Manager - CyberOps & Assurance-Incident Response

American ExpressPhoenix, AZ
$123,000 - $215,250

About The Position

At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company. Trust. Service. Security. American Express seeks to recruit a passionate and experienced Leader for its Incident Response team. This is a senior-level, hands-on, highly technical role performing incident response activities ranging from pre-incident preparation, active incident response, and post-incident analysis and recovery. You will be a key technical resource conducting investigations, performing advanced analysis, identifying attacker TTPs, building attack narratives, and executing response actions. As part of our evolution toward a Next Generation Agentic SOC, this role will also help drive the adoption of AI-enabled security operations, intelligent automation, and autonomous analyst workflows. The ideal candidate combines deep incident response expertise with curiosity and practical experience in AI-assisted detection, security automation, and modern SOC engineering practices. You are a motivated leader who will directly manage, mentor, and develop a team of SOC analysts while driving the people, processes, and technology that empower the team to investigate sophisticated threats at scale. This role requires critical thinking, innovative problem solving, technical leadership, people leadership, and effective communication across both technical and executive audiences.

Requirements

  • Deep incident response expertise
  • Practical experience in AI-assisted detection
  • Practical experience in security automation
  • Practical experience in modern SOC engineering practices
  • Critical thinking
  • Innovative problem solving
  • Technical leadership
  • People leadership
  • Effective communication across both technical and executive audiences

Nice To Haves

  • Curiosity and practical experience in AI-assisted detection, security automation, and modern SOC engineering practices.

Responsibilities

  • Performing incident response activities ranging from pre-incident preparation, active incident response, and post-incident analysis and recovery.
  • Conducting investigations, performing advanced analysis, identifying attacker TTPs, building attack narratives, and executing response actions.
  • Driving the adoption of AI-enabled security operations, intelligent automation, and autonomous analyst workflows.
  • Managing, mentoring, and developing a team of SOC analysts.
  • Driving the people, processes, and technology that empower the team to investigate sophisticated threats at scale.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service