Manager - Information Security
Mayo Clinic · Rochester, MN · 1 wk ago
$148k–$215k/yrFull-time
About the role
The Cybersecurity Operations Center (SOC) Manager in the Office of Information Security is responsible for leading, managing, and continuously improving the SOC. This role oversees coverage for day-to-day 24x7 incident monitoring, including detection, triage, investigation, containment, eradication, and recovery of cybersecurity incidents. The SOC Manager provides leadership to SOC analysts by setting expectations, developing talent, identifying skill gaps, and promoting a culture of accountability, collaboration, and operational excellence.
Responsibilities
- Oversees coverage for day-to-day 24x7 incident monitoring, including detection, triage, investigation, containment, eradication, and recovery of cybersecurity incidents.
- Provides leadership to SOC analysts by setting expectations, developing talent, identifying skill gaps, and promoting a culture of accountability, collaboration, and operational excellence.
- Collaborates with Information Security teams such as IAM, Data Protection, Application Protection, Infrastructure Protection, Threat Intelligence, Detection Engineering, Security Testing Services, Information Security Awareness & Education, Information Technology as well as business proponents to ensure information security incidents are remediated in a timely manner.
- Supports healthcare regulatory compliance, audit readiness, and evidence retention while ensuring SOC processes align with frameworks such as NIST CSF 2.0, NIST SP 800-61, and HIPAA regulations.
- Develops and reports executive-level metrics, including MTTD, MTTR, incident trends, escalation rates, analyst productivity, and SLA performance, to demonstrate SOC effectiveness and operational maturity.
- Evaluates detection and response capabilities, advances AI and automation opportunities, and enhances operational efficiencies to reduce organizational cyber risk, strengthen team performance, and deliver measurable cybersecurity value.
- Provides operational and tactical leadership for a defined security service, function, or team. Translates Information Security strategy, risk requirements, and policies into effective day to day execution; ensures reliable, compliant service delivery; and fosters a strong security culture.
- Partners with business and technology stakeholders to identify, assess, and manage information security risk in a regulated environment.
Qualifications
- Bachelor's degree in applicable field plus eight (8) years of relevant experience. Pertinent fields of study and experience include, but are not limited to, information security, computer science, information systems, risk management, or a related field.
- Three years leadership/management experience (i.e. guiding technical staff, leading technical projects, or leading teams).
- Pertinent fields of study and experience include, but are not limited to, information security, computer science, information systems, risk management, or a related field.
- Three years leadership/management experience (i.e. guiding technical staff, leading technical projects, or leading teams).
- One or more of the following certifications (or equivalent) are required at time of hire: CISSP, CISM, GSEC, OSCP.