls, Anti malware/anti-virus, Security Information and Event Management tools, etc.)Experienced with Endpoint Detection & Response, email security, web application firewall, and cloud security tooling.Ability to perform risk analysis utilizing logs and other information compiled from various sourcesUnderstanding of network protocols, operating systems (Windows, Unix, Linux, MacOS, databases), and mobile device securityKnowledge of the various types of cyber-attacks and their implementationsA fundamental understanding of enterprise cybersecurity frameworks such as MITRE ATT&CK and Cyber Kill ChainAbility to document and explain technical details in a concise, understandable mannerExperience in operational processes such as security monitoring, data correlation, troubleshooting, security operations, etc.Preferred experience with Torq, 7AI, CrowdStrike, Tanium, Snowflake, Splunk, and ELKScripting/programming experience preferredEducation•Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experience“Visa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position.”The typical base pay range for this role is as follows:New York / New Jersey: $182k-227kNon–New York / New Jersey: $203k-249kdepending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.Our hybrid work schedule is four days on-site and work remotely one day per week.MUFG Benefits SummaryWe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.SummaryLocation: Tempe, AZ; Jersey City, NJType: Full time

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Global Director of Autonomous Cyber Defense and Security Event Triage (SOC) in Jersey City, NJ vacancy
  • $91.1k - $193.6k

     ...you succeed in a globally connected powerhouse...  ...in EY Information Security has a critical...  ...respond to security events as they happen. Together...  ...digital identity, cyber defense, application...  ...effectiveness of the Cyber Triage and Forensics team...  ...environment (SOC), investigating... 
    Cyber
    Full time
    Work experience placement
    Summer holiday
    Local area
    Flexible hours
    Shift work

    EY

    Hoboken, NJ
    1 day ago
  • $91.1k - $170.4k

     ...Cyber Defense Incident ResponderLocation: Hoboken Other locations...  ...help you succeed in a globally connected powerhouse of...  ...techniques to coordinate security incident response to cybersecurity events or incidents stemming...  ...Security Operations Center (SOC) Security Incident... 
    Cyber
    Summer holiday
    Local area
    Flexible hours

    EY

    Hoboken, NJ
    2 hours ago
  •  ...help you succeed in a globally connected powerhouse...  ...everyone in EY Information Security has a critical role...  ...respond to security events as they happen....  ...strategy, digital identity, cyber defense, application security...  ...that can operate autonomously and bring new, strategic... 
    Cyber

    Ernst & Young

    Hoboken, NJ
    a month ago
  • $173k - $222k

     ...Manager, AI Platform & Triage United States Be part...  ...sensitive networks—from global commerce to national defense—quietly, relentlessly, and with resolve. As cyber threats grow faster and...  ...intelligence for modern Security Operations Centers (SOCs). As the Senior Product... 
    Cyber
    Contract work
    For contractors
    For subcontractor
    Work at office

    Corelight

    Brooklyn, NY
    12 hours ago
  • $151.7k - $210k

    ## Senior Manager, Global Security OperationsApplyremote type...  .... It's how we run cyber defense at Allstate. We are hiring...  ...Operations Center (SOC) and provide senior management...  ...of our monitoring, triage, and response, and to...  ...Information and Event Management (SIEM), Security... 
    Cyber
    Contract work
    Work at office
    Work from home
    Work visa
    All shifts
    Shift work

    Allstate Northern Ireland Limited

    Brooklyn, NY
    3 days ago
  • $115k - $160k

    As a global leader in cybersecurity, CrowdStrike...  ...redefined modern security with the world’s...  ...almost 3 trillion events per day and this...  ...develop tailored cyber initiatives. The Consultant...  ...of developing a SOC, CSIRT, Fusion...  ...to develop defensible, actionable priorities... 
    Cyber
    Remote job
    Work experience placement
    Work at office
    Local area

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    3 days ago
  •  ...positions available globally. Build Something...  ...a safer, more secure environment, convert...  ...delivers production-safe autonomous pentests and other...  ...Operations cyber operators, startup...  ...into high-fidelity defensive detection. This is...  ...realities of SOC, SecOps, IR, and hybrid... 
    Cyber
    Full time
    Internship
    Remote work

    Horizon3 AI, Inc.

    Brooklyn, NY
    3 days ago
  •  ...fellow researchers and defense teams, you will investigate...  ...that enhance our security posture. The ideal candidate...  ...controls assessments, cyber exercises, or...  ...supporting vulnerability triage, patch prioritization,...  ...talents they bring to our global workforce are directly... 
    Cyber
    Worldwide

    JP Morgan Chase

    Jersey City, NJ
    5 days ago
  • $120k - $202.5k

     ...Cybersecurity (GCS) manages cyber risk across State...  ...Information Security Officer (BISO) function...  ...the first line of defense and reporting into...  ....Represent the global cybersecurity organization...  ...security, IAM/PAM, SOC/SIEM, vendor risk,...  ...issue management, triage, remediation... 
    Cyber
    Full time
    Contract work
    Temporary work
    Flexible hours

    State Street Bank

    Clifton, NJ
    5 days ago
  • $160k - $275k

     ...Technical Information Security Officer to provide US regional...  ...readiness, improving cyber resilience, and...  ...improvements.Collaborate with global threat intelligence and...  ...insights, coordinate defensive measures, and align...  ...career tips and Recruitment events that matter to you.... 
    Cyber
    Full time
    Flexible hours

    Royal Bank of Canada

    Jersey City, NJ
    4 days ago
  • $85k - $120k

    As a global leader in cybersecurity, CrowdStrike protects...  ...we’ve redefined modern security with the world’s most...  ...almost 3 trillion events per day and this traffic...  ...understanding of technical and cyber security terminology....  ...existing malware‑based defenses. Founder George Kurtz... 
    Cyber
    Remote job
    Work experience placement
    Work at office
    Local area

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    4 days ago
  • $160k - $260k

     ...the opportunity?RBC is seeking a Director, Regulatory Affairs (Global Cyber Security) to serve as the embedded advisor...  ...and external auditors, 3 lines of defense, preparing board and regulator...  ...jobs, career tips and Recruitment events that matter to you.Expand your limits... 
    Cyber
    Full time
    Flexible hours

    Royal Bank of Canada

    Jersey City, NJ
    5 days ago
  • $152.7k - $294k

     ...0Job Function: EY TechnologyEmployer: EY Global ServicesApply by: 2026-09-20Company: EYAt...  ...better working world.The Global Information Security Strategist is a senior role responsible...  ...ahead of evolving business demands and cyber risks.Key Responsibilities:Strategic Program... 
    Cyber
    Summer holiday
    Local area
    Flexible hours
    Shift work

    EY (Ernst & Young)

    Hoboken, NJ
    2 days ago
  • $150k - $225k

    Join Mizuho as a Cyber Defense, Adversary Emulation Director! The Cyber Defense organization within...  ...improving the firm’s security posture by leveraging...  ...orchestration to scale vulnerability triage, threat analysis, and...  ...cloud, preferably for a global organization. Strong... 
    Cyber
    Work at office
    Local area
    Remote work
    Worldwide

    Mizuho Financial Group Inc.

    Brooklyn, NY
    3 days ago
  • $170k - $180k

     ...every single human security engineer/analyst...  ...Gen AI to transform cyber defense. Learn more at...  ...Reporting to the Director of Product Marketing...  ...materials, website, events, and customer communications...  ...to CISOs, SOC leaders, security...  ...category of autonomous security operations... 
    Cyber
    Work at office
    Remote work
    Work from home
    Shift work
    Night shift

    Theory Ventures

    Brooklyn, NY
    4 days ago
  •  ...everything we do. L3Harris is the Trusted Disruptor in defense tech. With customers’ mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Associate Manager, Quality Management -... 
    Cyber
    Work at office
    Local area
    Flexible hours

    Harris Geospatial Solutions

    Brooklyn, NY
    2 days ago
  • $130k - $210k

     ...Company Description As the world's leading vendor of Cyber Security, facing the most sophisticated threats and attacks, we've assembled a global team of the most driven, creative, and innovative people. At Check Point, our employees are redefining the security landscape... 
    Cyber
    Temporary work
    Remote work

    Check Point Software Technologies

    Newark, NJ
    1 day ago
  • $134.5k - $265.1k

     ...As a Manager - Cyber Defense and Resilience, you will...  ...on role in delivering security engineering solutions...  ...security information and event management, security orchestration...  ...use cases such as triage assistance, workflow...  ...such as Security+, Global Information Assurance... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Jersey City, NJ
    2 days ago
  • $92.5k - $171.5k

     ...Trusted Disruptor in defense tech. With...  ...air, land, sea and cyber domains in the interest of national security. Job Title: Specialist...  ...able to work semi-autonomously as a lead designer...  ...test in the event of test failures...  ...Experience with SoC (Kintex UltraScale... 
    Cyber
    Local area
    Immediate start
    Flexible hours

    L3Harris

    Clifton, NJ
    2 days ago
  • $145k - $192.5k

     .... Join us! Job Description: Bank of America's Global Information Security (GIS) team is seeking a Cyber Threat Defense AI Security Senior Engineer to drive the integration...  ...mechanisms using predictive analytics and autonomous threat response. Required Qualifications 7+... 
    Cyber
    Work at office
    Shift work
    Day shift

    Koitecc Solutions

    Jersey City, NJ
    2 days ago
  • $235k - $350k

    As a global leader in cybersecurity, CrowdStrike protects...  ...’ve redefined modern security with the world’s most...  ...almost 3 trillion events per day and this traffic...  ...sides (offensive and defensive) of this frontier and...  ...systems that operate autonomously across cybersecurity use... 
    Work experience placement
    Work at office
    Local area

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    3 days ago
  • We’re taking on the crusty global cyber market, the "no-BS" security platform for devs. In the past, only large enterprises needed to worry about security...  ...work, hang out, and build a global company- together. Events & Travel Management: You’re the go-to for team... 
    Cyber
    Work at office
    Remote work

    Syndicate

    Brooklyn, NY
    5 days ago
  • $34.34 per hour

     ...PART TIME RESEARCH ENGINEER Center for Cyber Security New York University Tandon School of...  ...Dhabi, the Center operates alongside a global network of scholars and practitioners spanning...  ...received formal recognition in Cyber Defense, Cyber Operations, and Cyber Research... 
    Cyber
    Hourly pay
    Part time
    Immediate start

    New York University

    Brooklyn, NY
    2 days ago
  • $125k - $180k

    As a global leader in cybersecurity, CrowdStrike protects...  ...we’ve redefined modern security with the world’s most...  ...almost 3 trillion events per day and this traffic...  ...engineering, and agentic SOC workflows? What You’ll...  ...customer incidents from triage through remediation. Proven... 
    Remote job
    Work experience placement
    Work at office
    Local area
    Weekend work

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    3 days ago
  • $120k - $160k

     ...manages an organization’s cyber risk exposure in real...  ...with ServiceNow’s Security and Risk capabilities,...  ...the first of its kind autonomous defense platform for the Agentic...  ...owner for our global Account-Based Experience...  ...targeted regional field events, executive roundtables... 
    Cyber
    Work at office
    Local area
    Immediate start
    Remote work
    Flexible hours

    ServiceNow

    Brooklyn, NY
    5 days ago
  •  ...alert: SMBC Group is a top-tier global financial group....  ...including banking, leasing, securities, credit cards, and consumer finance...  ...communications during disruptive events Handle routine administration...  ...network of support partners in Cyber, IT, Third-Party and... 
    Cyber
    Work at office
    Local area
    Work from home
    Worldwide

    SMBC Group

    Brooklyn, NY
    2 days ago
  • $120k - $217.5k

     ...forState Street's Cyber Data &...  ...seeking a Lead AI Security Automation Engineer...  ...closely with Global Cyber Security...  ...AI platforms, autonomous agents, security...  ...serverless patterns, event-driven...  ...hunting, offensive/defensive security, Threat...  ...intelligence and SOC operations.... 
    Cyber
    Full time
    Temporary work
    Work at office
    Local area
    Flexible hours
    Shift work
    2 days per week

    State Street Bank

    Clifton, NJ
    3 days ago
  • $128.1k - $239.6k

    Red Team - Offensive Security Analyst - Manager Other locations: Anywhere...  ...2 The opportunity The Active Defense team is responsible for four...  ..., Anomaly Analysis, and Cyber Deception. This function plays...  ...hybrid enterprise environments. Global mindset for working with different... 
    Cyber
    Summer holiday
    Flexible hours
    Night shift
    Weekend work

    Ernst & Young Advisory Services Sdn Bhd

    Hoboken, NJ
    2 days ago
  • $70k - $95k

    ## Security Researcher (Remote)Applylocations: USA - Remotetime type:...  ...Todayjob requisition id: R29689As a global leader in cybersecurity,...  ...processing almost 3 trillion events per day and this traffic is growing...  ...maintain unique sources of cyber threat intelligence... 
    Cyber
    Remote job
    Work experience placement
    Work at office
    Local area

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    1 day ago
  • $100k - $145k

    As a global leader in cybersecurity, CrowdStrike protects the people...  ..., and we’ve redefined modern security with the world’s most...  ...processing almost 3 trillion events per day and this traffic is growing...  ...with existing malware-based defenses. Founder George Kurtz realized... 
    Remote job
    Work experience placement
    Work at office
    Local area
    Worldwide
    Flexible hours

    CrowdStrike Holdings, Inc.

    Brooklyn, NY
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Global Director of Autonomous Cyber Defense and Security Event Triage (SOC). Be the first to apply!