Manager, Cyber Threat Management

WPS—A health solutions companyFitchburg, WI
$140,000 - $180,000Hybrid

About The Position

Our Manager, Cyber Threat Management leads WPS’s detection, prevention, and response capabilities and reports directly to the Chief Information Security Officer. This Manager owns cyber incident management, threat detection and prevention, application security leadership, vulnerability management coordination, and security automation and analytics. They align security operations, analyst workflows, and application‑security activities within the Enterprise Cyber Resilience operating model. This Manager builds and leads the Cyber Threat Management team - our Security Operations Center (SOC) and partners with Cyber Trust & Architecture, Cyber Risk & Assurance, and Cyber Business Enablement to reduce technical risk across the enterprise.

Requirements

  • U.S. Citizenship is required for this position due to Department of Defense restrictions.
  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology OR equivalent combination of education and work experience.
  • 7 or more years of progressive experience in cybersecurity operations, incident response, vulnerability management, application security, or a related technical security discipline.
  • 3 or more years of people-management experience leading technical security staff.
  • Expertise and hands-on experience with security monitoring, detection, and incident-response processes and technologies, such as SIEM, EDR, or comparable platforms.
  • Expertise in vulnerability management and application-security practices, including risk-based prioritization and remediation coordination.
  • Ability to lead through high-pressure, time-sensitive situations, including active incident response.
  • Strong leadership and stakeholder management skills with ability to influence and drive change across diverse teams and complex organizations and coordinate detection, response, and remediation activities.
  • Strong written and verbal communication skills, including the ability to brief technical findings to non-technical stakeholders and leadership.

Nice To Haves

  • Experience with Security Automation Orchestration and Response (SOAR) and application-security testing tooling (SAST, DAST, SCA).
  • Experience leading or operating a security operations center (SOC) or equivalent 24x7 / on-call detection and response function.
  • Experience within healthcare, insurance, or another highly regulated environment.
  • Working knowledge of the NIST Cybersecurity Framework, NIST SP 800-61 (incident handling), and MITRE ATT&CK.
  • Professional certification such as CISSP, GCIH, GCFA, or CISM.
  • Familiarity using AI and ML to facilitate automated security workflows.

Responsibilities

  • Leading end‑to‑end cyber incident management—including detection, triage, containment, eradication, and recovery.
  • Serving as incident commander for significant events and continuously maturing incident‑handling playbooks, workflows, and escalation practices.
  • Owning enterprise threat detection and security monitoring by managing logging, behavioral analytics, endpoint security tooling, and threat‑prevention technologies.
  • Implementing advanced security automation and operational analytics, including SOAR and detection engineering, to improve detection and response speed and translate operational security data into actionable metrics.
  • Ensuring visibility across systems, applications, cloud environments, and network activity.
  • Providing leadership and program oversight for Application Security by driving adoption of secure-development standards owned by Cyber Trust & Architecture and overseeing developer security training and application-security testing tooling and coordinating remediation with development teams.
  • Owning enterprise vulnerability management by overseeing scanning, risk‑based prioritization, and remediation tracking across system and application owners.
  • Reducing tooling sprawl and eliminating overlapping coverage to streamline the capability.
  • Leading and mentoring Cyber Threat Management teams, establishing clear responsibilities, coverage/on-call models, accountability, career paths, performance expectations, and workforce capacity planning while fostering collaboration and continuous improvement.
  • Partnering with Cyber Trust & Architecture, Cyber Risk & Assurance, and Cyber Business Enablement teams to align detection and response priorities with architecture standards and risk findings and deliver concise reporting and escalation to cybersecurity leadership.
  • Partnering with technology and business‑continuity teams to strengthen cyber‑related impact analysis and recovery capabilities.
  • Ensuring response plans and recovery procedures remain current, validated, and tested.
  • Establishing Cyber Threat Management operational priorities independently within established playbooks and escalation thresholds.
  • Reporting significant threats, incidents, and risk trends to the CISO.
  • Escalating risk-acceptance decisions beyond established thresholds or requiring architecture changes to the CISO or Cyber Trust & Architecture.

Benefits

  • Hybrid work options available
  • Performance bonus and/or merit increase opportunities
  • 401(k) with a 100% match for the first 3% of your salary and a 50% match for the next 2% of your salary (100% vested immediately)
  • Competitive paid time off
  • Health insurance, dental insurance, and telehealth services start DAY 1
  • Professional and Leadership Development Programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service