Job Closed
This listing is no longer active.
Join. Grow. Lead the Future of Supply Chain. At Cleo, we don’t just integrate supply chains—we orchestrate them. As the pioneer and global leader of the Supply Chain Orchestration software category, Cleo is helping thousands of companies around the globe drive transformation, deliver excellence, and shape the future of their global operations. Whether you're joining us from outside or growing within, Cleo is your platform to lead with purpose, innovate with impact, and thrive in a culture that champions your growth. Why Join Us? Strategic Influence: Be at the helm of global supply chain strategy, driving decisions that impact customers, partners, and communities worldwide. Innovation-Driven Culture: Work with the latest in AI, automation, and digital supply chain platforms to solve complex challenges. End-to-End Visibility: Lead across planning, sourcing, logistics, and fulfillment—connecting dots others can’t see. Sustainability at the Core: Help build ethical, transparent, and sustainable supply chains that make a difference. Why Grow with Us? Leadership Development: Access world-class programs, executive mentorship, and rotational opportunities to accelerate your career. Internal Mobility: We prioritize internal talent—your next big opportunity could be just one conversation away. Recognition & Impact: Your ideas matter. Your leadership is visible. Your success is celebrated. Inclusive Community: Thrive in a diverse, collaborative environment where every voice is heard and respected. Our Promise We are a top talent destination for supply chain leaders technology who want to make bold moves, solve real-world problems, and grow without limits. Whether you’re stepping into your first leadership role or scaling new heights, your journey starts here. Cleo … never stops
Security Operations Lead
Location
United States
Posted
56 days ago
Salary
$120K - $140K / year
Seniority
Senior
Job Description
Security Operations Lead
Cleo
Cleo is seeking a Security Operations Lead to build, operate, and continuously improve our security detection, response, and operational resilience capabilities. This leader will be responsible for protecting Cleo's cloud infrastructure, SaaS platforms, endpoints, and corporate environment from evolving threats while ensuring operational stability and regulatory alignment. The ideal candidate is hands-on, technically deep, and capable of building scalable security operations in a high-growth SaaS environment. What You Will Be Doing Security Monitoring and Detection - Own and evolve Cleo's detection and response strategy - Lead daily monitoring of security events across cloud, endpoint, identity, and application layers - Continuously tune detection rules to reduce noise and improve signal - Ensure effective coverage across AWS, SaaS platforms, and corporate systems - Leverage SIEM, EDR, and cloud-native tooling to improve visibility Incident Response and Containment - Lead security incident investigations and coordinate cross-functional response - Develop and maintain incident response playbooks - Conduct post-incident reviews focused on systemic improvement - Reduce mean time to detect and contain security events - Partner with Legal, Compliance, and Leadership during material incidents Vulnerability and Exposure Management - Oversee vulnerability scanning across infrastructure, endpoints, and cloud resources - Prioritize remediation based on business risk - Track critical vulnerability exposure windows - Partner with Engineering and IT to drive timely remediation Cloud and Identity Security Operations - Monitor and secure AWS accounts and cloud-native services - Identify and remediate misconfigurations - Strengthen identity and access management controls - Collaborate with Cloud Security and Platform teams on guardrails Operational Metrics and Reporting - Define and track security operations KPIs - Report on detection efficacy, remediation timelines, and exposure trends - Provide board-ready operational risk metrics - Support audit and compliance evidence requirements Automation and Continuous Improvement - Automate repetitive operational tasks - Improve alert triage workflows - Optimize tooling effectiveness and cost efficiency - Reduce operational friction through process refinement Leadership and Collaboration - Lead and mentor security analysts and engineers - Partner closely with Engineering, IT, and Platform teams - Contribute to the Security Champion and Guild initiatives - Build a culture of proactive risk identification Your Skills - Experience in mid-market or high-growth SaaS environments - Experience supporting SOC 2, ISO 27001, or similar audits - Familiarity with MITRE ATT&CK framework - Experience building or maturing security operations functions - Relevant certifications such as CISSP, GCIA, GCIH, or similar Your Qualifications Education - Bachelor's degree required. Experience - 7+ years of experience in security operations, incident response, or detection engineering - Strong experience securing cloud-native SaaS environments, preferably AWS - Hands-on experience with SIEM, EDR, vulnerability management, and cloud security tooling - Deep understanding of attacker techniques and threat detection methodologies - Experience leading incident response efforts - Strong communication skills with the ability to translate technical risk into business impact A few things we have to offer: - Compensation: $120,000 - $140,000 - Great Healthcare + Dental + Vision - Flexible PTO - Culture of support, encouraging Life-Work balance - 401k match - FSA and HSA options - Employee Assistance Program - Paid Parental Leave - Representing a company with 4,000+ clients and a 99% retention rate - Accelerated title and salary growth potential - A fun and energetic work environment that makes you excited to go to work every day
Benefits
- 401(K), 401(K) matching, Childcare benefits, Company-sponsored outings, Customized development tracks, Dental insurance, Disability insurance, Documented equal pay policy, Volunteer in local community, Family medical leave, Flexible Spending Account (FSA), Flexible work schedule, Generous parental leave, Company-sponsored happy hours, Health insurance, Job training & conferences, Open door policy, Life insurance, Paid volunteer time, Online course subscriptions available, Onsite gym, Open office floor plan, Paid holidays, Paid industry certifications, Paid sick days, Onsite office parking, Partners with nonprofits, Performance bonus, Promote from within, Recreational clubs, Lunch and learns, Remote work program, Free snacks and drinks, Team based strategic planning, Mandated unconscious bias training, Unlimited vacation policy, Vision insurance, Some meals provided, Mental health benefits, Home-office stipend for remote employees, Hiring practices that promote diversity, Employee resource groups, Quarterly engagement surveys, Hybrid work model, In-person revenue kickoff, President's club, Employee awards, Mother's room, Apprenticeship programs, Flexible time off, Bereavement leave benefits
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Director of Security Operations
Best EggA consumer FinTech startup, Best Egg provides personalized financial solutions to people who have little to no savings. A division of Marlette Funding, a consumer financing technol
• Own end-to-end security operations including SOC, monitoring, and detection capabilities • Oversee SIEM, EDR, and logging programs to ensure effective threat detection and response • Manage internal and third-party security operations providers (e.g., MSSP) • Continuously improve alert quality, detection coverage, and operational efficiency • Act as technology incident commander for security events and incidents • Lead operational response including triage, containment, eradication, and recovery • Ensure incidents are managed in accordance with established procedures and SLAs • Escalate critical and high-risk incidents to the CISO with clear analysis and recommendations • Lead post-incident reviews and drive continuous improvement actions • Own the operational lifecycle of vulnerability management including scanning, prioritization, and remediation tracking • Ensure adherence to defined remediation timelines and SLAs • Coordinate penetration testing activities and validation of remediation efforts • Provide visibility into vulnerability risk and remediation progress • Oversee logging and monitoring programs to ensure comprehensive visibility across the environment • Drive development and tuning of detection use cases and alert logic • Ensure effective integration of threat intelligence into detection and response processes • Oversee operational response to phishing and email-based threats • Ensure timely triage, analysis, and mitigation of reported phishing activity • Partner with the Manager, Information Security on phishing trends and control improvements • Ensure security controls are operating effectively across monitoring, incident response, vulnerability management, and access enforcement • Identify control gaps, breakdowns, or inefficiencies and drive remediation • Escalate systemic control issues and risks to the CISO and Technology Risk • Develop and maintain operational metrics and KPIs (e.g., MTTR, vulnerability SLAs, alert volumes) • Provide regular reporting on security operations performance and risk trends • Identify opportunities to improve automation, tooling, and processes • Lead and mentor security operations personnel • Partner with Infrastructure, Engineering, DevSecOps, and Technology teams to implement and improve controls • Support audits, regulatory assessments, and evidence requests related to security operations
Security Operations Intern
Best EggA consumer FinTech startup, Best Egg provides personalized financial solutions to people who have little to no savings. A division of Marlette Funding, a consumer financing technol
• Developing and maintaining security operations metrics and dashboards to improve visibility into SOC performance and support data-driven decision making • Analyzing security data to identify trends, gaps, and opportunities for improvement, and presenting findings to the team. • Supporting vulnerability management efforts by analyzing and helping drive remediation of out-of-SLA vulnerabilities across Service Desk, Infrastructure, and Product teams, improving SLA adherence and reducing risk exposure. • Collaborating with cross-functional teams to understand remediation challenges and help drive resolution of security findings. • Contributing to the improvement of security processes, including reporting, ticket workflows, and escalation paths. • Assisting in documenting and refining security runbooks and operational procedures.
Security Operations Architect
Veeam SoftwareYour Single Backup and Data Management Platform for Cloud, Virtual and Physical
• Perform reviews and approvals for Antivirus Exclusions, Browser Extensions, Email Whitelisting, Firewall Rules, Software Installations, and General Security Guidance. • Complete out-of-band requests and Product Architecture (VDC) alignment/support within SLA targets. • Attend Architecture Committee and AI Committee meetings; provide security input and document decisions. • Ensure security controls are integrated into all reviewed projects and changes. • Maintain and update existing security reference architectures under Senior Director guidance. • Contribute to Technical Standards documentation and special projects (e.g., Polaris). • Apply risk assessment frameworks to ticketed requests and suggest compensating controls. • Support the vulnerability management exception process for assigned items. • Work with CT Security Engineering, Cyber Operations, and business units to apply consistent security best practices. • Escalate complex issues to the Senior Director and assist in policy enforcement. • Stay current with security trends, tools, and threats relevant to daily review tasks. • Recommend tactical improvements to streamline approval workflows.
We are looking for a hands-on Security Operations Engineer to own and evolve our security posture across infrastructure, endpoints, and internal systems. You will be the primary driver of day-to-day security operations — from managing protective tooling to responding to incidents and coordinating audits. This is a high-ownership role with direct impact on how the company detects, responds to, and prevents security threats. Responsibilities: - **Security Systems Management** Own the configuration, maintenance, and continuous improvement of security tooling across the organization — including DLP (Data Loss Prevention), MDM (Mobile Device Management), SIEM, and endpoint protection platforms. Ensure policies are enforced, coverage is complete, and tooling stays current with evolving threats and business needs. - **Incident Management** Act as the first responder for security incidents: triage alerts, investigate root causes, coordinate containment and remediation, and produce clear post-mortem reports. Build and refine runbooks and playbooks to reduce response time and improve team readiness over time. - **Infrastructure Security** Partner with DevOps and Engineering teams to embed security across cloud infrastructure, Kubernetes workloads, CI/CD pipelines, and network layers. Conduct regular reviews of IAM policies, secrets management, network segmentation, and access controls to identify and close gaps before they become incidents. - **Audit & Penetration Testing** Coordinate internal and external security audits, manage relationships with pentest vendors, and track remediation of findings through to closure. Conduct ongoing vulnerability assessments and support compliance activities (SOC 2, ISO 27001, PCI DSS, or equivalent) by maintaining evidence and responding to auditor requests.



