CrawlJobs Logo

SecOps Lead

radancy.com Logo

Radancy

Location Icon

Location:
United States

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

115000.00 - 120000.00 USD / Year

Job Description:

The Vulnerability Program Lead is part of our Security Operations (‘SecOps’) team. This role is responsible for leading our vulnerability management program, assessing technology and suppliers, and working with teams to remediate issues. We’re looking for an enthusiastic, hardworking, and creative team member to keep our company secure.

Job Responsibility:

  • Managing vulnerability testing tools, scheduling and creating scans, working with tech teams to remediate issues
  • Lead a team of vulnerability analysts and coordinate with managed security service providers
  • Report on vulnerabilities and the overall health of the vulnerability management program
  • Document, prioritize and formally report asset and vulnerability state, along with remediation recommendations and validation
  • Working with clients to resolve public facing vulnerabilities in our applications and associated infrastructure
  • Regularly research and learn new TTPs in public and closed forums, and work with colleagues to assess risk and implement/validate controls as necessary
  • Create metrics for management reporting
  • Coordinate with internal and external auditors
  • Coordinate Security RFP responses
  • Maintain document repository and audit book
  • Monitor for new vulnerabilities (US-CERT, NVD, CVE, Twitter)
  • Maintains monthly status reports for RFPs/Vulnerabilities/Security Training
  • Maintains ticketing system
  • Tracks and coordinates SecOps projects
  • Develop and maintain a calendar for the above activities
  • Improve SecOps efficiency, maintain workflows and collaboration
  • Participates in finding process improvement opportunities, provides solutions and participates in implementation of changes

Requirements:

  • Familiarity with vulnerability assessment tools and manual testing practices for Applications and Systems (Qualys, InsightVM, Metasploit, Burpsuite, Veracode)
  • 3+ years performing vulnerability management
  • Ability to plan, organize, prioritize and independently solve problems seeking help when necessary
  • Strong communication skills, very proactive and results oriented
  • Knowledge of software development processes and concepts
  • Understanding of OWASP, USCERT, NIST, ISO 27001/270002 a plus
  • Ability to meet deadlines
  • Proficient with Linux
  • Proficient with Microsoft Office
  • Ability to stay calm under pressure and the ability to set customer expectations and clearly follow through to meet them

Nice to have:

Understanding of OWASP, USCERT, NIST, ISO 27001/270002

What we offer:
  • Comprehensive medical coverage, with dental, vision and life insurance
  • Competitive 401(k) plan with employer matching
  • Unlimited flexible time off (FTO)
  • World-class training that keeps you at the forefront of innovation

Additional Information:

Job Posted:
January 04, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for SecOps Lead

Secops Lead

Serves as the Lead Cybersecurity Operations (SECOPS) contractor, providing senio...
Location
Location
United States , Washington, DC
Salary
Salary:
Not provided
aac.com Logo
AAC
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated ability to guide technical discussions and provide expert advisory support to senior government officials, including the CISO, system owners, SOC staff, and executive leadership, while operating under government direction
  • Proven experience as a SOC Lead or Senior Team Lead, successfully coordinating with managed security service providers (MSSPs) and external cybersecurity partners (e.g., CISA, CYBERCOM) in support of incident response (IR), incident handling (IH), and vulnerability management (VM) activities), including mitigating actions to contain activity and facilitating forensics analysis when necessary
  • Documented experience conducting and guiding in-depth technical evaluations of INFOSEC, IT security, and cybersecurity tactics, techniques, and procedures (TTPs), including their impact on baseline system configurations
  • Demonstrated proficiency providing cybersecurity posture assessments, hygiene reporting, and technical input in support of Governance, Risk, and Compliance (GRC) activities and continuous monitoring programs
  • Experience providing incident response support to network subscribers, including recommending mitigating actions, supporting containment efforts, and facilitating forensic analysis under government oversight
  • Demonstrated expertise in log-based and endpoint-based threat detection, threat hunting, and analysis across multiple threat sources
  • Strong technical knowledge of web services security, Microsoft cloud environments (Azure, M365), and modern enterprise security architectures
  • Advanced experience evaluating the security of complex web portals, APIs, and databases (e.g., Java, Ruby, SQL, Oracle) using commercial and open-source security assessment tools such as SQLmap and mongoaudit
  • Near-expert proficiency in: Web application security testing frameworks (e.g., NMAP, W3af)
  • Continuous monitoring and remediation tools (e.g., Azure Security Center, Defender for Cloud, Qualys, Wireshark)
Job Responsibility
Job Responsibility
  • Serves as the Lead Cybersecurity Operations (SECOPS) contractor, providing senior-level technical leadership and operational support to the Agency’s IT Security Program
  • Supports and coordinates SECOPS activities under government direction and maintains technical inputs to the Agency’s IT Security Program
  • Provides senior technical advisory support to the Chief Information Security Officer (CISO) on developments in cybersecurity, information security (INFOSEC), and IT security, including emerging threat vectors, advanced persistent threats (APTs), attack surface analysis, and identified weaknesses
  • Supports Agency-level technical implementation of approved cybersecurity policies, standards, and directives by developing technical documentation, implementation guidance, and draft procedures for government review and approval
  • Leads day-to-day contractor cybersecurity operations activities within the SECOPS function, supporting government-led oversight of systems and services that impact the Agency’s mission and critical infrastructure
  • Implements and administers cybersecurity incident handling (IH) and incident response (IR) capabilities, including SIEM dashboards, detection inputs, incident response playbooks, and operational metrics, to improve efficiency and effectiveness of security operations
  • Facilitates and coordinates SECOPS activities in support of the Agency’s Information Security (INFOSEC) Program, assisting Agency system security personnel and Information System Security Officers (ISSOs)
  • Serves as the senior technical advisor for threat, vulnerability, and configuration management activities, providing threat intelligence analysis, mitigation recommendations, and defensive strategy insights to Agency stakeholders
  • Fulltime
Read More
Arrow Right

Platform Tech Lead (SecOps & Observability)

You are the technical leader for the E-Commerce SecOps & Observability team with...
Location
Location
Portugal
Salary
Salary:
Not provided
valtech.com Logo
Valtech
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Understands the 'North Star' for metrics, logs, traces, and security posture for E-Commerce services
  • Guide the team in building tools and patterns that validate availability, performance, scalability, and security through tooling defaults, scorecards, and automation
  • Lead the creation of reference implementations
  • Encourage the team to work in small, testable chunks, prioritising the most impactful needs, shipping capabilities, and measuring adoption
  • Manage Risks, Assumptions, Issues, and Dependencies for the SecOps and observability domains
  • Lead sprint planning and support the delivery manager with retrospectives and other ceremonies
  • Write code and documentation that others can use, demonstrating patterns with working examples
  • Build tools to measure adoption and show impact
  • Treat product teams as customers, proactively seeking feedback
Job Responsibility
Job Responsibility
  • Technical leader for the E-Commerce SecOps & Observability team within the Platform Engineering Chapter at easyJet
  • Taking requirements from engineering teams, planning how to deliver platform products efficiently
  • Keeping your team running effectively to meet needs
  • Working closely and collaboratively with other platform engineering teams
  • Ensuring all capabilities integrate with the Backstage IDP, providing teams with an overview of their service health, security posture scorecards, and monitoring tool adoption
  • Creating reference implementations and 'Golden Paths' that make it easy for teams to get world-class observability and security
  • Working closely with Platform Architects for technical direction and the Head of Platform Engineering for broader platform strategy
  • Working with the central Observability and Security teams to ensure alignment and unblock dependencies
What we offer
What we offer
  • Flexibility, with remote and hybrid work options (country-dependent)
  • Career advancement, with international mobility and professional development programs
  • Learning and development, with access to cutting-edge tools, training and industry experts
Read More
Arrow Right

Solutions Consultant

As a Solutions Consultant at GlideFast Consulting, you will support both pre-sal...
Location
Location
United States , Waltham
Salary
Salary:
130000.00 - 165000.00 USD / Year
glidefast.com Logo
GlideFast
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 1+ years of experience in pre-sales, solutions consulting, or similar client facing technical role
  • Proven proficiency with ServiceNow ITSM, plus expertise in at least one additional application suite (ITOM, ITAM, SPM, EA, SecOps, GRC/IRM, CSM, or HRSD)
  • Experience working with ServiceNow ITSM, with exposure to at least one additional major application suite (e.g., ITOM, SPM, SecOps, GRC/IRM, CSM, HRSD)
  • Experience leading discovery sessions, scoping engagements, and preparing project estimates (ROMs/LOEs)
  • Demonstrated experience presenting complex solutions to both technical audiences and business leaders
  • ServiceNow Certified System Administrator and ServiceNow Certified Implementation Specialist-ITSM certifications are required
  • Sales Accreditations: Platform, ITSM, and at least 2 other specialist areas, preferred
  • Presales Accreditations: Platform, ITSM, and at least 2 other specialist areas, preferred
  • ITIL Foundations v4
  • Maintain an active government security clearance if applicable
Job Responsibility
Job Responsibility
  • Provide clients with ServiceNow vendor and industry best practice guidance to ensure successful implementations
  • Support sales discovery sessions and pre-sales activities, addressing both technical and functional inquiries
  • Lead initial scoping sessions to define potential engagements and estimate project level of effort (LOE)
  • Communicate and present solutions effectively to diverse audiences, including technical experts and C-Level stakeholders
  • Deliver detailed project scope information to delivery teams to guide implementation
  • Assist in preparing, reviewing, and updating Rough Orders of Magnitude (ROMs) and Statements of Work (SOWs)
  • Draft, review, and maintain business agreements and contracts as needed
  • Maintain professionalism and an uninterrupted work environment during all meetings and interactions
  • Demonstrate strong corporate citizenship by completing required administrative tasks and internal documentation accurately, on time, and within the outlined processes
  • Fulltime
Read More
Arrow Right

Tech Lead - IR, Cyber Security, SecOps

As the Tech Lead of IR, you will be the captain of the front-line defence. You w...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
jfrog.com Logo
JFrog
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Leadership Experience: 1+ years of experience leading technical teams or acting as a formal mentor/technical lead in a security context
  • Deep Technical Roots: 7+ years of industry experience in security with a focus on Information Security principles
  • Cloud Mastery: Proven expertise in attack and mitigation methods within complex AWS, GCP, or Azure environments
  • Incident Response Prowess: Extensive experience in risk prioritization and managing the lifecycle of security incidents in a global production environment
  • Technical Breadth: Mastery in at least 5 of the following: Endpoint Protection (EDR/XDR) & Zero Trust architecture
  • Identity Management (IAM/IDM) and SSO/SAML
  • Security Analytics (SIEM/Logging) such as ELK or Splunk
  • Container Security (Docker, Kubernetes)
  • Email Protection & Patch Management
  • Coding Proficiency: Ability to review and guide the development of security tools in Python or Go
Job Responsibility
Job Responsibility
  • Incident Command: Act as the primary escalation point for high-priority security incidents, leading the triage, containment, and post-mortem processes
  • Architect Operations: Oversee the design and execution of vulnerability management, SaaS security posture (CASB), and asset management at scale
  • Drive Automation: Champion "Security as Code" by leading the development of internal tools (Python/Go) to automate monitoring and remediation
  • Cross-Functional Partnership: Collaborate with SRE, DevOps, and Product teams to drive holistic fixes for systemic architectural vulnerabilities
  • Evangelize Security: Build a culture of security across the organization through training, documentation, and proactive risk management
Read More
Arrow Right

SecOps Lead

As a Security Operations Lead at Island, you will operationalize and enhance the...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of detection engineering, security operations workflows, and incident response practical experience
  • Proficiency in scripting and automation (e.g., Python, Bash, PowerShell) to build scalable security tooling
  • Hands-on experience (3+ years) with SIEM, EDR, cloud security monitoring, and incident management
  • Familiarity with cloud security (AWS/GCP/Azure) principles and secure DevOps practices
  • Solid grasp of modern attack techniques, threat actor behaviors, and vulnerability exploitation patterns
  • Curiosity-driven, operations-focused mindset with a passion for keeping adversaries out and operations resilient
Job Responsibility
Job Responsibility
  • Security Monitoring & Incident Response: Design, implement, and maintain security monitoring solutions
  • investigate and respond to security events, anomalies, and vulnerabilities relevant to the Island Enterprise Browser and supporting infrastructure
  • Operational Security Automation: Develop custom automation for detection, alerting, triage, and response workflows
  • optimize signal-to-noise ratio to enable fast and accurate threat detection
  • Threat Intelligence & Hunting: Collect, analyze, and operationalize threat intelligence relevant to our threat model
  • conduct proactive threat hunting activities tailored to the enterprise browser domain
  • Security Operations Playbooks: Create and maintain incident response guides, runbooks, and operational playbooks to enable structured, high-fidelity security operations and empower cross-functional teams
  • Security Enablement & Awareness: Collaborate with product, engineering, and IT teams to improve security awareness, deliver training, and drive adoption of security best practices across Island
  • Fulltime
Read More
Arrow Right
New

Senior Servicenow Technical Consultant - Secops (Sir/Vr)

I'm looking for a Senior ServiceNow Technical Consultant with deep expertise in ...
Location
Location
United Kingdom , London
Salary
Salary:
50000.00 - 100000.00 GBP / Year
https://www.randstad.com Logo
Randstad
Expiration Date
March 11, 2026
Flip Icon
Requirements
Requirements
  • UK residency and eligibility for Security Clearance (SC)
  • ServiceNow Certifications: Certified System Administrator
  • Implementation Specialist cert in SIR or VR
Job Responsibility
Job Responsibility
  • Lead technical delivery of SecOps implementations (SIR/VR)
  • Translate requirements into scalable platform configurations
  • Act as a trusted advisor to clients
  • Mentor other technical consultants
!
Read More
Arrow Right

SecOps Architect

As an Architect with GlideFast Consulting, you will be responsible for the overa...
Location
Location
United States
Salary
Salary:
155000.00 - 200000.00 USD / Year
glidefast.com Logo
GlideFast
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years delivering / architecting / implementing technical solutions on ServiceNow
  • 5+ years professional consulting
  • 2+ years implementing ServiceNow SecOps solutions
  • Certified System Administrator Certification (CSA)
  • Certified Application Developer Certification (CAD)
  • 2+ Certified Implementation Specialist Certification (CIS): CIS- Vulnerability Response (CIS-VR), CIS- Security Incident Response (CIS-SIR) or CIS- Threat Intelligence (CIS-TI)
Job Responsibility
Job Responsibility
  • Lead the architectural design and oversee delivery of ServiceNow implementations aligned with client business objectives, helping clients maximize the platform’s value through effective solutions
  • Own end-to-end technical solutions, including architecture, configuration, and integrations, across multiple projects
  • Develop expert-level JavaScript and ServiceNow APIs to build scalable, maintainable solutions
  • Design and implement business rules, client scripts, script includes, UI policies, ACLs, data policies, and UI scripts
  • Lead development efforts across key areas such as: ServiceNow Applications (SecOps) and Third-Party Integrations (REST, SOAP, MID Servers)
  • Conduct client workshops, support demos, and gather technical and functional requirements
  • Create technical architecture documents, including process flows and design specifications
  • Review team code and provide feedback to ensure quality and adherence to best practices
  • Collaborate with Business Process Consultants during planning and validation sessions
  • Lead troubleshooting efforts to resolve complex issues across internal and client teams
  • Fulltime
Read More
Arrow Right

Principal Security Engineer

We are seeking a visionary and hands-on Principal Security Engineer to architect...
Location
Location
United States , San Antonio
Salary
Salary:
Not provided
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of progressive experience in cybersecurity
  • At least 5 years dedicated to Application Security or Cloud Security engineering
  • Deep technical proficiency in AWS, including native security services (GuardDuty, Inspector, WAF, KMS) and IAM policy architecture
  • Strong coding/scripting background
  • Must be able to read and review code in languages such as Python, Go, Java, or Node.js
  • Expert knowledge of modern application security frameworks and standards, specifically OWASP Top 10, OWASP API Security Top 10
  • Proven experience implementing and managing DevSecOps pipelines (Jenkins, GitHub Actions) and toolchains (SonarQube, Snyk, Veracode, etc.)
  • Hands-on experience with Container Security (Docker, Kubernetes) and securing serverless architectures
  • Demonstrated ability to write clear, concise technical policies and procedures
Job Responsibility
Job Responsibility
  • Draft and own technical security policies and procedures for Engineering and Product teams
  • Serve as the primary security liaison to the Engineering and Delivery teams
  • Partner with the Head of InfoSec and GRC teams to maintain our Unified Control Framework
  • Architect and mature the Secure Software Development Lifecycle (SSDLC)
  • Lead threat modeling for new features and major architectural changes
  • Manage the Vulnerability Assessment and Penetration Testing (VAPT) program
  • Act as a mentor to developers, providing "just-in-time" training on secure coding practices
  • Own the security architecture for our multi-cloud environment (AWS, Azure, GCP)
  • Pioneer our AI Security Strategy
  • Design and maintain Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWPP) strategies
Read More
Arrow Right