Blue Shield Of California

Manager, Information Security

Blue Shield Of California$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience
  • Minimum 10 years of relevant experience, including 4 years in a management role
  • Strong knowledge of security operations and incident response
  • Experience leading a 24x7 SOC and security incident management
  • Familiarity with frameworks like MITRE ATT&CK and NIST
  • Exceptional communication skills for technical and non-technical audiences
  • Industry certifications like CISSP or CISM preferred
  • Understanding of Agile delivery models and managing complex workstreams

Responsibilities

  • Execute IT strategies for a comprehensive information security program
  • Create relationships to understand business requirements within the security framework
  • Manage staff in the design and support of the security technology stack
  • Develop relationships to drive security plans with IT and business unit teams
  • Lead the 24/7 Security Operations Center for real-time threat monitoring
  • Integrate AI-driven tools to enhance threat detection capabilities
  • Track performance metrics for security operations and automation efficiency
  • Collaborate with external vendors and internal leads for solution delivery

Benefits

  • Leadership development opportunities for personal and professional growth
  • Focus on fostering high-performing teams and results-driven environment
  • Emphasis on creative and critical thinking in decision making
  • Support for continuous learning and improvement initiatives
  • Flexibility in hybrid workplace model with in-office collaboration
Full Job Description
Job Description

Your Role

The Information Security Threat Detection and Response team uses advanced technologies like

AI-driven threat detection and automated response platforms to monitor and respond to

cybersecurity threats in real time. It acts as the hub for defense strategies, security tool

integration, and rapid, data-driven decisions to protect the organization's digital ecosystem.

The Manager, Incident Response will report to the Senior Manager, Threat Detection & Response. In this role, as a forward-thinking leader, you will be responsible for evolving our Security Operations Center (SOC). This role is critical to our mission of safeguarding patient data, maintaining compliance, and ensuring the resilience of technology systems-through both traditional security operations and the strategic use of automation and AI-based security technologies.

Our leadership model is about developing great leaders at all levels and creating opportunities for our people to grow - personally, professionally, and financially. We are looking for leaders that are energized by creative and critical thinking, building and sustaining high-performing teams, getting results the right way, and fostering continuous learning.

Responsibilities

Your Work

In this role, you will:
  • Execute information technology strategies, plans, and priorities for a comprehensive information security program
  • Create relationships within Blue Shield to understand business requirements and work with them to accomplish those requirements within the security framework
  • Manage staff in the planning, design, and support the security technology stack
  • Develop and maintain relationships with managers in business unit teams and the IT teams to drive security plans
  • Manage and escalate roadblocks that may jeopardize security monitoring operations, infrastructure, and SLAs
  • Lead and manage the 24/7 Security Operations Center (SOC), overseeing real-time monitoring, detection, and response to threats
  • Integrate and optimize AI-driven threat detection tools, machine learning models, and behavioral analytics to identify anomalies across systems and data
  • Develop and maintain automated playbooks for common security incidents to improve response times and reduce analyst fatigue. Continually enhance forensic and investigation capabilities to meet the needs of the organization
  • Track and report on performance metrics and KPIs for security operations, automation efficiency, and AI tool effectiveness
  • Serve as a security innovation leader, staying ahead of emerging technologies and
  • integrating them into SOC strategy
  • Drive continual maturation of our incident response program, consistent with proven industry best practices and maturity models.
  • Own end-to-end delivery status, ensuring transparency, operational excellence, accountability, and timely updates across stakeholders
  • Collaborate closely with external vendors, as well as internal product and engineering leads to coordinate and manage delivery when third-party solutions are part of the implementation
  • Remove blockers and ensure delivery stays aligned with roadmaps and business outcomes


Qualifications

Your Knowledge and Experience
  • Bachelor's degree or equivalent experience
  • At least 10-years prior relevant experience, including 4 years of management experience and at least 1 year of leading one or more critical cybersecurity functions
  • Requires strong knowledge of security operations, incident response, SIEM platforms, and threat detection technologies
  • Requires direct experience building and leading a high functioning 24x7 SOC operation, security incident management, and investigations & forensics function
  • Familiarity with frameworks such as MITRE ATT&CK, NIST, HIPAA, and CIS Controls
  • Requires exceptional communication skills with both technical teams and non-technical stakeholders
  • Industry certifications such as CISSP, CISM, GIAC, or equivalent highly desired
  • Strong understanding of Agile delivery models and backlog management
  • Ability to manage multiple complex workstreams and successfully interact with all levels of management
  • Experience with regulatory certifications such as HIPAA, SOC2, PCI-DSS and FedRAMP
  • Understanding of advanced management approaches such as scheduling for internal & external resources, prioritizing across competing requests, budget management and oversight, coaching & mentoring direct reports, risk management, and delegation
  • Excellent verbal / written communication, collaboration, analytical and presentation skills
  • Experience with AI/ML concepts and tools desired
  • Preferred experience working within the Healthcare industry


Hybrid

This role requires employees to be in - office based on our hybrid workplace model, balancing purposeful in - person collaboration with flexibility. For most teams, this means coming into the office two days each week.

Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.

#LI-CP4

Physical Requirements:

Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.

Please click here for further physical requirement detail.

About Blue Shield Of California

Blue Shield of California is a not-for-profit health plan provider that has been providing Californians with access to high-quality healthcare for over 80 years. The company offers a range of health insurance products and services to individuals, families, and employers. Blue Shield of California is committed to improving the health and wellbeing of its members and the communities it serves. The company is also committed to sustainability and has implemented a number of initiatives to reduce its environmental impact.
Learn more about Blue Shield Of California
Size
7,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Blue Shield Of California

More Information Technology Jobs

Find similar Manager, Information Security jobs: