Cyber Operations Lead, Critical Harm Operations
Leads cybersecurity and cyber intelligence operations for high-risk user-safety decisions, combining strategic planning, operational systems, automation, and direct people management. Requires 8+ years in cybersecurity-related work and 4+ years leading teams.
About the job
Responsibilities
- Set the strategic direction for Cyber Operations and translate organizational priorities into operating models, roadmaps, SOPs, escalation paths, quality goals, and safe-access strategies.
- Serve as the senior cybersecurity and cyber intelligence expert for complex, high-risk decisions across products and emerging product surfaces.
- Lead and develop a high-performing team while influencing FTEs, BPO partners, vendors, and cross-functional stakeholders.
- Convert policy ambiguity, quality misses, appeals, and reviewer disagreement into decision rules, calibration examples, training, and tooling requirements.
- Build reviewer capability through onboarding, certification, coaching, feedback, recurring calibration, and vendor partnership.
- Own queue coverage, productivity, quality metrics, SLA adherence, escalation hygiene, and performance-gap identification.
- Use analysis and automation to diagnose root causes, prioritize high-leverage fixes, reduce manual effort, and improve operational scale.
- Build quality and evaluation systems using calibration, adjudication, monitoring, and feedback loops.
- Create and scale new operational capabilities from 0→1 by defining problems, aligning partners, testing models, establishing metrics, and operationalizing successful approaches.
- Present recommendations, tradeoffs, and operational strategy to executives and partners, and represent Cyber Operations in high-stakes discussions and launches.
Requirements
- 8+ years of experience in cybersecurity, cyber intelligence, threat intelligence, incident response, security research, or a related field.
- 4+ years of experience leading teams.
- Experience building and scaling cyber operations, cyber intelligence, or abuse-prevention capabilities across regions, products, or large user bases.
- Experience designing and launching human-in-the-loop automation or evaluation systems that improve safety, quality, or operational scale.
- Strong judgment regarding attacker behavior, emerging threats, abuse patterns, and ambiguous dual-use activity.
- Experience building or improving high-stakes operations, reviewer programs, QA systems, escalation workflows, or vendor/BPO programs.
- Strong analytical, root-cause analysis, program-building, stakeholder management, coaching, and executive communication skills.
- Ability to translate complex cyber and policy judgment into reviewer-usable SOPs, decision trees, training, and concise recommendations.
- Exceptional customer-service, de-escalation, discretion, and sensitive-material handling skills.
Compensation
- Annual salary: $252,000–$335,000.
Skills
Cybersecurity, Cyber Intelligence, Threat Intelligence, Incident Response, Security Research, Automation, Quality Assurance, Root-Cause Analysis, SOPs, Decision Trees, Calibration, Adjudication, Service-Level Agreements, Vendor Management, Abuse Prevention
Similar jobs
Security Engineering jobsDefines the security architecture for a next-generation operating system, spanning trust boundaries, hardware-backed protections, isolation, secure updates, and AI-agent guardrails. The role requires deep privileged-systems expertise, systems programming ability, and experience securing platforms across hardware, firmware, and software.
Leads interpretation and productization of federal compliance controls for Vanta’s public-sector platform, translating FedRAMP and related frameworks into technically testable guidance, automated detectors, mappings, and machine-readable authorization workflows. Requires 8–10+ years of hands-on federal compliance experience, especially FedRAMP program and SSP work.
Leads a hands-on security engineering function spanning AI security, application and cloud security, detection and response, identity, and compliance controls. The role requires 8+ years of security engineering experience, deep AWS expertise, production code review ability, and experience operating in PCI DSS scope.
Leads cyber-focused AI misuse enforcement, managing analysts and contractors while developing detection and mitigation strategies for attacks, malware, and exploitation. Requires people management, cybersecurity expertise, high-volume abuse enforcement, data analysis with SQL or Python, and cross-functional risk communication.
Owns production-edge security for enterprise financial-institution connectivity, including PKI, mTLS, AWS networking, webhook security, and vulnerability remediation. Requires 6+ years of hands-on platform, infrastructure, or network security engineering experience.