Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Global Director of Autonomous Cyber Defense and Security Event Triage (SOC)

MUFG

Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.The Global Director of Autonomous Cyber Defense and Security Event Triage leads the strategy, execution, and continuous improvement of a 24/7 global cyber defense and security event triage function. This role is accountable for globally protecting enterprise assets and services by driving outcomes across detection engineering, automated response, incident triage, and threat hunting. The director oversees global cyber operations performance, operating rhythms, and service delivery across multiple environments and partners, while owning budget planning and financial stewardship for the function. Additionally, the role advances autonomous defense capabilities by applying AI/ML and LLM-enabled workflows to improve alert quality, reduce time to detect/respond, and standardize decisioning, documentation, and remediation at scale. The director also ensures continuous validation of controls and detections through purple team execution aligned to adversary behaviors.Major ResponsibilitiesDirect and mature a 24/7 global cyber operations model for security event monitoring, triage, incident response partnership, and threat hunting across multiple environmentsOwn functional strategy, multi-year roadmap, and KPI/OKR outcomes for autonomous cyber defense and security event triage (e.g., MTTD/MTTR, false-positive reduction, containment SLAs)Work with the Global Head to define the vision for Autonomous Cyber Defense and Security Event Triage, and execute against that vision in alignment with the strategic designOversee budget planning, vendor management, and financial governance for global cyber operations tooling, services, and staffing; optimize spend to risk reduction and service performanceLead, mentor, and scale high-performing global teams (employees and partners); define operating rhythms, coverage models, escalation paths, and on-call expectationsServe as a lead escalation contact in a 24/7 environment; guide appropriate resources to resolutionProvide executive-level oversight for audit, risk, and regulatory engagements related to cyber operations; ensure processes, evidence, and metrics meet policy and compliance requirementsDeliver leadership reporting on cyber operations health, emerging threats, and risk posture; translate technical findings into business impact and prioritized actionsDrive AI/ML/LLM-enabled autonomous defense initiatives, including alert enrichment, case summarization, analyst co-pilots, automated containment, and continuous learning to improve signal-to-noiseEstablish governance for detection engineering, triage decisioning, playbooks, and automation (SOAR/EDR/SIEM) to standardize response, reduce gaps, and improve response timesLead critical incident triage and escalation governance; partner with incident response, infrastructure, identity, and application teams to coordinate containment and recoveryOversee monitoring of third-party security service providers and managed tooling to ensure coverage, quality, and alignment to enterprise standards and SLAsBuild an operations analytics program to measure and continuously improve triage accuracy, response efficiency, backlog health, and automation effectiveness across regions and shiftsSponsor and execute a purple team program (red/blue collaboration) to validate detections and response through adversary emulation aligned to MITRE ATT&CK; track gaps to closureOversee proactive threat hunting and continuous control validation to identify adversary behaviors, reduce dwell time, and harden critical servicesProvide global operational leadership during cyber events by coordinating communications, handoffs, and technical execution across regions, functions, and time zonesIntegrate threat intelligence, vulnerability insights, and attacker TTP research into detection logic, triage guidance, and autonomous response workflowsProduce and govern recurring and ad-hoc reporting on threats, trends, and program performance; ensure consistent narratives and decision support for stakeholdersChampion innovation and modernization of cyber defense tooling and techniques, including evaluation and adoption of new capabilities that measurably reduce riskPartner with technology, product, and business leaders to align cyber operations priorities, drive remediation ownership, and embed security-by-design practicesQualificationsBachelor’s degree in Information Technology, Cyber Security, Computer Science, or related discipline or equivalent work experience7+ years of experience working in the Cybersecurity Operations or Information SecurityRelevant technical and industry certifications, such as CISSP, ISSMP, GCIA, CISM, CEH, GCFA, GCFE, GCIH, or GSEC are preferredExperience in one or more security domains including Security Governance and Oversight, Security Risk Management, Network Security, Threat and Vulnerability Management, or Incident Response and Forensics preferredExperience with information security risk management, including information security audits, reviews, and risk assessmentsDesired SkillsExperience with security data collection, analysis and correlationWell-developed analytic, qualitative, and quantitative reasoning skills Demonstrated creative problem-solving abilitiesSecurity event monitoring, investigation, and overall incident response processStrong time management skills to balance multiple activities and lead junior analysts as neededUnderstanding of offensive security to include common attack methodsUnderstanding of how to pivot across multiple datasets to correlate artifacts for a single security event A diverse skill base in both product security and information security including organizational structure and administration practices, system development and maintenance procedures, system software and hardware security controls, access controls, computer operations, physical and environmental controls, and backup and recovery procedures.Detailed knowledge and experience in security and regulatory frameworks (ISO 27001, NIST 800 series, FFIEC, SOC2, FedRAMP, STAR, etc.)Ability to guide and mentor junior analysts in investigationsUnderstanding of enterprise detection and response technologies and processes (advanced threat detection tools, intrusion detection/prevention systems, network packet analysis, endpoint detection and response, firewalls, Anti malware/anti-virus, Security Information and Event Management tools, etc.)Experienced with Endpoint Detection & Response, email security, web application firewall, and cloud security tooling.Ability to perform risk analysis utilizing logs and other information compiled from various sourcesUnderstanding of network protocols, operating systems (Windows, Unix, Linux, MacOS, databases), and mobile device securityKnowledge of the various types of cyber-attacks and their implementationsA fundamental understanding of enterprise cybersecurity frameworks such as MITRE ATT&CK and Cyber Kill ChainAbility to document and explain technical details in a concise, understandable mannerExperience in operational processes such as security monitoring, data correlation, troubleshooting, security operations, etc.Preferred experience with Torq, 7AI, CrowdStrike, Tanium, Snowflake, Splunk, and ELKScripting/programming experience preferredEducation•Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experience“Visa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position.”The typical base pay range for this role is as follows:New York / New Jersey: $182k-227kNon–New York / New Jersey: $203k-249kdepending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.Our hybrid work schedule is four days on-site and work remotely one day per week.MUFG Benefits SummaryWe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.SummaryLocation: Tempe, AZ; Jersey City, NJType: Full time

Vacancy posted 22 hours ago
Similar jobs that could be interesting for youBased on the Global Director of Autonomous Cyber Defense and Security Event Triage (SOC) in Tempe, AZ vacancy
  •  ...Director, HR Business Partner L3Harris is dedicated to recruiting and developing...  ...is the Trusted Disruptor in defense tech. With customers' mission-...  ...connecting the space, air, land, sea and cyber domains in the interest of national security. L3Harris is seeking a... 
    Cyber

    L3Harris Technologies

    Tempe, AZ
    3 days ago
  • About Gen: Gen is a global company dedicated to powering...  ...empowerment and cyber safety for the first digital...  ...them grow, manage and secure their digital and...  ...from identification and triage through prioritization...  ...e.g., ISO 27001, NIS2, SOC 2, GDPR, PCI DSS). Strong... 
    Cyber
    Flexible hours

    Gen Digital Inc

    Tempe, AZ
    5 days ago
  •  ...Financial Services unit is a global leader in driving digital transformation...  ...optimize performance Conduct security checks, recovery drills, and...  ...• Experienced working in a Cyber-Security or Information...  ...Technology|Infrastructure Security|SOC Operations Technical/Domain... 
    Cyber
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Tempe, AZ
    22 hours ago
  •  ...everything we do. L3Harris is the Trusted Disruptor in defense tech. With customers' mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Location: Tempe, AZ Job Schedule: 9/80:... 
    Cyber
    Local area

    L3Harris Technologies

    Tempe, AZ
    2 days ago
  •  ...everything we do.L3Harris is the Trusted Disruptor in defense tech. With customers' mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security.Job Location: Londonderry, NH or Tempe, AZJob Schedule... 
    Cyber
    Local area

    L3Harris Technologies

    Tempe, AZ
    3 days ago
  •  ...everything we do.L3Harris is the Trusted Disruptor in defense tech. With customers' mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security.Job Location: Tempe, AZJob Schedule: 9/80: Employees... 
    Cyber
    Local area
    Night shift

    L3Harris Technologies

    Tempe, AZ
    1 day ago
  •  ...Title: Director, IT Department: 820900...  ...Corp. is a leading global technology company...  ...approve the System Security Plan and Plan of Action...  ...and confirm it is defensible against the...  ...decision to report a cyber incident and the 7...  ...maintains the detection, triage, and evidence-... 
    Cyber
    For subcontractor

    Comtech Telecom

    Chandler, AZ
    20 hours ago
  • $148.2k - $263k

     ...team at the forefront of national security, providing advanced solutions to government...  ...(COE). Our team manages a global footprint of 53,000+ nodes across...  ...engineer features across the entire Cyber Kill Chain, building ML-driven defenses to neutralize APTs. From... 
    Cyber
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work

    ManTech

    Chandler, AZ
    3 days ago
  • $114.1k - $268.18k

     ...seeking a Lead Specialist, Cloud Security to join our Managed Services...  ...coordination and oversight of Cyber Managed Services delivery...  ...clients, KPMG stakeholders, and global delivery teams.Leads operational...  ...request management, driving timely triage, escalation, resolution,... 
    Cyber
    H1b
    Local area

    KPMG

    Tempe, AZ
    4 days ago
  •  ...multi-billion dollar (with a B!) global organization? We offer all...  ...:Microchip's Product Security Office (PSO) is committed to...  ....You will be responsible for triaging and supporting resolution of...  ...vulnerabilities under the EU Cyber Resilience ActSecurity Standards... 
    Cyber
    Full time
    Work at office

    Microchip Technology

    Chandler, AZ
    2 days ago
  •  ...everything we do. L3Harris is the Trusted Disruptor in defense tech. With customers' mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Manufacturing Technician C Job... 
    Cyber
    Work experience placement
    Work at office
    Local area
    Shift work

    L3Harris

    Tempe, AZ
    22 hours ago
  • $128k - $181.25k

     ...looking for a Senior Application Security Engineer (Offensive / Red...  ...response, and measurably improved defenses. We're looking for someone...  ...bounty program end to end — triage, impact assessment, risk...  ...participate in CTFs. Spend time on cyber security training platforms (... 
    Cyber
    Remote work

    Shutterfly

    Tempe, AZ
    4 days ago
  •  ...HR Business Partner Gen is a global company dedicated to powering Digital Freedom through...  ...is rooted in financial empowerment and cyber safety for the first digital generations,...  ...consumers and help them grow, manage and secure their digital and financial lives. We're... 
    Cyber
    Flexible hours
    Shift work

    Gen Digital

    Tempe, AZ
    3 days ago
  • $153k - $297k

     ...currently seeking an Associate Director, Content Development,...  ...Automation to join our Enterprise Security Services organization.Responsibilities...  ...with Threat Intelligence, SOC, and Incident Response teams to...  ...metrics, and tracesStreamline Cyber Operations by automating... 
    Cyber
    H1b
    Local area

    KPMG

    Tempe, AZ
    2 days ago
  • $63.9k - $95.9k

     ...history. As one of the largest global security companies in the world,...  ...Program under Dept. of Defense Instruction 1322.29 . NG-MIP...  ...systems or systems subject to cyber security policies. Management...  ...in Vice President or Director positions may be eligible for... 
    Cyber
    Full time
    Work experience placement
    Internship
    Relocation
    Shift work

    Northrop Grumman

    Chandler, AZ
    2 days ago
  •  ...are currently seeking a Security Analysis Specialist...  ...abilities  Security event monitoring, investigation...  ...cybersecurity events. Triage cases based on output from...  ...Information Technology, Cyber Security, Computer...  ...serving 75% of the Fortune Global 100. We are committed to... 
    Cyber
    Work at office
    Remote work
    Flexible hours

    NTT DATA, Inc.

    Tempe, AZ
    a month ago
  •  ...Harris Technologies is the Trusted Disruptor in the defense industry. With customers’ mission-critical needs always...  ...solutions connecting the space, air, land, sea and cyber domains in the interest of national security.Job Title: Assembly B - Dark roomJob Code: 27837Job... 
    Cyber
    Work experience placement
    Local area

    D.O.M. magazine

    Tempe, AZ
    1 day ago
  •  ...multi-billion dollar (with a B!) global organization? We offer all...  ...Description:Join the Team That's Securing the Future of Embedded...  ...company-wide readiness for the EU Cyber Resilience Act and other applicable...  ...for vulnerability intake, triage, validation, severity assessment... 
    Cyber
    Full time
    Work at office
    Worldwide

    Microchip Technology

    Chandler, AZ
    2 days ago
  • About Gen Gen is a global company dedicated to powering Digital Freedom...  ...in financial empowerment and cyber safety for the first digital...  ...help them grow, manage and secure their digital and financial lives...  ...strategic content creation, events and content syndication. As the... 
    Cyber
    Flexible hours

    Gen

    Tempe, AZ
    1 day ago
  • $150k - $176k

    About Gen Gen is a global company dedicated to powering Digital Freedom...  ...in financial empowerment and cyber safety for the first digital...  ...help them grow, manage and secure their digital and financial lives...  ...as an Associate Creative Director. This is a senior individual contributor... 
    Cyber
    Flexible hours

    gen.video

    Tempe, AZ
    2 days ago
  • $134.6k - $230.8k

     ...UnitedHealth GroupOptum Tech is a global leader in health care...  ...Connecting. Growing together.The Director of Architecture for Agentic...  ...reliability, platform engineering, and security teams to ensure availability,...  ...agentic workflows or autonomous systemsPreferred... 
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    UnitedHealth Group

    Tempe, AZ
    3 days ago
  • $118.7k - $243.7k

     ...Summary As a Manager in AI Security Engineering, you will play a...  ...responsible for managing AI defensive technologies and the...  ...deliver services including: Cyber SecurityTechnology SupportTechnology...  ...direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox... 
    Cyber

    Deloitte

    Gilbert, AZ
    4 days ago
  • Opportunity OverviewTeam Overview:The Application Security Architect, Agentic Secure Code Architect is a hands-on architecture-focused...  ...governance processes, financial services industries authorities, and cyber security frameworks (NIST SSDF, NIST CSF 2.0, NYDFS, FINRA, SOX... 
    Cyber
    Temporary work
    Work at office
    Home office
    Flexible hours
    3 days per week

    Edward Jones

    Tempe, AZ
    3 days ago
  • $102.5k - $210.6k

     ...3/2026. Work you’ll do As a Lead Cloud Security Analyst, you are an advanced individual contributor...  ...and guiding strategic alignment between cyber and infrastructure domains. You’ll serve...  ..., please direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox@... 
    Cyber
    Full time
    Flexible hours
    Shift work

    Deloitte

    Gilbert, AZ
    2 days ago
  •  ...Assistant Vice President, Red Team & AI Security supports the planning, execution, and reporting...  ...exploitable weaknesses, validate defensive controls, and translate findings into practical...  ...appropriate.Partner with blue team, cyber defense, engineering, governance, and... 
    Cyber
    Full time
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Tempe, AZ
    2 days ago
  •  ...the firm's strategic goals while balancing agility, resiliency, security, risk management, operational excellence, and long-term...  ...withstand, recover from, and adapt to operational disruptions, cyber incidents, technology failures, and evolving business and regulatory... 
    Cyber
    Temporary work
    Work at office
    Flexible hours

    Edward Jones

    Tempe, AZ
    2 days ago
  • Viasat is seeking a highly skilled Business Development Manager to drive new government contracts within the Advanced Cyber and Electromagnetic Systems unit. The role requires deep DoD relationships, strategic capture management, and coordination with engineering, product... 
    Cyber

    Viasat

    Tempe, AZ
    3 days ago
  • Amkor Technology seeks a Global HR Business Partner reporting to the Chief People Officer to drive HR initiatives across a global environment. You will partner with senior leadership, shape talent strategies, and lead workforce transformation while aligning HR programs... 

    Amkor Technology , Inc.

    Tempe, AZ
    5 days ago
  • $86k - $138k

    ResponsibilitiesPeratons' Cyber Mission sector is looking for a SOC Team Lead to support the Department of Homeland Security.Location: Chandler, AZ.Role and Responsibilities: Investigate...  ...or artifacts related to an incident or event.QualificationsBasic Requirements:... 
    Cyber
    Contract work
    Shift work

    Peraton Corporation

    Chandler, AZ
    2 days ago
  • **Must be a U.S. Citizen** Phoenix Cyber is looking for SOC Analysts to join our client delivery team. This is onsite at the client location...  ...network traffic, Intrusion Detection Systems (IDS), security events and logs; Prioritize and differentiate between potential... 
    Cyber
    Shift work
    Night shift

    Phoenix Cyber

    Chandler, AZ
    22 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Global Director of Autonomous Cyber Defense and Security Event Triage (SOC). Be the first to apply!