About the TeamThe MG Security Engineering organization provides unified security services across all Match Group brands. The
Monitoring, Incident Response & SOC team is responsible for real-time threat detection, investigation, and response across the full portfolio - operating 24/7 to ensure security alerts are effectively triaged and responded to, minimizing the impact of potential threats.
About the RoleAs the
Manager, IR / SOC, you will lead the integrated team responsible for
Detection Engineering,
Security Operations Center (SOC), and
Incident Response (IR) across Match Group. Reporting to the Sr. Director of Security Engineering, you will drive the strategic vision of maximizing rapid and accurate threat response capabilities by integrating these three core functions and leveraging AI-driven innovation.
You will own the detection lifecycle end-to-end - from signal engineering and alert tuning through triage, investigation, and incident resolution - while building toward an AI-augmented SOC model that reduces noise, accelerates response, and scales across a global portfolio.
What You'll Do- Lead and develop a high-performing team of SOC analysts, detection engineers, and incident responders operating across multiple time zones with 24/7 coverage
- Play a key role in developing the detection engineering framework, contributing to detections-as-code (DaC) via GitOps/CI/CD pipelines for consistency and automated deployment
- Drive AI Agentic SOC adoption - evaluate, select, and implement AI-driven triage and investigation tooling to maximize SOC efficiency, reduce false positives, and accelerate initial response speed
- Manage the full incident lifecycle - from detection through containment, eradication, recovery, and lessons learned - partnering with Legal, Communications, Privacy, and Engineering teams
- Build and refine detection content across the SIEM platform, integrating log sources across all MG brands (Tinder, Hinge, Match, E&E, HPCNT, Eureka, and New Bets)
- Establish and track SOC metrics and SLAs, creating dashboards to visualize performance, alert fidelity, and response effectiveness
- Coordinate and execute IR tabletop exercises (technical and management-level) across brands to validate readiness and improve playbooks
- Partner with the Red Team to validate detection capabilities through adversary simulation and assumed-compromise testing
- Collaborate with Platform Security, InfraSec, and AppSec teams to identify and close detection gaps across cloud-native and hybrid environments (AWS, GCP), datacenter infrastructure, endpoints (CrowdStrike), identity (Okta), SaaS, and application layers
- Integrate threat intelligence into detection and response workflows to anticipate and proactively defend against emerging threats
- Use automation to improve detection and response times and mitigate incident impact
$ 170000- $190000 a year
Factors such as scope and responsibilities of the position, candidate's work experience, education/training, job-related skills, internal peer equity, as well as market and business considerations may influence base pay offered.
This salary range is reflective of Vancouver, Canada. For all other locations, this salary may be subject to a geographic adjustment (according to a specific city and state), if an authorization is granted to work outside of the location listed in this posting.
#LI-CB1
We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, or any other legally protected characteristic. Period.
If you require a reasonable accommodation to participate in the hiring process - such as during pre-employment testing or interviews - please indicate this by selecting "Yes" in the accommodation request field. We'll reach out to discuss your needs if you're selected for the interview stage.
#MG