Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Detection & Response

$135.4k - $208.1k

Cardinal Health

What Cybersecurity Defense contributes to Cardinal Health

Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Cyber Detection & Response is responsible for establishing, leading, and continuously enhancing cybersecurity detection, monitoring, and incident response capabilities to protect the organization from evolving cyber threats. Furthermore, this leader oversees Security Operations Center (SOC) operations, cyber threat detection, incident response, threat intelligence, and security testing functions to enable rapid identification, containment, and remediation of cybersecurity threats. This role plays a critical role in driving proactive defense strategies, improving detection and response capabilities, and ensuring alignment with risk and resilience objectives.

Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)

Responsibilities

  • Develop and lead the cybersecurity detection and response strategy aligned with enterprise risk, threat landscape, and business priorities.

  • Establish governance frameworks and operating models for SOC, incident response, and threat management functions.

  • Serve as an advisor to leadership on threat trends, detection capabilities, and response readiness.

  • Drive continuous improvement of detection and response capabilities to address evolving threats and business needs.

  • Oversee SOC operations, including security logging, monitoring, alerting, and incident triage across the environment.

  • Oversee effective use of SIEM platforms to analyze correlated events, detect anomalies, and escalate potential incidents.

  • Lead the development and optimization of detection use cases, analytics, and monitoring strategies to improve visibility across the environment.

  • Oversee monitoring capabilities across IT and OT environments, ensuring coverage of critical systems and infrastructure.

  • Lead detection engineering and security tooling functions, including SIEM, SOAR, EDR, UEBA, and DLP capabilities.

  • Oversee the definition and implementation of use cases, rules, and configurations to improve automated detection, investigation, and response workflows.

  • Drive optimization and integration of security tools to enhance operational efficiency and reduce false positives.

  • Establish and lead threat intelligence capabilities to gather, analyze, and operationalize threat data from internal and external sources.

  • Oversee threat monitoring, analysis, and detection rule enhancement to proactively identify emerging threats.

  • Lead threat modeling activities to identify attack vectors, vulnerabilities, and control gaps across systems and processes.

  • Drive proactive threat hunting initiatives to identify hidden threats and indicators of compromise (IoCs) within the environment.

  • Lead enterprise incident response (IR) capabilities, including planning, testing, execution, and continuous improvement of IR processes.

  • Oversee incident response lifecycle activities including detection, triage, containment, eradication, and recovery.

  • Oversee incident response simulations and exercises to validate readiness and improve response effectiveness.

  • Enable effective coordination of incident response efforts across cybersecurity, IT, legal, and business stakeholders.

  • Manage breach notification processes and communication protocols for cybersecurity incidents.

  • Oversee digital forensics and investigative activities to determine the scope, root cause, and impact of cybersecurity incidents.

  • Ensure proper evidence collection, analysis, and documentation to support investigations and regulatory requirements.

  • Lead post-incident reviews and root cause analysis to strengthen detection and response capabilities.

  • Lead offensive and defensive security testing capabilities, including red teaming, penetration testing, and adversarial simulations.

  • Oversee blue team operations to detect, analyze, and respond to threats across enterprise environments.

  • Facilitate purple teaming activities to enhance collaboration between offensive and defensive teams and improve detection and response effectiveness.

  • Drive continuous improvement of security controls through testing, validation, and simulation exercises.

  • Collaborate with cybersecurity, IT, risk, legal, and business teams to integrate detection and response capabilities into enterprise operations.

  • Partner with architecture, engineering, and infrastructure teams to ensure detection and response requirements are embedded into system design and deployment.

  • Provide actionable insights and reporting to leadership on threat landscape, incident trends, and response effectiveness.

  • Support audit and regulatory activities by providing evidence and documentation related to detection and response processes

  • Define and track KPIs and KRIs related to detection, response, and operational performance.

  • Provide regular reporting to leadership on SOC performance, incident metrics, and threat trends.

  • Identify opportunities to enhance detection coverage, reduce response times, and improve operational efficiency.

  • Drive continuous improvement initiatives to mature detection and response capabilities.

  • Build and lead a high-performing cybersecurity detection and response team across SOC, IR, and threat management functions.

  • Develop team capabilities through training, mentoring, and structured career development initiatives.

  • Foster a culture of accountability, collaboration, and continuous improvement.

  • Ensure alignment of team capabilities with evolving threat landscape and organizational needs.

Qualifications

  • Ideally targeting individuals with 10+ years of experience in cybersecurity, with a strong focus on detection, incident response, and security operations.

  • Deep expertise in SOC operations, SIEM, incident response, and threat intelligence a plus.

  • Experience leading cybersecurity operations teams and managing complex incident response activities, a strong preference.

  • Strong understanding of cybersecurity frameworks (e.g., NIST CSF) and regulatory requirements required.

  • Demonstrated ability to communicate technical concepts and risk insights to executive leadership.

  • Strong leadership, analytical, and problem-solving skills.

  • Experience in highly regulated industries, a plus

  • Experience with advanced analytics, automation, and AI-driven security operations, a strong preference

#LI-LP

#LI-Remote

Anticipated salary range: $135,400 - $208,100

Bonus eligible: Yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here (

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Director, Cyber Detection & Response in Columbus, OH vacancy
  • $135.4k - $208.1k

     ...Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures...  ...at Cardinal Health. The Director, Exposure Management is responsible...  ...management initiatives with broader cyber defense and risk reduction strategies... 
    Cyber
    Temporary work
    Local area
    Immediate start
    Remote work
    Flexible hours

    Cardinal Health

    Columbus, OH
    2 days ago
  • $66.9k - $82.1k

     ...Position Overview The Cybersecurity Incident Response Engineer, Mid supports the detection, containment, and recovery of cybersecurity incidents across...  ...service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation... 
    Cyber
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    1 day ago
  • $80.2k - $111.3k

     ...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident...  ...the organization's ability to prevent, detect, and rapidly respond to sophisticated...  ...management platforms integrated with SOC and cyber defense functions. Certifications such... 
    Cyber
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    4 days ago
  • Phoenix Cyber is seeking a Cybersecurity Engineer in Columbus, Ohio. The role requires a degree in a STEM-related discipline and a minimum of 5 years of experience in cybersecurity. Key responsibilities include developing and deploying security solutions, implementing... 
    Cyber

    Phoenix Cyber

    Columbus, OH
    4 days ago
  •  ...Director, Cyber Mission Focused Tools Battelle delivers when others can't. We conduct research and development, manage national laboratories...  ...cyber capabilities, including full profit and loss (P&L) responsibility. This role demands a rare combination of hands-on offensive... 
    Cyber
    Work at office
    Local area
    Remote work
    Flexible hours

    Battelle

    Columbus, OH
    2 days ago
  •  ...The role involves designing secure AI solutions for critical cyber use cases and collaborating with various teams to drive innovation...  ...experience and 3 years working with applied ML/LLM systems. Responsibilities include delivering AI solutions, establishing security... 
    Cyber

    JPMorgan Chase & Co.

    Columbus, OH
    1 day ago
  • $167.28k - $196.8k

     ...quantitative factors, including KRIs and KPIs. Serving as the Directly Responsible Individual (DRI) for key security initiatives or workstreams...  ...methodologies ~ Working knowledge of and experience in cyber/security domain ~ Fluency in leveraging AI in daily workflows... 
    Cyber
    Temporary work
    Local area

    Coinbase

    Columbus, OH
    4 days ago
  • $87.7k - $164k

    Ernst & Young Oman in Columbus, Ohio is seeking a Cyber Triage and Forensics Incident Analyst. Responsibilities include investigating security incidents, performing digital forensic analysis, and coordinating remediation efforts. Candidates should have 5+ years experience... 
    Cyber

    Ernst & Young Oman

    Columbus, OH
    4 days ago
  • Battelle Memorial Institute is seeking a Director for Cyber Mission Focused Tools in Columbus, OH. The role involves leading an Offensive Cyber organization, providing executive leadership for strategy, mission delivery, and business growth. The candidate should have 1... 
    Cyber
    Remote work
    Flexible hours

    Battelle Memorial Institute

    Columbus, OH
    1 day ago
  •  ...Cyber Security Analyst/Implementation Specialist Responsibility for information cyber security analysis & response with the mission of protecting the firm from...  ...Vulnerability Management, Threat Vector Analysis, Intrusion Detection and Prevention, Incident Management and Response... 
    Cyber

    Tech Tammina

    Columbus, OH
    5 days ago
  •  ...Federal cybersecurity technology program responsible for securing enterprise infrastructure...  ...configuration, and sustainment of Intrusion Detection and Prevention Systems (IDS/IPS) . This...  ...SNORT signatures to detect emerging cyber threats. Analyze threat intelligence... 
    Cyber
    Full time
    Contract work

    IP-Plus Consulting, Inc.

    Columbus, OH
    2 days ago
  •  ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations...  ...Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    4 days ago
  • $127.5k - $251.1k

     ...CYBERSECURITY ENGINEER (4) Category: Cyber Security Main location: United...  ...Columbus, OH. Your future duties and responsibilities: In this role, you'll be at...  ...multiple sources including logs, Intrusion Detection Systems (IDS), intelligence reports,... 
    Cyber
    Full time
    Local area

    CGI

    Columbus, OH
    4 days ago
  •  ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates...  ...governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    3 days ago
  •  ...learning solutions that directly support Cyber Operations. In this role, you'll work...  ...deliver impactful AI solutions. Job Responsibilities Work closely with data scientists...  ...and logging to track model performance, detect anomalies, and ensure smooth operation.... 
    Cyber

    Chase

    Columbus, OH
    15 days ago
  •  ...Essential Expertise and Scope of Work The Cyber Security Engineer must possess a minimum...  ...and risk prioritization to incident response. 1. Vulnerability Management & Assessment...  ...experience with Network Security and threat detection Incident Response: 10 years of... 
    Cyber
    Contract work

    Carlsbad Tech

    Columbus, OH
    4 days ago
  • $55.7k - $82.1k

     ...The Cybersecurity Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and triage potential cybersecurity threats targeting mission-critical systems and data. The role performs initial investigations, distinguishes false positives... 
    Contract work
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    3 days ago
  • $127.5k - $251.1k

     ...Title CYBERSECURITY ENGINEER (4) Category Cyber Security City Columbus, Ohio, United...  ...Columbus, OH. Your future duties and responsibilities In this role, you'll be at the...  ...multiple sources including logs, Intrusion Detection Systems (IDS), intelligence reports, and... 
    Cyber
    Permanent employment
    Full time
    Local area

    CGI Njoyn

    Columbus, OH
    1 day ago
  • $168.5k - $271.2k

     ...enterprise-wide IAM solutions and will be responsible for establishing secure identity...  ...machine learning to improve access risk detection, behavioral analytics, and anomaly detection...  ...Fraudulent job postings may be used by cyber criminals to target your personally identifiable... 
    Cyber
    Temporary work
    Work experience placement
    H1b
    Work at office
    Monday to Friday

    Fiserv

    Columbus, OH
    3 days ago
  • $90k - $109k

     ...Creates cyber-intelligence tools / methods and performs research and analysis in order...  ...teams to improve automation and detection of threat actors. Engage with technical...  ...comprehensive inventory of all duties, responsibilities and qualifications required of employees... 
    Cyber
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Columbus, OH
    2 days ago
  •  ...Cybersecurity Engineer partners closely with Security Incident Response, Cyber Threat Intelligence, and Cybersecurity Architecture teams to...  ..., scripting, automating, and integrating tools that support detection, response, compliance, and data protection. Write and maintain... 
    Cyber
    Temporary work
    Flexible hours

    NetJets

    Columbus, OH
    2 days ago
  •  ...leading law firm based in Columbus is seeking a SOC/Incident Response Engineer to bolster its cybersecurity efforts. This hybrid position...  ...threats, conducting incident responses, and improving detection capabilities. The ideal candidate should have 3-7 years of experience... 

    Benesch, Friedlander, Coplan & Aronoff

    Columbus, OH
    3 days ago
  • $128k - $216k

     ...global scale, come make a difference at Fiserv. Job Title Cyber Network Engineer About your role: You will be at the...  ...oversight and subject matter expertise for Network Detection and Response (NDR) platforms, including visibility design, traffic coverage... 
    Cyber
    Full time
    Contract work
    Temporary work
    H1b

    Fiserv

    Columbus, OH
    5 days ago
  • $85k

     ...through the research, development, and implementation of advanced threat detection use cases aligned with emerging cyber threats, threat intelligence, and operational feedback. This position is responsible for identifying gaps in existing security monitoring, analytics, and... 
    Cyber
    Contract work
    Immediate start

    AGE Solutions LLC

    Columbus, OH
    2 days ago
  • $180k - $303.6k

     ...About the Role PagerDuty is seeking a Director of Pricing & Monetization to own the...  ...Dutonian. People Leaders at PagerDuty are responsible for creating high performance...  ...at its core, PagerDuty empowers teams to detect and resolve issues in real time, orchestrate... 
    Local area
    Flexible hours

    PagerDuty

    Columbus, OH
    1 day ago
  •  ...pride ourselves on our unique culture. Responsibilities Lead the organization’s information...  ...Run core security operations: threat detection, security monitoring, incident response...  ...and training initiatives to strengthen cyber hygiene across the organization. Qualifications... 
    Cyber
    Full time
    Local area
    Flexible hours

    RadNet, Inc.

    Columbus, OH
    4 days ago
  • $90k - $110k

     ...Information Security Officer , is responsible for designing, implementing,...  ..., encryption, intrusion detection systems, web filtering, authentication...  ...strategies for all cyber security policies and procedures...  ...collaborate with the directors/managers in enterprise IT, government... 
    Cyber
    Temporary work
    For contractors
    Live in
    Local area

    Franklin County Data Center (FCDC)

    Columbus, OH
    1 day ago
  • $97.9k - $177.4k

     ...Cybersecurity Operations Center, focused on advancing detection engineering, automated response, and threat intelligence capabilities to defend critical...  ...Software Development Lifecycle, Access Management, and Cyber Security Tools (Security Incident Event Management (SIEM... 
    Cyber
    Full time
    Temporary work
    Work at office
    Immediate start
    Remote work
    Afternoon shift

    Bread Financial Holdings

    Columbus, OH
    4 days ago
  •  ...Job Title: Senior IT Director, Cyber - Security Engineering Location: Block 23 What you'll do: As a Senior...  ...engineering KPIs (coverage, MTTR, control efficacy) to optimize detection, prevention, and response capabilities. What you'll need: ~15+ years... 
    Cyber
    Temporary work

    Western Alliance Bank

    Columbus, OH
    4 hours ago
  • $110k - $186k

     ...a difference at Fiserv. Job Title Cyber Threat Intelligence Analyst What does...  ...member of our Cybersecurity Operations team, responsible for identifying, tracking, and...  ...operational, and strategic levels. Tactical Detection Support: Contextualize threat behavior... 
    Cyber
    Full time
    Contract work
    Temporary work
    H1b

    Fiserv

    Columbus, OH
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Detection & Response. Be the first to apply!