Cyber Security Manager: Incident Detection and Response
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Responsibilities
- Lead, mentor, and develop a blended IDR team (IR, SOC operations, threat detection, and security tooling engineers)
- Lead cyber incident investigations across the environment and oversee root cause analysis
- Lead the design and operation of detection capabilities aligned with compliance requirements and risk appetite
- Oversee the development of threat models and provide guidance on improving cyber defense posture
- Execute and oversee a process of a data driven methodology for measuring cyber defense effectiveness
- Coordinate cross-functional response activities with IT infrastructure, applications, OT/ICS teams, legal, HR, communications, and other stakeholders.
- Establish and track metrics to measure defense effectiveness, report outcomes and trends to leadership.
Requirements
- Bachelor's degree in Computer Science, Information Security, Engineering, or related field preferred; equivalent experience considered.
- Relevant professional certifications preferred, such as: Incident Response / Blue Team: GCIH, GCIA, GCED, GCFR, GNFA, GCTI, GCFA
- General Security: CISSP, CISM, CCSP
- Cloud or platform specific: Azure, AWS, or similar
- Strong understanding of security operations, digital forensics, incident response, and threat detection methodologies.
- Demonstrated ability to lead technical teams in an operational environment.
- Experienced required :
- 7-10+ years of progressive experience in cybersecurity, with at least 3-5 years directly in Security Operations Center (SOC), Incident Response, or Threat Detection roles.
- 3+ years of people management or team-lead experience, including performance management, coaching, and talent development.
- Hands-on experience in leading cyber incident investigations from detection through containment and recovery.
- Proven experience managing or partnering with an MSSP/MDR/SOC-as-a-Service provider.
- Experience in industrial/OT/ICS environments (e.g., chemical, energy, manufacturing) strongly preferred.
- At Ashland our vision is to be a leading, global specialty chemicals company whose inspired and engaged employees add value to all we touch. In fact our people, employees, customers and vendors define who we are. They are the driving force behind everything we do.
- Not only do we value our customers but we value our employees, and we work to offer them a dynamic and challenging environment. We hold ourselves to high standards at Ashland, and we value integrity and honesty.
- Ashland is proud to be an Equal Opportunity Employer Minorities/Women/Veterans/Disabled/Gender Identity/Sexual Orientation.
Benefits
Additional Information
Ashland Inc. Are you the kind of person that is always thinking, sketching, seeking, and adjusting? Who needs to understand how things work and then figure out how they can work better? Are you a passionate, tenacious, solver who loves to work with others who share your drive? Are you positive, constructive, and ingenious? Are you always solving? Then we'd like to meet you and bet you'd like to meet us. Ashland has an exciting opportunity for a Cyber Security Manager: Incident Detection and Response to join us in this remote role. This position will report to the Cyber Security Director.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Ashland? Share your experience