Cyber Threat Detection & Response Team Lead
$160k - $185kControl Risks
The Cyber Threat Detection & Response Team Lead will play a pivotal role in building and leading a world-class Cyber Intelligence program for a major client of Control Risks. This role will be responsible for developing the strategy, building out capabilities, and leading a team of security professionals to proactively detect, triage, and respond to cyber threats.
This position provides technical direction and administrative oversight on all cybersecurity matters, ensuring the protection of the client's systems, networks, and data. The Manager supports a strong first line ownership model by partnering with technology and business stakeholders to embed security into planning, development, and operational activities.
- Working closely with client stakeholder, build, manage, and scale a Cyber Threat Intelligence Team from the ground up.
- Lead on Developing Standard Operating Procedures for threat intelligence activities, taking into account specific client activities and stakeholders, such as tooling, reporting lines, and out of hours incidents.
- Lead on managing most severe and critical cyber security incidents including supporting incident responders with reporting, updates and investigations to aid incident response and crisis management in a timely, accurate and professional manner.
- Train, and mentor threat intelligence analysts, engineers, and threat hunters.
- Establish operational processes, escalation paths, and playbooks.
- Oversee the triage of cyber events, ensuring rapid identification, investigation, and remediation.
- Manage incident response activities, coordinating across IT, Legal, Risk, and other stakeholders.
- Develop metrics, KPIs, and reporting to measure SOC effectiveness.
- Lead proactive threat hunting operations to identify potential compromises and undetected malicious activity.
- Integrate threat intelligence into SOC workflows and leverage intelligence to inform response and prevention strategies.
- Evaluate and optimize the client's technology stack (SIEM, SOAR, EDR, threat intelligence platforms, etc.).
- Drive continuous improvement of detection rules, automation, and response capabilities.
- Recommend emerging tools and processes to enhance maturity.
- Conduct regular check-ins, provide coaching and feedback, manage performance reviews and improvement plans, and support career development with the members of your team.
- Serve as the main liaison between team members and ECS program management team, ensuring timely program and personnel updates and controlling quality on client deliverables.
- With the support of the Talent Acquisition team, participate in hiring processes ensuring team resourcing aligns with client expectations and program needs.
- Lead onboarding tasks (e.g., joiner tickets, scheduling, equipment, success plans), manage offboarding logistics and leaver tickets, and ensure operational continuity.
- Manage team schedules, approve PTO, ensure timesheet compliance, and maintain a consistent high-quality service to the client.
- Working closely with the ECS program management team, align on overall program strategy and priorities to create clear, actionable, team deliverables.
- 10-12 years of experience in cybersecurity, cyber threat intelligence, or cyber security operations.
- Leadership in an threat intelligence environment a plus
- Ability to distil highly technical information into more business centric, risk orientated language for presentation to senior leadership.
- Experience with: Splunk (or other event monitoring capability), Crowdstrike, RecordedFuture, MS sentinel, SentinelOne, OpenCTI, MISP, Proofpoint.
- Deep knowledge of incident response, digital forensics, malware analysis, and threat intelligence.
- Hands-on experience with SOC technologies such as SIEM, SOAR, EDR, IDS/IPS, and log management tools.
- Strong understanding of MITRE ATT&CK framework, NIST Cybersecurity Framework, and industry best practices.
- Excellent leadership, communication, and stakeholder management skills.
- Relevant certifications preferred: CISSP, CISM, GIAC (GSOM and GCTI), or equivalent.
- Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.
The base salary range for this position is $160,000-185,000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience. Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs. Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit
- A leading satellite communications firm located in California... ...and countering digital threats, particularly in... ...malware and leading incident response efforts. The role... ...understanding of evolving cyber threats and a passion... .... Join a dynamic team that plays a crucial role...Cyber
$110k - $160k
...seeking a SOC Analyst II in San Francisco to help defend against evolving cyber threats. This mid-career role demands a strong technical foundation and involves day-to-day monitoring and incident response. The ideal candidate will possess strong analytical skills,...Cyber$182k - $202k
...leader in Continuous Threat Exposure... ...pentesting, AI red teaming, and code security... ...continuous reduction of cyber risk for enterprises... ...Engineer, Detection and ResponseRemote... ...rebuilding our Detection & Response function with an... ...detections and leading incident response...CyberApprenticeshipLocal areaRemote workFlexible hoursShift work$168k - $240k
..., reach, and impact. The Department: Threat Detection & Response In the emerging industry of digital assets... ...experts). The Gemini Security team forms the backbone of all that we do and... ...crucial in shaping our security strategy, leading the design and implementation of...SuggestedWork at officeRemote workFlexible hours$124k - $329.2k
...GitHub GitHub is the world's leading platform for agentic... ...GitHub and its ecosystem. Threat Detection and Response is a core function of Security... ...systems. The TDR team is made up of analysts and... ...analysis, security research, cyber security, security engineering...CyberOngoing contractRemote work- ...A leading cybersecurity company in San Francisco seeks a Cybersecurity Lead to oversee... ...security monitoring tools, improving incident response processes, and leading a team to strengthen the company's resilience against cyber threats. Candidates should have over 8 years of...Cyber
$128.1k - $239.6k
...connected powerhouse of diverse teams and take your career... ...) - Info Sec prevents, detects, responds and mitigates cyber-risk, protecting EY and client... ...Active Defense team is responsible for four core areas:... ...defensive teams. In the threat hunting capacity, the analyst...CyberSummer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- ...A leading technology firm is seeking a skilled Cyber Security Engineer in San Francisco to protect their computer systems and networks from cyber threats. The role involves designing, implementing, and maintaining security measures to ensure system integrity and confidentiality...Cyber
$347k
...About the Team OpenAI's Security organization... ...exists to enable safe, responsible innovation at scale. As... ...environments by building advanced detection systems, driving real-... ...delivering actionable threat intelligence to stay... ...Detection and Response Lead to own and scale...- ...Detection and Response Lead As Detection and Response Lead, you'll build and scale the foundations of... ...instincts. You will build and mentor a team, partner closely with Engineering and... ...observability, detection and response, and threat intelligence, hiring and scaling these...
$120k - $140k
The Cyber Threat Intelligence Analyst will play a critical role in... ...cyber threat intelligence team. Working closely with the Team Lead, this role will focus on... ...directly contributing to the detection and defense of cyber threats. Responsibilities Investigate, triage, and...CyberWork at officeRemote workFlexible hours- A leading AI research organization in San Francisco is seeking a Global Detection and Response Lead to oversee cybersecurity operations. You will set the strategy for incident response... ...security events, and partner with various teams to enhance security measures. This role...
$300k - $405k
...Security Engineer: Detection and Response Join to apply for the Security Engineer... ...for society as a whole. Our team is a quickly growing group... ...solutions to monitor for threats, rapidly investigate... ...teams. Responsibilities Lead cybersecurity Incident Response...Full timeWork at officeVisa sponsorshipFlexible hours$108k - $135k
...Cyber Security Incident Response Analyst II At Early Warning, we've powered and... ...part of a high-performance team, responsible for detecting, identifying, mitigating... ...responding to critical or urgent threat situations. Essential Functions Leads analyst requests for new...CyberHourly payWork experience placementWork at officeImmediate startVisa sponsorshipWork visaFlexible hours$1,750 - $2,150 per month
Obsidian is seeking experienced cybersecurity professionals to enhance AI systems' reasoning for threat detection and security operations. Responsibilities include reviewing AI outputs, creating cybersecurity scenarios, and annotating data across use cases. Ideal candidates...CyberContract work$120k - $140k
Control-Risks is hiring a Cyber Threat Intelligence Analyst in San Francisco to enhance the cyber threat intelligence team. The role involves investigating security alerts, conducting threat hunting, and developing detection strategies. Candidates should have a Bachelor...Cyber$140k - $185k
...apply for the Cybersecurity Lead role at A10 Networks, Inc... ...hands‑on technical leader responsible for uniting offensive and... ...improve the company’s ability to detect, respond to, and recover from cyber threats. This role will lead the Blue Team in managing and enhancing...CyberFor subcontractorLocal area$230k - $385k
...About the Team Security is at the foundation... ...all of humanity. The Threat Intelligence team protects... ...models in support of cyber operations. This is... ...malicious activity and drive detection, disruption,... ...intelligence, incident response, offensive security, or...CyberRemote workRelocationRelocation package$148.5k - $223.9k
...career at the company leading workforce transformation... ...Role: As a Senior Threat Assessment Engineer on... ...Environmental Threat Assessment team, you will utilize the threat (and detection/response) perspective to lead... ...of all new M&As into Cyber Security Operations...Cyber$230k - $290k
...technology company based in San Francisco is seeking a Technical Cyber Threat Investigator to safeguard AI systems from cyber threats. As part of the Threat Intelligence team, you will investigate misuse, develop detection techniques, and engage with external partners....Cyber$230k - $290k
...users and for society as a whole. Our team is a quickly growing group of... ...Role We are looking for a Technical Cyber Threat Investigator to join our Threat Intelligence... ...team. In this role, you will be responsible for detecting, investigating, and disrupting the misuse...CyberWork at officeVisa sponsorshipFlexible hoursWeekend work$320k - $405k
...Security Engineer - Threat Intel New York City, NY; Remote-... ...for society as a whole. Our team is a quickly growing group of... ...Intelligence function within our Detection & Response team exists to make sure we... ...of hands-on experience in cyber threat intelligence, threat...CyberWork at officeRemote workVisa sponsorshipFlexible hours$262k - $365k
...people management experience leading a research team. One or more accepted... .... Our team's mission is to detect if users misuse an AI model... ...about benefits at Google . Responsibilities Lead the cyberattack safety... ...advancing Gemini’s proactive cyber defense capabilities. Oversee...CyberFull time- ...Lead Energy Storage Cyber Security Engineer - REMOTE Full time | ThinkBAC... ...Executive Leadership Team..and more. Responsibilities Drive the cybersecurity... ...the company. Own threat & vulnerability management... ...repeatable frameworks to detect events, quantify feasibility...CyberFull timeWork experience placementRemote workFlexible hours
- ...challenges is seeking engineers to architect AI Agents aimed at detecting and stopping evolving threats. Ideal candidates will have experience customizing LLM... ...environment where traditional methods may fail. Join a team of top performers in a flat, flexible culture focused on...Flexible hours
$87.7k - $164k
Ernst & Young Oman is seeking a skilled Cyber Triage and Forensics Analyst to manage security incident responses. This role requires strong problem-solving skills and... ...will investigate incidents, analyze systems for threats, and enhance security documentation. Candidates...Cyber$160k - $185k
...A global advisory firm in San Francisco is seeking a Cyber Threat Intelligence Team Lead to build and lead a comprehensive Cyber Intelligence program. The role involves managing a team, developing strategies, and ensuring the protection of systems and data. Candidates...Cyber- We are a team of ex-Google engineers who built the... ...seen how global-scale detection works—and we know why it... ...triages, and neutralize threats in real-time. Your Role... ...& Adversarial Lead You won't just be writing... ...defines the next decade of cyber defense, let’s talk. #J...CyberLive in
$120k - $140k
...Global IT Network Services team. In this role, you will... .... You will be responsible for designing, implementing... ...and monitor intrusion detection and prevention systems,... ...activities Deploy zero-day threat protection and develop... ...emerging technologies, cyber threats and security...Cyber$169.7k - $217.5k
...Contribute To Altos The Altos Security team is looking for a highly collaborative... ...security incidents, and strengthen threat detection, response, and data protection across cloud and... ...sensitive investigations related to cyber activities ~ Bachelor's degree in Computer...CyberContract workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Detection & Response Team Lead. Be the first to apply!
- it team manager San Francisco, CA
- group operations director San Francisco, CA
- key team leader San Francisco, CA
- quality assurance team leader San Francisco, CA
- clinical team leader San Francisco, CA
- team lead full time San Francisco, CA
- school leader San Francisco, CA
- integration team lead San Francisco, CA
- talent management leader San Francisco, CA
- team lead San Francisco, CA

