Vice President Security Engineering (Data Centers)

Remote $120k–$200k 3 months ago full-time quality 8.6/10

Role in brief

Galaxydigitalservices is seeking a Vice President of Security Engineering to lead and manage its Security Operations Center (SOC) within their digital assets and data center infrastructure. This role involves overseeing threat detection, incident response, and security automation. Candidates with strong scripting abilities, experience in SOC operations, and expertise across various security tools and cloud environments should apply.

Incident ResponsePythonXDRCI/CDELK StackAWSFirewall ConfigurationDLPSIEM PlatformsCommunication SkillsAzureVMware

About the role

This Vice President role is responsible for the daily operations of the Security Operations Center, focusing on monitoring, analysis, and response to security alerts and incidents. A key part of the work involves identifying and investigating cybersecurity threats using advanced tools and platforms, as well as leading incident response activities from root cause analysis through post-incident reporting.

The position demands a strong emphasis on automation, requiring the development and maintenance of custom scripts in languages like Python, PowerShell, or Bash. These scripts will automate security processes, enhance threat detection capabilities, and streamline incident response workflows. The role also includes supporting the deployment and optimization of various security tools, such as SIEM, SOAR, IDS/IPS, firewalls, and EDR solutions.

Success in this role means ensuring consistent security practices by collaborating with IT, DevOps, and other security teams. The Vice President will also contribute to developing and maintaining security policies and procedures, and will be expected to mentor junior team members to continuously improve the SOC team's capabilities.

The compensation for this role is between $120,000 and $200,000 USD, in addition to a discretionary bonus and comprehensive benefits.

Skills that matter here

  • Incident Response: This role leads or supports incident response activities, including root cause analysis and mitigation.
  • Python: Custom scripts in Python will be developed and maintained to automate security processes and improve threat detection.
  • SIEM Platforms: The role uses SIEM platforms and other security technologies for threat detection and response.
  • AWS: Experience with cloud environments like AWS is required for managing security across diverse infrastructures.
  • DevOps: Collaboration with DevOps teams is essential to ensure consistent security practices and implement protective measures.
  • Communication Skills: Excellent communication and collaboration skills are needed for working with various internal teams and mentoring.

Who this role suits

  • A person with a background in running or working within a Security Operations Center.
  • Someone adept at scripting and automation, particularly with Python, PowerShell, or Bash.
  • An individual who can effectively collaborate with diverse technical teams like IT and DevOps.
  • A leader capable of mentoring junior team members and contributing to policy development.

From the employer

  • SOC Operations & Management: Oversee and manage the day-to-day operations of the Security Operations Center, including monitoring, analyzing, and responding to security alerts and incidents.
  • Threat Detection & Response: Identify, investigate, and respond to cybersecurity threats using advanced monitoring tools, SIEM platforms, and other security technologies.
  • Incident Management: Lead or support incident response activities, including root cause analysis, mitigation, and post-incident reporting.
  • Custom Scripting & Automation: Develop and maintain custom scripts (e.g., in Python, PowerShell, Bash) to automate security processes, improve threat detection, and streamline incident response workflows.
  • Security Monitoring & Analysis: Analyze logs, network traffic, and system behavior to detect potential security breaches or anomalies.
  • Tool Implementation & Optimization: Support the deployment, configuration, and optimization of security tools such as SIEM, SOAR, IDS/IPS, firewalls, and endpoint detection and response (EDR) solutions.
  • Collaboration with Teams: Work closely with IT, DevOps, and other security teams to ensure consistent security practices and to implement protective measures.
  • Security Policies & Procedures: Participate in the development and maintenance of security policies, procedures, and best practices.
  • Training & Mentoring: Provide guidance and mentorship to junior team members and contribute to the continuous improvement of the SOC team.
  • Experience working in or running a SOC
  • Strong scripting skills in Python, PowerShell, Bash, or similar languages, with experience in automating security tasks.
  • On-prem Firewall Rule and Configuration (Palo)
  • Experience with various on-prem and Cloud environments (VMware, AWS, Azure)
  • Experience with security log/analysis tools such as Splunk, ELK, SumoLogic, or similar SIEM platforms.
  • Experience with XDR, DLP, and UBA tools and concepts (Cortex, CrowdStrike, etc.)
  • Good understanding of network protocols and system security
  • Windows and Linux experience
  • Experience with CI/CD and DevOps practices
  • Familiarity with version control (Git)
  • Excellent communication and collaboration skills
  • Competitive base salary and discretionary bonus
  • Flexible Time Off (i.e. unlimited paid vacation days)
  • Company paid Holidays (11)
  • Company paid sick leave
  • Company-paid health and protective benefits for employees, partners, and other dependents
  • 3% 401(k) company contribution
  • Generous paid Parental Leave
  • Free virtual coaching and counseling sessions through Ginger
  • Opportunities to learn about the Crypto and Data Center industries
  • Free daily snacks in-office
  • Smart, entrepreneurial, and fun colleagues
  • Employee Resource Groups

Questions about this role

What is the remote work policy for this position?

This position is fully remote.

What is the expected salary range for this role?

The salary range for this position is between $120,000 and $200,000 USD.

What kind of experience is required for this role?

Candidates should have experience working in or running a SOC, strong scripting skills, and familiarity with various on-prem and cloud environments like VMware, AWS, and Azure.

Similar jobs

Before you apply

  • Legitimate employers never ask you to pay anything to apply or get hired.
  • Never share seed phrases or private keys. No real job needs them.
  • Do not install software ("test tasks", "trading tools", "video call clients") sent during hiring.
  • Check that the application page's domain really belongs to Galaxydigitalservices.