Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Threat Detection & Response Team Lead

$160k - $185k

Control Risks

The Cyber Threat Detection & Response Team Lead will play a pivotal role in building and leading a world-class Cyber Intelligence program for a major client of Control Risks. This role will be responsible for developing the strategy, building out capabilities, and leading a team of security professionals to proactively detect, triage, and respond to cyber threats.


This position provides technical direction and administrative oversight on all cybersecurity matters, ensuring the protection of the client's systems, networks, and data. The Manager supports a strong first line ownership model by partnering with technology and business stakeholders to embed security into planning, development, and operational activities.

  • Working closely with client stakeholder, build, manage, and scale a Cyber Threat Intelligence Team from the ground up.
  • Lead on Developing Standard Operating Procedures for threat intelligence activities, taking into account specific client activities and stakeholders, such as tooling, reporting lines, and out of hours incidents.
  • Lead on managing most severe and critical cyber security incidents including supporting incident responders with reporting, updates and investigations to aid incident response and crisis management in a timely, accurate and professional manner.
  • Train, and mentor threat intelligence analysts, engineers, and threat hunters.
  • Establish operational processes, escalation paths, and playbooks.
  • Oversee the triage of cyber events, ensuring rapid identification, investigation, and remediation.
  • Manage incident response activities, coordinating across IT, Legal, Risk, and other stakeholders.
  • Develop metrics, KPIs, and reporting to measure SOC effectiveness.
  • Lead proactive threat hunting operations to identify potential compromises and undetected malicious activity.
  • Integrate threat intelligence into SOC workflows and leverage intelligence to inform response and prevention strategies.
  • Evaluate and optimize the client's technology stack (SIEM, SOAR, EDR, threat intelligence platforms, etc.).
  • Drive continuous improvement of detection rules, automation, and response capabilities.
  • Recommend emerging tools and processes to enhance maturity.
  • Conduct regular check-ins, provide coaching and feedback, manage performance reviews and improvement plans, and support career development with the members of your team.
  • Serve as the main liaison between team members and ECS program management team, ensuring timely program and personnel updates and controlling quality on client deliverables.
  • With the support of the Talent Acquisition team, participate in hiring processes ensuring team resourcing aligns with client expectations and program needs.
  • Lead onboarding tasks (e.g., joiner tickets, scheduling, equipment, success plans), manage offboarding logistics and leaver tickets, and ensure operational continuity.
  • Manage team schedules, approve PTO, ensure timesheet compliance, and maintain a consistent high-quality service to the client.
  • Working closely with the ECS program management team, align on overall program strategy and priorities to create clear, actionable, team deliverables.
Requirements
  • 10-12 years of experience in cybersecurity, cyber threat intelligence, or cyber security operations.
  • Leadership in an threat intelligence environment a plus
  • Ability to distil highly technical information into more business centric, risk orientated language for presentation to senior leadership.
  • Experience with: Splunk (or other event monitoring capability), Crowdstrike, RecordedFuture, MS sentinel, SentinelOne, OpenCTI, MISP, Proofpoint.
  • Deep knowledge of incident response, digital forensics, malware analysis, and threat intelligence.
  • Hands-on experience with SOC technologies such as SIEM, SOAR, EDR, IDS/IPS, and log management tools.
  • Strong understanding of MITRE ATT&CK framework, NIST Cybersecurity Framework, and industry best practices.
  • Excellent leadership, communication, and stakeholder management skills.
  • Relevant certifications preferred: CISSP, CISM, GIAC (GSOM and GCTI), or equivalent.
Benefits

Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
  • Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
  • As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.

The base salary range for this position is $160,000-185,000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience.

Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.

Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit
Vacancy posted 11 hours ago
Similar jobs that could be interesting for youBased on the Cyber Threat Detection & Response Team Lead in San Francisco, CA vacancy
  • A leading satellite communications firm located in California...  ...and countering digital threats, particularly in...  ...malware and leading incident response efforts. The role...  ...understanding of evolving cyber threats and a passion...  .... Join a dynamic team that plays a crucial role... 
    Cyber

    Astranis Space Technologies

    San Francisco, CA
    5 days ago
  • $110k - $160k

     ...seeking a SOC Analyst II in San Francisco to help defend against evolving cyber threats. This mid-career role demands a strong technical foundation and involves day-to-day monitoring and incident response. The ideal candidate will possess strong analytical skills,... 
    Cyber

    CHAOS Industries

    San Francisco, CA
    3 days ago
  • $182k - $202k

     ...leader in Continuous Threat Exposure...  ...pentesting, AI red teaming, and code security...  ...continuous reduction of cyber risk for enterprises...  ...Engineer, Detection and ResponseRemote...  ...rebuilding our Detection & Response function with an...  ...detections and leading incident response... 
    Cyber
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    San Francisco, CA
    1 day ago
  • $168k - $240k

     ..., reach, and impact. The Department: Threat Detection & Response In the emerging industry of digital assets...  ...experts). The Gemini Security team forms the backbone of all that we do and...  ...crucial in shaping our security strategy, leading the design and implementation of... 
    Suggested
    Work at office
    Remote work
    Flexible hours

    Skydrop

    San Francisco, CA
    3 days ago
  • $124k - $329.2k

     ...GitHub GitHub is the world's leading platform for agentic...  ...GitHub and its ecosystem. Threat Detection and Response is a core function of Security...  ...systems. The TDR team is made up of analysts and...  ...analysis, security research, cyber security, security engineering... 
    Cyber
    Ongoing contract
    Remote work

    GitHub

    San Francisco, CA
    3 days ago
  •  ...A leading cybersecurity company in San Francisco seeks a Cybersecurity Lead to oversee...  ...security monitoring tools, improving incident response processes, and leading a team to strengthen the company's resilience against cyber threats. Candidates should have over 8 years of... 
    Cyber

    A10 Networks

    San Francisco, CA
    3 days ago
  • $128.1k - $239.6k

     ...connected powerhouse of diverse teams and take your career...  ...) - Info Sec prevents, detects, responds and mitigates cyber-risk, protecting EY and client...  ...Active Defense team is responsible for four core areas:...  ...defensive teams. In the threat hunting capacity, the analyst... 
    Cyber
    Summer holiday
    Local area
    Remote work
    Flexible hours
    Night shift
    Weekend work

    EY

    San Francisco, CA
    3 days ago
  •  ...A leading technology firm is seeking a skilled Cyber Security Engineer in San Francisco to protect their computer systems and networks from cyber threats. The role involves designing, implementing, and maintaining security measures to ensure system integrity and confidentiality... 
    Cyber

    Yeah! Global

    San Francisco, CA
    3 days ago
  • $347k

     ...About the Team OpenAI's Security organization...  ...exists to enable safe, responsible innovation at scale. As...  ...environments by building advanced detection systems, driving real-...  ...delivering actionable threat intelligence to stay...  ...Detection and Response Lead to own and scale... 

    OpenAI

    San Francisco, CA
    5 days ago
  •  ...Detection and Response Lead As Detection and Response Lead, you'll build and scale the foundations of...  ...instincts. You will build and mentor a team, partner closely with Engineering and...  ...observability, detection and response, and threat intelligence, hiring and scaling these... 

    Serval

    San Francisco, CA
    11 hours ago
  • $120k - $140k

    The Cyber Threat Intelligence Analyst will play a critical role in...  ...cyber threat intelligence team. Working closely with the Team Lead, this role will focus on...  ...directly contributing to the detection and defense of cyber threats. Responsibilities Investigate, triage, and... 
    Cyber
    Work at office
    Remote work
    Flexible hours

    Control-Risks

    San Francisco, CA
    1 day ago
  • A leading AI research organization in San Francisco is seeking a Global Detection and Response Lead to oversee cybersecurity operations. You will set the strategy for incident response...  ...security events, and partner with various teams to enhance security measures. This role... 

    OpenAI

    San Francisco, CA
    1 day ago
  • $300k - $405k

     ...Security Engineer: Detection and Response Join to apply for the Security Engineer...  ...for society as a whole. Our team is a quickly growing group...  ...solutions to monitor for threats, rapidly investigate...  ...teams. Responsibilities Lead cybersecurity Incident Response... 
    Full time
    Work at office
    Visa sponsorship
    Flexible hours

    Anthropic

    San Francisco, CA
    4 days ago
  • $108k - $135k

     ...Cyber Security Incident Response Analyst II At Early Warning, we've powered and...  ...part of a high-performance team, responsible for detecting, identifying, mitigating...  ...responding to critical or urgent threat situations. Essential Functions Leads analyst requests for new... 
    Cyber
    Hourly pay
    Work experience placement
    Work at office
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning Services

    San Francisco, CA
    1 day ago
  • $1,750 - $2,150 per month

    Obsidian is seeking experienced cybersecurity professionals to enhance AI systems' reasoning for threat detection and security operations. Responsibilities include reviewing AI outputs, creating cybersecurity scenarios, and annotating data across use cases. Ideal candidates... 
    Cyber
    Contract work

    Obsidian

    San Francisco, CA
    4 days ago
  • $120k - $140k

    Control-Risks is hiring a Cyber Threat Intelligence Analyst in San Francisco to enhance the cyber threat intelligence team. The role involves investigating security alerts, conducting threat hunting, and developing detection strategies. Candidates should have a Bachelor... 
    Cyber

    Control-Risks

    San Francisco, CA
    1 day ago
  • $140k - $185k

     ...apply for the Cybersecurity Lead role at A10 Networks, Inc...  ...hands‑on technical leader responsible for uniting offensive and...  ...improve the company’s ability to detect, respond to, and recover from cyber threats. This role will lead the Blue Team in managing and enhancing... 
    Cyber
    For subcontractor
    Local area

    A10 Networks

    San Francisco, CA
    4 days ago
  • $230k - $385k

     ...About the Team Security is at the foundation...  ...all of humanity. The Threat Intelligence team protects...  ...models in support of cyber operations. This is...  ...malicious activity and drive detection, disruption,...  ...intelligence, incident response, offensive security, or... 
    Cyber
    Remote work
    Relocation
    Relocation package

    OpenAI

    San Francisco, CA
    2 days ago
  • $148.5k - $223.9k

     ...career at the company leading workforce transformation...  ...Role: As a Senior Threat Assessment Engineer on...  ...Environmental Threat Assessment team, you will utilize the threat (and detection/response) perspective to lead...  ...of all new M&As into Cyber Security Operations... 
    Cyber

    Salesforce

    San Francisco, CA
    5 days ago
  • $230k - $290k

     ...technology company based in San Francisco is seeking a Technical Cyber Threat Investigator to safeguard AI systems from cyber threats. As part of the Threat Intelligence team, you will investigate misuse, develop detection techniques, and engage with external partners.... 
    Cyber

    Menlo Ventures

    San Francisco, CA
    4 days ago
  • $230k - $290k

     ...users and for society as a whole. Our team is a quickly growing group of...  ...Role We are looking for a Technical Cyber Threat Investigator to join our Threat Intelligence...  ...team. In this role, you will be responsible for detecting, investigating, and disrupting the misuse... 
    Cyber
    Work at office
    Visa sponsorship
    Flexible hours
    Weekend work

    Anthropic

    San Francisco, CA
    4 days ago
  • $320k - $405k

     ...Security Engineer - Threat Intel New York City, NY; Remote-...  ...for society as a whole. Our team is a quickly growing group of...  ...Intelligence function within our Detection & Response team exists to make sure we...  ...of hands-on experience in cyber threat intelligence, threat... 
    Cyber
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Anthropic

    San Francisco, CA
    4 days ago
  • $262k - $365k

     ...people management experience leading a research team. One or more accepted...  .... Our team's mission is to detect if users misuse an AI model...  ...about benefits at Google . Responsibilities Lead the cyberattack safety...  ...advancing Gemini’s proactive cyber defense capabilities. Oversee... 
    Cyber
    Full time

    Google DeepMind

    San Francisco, CA
    3 days ago
  •  ...Lead Energy Storage Cyber Security Engineer - REMOTE Full time | ThinkBAC...  ...Executive Leadership Team..and more. Responsibilities Drive the cybersecurity...  ...the company. Own threat & vulnerability management...  ...repeatable frameworks to detect events, quantify feasibility... 
    Cyber
    Full time
    Work experience placement
    Remote work
    Flexible hours

    ThinkBAC Consulting

    San Francisco, CA
    5 days ago
  •  ...challenges is seeking engineers to architect AI Agents aimed at detecting and stopping evolving threats. Ideal candidates will have experience customizing LLM...  ...environment where traditional methods may fail. Join a team of top performers in a flat, flexible culture focused on... 
    Flexible hours

    Cerebras

    San Francisco, CA
    4 days ago
  • $87.7k - $164k

    Ernst & Young Oman is seeking a skilled Cyber Triage and Forensics Analyst to manage security incident responses. This role requires strong problem-solving skills and...  ...will investigate incidents, analyze systems for threats, and enhance security documentation. Candidates... 
    Cyber

    Ernst & Young Oman

    San Francisco, CA
    2 days ago
  • $160k - $185k

     ...A global advisory firm in San Francisco is seeking a Cyber Threat Intelligence Team Lead to build and lead a comprehensive Cyber Intelligence program. The role involves managing a team, developing strategies, and ensuring the protection of systems and data. Candidates... 
    Cyber

    Control Risks

    San Francisco, CA
    4 days ago
  • We are a team of ex-Google engineers who built the...  ...seen how global-scale detection works—and we know why it...  ...triages, and neutralize threats in real-time. Your Role...  ...& Adversarial Lead You won't just be writing...  ...defines the next decade of cyber defense, let’s talk. #J... 
    Cyber
    Live in

    Cerebras

    San Francisco, CA
    2 days ago
  • $120k - $140k

     ...Global IT Network Services team. In this role, you will...  .... You will be responsible for designing, implementing...  ...and monitor intrusion detection and prevention systems,...  ...activities Deploy zero-day threat protection and develop...  ...emerging technologies, cyber threats and security... 
    Cyber

    Starcom Mediavest Group Germany Gmbh

    San Francisco, CA
    1 day ago
  • $169.7k - $217.5k

     ...Contribute To Altos The Altos Security team is looking for a highly collaborative...  ...security incidents, and strengthen threat detection, response, and data protection across cloud and...  ...sensitive investigations related to cyber activities ~ Bachelor's degree in Computer... 
    Cyber
    Contract work
    Local area

    Altos Labs

    San Francisco, CA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Threat Detection & Response Team Lead. Be the first to apply!