Job Closed
This listing is no longer active.
Cleo Communications US, LLC is an equal opportunity/affirmative action employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability status, protected veteran status, or any other characteristic protected by law.
Security Operations Lead
Location
United States
Posted
84 days ago
Salary
$120K - $140K / year
No structured requirement data.
Job Description
Security Operations Lead
Cleo (US)
Cleo is seeking a Security Operations Lead to build, operate, and continuously improve our security detection, response, and operational resilience capabilities. This leader will be responsible for protecting Cleo’s cloud infrastructure, SaaS platforms, endpoints, and corporate environment from evolving threats while ensuring operational stability and regulatory alignment. The ideal candidate is hands-on, technically deep, and capable of building scalable security operations in a high-growth SaaS environment. What You Will Be Doing Security Monitoring and Detection - Own and evolve Cleo’s detection and response strategy - Lead daily monitoring of security events across cloud, endpoint, identity, and application layers - Continuously tune detection rules to reduce noise and improve signal - Ensure effective coverage across AWS, SaaS platforms, and corporate systems - Leverage SIEM, EDR, and cloud-native tooling to improve visibility Incident Response and Containment - Lead security incident investigations and coordinate cross-functional response - Develop and maintain incident response playbooks - Conduct post-incident reviews focused on systemic improvement - Reduce mean time to detect and contain security events - Partner with Legal, Compliance, and Leadership during material incidents Vulnerability and Exposure Management - Oversee vulnerability scanning across infrastructure, endpoints, and cloud resources - Prioritize remediation based on business risk - Track critical vulnerability exposure windows - Partner with Engineering and IT to drive timely remediation Cloud and Identity Security Operations - Monitor and secure AWS accounts and cloud-native services - Identify and remediate misconfigurations - Strengthen identity and access management controls - Collaborate with Cloud Security and Platform teams on guardrails Operational Metrics and Reporting - Define and track security operations KPIs - Report on detection efficacy, remediation timelines, and exposure trends - Provide board-ready operational risk metrics - Support audit and compliance evidence requirements Automation and Continuous Improvement - Automate repetitive operational tasks - Improve alert triage workflows - Optimize tooling effectiveness and cost efficiency - Reduce operational friction through process refinement Leadership and Collaboration - Lead and mentor security analysts and engineers - Partner closely with Engineering, IT, and Platform teams - Contribute to the Security Champion and Guild initiatives - Build a culture of proactive risk identification Your Skills - Experience in mid-market or high-growth SaaS environments - Experience supporting SOC 2, ISO 27001, or similar audits - Familiarity with MITRE ATT&CK framework - Experience building or maturing security operations functions - Relevant certifications such as CISSP, GCIA, GCIH, or similar Your Qualifications Education - Bachelor’s degree required. Experience - 7+ years of experience in security operations, incident response, or detection engineering - Strong experience securing cloud-native SaaS environments, preferably AWS - Hands-on experience with SIEM, EDR, vulnerability management, and cloud security tooling - Deep understanding of attacker techniques and threat detection methodologies - Experience leading incident response efforts - Strong communication skills with the ability to translate technical risk into business impact A few things we have to offer: - Compensation: $120,000 - $140,000 - Great Healthcare + Dental + Vision - Flexible PTO - Culture of support, encouraging Life-Work balance - 401k match - FSA and HSA options - Employee Assistance Program - Paid Parental Leave - Representing a company with 4,000+ clients and a 99% retention rate - Accelerated title and salary growth potential - A fun and energetic work environment that makes you excited to go to work every day We use artificial intelligence (AI) tools to assist in certain stages of our recruitment process, such as resume screening and candidate matching. These tools are designed to support fair and consistent evaluations. If you have questions about this process or would like to request an alternative assessment method, please contact us at hr@cleo.com. Cleo Communications US, LLC is an equal opportunity/affirmative action employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability status, protected veteran status, or any other characteristic protected by law.
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Cybersecurity Incident Response Team Coordinator
General DynamicsGeneral Dynamics is a global aerospace and defense company offering products designed to provide safety and security to people around the world. In the past, Ge
• Act as the primary coordinator for cybersecurity incidents across all product and engineering teams • Lead real-time incident bridges and war rooms during active security events • Drive structured execution of the incident response lifecycle (detection, analysis, containment, eradication, recovery, post-incident review) • Maintain accurate incident documentation, timelines, and impact assessments • Serve as the security liaison between product teams, engineering, infrastructure, legal, compliance, and executive leadership • Coordinate directly with cloud and enterprise technology providers, including Oracle environments where applicable • Align response efforts across multiple products to ensure consistency and minimize business impact • Participate in a 24/7 on-call rotation for high-severity cybersecurity incidents • Provide real-time status updates to leadership and stakeholders • Escalate incidents appropriately based on severity and business impact • Ensure SLA adherence and timely stakeholder notifications • Conduct post-incident reviews (PIRs) and drive root cause analysis efforts • Identify process gaps and recommend improvements to incident response playbooks • Develop and maintain runbooks for cloud-related and cross-product incidents • Partner with Security Operations to improve detection, response readiness, and automation • Support regulatory and customer reporting requirements related to security incidents • Ensure incident handling aligns with company security policies, industry standards, and audit requirements • Contribute to audit readiness and documentation efforts
Cyber Incident Response/Customer Security Operations - SkillBridge Intern
ZscalerZscaler helps leading organizations in 180+ countries securely transform their networks and applications for a mobile and cloud-first world. Founded in 2008, th
About Zscaler Zscaler is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across more than 160 data centers globally, the Zscaler Zero Trust Exchange platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity. Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability. We champion an “AI Forward, People First” philosophy to help us accelerate and innovate, empowering our people to embrace their potential. If you’re driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler to help shape the future of cybersecurity. Role We are looking for a Detection Engineering - SkillBridge Intern to join our Red Canary Customer Service Operations team. This is a remote role reporting to the Manager, Detection Engineering. The security landscape is always shifting and introducing new adversaries. Red Canary operates 24/7 to track down threats using the entirety of our customer’s data and deliver fast and practical detections to our customers. Together, we create a customer-centric culture that fosters success, adoption, and continuous growth. What you’ll do (Role Expectations) - Use Red Canary’s detection platform to analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud/SaaS. - Publish threats for customers using concisely-written communication while effectively conveying key and important indicators. - Research coverage opportunities to create new detectors and tune existing ones through detector development. - Improve the Detection Engineering workflow through orchestration and automation. Who You Are (Success Profile) - You thrive in ambiguity and are comfortable building the path as you walk it. - You act like an owner with a passion for the mission that fuels your bias for action and integrity. - You are a problem-solver who is energized by finding solutions to the hardest challenges to deliver the biggest impact. - You are customer-obsessed, building deep empathy for the customer to anchor your decisions in solving real-world problems. - You operate with urgency, maintaining a relentless focus on execution and delivering high-impact results quickly. What We’re Looking for (Minimum Qualifications) - Cybersecurity operational experience with a focus in Detection and Response. - Must be located in the United States during the SkillBridge program. - Must be a current Active Duty United States military member or a member of the United States Guard/Reserve component on active duty orders for at least the last 180 days with 180 days or fewer remaining prior to your date of discharge. - Approval from your unit commander. - MOU must be approved and submitted before start. What Will Make You Stand Out (Preferred Qualifications) - Experience with EDR tools. - Experience conducting Incident Response activities. - Malware/Threat Analysis and Detection Engineering experience. #LI-TJ1 #LI-remote At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: - Various health plans - Time off plans for vacation and sick time - Parental leave options - Retirement options - Education reimbursement - In-office perks, and more! Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here. By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines. Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link. Pay Transparency Zscaler complies with all applicable federal, state, and local pay transparency rules. Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
Cybersecurity Operations Intern
American SystemsHeadquartered in Chantilly, Virginia, American Systems is a government contractor that provides professional, technical, and Information Technology services. Established in 1975, A
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are looking for an entry-level Cybersecurity Operations summer intern to perform the day-to-day operations of the security solutions and use these solutions to identify, investigate and resolve security incidents on the network. This is a great opportunity for someone who likes to dig in and understand the intricacies of cyber defense, has a technical hands-on mindset, and exhibits good work ethic and a positive attitude to learning the ins and outs of information security operations for an enterprise environment. - Maintain in-place security tools and processes - Evaluate, test and implement new security tools & technologies - Respond to computer security incidents - Research system and network logs and alerts as they relate to incidents - Identify gaps in cyber operations capabilities and assist in developing those capabilities - Develop technical summary information for presentation to management - Work collaboratively with a small team - Communicate in writing or orally to supervisors and management on task planning, status, and results Qualifications - High School diploma and 2 years of college or related work experience - Some exposure to IT tools Benefits AMERICAN SYSTEMS provides for the welfare of its employees and their dependents through a comprehensive benefits program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and education and training assistance. Company Description
Cybersecurity Incident Response Analyst
Binary DefenseReal people detecting real threats in real time.
• Serve as an Incident Response (IR) Analyst supporting the Analysis on Demand (AoD) team. • Drive client meetings to discuss incident scope, investigative findings, and response updates while producing clear and detailed technical reports. • Conduct incident triage and verification, determine scope of compromise, perform threat hunting, and provide containment and remediation recommendations to customers. • Serve as a primary responder and point of contact during incident response engagements, supporting forensic investigation, analysis, and resolution of security incidents. • Work directly with clients to perform investigations, forensically analyze systems, and identify attacker activity across enterprise environments. • Analyze compromised systems to determine attack vectors, persistence mechanisms, lateral movement, and attacker techniques. • Identify attacker tools, tactics, and procedures (TTPs) and understand evolving threat actor behaviors. • Follow industry incident response best practices for containment, eradication, and recovery. • This position focuses on hands-on investigation and incident response, not alert monitoring or tier-1 SOC duties. • Must be familiar with incident response best practices and procedures. • Must have Windows-based incident response and computer forensics experience. • Must be familiar with network analysis, memory analysis, and digital forensics investigations. • Must possess excellent verbal and written communication skills, including the ability to present findings and recommendations to technical teams and leadership.


