Sherwin-Williams

Cybersecurity Security Operations Center Manager

Sherwin-Williams$110K — $130K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience in a related field.
  • 12+ years of IT and/or cybersecurity experience.
  • 8+ years of experience in IT security.
  • 8+ years of team management experience.
  • 1+ year of cyber-security investigations and incident response experience.
  • Experience in process analysis and improvement.
  • Familiar with various operating systems including UNIX and Windows.

Responsibilities

  • Lead and manage CSOC team, conducting performance evaluations.
  • Oversee on-call rotation and time-off scheduling for CSOC staff.
  • Facilitate team training and mentorship to promote skill development.
  • Recruit and onboard new team members to enhance SOC capabilities.
  • Manage vendor relationships and contractual obligations for SOC resources.
  • Monitor tool performance to optimize return on investment.
  • Coordinate incident response activities, ensuring effective communication and documentation.

Benefits

  • Remote work opportunity.
  • Professional development through training and mentoring.
  • Exposure to cutting-edge cybersecurity technologies and processes.
  • Dynamic work environment focused on continuous improvement.
Full Job Description
Job Description

The Cybersecurity Security Operations Center (CSOC) Manager's core function is to provide leadership and oversee the administration of the CSOC, including security engineers and security analysts. The CSOC is responsible for monitoring and alerting on cybersecurity events, ensuring the maintenance of the current and future technologies, and continually analyzing threat data to find ways to improve the organization's security posture. This position requires both the ability to tactically focus on immediate threats at hand as identified in alerts and intelligence as well as strategically remain focused on Initiatives tasked by senior leadership. Candidates must be highly analytical, technically competent, and have an ability to provide focus and calm during incident response scenarios. The ability to lead groups or move forward initiatives is essential. In addition, the ability to plan for future team needs requires staying informed of current events in technology platforms and the Cybersecurity industry.

Responsibilities

Operational Management

  • Manage team employees reporting directly to you. Responsibilities include preparing midyear and annual staff evaluations and addressing both opportunities for growth (such as promotions) or improvement (such as employee performance improvement plans) as performances warrant.


  • Manage the on-call rotation and time off for the SOC


  • Providing regular training sessions and mentorship opportunities to facilitate knowledge-sharing within the team.


  • Hiring new staff members or contracting outside services to supplement your team's capabilities when needed.


  • Responsible for vendor management - existing and future contractual relationships with technology and service providers. This includes working to address support issues, contract renewals / discrepancies, bi-weekly meetings, Quarterly Business Reviews, etc.


  • Track tool performance / utilization to measure return on investment and support future evaluation / rationalization needs.


  • Responsible for identifying tool / service evaluation opportunities. Working closely with the Security Threat Architect.


  • Responsible for day-to-day CSOC budget management


  • Lead your team and communicate with management during incident response (IR) to ensure timely notification and containment occur. Responsibilities include ensuring communicating, documenting IR progress, and following through with post-mortem reviews.


  • Ensure CSOC meets regulatory compliance of both internal and external auditors by adherence to policies and procedures. Ensure version control of SOC alerts as well as least privilege access to logs and investigation data.


  • Ensure synchronization and collaboration between the CSOC and Cyber Threat Intelligence team.


  • Work with other departments to identify the root causes of security incidents and develop strategies to mitigate these risks.


Strategy & Planning

  • Work with employees on Individual Development plans. Interface with management and Human Resources to ensure plans meet business needs and provide measurable advancement steps to employee promotion and realization of career goals.


  • Responsible for building and briefing at the monthly Governance Board meetings for existing or future spend as appropriate.


  • Responsible for planning and prioritizing annual spend for CSOC in support of Operational Plan Development and advising upper management on budget forecasting.


  • Improve incident response times, reduce false positives and other extraneous alerts, and enhancing threat detection capabilities.


  • Work with CSOC and architecture in determining technology and resource requirements.


  • Participate in engagement with other service families and departments in addressing CSOC logging and monitoring needs. Engage with same groups in developing Enterprise logging and monitoring strategies and solutions.


  • Stay abreast of business and technological developments to properly prepare CSOC future posture.


Acquisition & Deployment

  • Work with upper management to understand budget availability to shape CSOC efforts.


  • Supervise team and/or perform compliance assessments to include Proof of Value (PoV) or Proof of Concept (PoC) for new program security tools.


  • Provide an accurate technical evaluation of the software application, system, or network, documenting the security posture, capabilities, and vulnerabilities against relevant information assurance policies.


Incidental Functions

  • Assist with other projects as required to contribute to efficiency and effectiveness of the organization.


  • Travel may be required but should not exceed 10% of work time.


  • Work outside the standard office 7.5-hour workday may be required with on-call availability.

This is a remote position.

This position is not eligible for sponsorship for work authorization now or in the future, including conversion to H1-B visa. Must be legally authorized to work in the country of employment without needing sponsorship for employment work visa status now or in the future.

Qualifications

Education & Experience

Required:

  • Bachelor's degree or foreign equivalent in related field or equivalent experience.
  • 12+ years IT and/or cyber experience.
  • 8+ years IT security experience
  • 8+ years of managing a team of direct reports
  • Minimum 1 year experience with cyber-security investigations and incident response.
  • Minimum 1+ years of experience in process analysis and improvement.
  • Background in metrics/reporting.
  • Experience identifying and implementing solutions to complex business problems.
  • Understanding of various operating systems (z/OS, Window, UNIX, Linux, AIX, etc.) with an emphasis on vulnerability assessment and hardening.
  • Ability to analyze reports by reviewing incident or threat frequency, severity, and duration data.
  • Must be eighteen years or older
  • Must be legally authorized to work in the United States without company sponsorship


Preferred Experience

  • Experience in a Security Operations Center (SOC) or working with a Managed Security Service Provider (MSSP)
  • Supervisory and/or Management experience preferred.
  • Budget management
  • Vendor management
  • Understand Log Management process and program
  • Certifications: Lean, CISSP, SANS GIAC, or CISM
  • Project Management concepts: use of JIRA, Planner, etc.
  • Delivery of Metrics demonstrating proof of value and key performance indicators
  • Understanding of CVSS, CVE, CWE, CPE, CCE, CWE, OVAL, SCAP and/or other standards.
  • Familiar with both IT and OT detect and respond functions
  • Familiar with email security tools such as Proofpoint, Abnormal Security, O365, etc.
  • Understanding of Threat Analysis and Threat Intelligence.
  • Experience with Security and Information and Event Monitoring (SIEM) products such as Sumo Logic, Splunk, etc.
  • Experience with Vulnerability Management products such as Qualys.
  • Utilize key performance indicators to track analyst workloads as well as the efficiency of detection signatures/rules and associated monitoring technologies.
  • Benchmark and implement industry best practices to mitigate potential threats.
  • Support the preparation of appropriate reports and communicate status and results.
  • Familiarity with SOC-CMM

About Sherwin-Williams

The Sherwin-Williams Company engages in the development, manufacture, distribution, and sale of paints, coatings, and related products to professional, industrial, commercial, and retail customers in North and South America, Europe, and Asia. It operates in three segments: Paint Stores, Consumer, and Global. The Paint Stores segment sells paint, coatings, and related products to end-use customers. This segment markets and sells Sherwin-Williams branded architectural paints and coatings, industrial and marine products, and original equipment manufacturer product finishes and related items.

Sherwin-Williams Careers

Join the vibrant team at Sherwin-Williams, a leader in the paint and coatings industry, and contribute to a legacy of innovation and leadership. As a company committed to growth and excellence, Sherwin-Williams offers unparalleled job opportunities for professionals eager to advance their careers in a dynamic and supportive environment. Work You’ll Do At Sherwin-Williams, we empower our team to bring their creativity and expertise to various roles, driving transformative results across the business landscape. Our commitment to professional growth and diversity training ensures that every team member can thrive. Lead in a Culture of Innovation Sherwin-Williams stands at the forefront of the coatings industry, blending tradition with advanced technology. Our culture is built on a foundation of innovation, leadership, and a relentless pursuit of excellence. Join us and lead the way in developing new solutions that impact markets globally. Engage with a Global Team Collaborate with over 60,000 dedicated professionals worldwide who are as passionate about materials science as they are about creating beautiful and durable finishes. At Sherwin-Williams, you’ll work alongside industry experts and leaders who are pioneering new paths in the coatings sector. Sherwin-Williams Careers and Employment Opportunities We are continuously expanding our team and looking for talented individuals who are ready to paint the world with us. From research and development to marketing and sales, the career paths at Sherwin-Williams are as diverse as our product lines. Do Innovative Work Engage in projects that challenge the status quo and contribute to sustainability and efficiency in the industry. Our team at Sherwin-Williams harnesses the power of cutting-edge technology and collective expertise to lead the market in innovation and quality. Be Part of a Great Team Sherwin-Williams is not just a workplace. It is a community where you can build lasting relationships through professional networking and collaborative team efforts. Our inclusive environment supports diversity and is designed to help you reach your full potential. Future-Proof Your Career With a wide array of benefits, continuous training programs, and a focus on internal growth and promotions, Sherwin-Williams is committed to helping you shape a long and successful career. Whether you are looking for a full-time position, an internship, or leadership roles, the opportunities are vast. Explore Job Opportunities and Internships Start your professional journey with Sherwin-Williams by exploring various employment and internship opportunities that match your skills and interests. We are hiring creative, curious, and motivated individuals ready to make a significant impact. Stay Connected Join Our Team Search open positions, submit your resume, and prepare for your interview with us. At Sherwin-Williams, we look for individuals who are solution-driven and ready to contribute to our culture of innovation and excellence. Keep Up to Date Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. Job Alert Emails Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Sherwin-Williams. Join Sherwin-Williams today and be part of a company that values innovation, leadership, and a diverse and inclusive workplace. Your future starts here!
Learn more about Sherwin-Williams
Size
61,626 employees
Market Cap
$61.6 billion
Industry
Net Income
$2 billion
Founded
1866
5 Year Trend
+11%
Revenue
$18.3 billion
NASDAQ

Similar Jobs

More Jobs at Sherwin-Williams

More Information Technology Jobs

Find similar Cybersecurity Security Operations Center Manager jobs: