Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Detection & Response

$135.4k - $208.1k

Cardinal Health

What Cybersecurity Defense contributes to Cardinal Health

Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Cyber Detection & Response is responsible for establishing, leading, and continuously enhancing cybersecurity detection, monitoring, and incident response capabilities to protect the organization from evolving cyber threats. Furthermore, this leader oversees Security Operations Center (SOC) operations, cyber threat detection, incident response, threat intelligence, and security testing functions to enable rapid identification, containment, and remediation of cybersecurity threats. This role plays a critical role in driving proactive defense strategies, improving detection and response capabilities, and ensuring alignment with risk and resilience objectives.

Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)

Responsibilities

  • Develop and lead the cybersecurity detection and response strategy aligned with enterprise risk, threat landscape, and business priorities.

  • Establish governance frameworks and operating models for SOC, incident response, and threat management functions.

  • Serve as an advisor to leadership on threat trends, detection capabilities, and response readiness.

  • Drive continuous improvement of detection and response capabilities to address evolving threats and business needs.

  • Oversee SOC operations, including security logging, monitoring, alerting, and incident triage across the environment.

  • Oversee effective use of SIEM platforms to analyze correlated events, detect anomalies, and escalate potential incidents.

  • Lead the development and optimization of detection use cases, analytics, and monitoring strategies to improve visibility across the environment.

  • Oversee monitoring capabilities across IT and OT environments, ensuring coverage of critical systems and infrastructure.

  • Lead detection engineering and security tooling functions, including SIEM, SOAR, EDR, UEBA, and DLP capabilities.

  • Oversee the definition and implementation of use cases, rules, and configurations to improve automated detection, investigation, and response workflows.

  • Drive optimization and integration of security tools to enhance operational efficiency and reduce false positives.

  • Establish and lead threat intelligence capabilities to gather, analyze, and operationalize threat data from internal and external sources.

  • Oversee threat monitoring, analysis, and detection rule enhancement to proactively identify emerging threats.

  • Lead threat modeling activities to identify attack vectors, vulnerabilities, and control gaps across systems and processes.

  • Drive proactive threat hunting initiatives to identify hidden threats and indicators of compromise (IoCs) within the environment.

  • Lead enterprise incident response (IR) capabilities, including planning, testing, execution, and continuous improvement of IR processes.

  • Oversee incident response lifecycle activities including detection, triage, containment, eradication, and recovery.

  • Oversee incident response simulations and exercises to validate readiness and improve response effectiveness.

  • Enable effective coordination of incident response efforts across cybersecurity, IT, legal, and business stakeholders.

  • Manage breach notification processes and communication protocols for cybersecurity incidents.

  • Oversee digital forensics and investigative activities to determine the scope, root cause, and impact of cybersecurity incidents.

  • Ensure proper evidence collection, analysis, and documentation to support investigations and regulatory requirements.

  • Lead post-incident reviews and root cause analysis to strengthen detection and response capabilities.

  • Lead offensive and defensive security testing capabilities, including red teaming, penetration testing, and adversarial simulations.

  • Oversee blue team operations to detect, analyze, and respond to threats across enterprise environments.

  • Facilitate purple teaming activities to enhance collaboration between offensive and defensive teams and improve detection and response effectiveness.

  • Drive continuous improvement of security controls through testing, validation, and simulation exercises.

  • Collaborate with cybersecurity, IT, risk, legal, and business teams to integrate detection and response capabilities into enterprise operations.

  • Partner with architecture, engineering, and infrastructure teams to ensure detection and response requirements are embedded into system design and deployment.

  • Provide actionable insights and reporting to leadership on threat landscape, incident trends, and response effectiveness.

  • Support audit and regulatory activities by providing evidence and documentation related to detection and response processes

  • Define and track KPIs and KRIs related to detection, response, and operational performance.

  • Provide regular reporting to leadership on SOC performance, incident metrics, and threat trends.

  • Identify opportunities to enhance detection coverage, reduce response times, and improve operational efficiency.

  • Drive continuous improvement initiatives to mature detection and response capabilities.

  • Build and lead a high-performing cybersecurity detection and response team across SOC, IR, and threat management functions.

  • Develop team capabilities through training, mentoring, and structured career development initiatives.

  • Foster a culture of accountability, collaboration, and continuous improvement.

  • Ensure alignment of team capabilities with evolving threat landscape and organizational needs.

Qualifications

  • Ideally targeting individuals with 10+ years of experience in cybersecurity, with a strong focus on detection, incident response, and security operations.

  • Deep expertise in SOC operations, SIEM, incident response, and threat intelligence a plus.

  • Experience leading cybersecurity operations teams and managing complex incident response activities, a strong preference.

  • Strong understanding of cybersecurity frameworks (e.g., NIST CSF) and regulatory requirements required.

  • Demonstrated ability to communicate technical concepts and risk insights to executive leadership.

  • Strong leadership, analytical, and problem-solving skills.

  • Experience in highly regulated industries, a plus

  • Experience with advanced analytics, automation, and AI-driven security operations, a strong preference

#LI-LP

#LI-Remote

Anticipated salary range: $135,400 - $208,100

Bonus eligible: Yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here (

Vacancy posted 14 hours ago
Similar jobs that could be interesting for youBased on the Director, Cyber Detection & Response in Austin, TX vacancy
  • $221k - $331k

     ...operations that actually stop threats, not just detect them. You know the difference between a...  ...how AI and automation should be used in cyber defense, and you know where the human...  ...deployment and tuning Run SOC and incident response operations, ensuring your team responds... 
    Cyber
    Remote work

    Synopsys

    Austin, TX
    1 day ago
  • $182k - $202k

     ...security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic,...  ..., respect, and accountability. Senior Security Engineer, Detection and Response Remote Location: Austin TX, Seattle, WA, Washington... 
    Cyber
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    Austin, TX
    2 days ago
  • $176k - $242k

     ...about our benefits ( . The Senior Manager – Insider Risk Detection & Response (IRDR) is responsible for owning and operating the enterprise...  ..., operations, or reputation while partnering closely with Cyber Security, Legal, HR, Privacy, and Physical Security. The... 
    Cyber
    Full time
    Relocation

    Applied Materials

    Austin, TX
    2 days ago
  •  ...Job Posting Title: Director of Cybersecurity ---- Hiring Department: Dell...  ...enterprise infrastructure. Oversee threat detection, monitoring, and remediation activities...  ...and digital initiatives. Incident Response & Cyber Forensics Lead enterprise... 
    Cyber
    For contractors
    Immediate start

    The University of Texas at Austin

    Austin, TX
    2 days ago
  • $135.4k - $208.1k

     ...Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures...  ...at Cardinal Health. The Director, Exposure Management is responsible...  ...management initiatives with broader cyber defense and risk reduction strategies... 
    Cyber
    Temporary work
    Local area
    Immediate start
    Remote work
    Flexible hours

    Cardinal Health

    Austin, TX
    14 hours ago
  •  ...raise money and awareness together. SUMMARY As the Director of Fraud Response , you will lead a specialized team responsible for...  ...problem-solving skills, and a deep understanding of fraud detection, investigation, and resolution within the financial services... 
    Work experience placement
    Local area
    Work visa
    Flexible hours

    Q2 Software, Inc.

    Austin, TX
    5 days ago
  •  ...Director of Cybersecurity Join us at the forefront of academic medicine and digital transformation. Dell Medical School and UT...  ...Management Security Architecture & Custom Controls Incident Response & Cyber Forensics Leadership, Culture Building & Vendor Management... 
    Cyber

    The University of Texas at Austin Staff

    Austin, TX
    3 days ago
  •  ...IT Security - Advanced Roles and Responsibility Location: Austin, TX - onsite Duration: Long term Demonstrate strong knowledge in...  ...of data Conduct audit & evaluate in alignment to the supply cyber security control framework Ensure effectiveness of approved... 
    Cyber

    Software Technology Inc

    Austin, TX
    3 days ago
  • $109.2k - $223.4k

     ...Job Description The Director for Global Defense - Japan is responsible for leading and growing strategic defense and national security business in Japan...  ...solutions (e.g., cloud, data platforms, AI/analytics, cyber). Ensure proposals and delivery plans align to... 
    Cyber
    Contract work
    Temporary work
    For contractors
    Local area
    Flexible hours

    Oracle

    Austin, TX
    3 days ago
  • $131.6k - $210.3k

     ...ecosystem players to deliver these services.VCS is the business unit responsible for growing all flows between businesses and governments from...  ...Development, Product Management, Operations & Infrastructure, Cyber-Security, Client services, and key enterprise teams, across... 
    Cyber
    Work experience placement
    Work at office
    Local area
    Free visa

    Visa

    Austin, TX
    2 days ago
  • $140k - $215k

     ...pytorch. What You'll Do: Research, design, and prototype cutting-edge generative AI solutions that enhance CrowdStrike's AI Detection and Response capabilities, translating complex AI concepts into practical security features. Create, curate, and maintain high-quality... 
    Full time
    Work experience placement
    Work at office
    Local area

    CrowdStrike

    Austin, TX
    11 hours ago
  •  ...practices. The cybersecurity senior manager is responsible for leading and managing complex...  ...for client stakeholders, typically at the director, senior director and C-suite levels. The...  ...in many of the domain areas identified: Cyber Defense, Threat and Vulnerability... 
    Cyber
    Local area

    ClifyX

    Austin, TX
    2 days ago
  • $177k - $239.4k

     ...Management and Planning (CaMP)-PMO team is responsible for planning, procuring, and managing...  ...events such as Prime Day, Black Friday, and Cyber Monday, as well as longer-term capacity...  ...to a wide range of audiences including Directors and VPs across SDO businesses You... 
    Cyber
    Temporary work
    Flexible hours

    Amazon

    Austin, TX
    5 days ago
  • $59.5k - $80.5k

     ...renewal experience that aligns with company goals. Key Responsibilities: Renewal Management: Independently manage and execute the...  ..., and independence in managing a portfolio of accounts. ~ Cyber Security or technology industry experience is a plus Key... 
    Cyber
    Contract work
    Live in
    Work at office
    Local area
    Remote work
    3 days per week

    Venturefizz Product Management Community

    Austin, TX
    3 days ago
  • $178.4k - $226.7k

     ...Description The Threat Intelligence for Global Enterprise Response (TIGER) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for...  ...supports incident response teams, red teams, detections teams and teams working to prevent financial loss to... 
    Cyber
    Flexible hours
    Night shift
    Weekend work

    Amazon

    Austin, TX
    3 days ago
  • $128.1k - $239.6k

     ...Information Security (Info Sec) - Info Sec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information...  ....    The opportunity The Active Defense team is responsible for four core areas: Network Reconnaissance, Proactive... 
    Cyber
    Summer holiday
    Local area
    Remote work
    Flexible hours
    Night shift
    Weekend work

    EY

    Austin, TX
    4 days ago
  • $133.6k - $167k

     ...Description Job Description Associate Director Oncology Lifecycle Management -...  ...ovarian cancer, lung cancer, and immunotherapy response monitoring for any solid tumor. As an...  ...recruiter and the hiring team. Natera takes cyber crimes seriously, and will collaborate... 
    Cyber
    Work at office
    Immediate start
    Remote work
    Worldwide

    Natera

    Austin, TX
    5 days ago
  •  ...organizing skills Self-management Responsibilities: Identify: Asset Management...  ...Security Information Protection Detect: Anomalies and Events Security...  ...Others: Collaboration with SOC Cyber Documentation SLAs Reports/Dashboards... 
    Cyber

    Samprasoft

    Austin, TX
    4 days ago
  • $220k - $265k

     ...Description Job Description The Associate Medical Director, Genitourinary Oncology is a critical leadership role responsible for advancing clinical development, shaping...  ...a recruiter and the hiring team. Natera takes cyber crimes seriously, and will collaborate with law... 
    Cyber
    Work at office
    Immediate start
    Remote work
    Worldwide

    Natera

    Austin, TX
    13 days ago
  •  ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations...  ...Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Austin, TX
    3 days ago
  •  ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates...  ...governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Austin, TX
    1 day ago
  •  ...Virtual Director of Sales - NOLA, AI DLP, cybersecurity Our client...  ...can automatically identify, detect, and prevent data leaks at...  ...The Director of Sales will be responsible for selling platform, by interacting...  ...the Enterprise Market within Cyber Security Technology space... 
    Cyber

    Planet Green Search

    Austin, TX
    1 day ago
  •  ...SIEM tool like Elastic, decent incident response and investigation skills, any information...  ...What we're looking for: A seasoned Cyber Security professional with a strong...  ...threats, identifying their impact, and detecting them in our environment. Managing infrastructure... 
    Cyber

    eTeam

    West Lake Hills, TX
    1 day ago
  •  ...capabilities, then consider a career in Advisory. We are currently seeking a Manager, Incident Response to join our Advisory practice. Responsibilities Lead and manage cyber incident response activities, including triage, containment, eradication, and recovery... 
    Cyber
    Work experience placement
    H1b
    Local area

    KPMG

    Austin, TX
    2 days ago
  • $140.6k - $175.7k

     ...evaluation, deployment, monitoring, drift detection, and retraining Ensure training–...  ...Compliance, AI Governance) to operationalize AI responsibly Adoption, Change Management, & Impact...  ...and the hiring team. Natera takes cyber crimes seriously, and will collaborate with... 
    Cyber
    Work at office
    Immediate start
    Remote work
    Worldwide

    Natera

    Austin, TX
    13 days ago
  •  ...solutions Chance to lead and shape the company's enterprise cyber strategy What to Expect (Job Responsibilities) Drive the cybersecurity program by partnering with...  ...operations through the creation of frameworks for detecting events and modeling risk Lead compliance and posture... 
    Cyber
    Work at office
    Immediate start
    Remote work
    Flexible hours

    ThinkBAC Consulting

    Austin, TX
    1 day ago
  •  ...The Cybersecurity Analyst will be responsible for safeguarding the organization's information...  ...in network and server hardening, threat detection and response, and disaster recovery...  ...compliant, and protected against evolving cyber threats. Key Responsibilities Security... 
    Cyber

    Insight Global

    Austin, TX
    1 day ago
  • $182k - $222k

     ...delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders,...  ..., and expand how thousands of customers detect and respond to emerging threats. At...  ...week (typically Thursdays). Primary Responsibilities Success in this role will be... 
    Cyber
    Apprenticeship
    Work at office
    Local area
    Remote work
    Flexible hours
    Shift work
    1 day per week

    HackerOne

    Austin, TX
    2 days ago
  • $80.49k - $102.2k

     ...Security Program. Duties, Functions and Responsibilities Essential duties and functions,...  ..., with hands-on experience in incident detection and analysis tools, including Endpoint...  ...practices, safeguarding AUS assets from cyber-attacks. Contribute to the creation and... 
    Cyber
    Contract work
    Work at office
    Monday to Friday
    Weekend work

    City of Austin, TX

    Austin, TX
    2 days ago
  • $178.4k - $226.7k

     ...and control cost. We build systems that detect, assess, and mitigate security risk across...  ...critical to Amazon Operations, and your responsibilities will include driving root cause...  ...microservices and web services - Experience in Cyber Security and in at least one relevant... 
    Cyber
    Full time
    Temporary work
    Internship
    Seasonal work
    Flexible hours

    Amazon

    Austin, TX
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Detection & Response. Be the first to apply!