Manager, Cybersecurity - Process and Analytics
About the role
This role is critical for protecting the organization’s digital assets and infrastructure through advanced SOC operations, analytics, automation, and AI-driven capabilities. It involves developing and implementing cybersecurity processes — with a specific focus on enabling threat response teams (SOC and CIRT) — alongside strategies that comply with organizational goals, regulatory requirements, and SOC maturity objectives.
The role leads a team of cybersecurity professionals focused on equipping and enabling threat response teams to monitor, detect, and respond to cyber incidents more effectively, rather than performing those functions directly. Success is measured by the consistent delivery of processes, analytics, automation, and AI capabilities that result in improved effectiveness of security operations across threat response teams. The work ensures the operational resilience and security of information systems, and the manager participates in an on-call rotation to provide incident response leadership as needed.
Responsibilities
- Develops and implements cybersecurity operational processes and strategies, with a specific focus on building and standardizing processes that enable threat response teams to detect, investigate, and remediate incidents effectively.
- Leads a team of cybersecurity professionals in enabling SOC capabilities, monitoring security operations, and enhancing detection and response protocols.
- Drives SOC automation and AI integration initiatives to improve detection efficacy, response workflows, and operational efficiency across the security organization.
- Builds and maintains security analytics frameworks and reporting capabilities to enable data-driven decision-making, threat visibility, and SOC performance measurement.
- Leads and manages strategic cybersecurity projects, driving timelines, multi-functional collaborator alignment, and measurable security outcomes.
- Participates in the on-call incident response rotation, providing leadership, coordination, and escalation support during cybersecurity incidents outside of normal business hours.
- Responsible for other duties/projects as assigned by business management as needed.
Requirements
- Bachelor's Degree plus 3 years of related work experience OR advanced degree with 1 year of related work experience OR combination of education and experience deemed equivalent (required).
- Acceptable areas of study include Computer Science or Information Technology (preferred).
- 4-7 years implementing and managing cybersecurity operations, SOC processes, and automation capabilities in a corporate environment (preferred).
- 3-7 years leading a team of cybersecurity professionals in a SOC or security operations environment (preferred).
- 4-7 years developing security analytics frameworks, dashboards, and SIEM/SOAR integrations to support data-driven security operations (preferred).
- At least 18 years of age.
- Legally authorized to work in the United States.
Skills
- Artificial Intelligence (AI) and SOC Automation: Experience designing and implementing SOC automation workflows, SOAR playbooks, and AI/ML-based detection capabilities to improve efficiency and reduce analyst toil.
- Cybersecurity: In-depth knowledge of cybersecurity principles, SOC operations, frameworks, and technologies to develop and implement security strategies and drive operational maturity.
- Escalation Management: Proficiency in assessing and managing cybersecurity risks to protect organizational assets.
- Leadership and People Management: Ability to lead and manage a team of cybersecurity professionals, ensuring effective security protocols and team performance, including giving feedback and providing coaching and development.
- Security Incident Management: Strong analytical skills to evaluate security data, build metrics-driven reporting, and leverage platforms such as Splunk to surface actionable insights across SOC operations.
- Security Strategy: Skill in designing, documenting, and continuously improving cybersecurity operational processes, with a focus on threat response team workflows including detection, investigation, escalation, and remediation runbooks and playbooks.
- Partner Management: Excellent communication skills to effectively convey security-related concepts to a variety of participants.
- Strategic Alignment: Capability to think strategically about security in the context of the business needs and technological landscape.
Pay
Base Pay Range: $126,800 - $228,700. The successful candidate’s actual pay will be based on various factors, such as work location, qualifications, and experience. Most Corporate employees are eligible for an annual bonus target of 15% based on company and/or individual performance.
To find the pay range for this role based on hiring location, visit T-Mobile Pay Lookup.
Benefits
Full and part-time employees have access to the same benefits when eligible. Key benefits include:
- Medical, dental, and vision insurance.
- Flexible spending account, 401(k), employee stock grants, and employee stock purchase plan.
- Paid time off (up to 4 weeks for new full-time employees and about 2.5 weeks for new part-time employees annually) and up to 12 paid holidays.
- Paid parental and family leave, family building benefits, back-up care, enhanced family support, and childcare subsidy.
- Tuition assistance, college coaching, short- and long-term disability, and voluntary insurance coverages (AD&D, accident, life, disability, and long-term care).
- Mobile service & home internet discounts, pet insurance, and access to commuter and transit programs.
For more details, visit www.t-mobilebenefits.com.