Jobs

Manager, Security Operations (SOC) (Remote)

United States (U.S.)United StatesNorth AmericaApril 30, 2024

Company Overview

ID.me simplifies how people securely prove and share their identity online. The company empowers people to control their data through a portable and trusted login, which means they don’t need to create a new password when visiting sites that have the ID.me button.

The COVID-19 pandemic accelerated digital migration for many critical services. Those services require a trusted identity to safeguard against fraud and help ensure people are who they claim to be. With ID.me, login and identity credentials move with people, which can reduce the time and frustration of having to verify at multiple sites and set up multiple passwords.

ID.me is a credential service provider compliant with federal standards for digital identity verification. 

In addition to helping people control their credentials and data, the company’s “No Identity Left Behind” initiative strives to expand access and inclusion for all people. The company offers multiple pathways to verification – online self-serve, live video chat agents, and in person. ID.me is passionate about building a robust identity network that does not compromise access for traditionally underserved groups.

Role Overview

ID.me is looking for a Security Operations Center (SOC) Manager. This role reports to the Director of Cybersecurity and is responsible for the operations of the Security Operations Center, including related cyber security technologies with a focus on Insider Threat, Continuous Monitoring, Incident Response and Digital Forensics. The role will oversee the staff, processes and infrastructure responsible for the aforementioned functions. The manager will be responsible for driving process refinement and implementation, project management, cross-functional collaboration, maintenance of external relationships (MSSP) and direct supervision of staff. 

Responsibilities

  • Manage team of security experts and provide hands-on expertise over the areas of Insider Threat, Continuous Monitoring, Incident Response and Digital Forensics
  • Establish standard operating processes and protocols for reporting, incident response, risk management, planning, exercising, training, and continuous operational improvement
  • Manage vendor partners including Managed Security Services Provider (MSSP), to ensure maximum return on investment
  • Ensure assessment, reporting, identification, and monitoring of incidents
  • Review and organize security reports with a clear understanding of the threat, severity and ramifications in order to triage, prioritize, reproduce, troubleshoot, resolve, escalate, and report
  • Identify and incorporate all required log sources and work towards centralized logging and full visibility across the enterprise
  • Define, deploy and tune detection and response platforms to ensure appropriate breadth and depth of threat activity across the enterprise
  • Stay abreast of current information security risks and the Tactic, Techniques and Procedures (TTPs) of attackers
  • Foster synergy with the Cyber Threat Intelligence team through collaboration and ensuring all activities are driven and prioritized by Intelligence
  • Review and propose changes to systems and processes in order to drive proactive ongoing risk mitigation. Recommend appropriate threat mitigation and remediation steps.
  • Contribute to the development of security policies, procedures, guidelines, and best practices used to ensure company compliance
  • Support cyber security engineers to ensure success of security initiatives
  • Assist in the development of key security objectives and corresponding strategic plan to safeguard the company’s computer systems and data
  • Assist in the support of internal and external audits and risk assessment activities, including any required remediation of audit issues or mitigation of risk
  • Establish and maintain management reporting, through the use of metrics and KPI’s on the effectiveness of Threat Intelligence, Vulnerability and Patch Management programs

Ideal Qualifications

The qualifications below are ideal, but not all are required.  We encourage candidates to apply if they satisfy some, but not all of the qualifications.

  • 3+ years of experience directly managing a team of security professionals
  • 7+ years of experience in information security
  • 3+ years of experience supporting a Security Operations Center (SOC) or similar
  • Hands-on experience with SIEM and centralized logging technologies (e.g. Splunk, Elastic, etc)
  • Strong capabilities leveraging scripting languages to automate work or build features (Bash, Python, and/or Ruby)
  • Experience securing cloud environments such as AWS, GCP, and/or Azure
  • Ability to work core EST hours 
  • Must have ability to influence, advise and collaborate with cross-functional groups such as IT, DevOps, Software Engineering regarding risk and incident response.
  • Working knowledge of Infrastructure Security Concepts (Firewalls, DMZ’s, Intrusion Detection / Prevention Systems, Network Security, Cloud Security, End Point and mobile).
  • Working knowledge of Application Security Concepts (Identity Management, Password Management, RBAC, provisioning, decommissioning, data and code security management).
  • Knowledge of Data Protection Policies, Procedures and Products (Privacy rules & regulations, data security, encryption, digital rights management, Data Loss Prevention).
  • Working knowledge of IT Security Concepts (Disaster Recovery, Penetration/Vulnerability Assessment, Task Organization, Role Segregation, Role Engineering, Security Centric QA).
  • Strong Analytical/Organizational/Time Management skills. Must be able to quickly conceptualize and explain new methods, processes and procedures for practical application.
  • Strong Interpersonal and Communication Skills. Must be able to explain complex systems and technical topics to others who may have minimal technical knowledge using Oral, Written and Visual presentations.
  • Must be self-directed, with the ability to work within and manage a remote workforce.
  • Bonus: Experience with Information Security Compliance, (SOC, FedRAMP, ISO, etc)
  • Bonus: Industry security certifications, such as CISSP, CISM, or related

Ideal candidate will thrive in the following culture:

  • Must have an obsession for data and Intelligence Driven Defenses
  • Ability to thrive when there are changing priorities and shifting of gears
  • Strong oral and written communication skills
  • Must be a team player with a strong, self-managing work ethic
  • Must be a self-starter with a passion for learning and continuous improvement

Note that candidates must be located in the continental U.S.

ID.me Covid Vaccination Requirement

All current and future employees are required to receive their COVID-19 vaccinations, unless a reasonable accommodation is approved. Employees not in compliance with this policy will be placed on leave and will be terminated if no valid reason for not getting the COVID-19 vaccine is provided.  

Purpose: In accordance with ID.me's duty to provide and maintain a workplace that is free of known hazards, we are adopting this policy to safeguard the health of our employees and their families; our customers and visitors; and the community at large from COVID-19 that may be reduced by vaccinations. This policy will comply with all applicable laws and is based on guidance from the Centers for Disease Control and Prevention and local health authorities, as applicable.

Reasonable Accommodation: Current and future employees in need of an exemption from this policy due to a medical reason, or because of a sincerely held religious belief must submit a completed Request for Accommodation form to the human resources department to begin the interactive accommodation process as soon as possible after vaccination deadlines have been announced (September 13th) and an offer of employment has been made. Accommodations will be granted where they do not cause ID.me undue hardship or pose a direct threat to the health and safety of others.

Vision: To be the world's leading digital identity network empowering people to control their own information and to prove their credentials across all channels: online, call center, and in-person.

Mission: To make the world a more trusted place by delivering the highest level of security with the least amount of friction at the lowest possible cost. 

People: We have an audacious mission. We aim to fix the identity layer of the internet. Billions of people will live better lives with more trust and convenience thanks to ID.me. We are like Special Forces. We take on the most difficult challenges with amazing teammates.  

ID.me Core Values: *Don't be a jerk. *Always compete. *Ask questions like a 5-year old. *Inspire people with your passion. *Make something better every day. *Treat each customer like your favorite family member. *Own your mistakes so you can learn from them. *Details are everything. *Communicate like a scientist. *Be truthful (even when it's hard). *Reflect ID.me's values in your actions. *Act like an owner.

ID.me Career Site & Culture Deck: https://www.id.me/careers

ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.

Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.

ID.me participates in E-Verify.

#LI-JS1

#LI-REMOTE

Cyber Security Jobs by Category

Cyber Security Jobs by Location

Cyber Security Salaries