Jobs · Management

Manager, Security Operations

Cast & Crew · United States · 2 wk ago
RemoteRemoteManagement$175k–$200k/yrFull-time

At Cast & Crew, we’ve empowered creativity and supported the global entertainment industry for decades. Together with our family of brands - Backstage, CAPS, Checks & Balances, Final Draft, Media Services, Sargent-Disc, and The TEAM Companies – we operate as a combined entertainment technology and services provider offering industry standard screenwriting accounting software, digital payroll products, data & reporting, and a host of creative tools.

About the role

We are looking for a strategic and hands-on Security Operations (SecOps) Manager to lead our security operations team in protecting the endpoints, identities, email, and corporate data that power the entertainment industry's payroll and financial operations. This role is critical to detecting, responding to, and preventing security threats against the systems and data that our clients—major studios, streaming platforms, and production companies—rely on every day.

As the SecOps Manager, you will lead a team responsible for security monitoring, incident response, endpoint protection, email security, identity security and governance, and security awareness. You'll work at the intersection of security operations, threat detection, and incident management, partnering closely with IT, engineering, and business teams to ensure rapid response to threats and continuous improvement of our security posture. This is a leadership role for someone who is equally comfortable setting operational strategy, mentoring team members, and rolling up their sleeves to investigate complex security incidents.

Responsibilities

  • Strategic Leadership
    • Develop and execute a comprehensive security operations strategy aligned with business objectives and risk tolerance
    • Define the roadmap for security monitoring, detection, and response capabilities across the enterprise
    • Partner with IT and infrastructure teams to embed security monitoring and controls across the systems they own and administer
    • Establish and mature incident response processes, playbooks, and escalation procedures
    • Own the operational security metrics—detection and response times, endpoint coverage and compliance, phishing resilience—that feed our established executive security KPI program, reporting progress to the CISO
    • Participate in proofs of concept and design partnerships with emerging security vendors — particularly AI-driven technologies — helping evaluate new products and shape their roadmaps alongside security leadership
  • Team Leadership & Development
    • Lead, mentor, and develop a team of security analysts and engineers
    • Foster a collaborative, learning-oriented team culture that balances security rigor with operational efficiency
    • Conduct regular 1:1s, performance reviews, and career development planning for direct reports
    • Scale the team as the organization grows, including hiring and onboarding new security talent
    • Provide technical guidance and remove blockers to enable your team's success
  • Security Operations & Incident Response
    • Oversee security monitoring and SIEM operations, ensuring effective detection and alerting
    • Lead incident response efforts, conducting investigations, root cause analysis, and implementing preventive measures
    • Serve as the escalation point for critical and after-hours security incidents, and manage on-call rotations and escalation workflows for the team
    • Manage endpoint detection and response (EDR) platforms and endpoint security posture
    • Oversee email security operations including anti-phishing, anti-malware, and email gateway management
    • Lead security awareness and training programs to reduce human risk factors
    • Develop and maintain incident response playbooks, runbooks, and tabletop exercises
    • Manage day-to-day operational relationships with security tooling vendors and managed service providers
  • Identity Security & Governance
    • Define identity security policy and standards — single sign-on (SSO), multi-factor authentication (MFA), and conditional access requirements — for the identity platforms administered by IT
    • Monitor user and permissions hygiene across the enterprise, including joiner/mover/leaver lifecycle and least-privilege enforcement, driving remediation with IT
    • Lead periodic access reviews and certification campaigns in partnership with IT and GRC
  • Cross-Functional Collaboration
    • Work closely with IT and infrastructure teams to ensure security tools integrate effectively with enterprise systems
    • Partner with the GRC team on SOC 2 compliance requirements related to security operations, including control evidence and audit support
    • Collaborate with the Product Security team on monitoring, detection, and response for application-layer threats
    • Communicate security risks, incidents, and priorities effectively to both technical and non-technical stakeholders

Requirements

  • 7+ years of experience in security operations, incident response, or related security roles, including 3+ years directly managing security teams (hiring, performance management, and career development)
  • Deep technical expertise in at least two of the following areas:
    • Security Information and Event Management (SIEM) administration and log analysis
    • Incident response and digital forensics
    • Endpoint detection and response (EDR) platforms
    • Email security and anti-phishing technologies
    • Identity security and governance, including IdP policy design (e.g., Okta, Microsoft Entra ID), SSO/MFA/conditional access, and access lifecycle governance
    • Security awareness and training program management
  • Strong understanding of common attack vectors, threat intelligence, and detection methodologies
  • Experience developing and executing incident response playbooks and tabletop exercises
  • Excellent communication skills with the ability to explain complex security concepts to diverse audiences
  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent practical experience)

Preferred Qualifications

  • Industry certifications such as CISSP, GCIH, GCFA, GCIA, or Security+
  • Experience in regulated industries (finance, healthcare, entertainment) with compliance requirements
  • Familiarity with SOAR platforms and security automation
  • Experience with cloud security monitoring (AWS, Azure)
  • Knowledge of threat hunting and proactive detection techniques
  • Experience managing managed security service provider (MSSP) relationships
  • Experience supporting SOC 2 audits
  • Experience with proofs of concept or design partnerships with emerging security vendors, particularly AI-based tooling

Skills

  • Strategic thinker who can balance long-term vision with short-term execution
  • Collaborative leader who builds trust and influence across teams
  • Calm under pressure with the ability to lead effectively during security incidents
  • Pragmatic problem-solver who understands business context and risk tradeoffs
  • Continuous learner who stays current with evolving threats, tools, and best practices
  • Clear communicator who can articulate security priorities to executives and board members
  • Empathetic manager who invests in team growth and creates psychological safety

Special Work Conditions

Sedentary – Involves sitting most of the time but may involve walking or standing for brief periods of time. Some positions may entail exerting up to 15 lbs. of force occasionally and/or a negligible amount of force to lift, carry, push, or pull. Travel up to 5%.

Benefits

Cast & Crew provides a comprehensive package of employee benefits including:

  • Medical, Dental, Vision
  • PTO
  • Health and wellness programs
  • Employee discounts

Note: Cast & Crew benefits are subject to eligibility requirements.

Pay

The compensation range for this position is: $175,000.00 - $200,000.00 per year.

Similar jobs