Boyd Gaming Corporation

Senior Cyber Defense Manager - Incident Response

Boyd Gaming Corporation$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in cybersecurity; 5+ years in incident response or security operations leadership.
  • Experience leading cyber incident response teams through complex incidents.
  • Background in vendor/MSSP transitions in cybersecurity contexts.
  • Strong grasp of detection technologies (SIEM, EDR/XDR, SOAR).
  • Bachelor's degree in Cybersecurity, Computer Science, or related field (Master's preferred).
  • Relevant certifications such as CISSP, CISM, or GIAC.

Responsibilities

  • Oversee the incident response lifecycle, ensuring adherence to frameworks.
  • Manage day-to-day incident response operations, including investigation and reporting.
  • Develop and regularly test incident response playbooks and procedures.
  • Drive improvements in threat detection engineering and reduce false positives.
  • Lead transition of MSSP services, ensuring service continuity and knowledge transfer.
  • Build and mentor a high-performance incident response team with ongoing learning.
  • Serve as primary contact for major incidents, coordinating with various stakeholders.

Benefits

  • Ongoing professional development and training opportunities.
  • Support for certifications and continuing education.
  • A collaborative work environment with a focus on innovation.
  • Flexible working arrangements to promote work-life balance.
Full Job Description
Job Description

Lead the Cyber Incident Response Program
  • Oversee the full incident response lifecycle: preparation, identification, containment, eradication, recovery, and post-incident lessons learned (per NIST SP 800-61 or similar frameworks).
  • Manage day-to-day incident response operations, including triage, investigation coordination, forensic analysis, and executive-level reporting.
  • Develop, maintain, and regularly test incident response playbooks, runbooks, and escalation procedures.

Enhance Detection Capabilities
  • Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral analytics.
  • Collaborate with SOC, threat hunting, and security engineering teams to reduce false positives, accelerate mean time to detect (MTTD) and respond (MTTR), and implement proactive detection use cases.
  • Lead initiatives to mature internal blue-team capabilities across endpoints, cloud, identity, network, and email environments.

Manage MSSP Services Transition
  • Lead the end-to-end transition of MSSP services from the current provider to the new partner, including planning, knowledge transfer, contract/SLA alignment, and cutover execution.
  • Conduct due diligence on the new MSSP, define transition success criteria, and mitigate risks during handover (e.g., service continuity, data migration, access controls).
  • Establish governance for the new MSSP relationship, including performance monitoring, regular service reviews, incident handoff protocols, and continuous improvement feedback loops.
  • Ensure the transition strengthens rather than disrupts detection and response effectiveness.

Team Leadership & Development
  • Build, mentor, and lead a high-performing incident response team (internal analysts, responders, and cross-functional partners).
  • Provide performance management, career development, and technical coaching to team members.
  • Foster a culture of continuous learning, tabletop exercises, red/blue team simulations, and post-incident reviews.
  • Stakeholder Collaboration & Reporting
  • Serve as the primary point of contact for major incidents, briefing executive leadership, legal, compliance, and external regulators as needed.
  • Coordinate with IT, legal, risk, business units, and external partners (e.g., law enforcement, forensics firms) during incidents.
  • Produce executive-level reports on incident trends, program maturity, detection improvements, and transition status.

Program Maturity & Compliance
  • Align incident response practices with industry standards (NIST, ISO 27001, MITRE ATT&CK, etc.) and regulatory requirements.
  • Drive metrics-driven improvements and maturity assessments for the IR program.
  • Contribute to enterprise-wide security initiatives, including vulnerability management, threat intelligence, and security awareness.


Qualifications

Required:
  • 10+ years of progressive experience in cybersecurity, with at least 5+ years in incident response, digital forensics, or security operations leadership roles.
  • Proven experience leading cyber incident response teams and managing complex, high-impact incidents.
  • Demonstrated success in vendor/MSSP transitions or outsourcing handovers in a cybersecurity context.
  • Strong understanding of detection technologies (SIEM, EDR/XDR, SOAR, threat intelligence platforms) and experience improving detection efficacy.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related field (Master's preferred).
  • Relevant certifications such as CISSP, CISM, GIAC GCFA/GCIH/GCTI, or similar.

Preferred:
  • Experience in a regulated industry (e.g., finance, healthcare, critical infrastructure).
  • Hands-on technical experience with tools such as Splunk, Elastic, CrowdStrike, Microsoft Defender, Sentinel, or similar.
  • Prior experience building or maturing an internal SOC/IR function while reducing MSSP dependency. Skills & Competencies
  • Exceptional leadership, communication, and stakeholder management skills - able to translate technical details for non-technical audiences.
  • Strong project/program management abilities, especially in high-stakes transitions. • Analytical mindset with experience in root cause analysis and threat hunting.
  • Ability to thrive in a fast-paced, high-pressure environment with on-call responsibilities.
  • Strategic thinker focused on long-term program maturity and risk reduction.


Additional Information

About Boyd Gaming Corporation

Boyd Gaming Corporation, together with its subsidiaries, operates as a multi-jurisdictional gaming company. It operates through three segments: Las Vegas Locals, Downtown Las Vegas, and Midwest & South. The company owns and operates 29 gaming entertainment properties located in Nevada, Illinois, Indiana, Iowa, Kansas, Louisiana, Mississippi, Missouri, Ohio, and Pennsylvania. Its portfolio includes hotels, casino, breweries, resorts, and spa. Boyd Gaming Corporation was founded in 1975 and is headquartered in Las Vegas, Nevada.
Learn more about Boyd Gaming Corporation
Size
15,114 employees
Market Cap
$5.6 billion
Industry
Net Income
-$134.7 million
Founded
1975
5 Year Trend
+8.9%
Revenue
$2.1 billion
NASDAQ

Similar Jobs

More Jobs at Boyd Gaming Corporation

  • Boyd Gaming Corporation
    Sr Software Engineer
    $100K — $130K *
    Las Vegas, NV 89110 (Clark County)
    Information Technology
    In-Person
  • Boyd Gaming Corporation
    VP Marketing
    $120K — $180K *
    Norfolk, VA 23503 (Norfolk City County)
    Business Services
    In-Person
  • Boyd Gaming Corporation
    Director Slot Operations
    $90K — $120K *
    Las Vegas, NV 89110 (Clark County)
    Hospitality & Recreation
    In-Person
  • Boyd Gaming Corporation
    Sr IT Project Manager
    $90K — $130K *
    Las Vegas, NV 89110 (Clark County)
    Information Technology
    In-Person
  • Boyd Gaming Corporation
    VP Human Resources
    $120K — $180K *
    Norfolk, VA 23503 (Norfolk City County)
    Hospitality & Recreation
    In-Person

More Information Technology Jobs

Find similar Senior Cyber Defense Manager - Incident Response jobs: