2023-04-13 14:47:21

Security Operations Lead

Cabot Latvia, SIA
3350 - 4800 €/m Gross
Occasional remote work possibility

Job Description

Your Role at Cabot

As a Security Operations Lead at Cabot, you will lead our internal security operations capability and help ensure high-quality incident triage, investigation, and response across a global, hybrid operating model. You will work closely with internal analysts and an external managed detection partner to strengthen our ability to detect, respond to, and recover from security incidents.

In this role, you will act as a senior escalation point, lead complex investigations, support repeatable incident response processes, and guide a distributed team of security analysts working across multiple regions.

This role reports to the Cybersecurity Operations Services Manager and supports a distributed team of security analysts across multiple regions.

How You Will Make an Impact

  • Lead day-to-day security operations across internal analysts and an external managed detection partner.
  • Own the incident lifecycle, including triage, investigation, response execution, and closure.
  • Act as a senior investigator for complex incidents across endpoint, identity, network, and cloud environments.
  • Manage partner escalations, handovers, and performance against agreed service levels.
  • Lead, mentor, and support security analysts, helping to raise investigation quality and team capability.
  • Partner with detection engineering and other stakeholders to improve alert quality, response processes, and operational reporting.

Requirements

  • 8+ years in security operations or incident response, including time in a senior or lead capacity.
  • Strong hands-on investigation across endpoint, network, identity, and cloud.
  • Strong experience with SIEM and EDR tools, such as CrowdStrike, Microsoft Defender, SentinelOne, Trellix, Splunk, Sentinel, or similar solutions.
  • Experience leading, coaching, or supporting analysts in a security operations environment.
  • Experience overseeing a managed detection provider (MDR / MSSP).
  • Excellent written and spoken English; this is our working language across a global team.

Company offers

  • Health insurance from the first day of employment.
  • Monthly allowance and annual bonus.
  • Hybrid work schedule: 3 days on site and 2 days working from home.