AllianceBernstein LP-posted 1 day ago
Full-time • Mid Level
Onsite • Nashville, TN
1,001-5,000 employees

We are seeking a Nashville, TN based Information Security Operations Manager to lead our Information Security Analyst Team in Global Technology & Operations. This is not an entry-level position. The Information Security Operations team is responsible for safeguarding AllianceBernstein’s technology and information assets. The team’s primary focus is on identifying threats, monitoring, and responding to security events and enhancing the firm’s security posture. The Information Security Operations team operates as part of Infrastructure Risk Management (IRM), a department within Global Technology and Operations that is responsible for an enterprise-wide integrated infrastructure risk management program which employs a holistic approach to manage cybersecurity, information security, data privacy, physical security and business continuity led by the Chief Security Officer. This role reports to the Director of Information Security Risk and Operations. As the Information Security Operations Manager, you will perform a critical role providing guidance and training to information security analysts, collaboration with other corporate business units including but not limited to global enterprise infrastructure and technology, corporate compliance, security assurance, global technology operations and other infrastructure risk business units. This position leads a team that provides information security analysis services, incident response services, and ultimately information risk management support to the business. Specifically, this team acts as an incident response team and control group to ensure that security operational procedures are performed, and risks are addressed in a timely manner. This team maintains a 24/7/365 on-call rotation.

  • Lead the daily operations of the information security operations program, aligning business objectives and risk tolerance.
  • Develop, implement, and continuously improve security procedures.
  • Oversee incident response and threat detection, ensuring rapid and effective resolution.
  • Track and report on key security metrics (e.g., MTTD, MTTR) to leadership.
  • Collaborate with IT, legal, compliance, privacy, and executive teams for holistic risk management.
  • Leverage automation and threat intelligence to enhance security operations.
  • Manage vendor relationships.
  • Minimum of 8 years’ experience (required) in Information Security and/or Information Technology in an operations role; this is not an entry level position
  • Minimum of 6 years prior experience in a role exclusively responsible for information security incident response
  • Minimum of 2 years’ experience managing people
  • Fluency with Splunk Processing Language [SPL] and Kusto Query Language [KQL]
  • Experience working with JIRA, ServiceNow or similar platforms
  • Experience working with Varonis DatAdvantage or similar platforms
  • Experience creating, collecting, and assembling metrics for reporting
  • Experience leading incident response in a global environment
  • Experience working with hybrid (on-prem and Cloud) technology platforms and applications
  • Extensive experience securing and/or troubleshooting computer systems and networks
  • Extensive experience with Malware Assessment and Incident Response
  • Experience with SIEM platforms; Splunk and Microsoft Sentinel experience preferred
  • Experience reviewing logs, scripting tasks or creating structured queries/regex searches
  • Solid understanding of AI, its associated risks, and security use cases
  • Awareness of Information Security best practices and financial regulatory requirements
  • Excellent problem-solving and risk decision-making skills
  • Excellent verbal and written communication skills; ability to communicate clearly to several levels of management while catering communication style to a wide range of technical, clinical, and cultural backgrounds across various business units
  • Ability to represent data in the most meaningful form
  • Ability to think and operate independently with limited guidance
  • Bachelor’s degree in Computer Science, Information Systems, or Information Security; and CISSP, CISM, OSCP, CRISC, GSEC, GCIH, GCIA, GCFA, GFCE, GSE (other advanced certifications considered, at least one specialty certification required)
  • Excellent program/project management, prioritization, and organizational skills
  • Acute attention to detail and solid leadership abilities.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service