Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Detection & Response

$135.4k - $208.1k

Cardinal Health

What Cybersecurity Defense contributes to Cardinal Health

Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Cyber Detection & Response is responsible for establishing, leading, and continuously enhancing cybersecurity detection, monitoring, and incident response capabilities to protect the organization from evolving cyber threats. Furthermore, this leader oversees Security Operations Center (SOC) operations, cyber threat detection, incident response, threat intelligence, and security testing functions to enable rapid identification, containment, and remediation of cybersecurity threats. This role plays a critical role in driving proactive defense strategies, improving detection and response capabilities, and ensuring alignment with risk and resilience objectives.

Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)

Responsibilities

  • Develop and lead the cybersecurity detection and response strategy aligned with enterprise risk, threat landscape, and business priorities.

  • Establish governance frameworks and operating models for SOC, incident response, and threat management functions.

  • Serve as an advisor to leadership on threat trends, detection capabilities, and response readiness.

  • Drive continuous improvement of detection and response capabilities to address evolving threats and business needs.

  • Oversee SOC operations, including security logging, monitoring, alerting, and incident triage across the environment.

  • Oversee effective use of SIEM platforms to analyze correlated events, detect anomalies, and escalate potential incidents.

  • Lead the development and optimization of detection use cases, analytics, and monitoring strategies to improve visibility across the environment.

  • Oversee monitoring capabilities across IT and OT environments, ensuring coverage of critical systems and infrastructure.

  • Lead detection engineering and security tooling functions, including SIEM, SOAR, EDR, UEBA, and DLP capabilities.

  • Oversee the definition and implementation of use cases, rules, and configurations to improve automated detection, investigation, and response workflows.

  • Drive optimization and integration of security tools to enhance operational efficiency and reduce false positives.

  • Establish and lead threat intelligence capabilities to gather, analyze, and operationalize threat data from internal and external sources.

  • Oversee threat monitoring, analysis, and detection rule enhancement to proactively identify emerging threats.

  • Lead threat modeling activities to identify attack vectors, vulnerabilities, and control gaps across systems and processes.

  • Drive proactive threat hunting initiatives to identify hidden threats and indicators of compromise (IoCs) within the environment.

  • Lead enterprise incident response (IR) capabilities, including planning, testing, execution, and continuous improvement of IR processes.

  • Oversee incident response lifecycle activities including detection, triage, containment, eradication, and recovery.

  • Oversee incident response simulations and exercises to validate readiness and improve response effectiveness.

  • Enable effective coordination of incident response efforts across cybersecurity, IT, legal, and business stakeholders.

  • Manage breach notification processes and communication protocols for cybersecurity incidents.

  • Oversee digital forensics and investigative activities to determine the scope, root cause, and impact of cybersecurity incidents.

  • Ensure proper evidence collection, analysis, and documentation to support investigations and regulatory requirements.

  • Lead post-incident reviews and root cause analysis to strengthen detection and response capabilities.

  • Lead offensive and defensive security testing capabilities, including red teaming, penetration testing, and adversarial simulations.

  • Oversee blue team operations to detect, analyze, and respond to threats across enterprise environments.

  • Facilitate purple teaming activities to enhance collaboration between offensive and defensive teams and improve detection and response effectiveness.

  • Drive continuous improvement of security controls through testing, validation, and simulation exercises.

  • Collaborate with cybersecurity, IT, risk, legal, and business teams to integrate detection and response capabilities into enterprise operations.

  • Partner with architecture, engineering, and infrastructure teams to ensure detection and response requirements are embedded into system design and deployment.

  • Provide actionable insights and reporting to leadership on threat landscape, incident trends, and response effectiveness.

  • Support audit and regulatory activities by providing evidence and documentation related to detection and response processes

  • Define and track KPIs and KRIs related to detection, response, and operational performance.

  • Provide regular reporting to leadership on SOC performance, incident metrics, and threat trends.

  • Identify opportunities to enhance detection coverage, reduce response times, and improve operational efficiency.

  • Drive continuous improvement initiatives to mature detection and response capabilities.

  • Build and lead a high-performing cybersecurity detection and response team across SOC, IR, and threat management functions.

  • Develop team capabilities through training, mentoring, and structured career development initiatives.

  • Foster a culture of accountability, collaboration, and continuous improvement.

  • Ensure alignment of team capabilities with evolving threat landscape and organizational needs.

Qualifications

  • Ideally targeting individuals with 10+ years of experience in cybersecurity, with a strong focus on detection, incident response, and security operations.

  • Deep expertise in SOC operations, SIEM, incident response, and threat intelligence a plus.

  • Experience leading cybersecurity operations teams and managing complex incident response activities, a strong preference.

  • Strong understanding of cybersecurity frameworks (e.g., NIST CSF) and regulatory requirements required.

  • Demonstrated ability to communicate technical concepts and risk insights to executive leadership.

  • Strong leadership, analytical, and problem-solving skills.

  • Experience in highly regulated industries, a plus

  • Experience with advanced analytics, automation, and AI-driven security operations, a strong preference

#LI-LP

#LI-Remote

Anticipated salary range: $135,400 - $208,100

Bonus eligible: Yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here (

Vacancy posted 16 hours ago
Similar jobs that could be interesting for youBased on the Director, Cyber Detection & Response in Augusta, ME vacancy
  • $135.4k - $208.1k

     ...Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures...  ...at Cardinal Health. The Director, Exposure Management is responsible...  ...management initiatives with broader cyber defense and risk reduction strategies... 
    Cyber
    Temporary work
    Local area
    Immediate start
    Remote work
    Flexible hours

    Cardinal Health

    Augusta, ME
    16 hours ago
  • $100.2k - $164.1k

     ...Senior Incident Response Consultant 133254 This role joins SpearTip, the cybersecurity...  ..., unique skill sets, and proven cyber counterintelligence strategies, SpearTip...  ...actors and become the gold standard in detecting zero-day vulnerabilities. In this role you... 
    Cyber
    Full time
    Temporary work
    Apprenticeship
    Local area
    Remote work
    Visa sponsorship
    Flexible hours

    Zurich NA

    Augusta, ME
    6 days ago
  •  ...and web applications, and other endpoint security and incident response activities. The candidate must be knowledgeable about how the...  ...include HCL AppScan, Burp Suite, and Ready API. Understanding of detection and response, antivirus, and other endpoint security topics... 
    Cyber
    Work at office

    Samprasoft

    Augusta, ME
    4 days ago
  •  ...The Incident Response Coordinator supports the end-to-end response to IT incidents and service disruptions, helping restore normal operations...  ...Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Augusta, ME
    3 days ago
  •  ...Job Description: Contractors primary responsibility is to work with application/development customers, and vendors to detect, analyze and assist in security remediation...  ...recommendations to management on technical cyber security issues. • Develop and coordinate... 
    Cyber
    For contractors

    vTech Solution

    Augusta, ME
    3 days ago
  •  ...The Incident Response Coordinator, Senior leads tactical coordination of complex IT incidents to minimize mission impact. The role facilitates...  ...governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual... 
    Cyber
    Contract work
    Work experience placement
    Work at office
    Shift work

    ASM Research, An Accenture Federal Services Company

    Augusta, ME
    1 day ago
  •  ...are as smart as you are. This role is responsible for designing, implementing, automating,...  ...security agents/tools, improving detection capabilities, ensuring platform reliability...  ...and public AI and ML/DL systems against cyber threats, adversarial attacks, and data breaches... 
    Cyber
    Immediate start
    Remote work
    Flexible hours

    Ford Motor Company

    Augusta, ME
    3 days ago
  • $100k - $110k

     ...States citizenship for such positions. JOB RESPONSIBILITIES: Is a self-starter and can consistently...  ...processes, on behalf of the Nelnet Cyber Security Group (CSG). Stays up to date...  ...: SIEM SOAR Database Monitoring Threat detection mechanisms Alarming mechanisms Operational... 
    Cyber
    Contract work
    Temporary work
    Work experience placement
    Local area
    Remote work

    Nelnet

    Augusta, ME
    6 days ago
  •  ...Center (SOC) is at the forefront of the client's defense against cyber threats. The position works to protect more than 20,000...  ...The candidate will be a member of a team focused on endpoint detection and response, antivirus protection, endpoint investigations, and other... 
    Cyber
    Work at office

    Kaav Inc.

    Augusta, ME
    2 days ago
  • $130k - $145.8k

     ...AVANGRID's on Industry associations. Mentor other employees. Key Responsibilities ~ Perform detailed, complex engineering analyses,...  ...that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts,... 
    Cyber
    Work at office
    Local area

    Iberdrola

    Augusta, ME
    2 days ago
  •  ...ME, Portland Work type : Office Job Summary Responsible for electric system protection technology platforms in both Maine...  ...that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts, and... 
    Cyber
    Contract work
    For contractors
    Work at office
    Local area
    Relocation
    Relocation package

    Iberdrola

    Augusta, ME
    4 days ago
  •  ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of...  ...This position is not available to residents of California . Responsibilities Participate in a fully remote software engineering... 
    Cyber
    Work experience placement
    Work at office
    Remote work

    ISC2

    Augusta, ME
    3 days ago
  •  ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications...  ...Position Summary The Accounts Receivable Specialist will be responsible for day to day accounts receivable processing functions within... 
    Cyber
    Work experience placement
    Work at office
    Remote work

    ISC2

    Augusta, ME
    5 days ago
  • $3,238.24 - $4,504.35 per month

     ...information please visit: Benefits - Avangrid JOB SUMMARY: Responsible for specification development, implementation into production use...  ...that will work in electric transmission, operations, and cyber security business areas in Connecticut, Maine, Massachusetts, and... 
    Cyber
    Bi-weekly pay
    Work at office
    Local area

    Iberdrola

    Augusta, ME
    5 days ago
  •  ...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of...  ...Summary As Senior Sales Enablement Specialist, your primary responsibility is to for provide quality, cost effective ISC2 Sales Learning... 
    Cyber
    Work experience placement
    Work at office
    Remote work

    ISC2

    Augusta, ME
    3 days ago
  • $221.7k - $266k

     ...apps they use every day, to the network and conference rooms that connect a globally distributed company. As Director of IT, you will lead the team responsible for Helpdesk, endpoint and AV experience, enterprise identity, core productivity applications, corporate networking... 
    Full time
    Work at office
    Remote work
    Shift work

    Confluent

    Augusta, ME
    5 days ago
  • $150.92k - $176.1k

     ...I. Job Summary Responsible for identifying and controlling company liability and associated costs for groundwater and associated media, optimizing WM landfill capacity and development costs, and implementation of company-wide environmental protection programs and policies... 
    Temporary work
    Local area
    Remote work

    wm

    Augusta, ME
    4 days ago
  • $105,622 - $152,900 per week

     ...Director, Law and Legislative Reference Library Maine State Legislature Augusta, Maine The Maine Legislative Council is...  ...is a full-time, nonpartisan senior management position with responsibility for directing one of several nonpartisan staff offices that work... 
    Full time
    Work at office

    Office of the Executive Director of the Maine Legislature

    Augusta, ME
    1 day ago
  •  ...Privacy Director Work Arrangement: Hybrid (On-Site and Remote mix) Requisition Number: 260511 Regular or Temporary: Regular Location...  ...collected, used, and/or retained. Assumes management responsibilities of a team of Privacy professionals. Duties and Responsibilities... 
    Temporary work
    Remote work

    Duke University

    Augusta, ME
    1 day ago
  •  ...individual to lead our events strategy and manage the events team. The Senior Director of Events and Conferences will report directly to the SVP of Marketing & External Communications and is responsible for the strategy, planning, execution, and management of high-quality... 
    Remote work

    PAREXEL

    Augusta, ME
    1 day ago
  •  ...Director Of Curriculum, Instruction, And Assessment Regional School Unit #24 is seeking motivated and collaborative candidates for...  ...instruction, and assessment. The successful candidate will be responsible for the oversight of federal grants/programs and will coordinate... 

    Regional School Unit 24

    Augusta, ME
    5 days ago
  • $243.87k - $286.9k

     ...Manager, Adversary Management is responsible for strategy, operational...  ...governance of all aspects of cyber threat intelligence at Coinbase...  .... Reporting to the Senior Director, Security Operations, this leader...  ..., counterintelligence, fraud detection, intellectual property theft,... 
    Cyber
    Local area

    Coinbase

    Augusta, ME
    1 day ago
  • $148.84k - $198.45k

     ...the challenge. Join us in building the future. The Role Director II, SLED Capture & Proposal Management - Public Sector...  ...disciplined, repeatable, high-quality pursuit execution. The Main Responsibilities SLED Capture & Market Strategy -Develop and execute... 
    Full time
    Contract work
    Temporary work
    Local area
    Remote work

    Lumen Inc

    Augusta, ME
    5 days ago
  • $150k - $175k

     ...Technology, Inc. (WWT) is seeking a highly driven and experienced Cyber Security Specialist to join our dynamic Security Sales team....  ...expertise in selling security services and solutions.  Responsibilities: Drive profitable revenue growth on all strategic ExtraHop... 
    Cyber
    Full time
    Remote work
    Shift work

    World Wide Technology

    Augusta, ME
    4 days ago
  •  ...We design, build, operate, and maintain cyber-physical solutions for the nation's...  ...security services inclusive of intrusion detection, access control, biometric authentication...  ...across high-growth markets. Responsibilities Executes various technical tasks and... 
    Cyber
    Apprenticeship
    Work at office
    Local area
    Relocation

    M.C. Dean, Inc.

    Augusta, ME
    2 days ago
  •  ...Operations Center (SOC) is at the forefront of the Client's defense against cyber threats. The position works to protect more than 20,000 devices on the client's network. Responsibilities This position will be responsible for evaluating and enhancing the security... 
    Cyber
    Work at office

    Samprasoft

    Augusta, ME
    4 days ago
  • $164.53k - $245.99k

     ...Job Summary Responsible for working with cross-functional teams across the organization to drive and align the development and maintenance of global labeling (e.g. CCDS, regional product labels, and patient labeling) for assigned compounds. Makes recommendations and... 
    Temporary work
    Local area
    Flexible hours

    Otsuka America Pharmaceutical Inc.

    Augusta, ME
    7 days ago
  • $100k - $231.54k

     ...analytics within clinical and network operations. This position is responsible for producing internal operating metrics on the Healthcare...  ...improvement initiatives Partner with clinical and medical directors to identify, assess and prioritize potential scorable action items... 
    Hourly pay
    Full time
    Temporary work
    Work at office
    Local area
    Remote work

    CVS Health

    Augusta, ME
    2 days ago
  • $169.22k - $253k

     ...and nutraceutical products for the maintenance of everyday health. As an Associate Director, Biostatistician, you will be a champion of Otsuka’s culture and values and will be responsible for providing statistical expertise/input in the drug development including... 
    Temporary work
    Interim role
    Local area
    Remote work
    Worldwide
    Flexible hours

    Otsuka America Pharmaceutical Inc.

    Augusta, ME
    2 days ago
  • $150.03k - $224.25k

     ...Job Summary The Associate Director, R&D HCP Engagement CoE is a critical change agent and system implementer responsible for designing the operating model and overseeing the execution of a unified, compliant, and exceptional service model for all Healthcare Professional... 
    Contract work
    Temporary work
    Local area
    Flexible hours

    Otsuka America Pharmaceutical Inc.

    Augusta, ME
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Detection & Response. Be the first to apply!