Manager, Security Analytics - onsite Frisco/Plano

Welltower™ Inc. (NYSE:WELL)Plano, TX
Onsite

About The Position

The Manager, Security Analytics will play a critical role in advancing Welltower’s security monitoring, threat detection, and incident response capabilities. This role is responsible for leading the organization’s security analytics program, ensuring effective visibility across Welltower’s technology environment, and continuously improving the detection and response strategies used to identify and mitigate cyber threats. The ideal candidate brings a strong blend of security operations expertise, analytical thinking, and leadership skills, working closely with Security Engineering, Infrastructure, Cloud, Application Development, and business stakeholders across the organization. This role supports Welltower’s commitment to proactively managing cyber risk through effective monitoring, actionable intelligence, and operational excellence, enabling informed decision-making and the protection of critical business systems and data.

Requirements

  • Deep understanding of security operations, threat detection, incident response, and security monitoring best practices
  • Strong knowledge of security technologies and platforms, including SIEM, EDR/XDR, identity monitoring, cloud security monitoring, threat intelligence, and log management solutions
  • Experience developing and optimizing detection strategies, analytics use cases, alerting frameworks, and response workflows
  • Familiarity with security operations and monitoring platforms such as Sumo Logic, DataDog Cloud SIEM, Rapid7 SIEM, CrowdStrike, Microsoft Defender, or similar technologies
  • Ability to assess monitoring gaps, identify telemetry requirements, and develop strategies to improve visibility across complex technology environments
  • Experience managing and measuring the performance of Managed Security Service Providers (MSSPs) and other security operations partners
  • Excellent analytical, problem-solving, investigative, and decision-making skills
  • Strong written and verbal communication skills, including the ability to communicate technical concepts and operational risk to executive leadership
  • High ethical standards, sound judgment, attention to detail, and a commitment to continuous improvement
  • 7-10+ years of experience in cybersecurity, security operations, threat detection, incident response, security engineering, or related security disciplines
  • Experience leading or managing security operations center (SOC) functions, security monitoring programs, or security analytics teams in a complex enterprise environment
  • Demonstrated experience developing and maturing detection and response capabilities, including use case development, detection engineering, threat hunting, and operational metrics
  • Prior experience leading teams and developing cybersecurity professionals
  • Experience implementing or managing enterprise logging, monitoring, and telemetry strategies across cloud, endpoint, identity, network, and application environments
  • Experience supporting and participating in security incident response activities, investigations, and post-incident improvement initiatives
  • Experience working within regulated environments and partnering with audit, compliance, risk management, and technology stakeholders

Nice To Haves

  • Certified Information Systems Security Professional (CISSP)
  • Cisco Certified Network Security Associate (CCNA Security)
  • Cisco Certified Network Associate (CCNA)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Enterprise Defender (GCED)
  • GIAC Continuous Monitoring Certification (GMON)

Responsibilities

  • Lead and develop the Security Analyst team, providing coaching, mentorship, performance management, and career development opportunities
  • Manage the organization’s Managed Security Services Provider (MSSP) relationship, including service delivery, operational effectiveness, escalation management, and continuous improvement initiatives
  • Assess, define, and refine Welltower’s security detection and response strategy to improve threat identification, investigation, and remediation capabilities
  • Establish and maintain a consistent enterprise logging, monitoring, and telemetry strategy across cloud, endpoint, identity, network, and application environments
  • Expand security visibility into currently opaque or under-monitored areas of the technology stack by identifying telemetry gaps and implementing appropriate monitoring solutions
  • Oversee security monitoring operations, including alert triage, threat detection use cases, incident investigation processes, and response workflows
  • Develop, maintain, and continuously optimize security analytics content, including detection rules, correlation logic, use cases, and threat hunting methodologies
  • Establish and track key performance indicators (KPIs), operational metrics, and detection effectiveness measures to provide executive-level insights into security operations performance
  • Lead efforts to mature security operations capabilities through automation, process improvement, threat intelligence integration, and emerging security technologies
  • Support incident response activities, including major security investigations, post-incident reviews, and identification of opportunities for control improvements

Benefits

  • Competitive Base Salary + Annual Bonus
  • Generous Paid Time Off and Holidays
  • Employee Stock Purchase Program – purchase shares at a 15% discount
  • Employer-matching 401(k) Program + Profit Sharing Program
  • Student Debt Program – we’ll contribute up to $10,000 towards your student loans!
  • Tuition Assistance Program
  • Comprehensive and progressive Medical/Dental/Vision options
  • Professional Growth
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service