Sr Manager - Cyber Defense
About the Role
At Oshkosh, we build, serve and protect people and communities around the world by designing and manufacturing some of the toughest specialty trucks and access equipment. This role supports the enterprise-wide, global cybersecurity purpose:
- Trusted advisor - empowering team members to make risk-aware decisions
- Strategic enabler - enhancing the value Oshkosh delivers to our customers
- Vigilant guardian - protecting Oshkosh’s people and critical digital assets
Responsibilities
Leadership & Strategy
- Direct and oversee a multi-domain enterprise cyber defense organization, encompassing Security Operations (SOC), Incident Response, Detection Engineering, Vulnerability Management, and Threat Intelligence
- Partner with the CISO and executive leadership to define, continuously evolve, and execute the enterprise cyber defense strategy, ensuring functional alignment with business objectives at scale
- Recruit, develop, and retain a high-performing team of cybersecurity professionals, providing ongoing coaching, performance management, and career development to foster operational excellence
- Manage operational budgets and vendor strategies, strategically evaluating the balance of internal capabilities versus external managed services (e.g., MDR) to optimize security investments
- Optimize operational budgets and vendor strategy by continuously evaluating security investments, balancing internal capabilities with external managed services to maximize ROI and operational efficiency
Security Operations & Incident Response
- Lead enterprise-wide incident response efforts for critical security events (e.g., insider risk, supply chain threats), coordinating cross-functional containment, remediation, and executive communication
- Establish and manage proactive security validation programs, including recurring tabletop exercises and purple team operations, to rigorously test response procedures and benchmark team readiness against real-world threats
- Drive continuous improvement in response capabilities by overseeing the implementation and optimization of security automation and orchestration (SOAR) technologies to reduce mean time to respond (MTTR)
Engineering, Architecture, & Risk Management
- Oversee the detection engineering lifecycle, establishing frameworks to measure and improve detection fidelity, minimize false positives, and prioritize analyst focus on high-signal threats
- Direct the enterprise vulnerability management program, shifting focus from volume-based patching to risk-weighted prioritization models that drive measurable, outcomes-based risk reduction
- Lead the development of security strategies for emerging technologies (such as AI), defining appropriate governance policies, risk classification frameworks, and control architectures
- Modernize security operations by continually evaluating and integrating advanced security platforms and AI-driven solutions to enhance automation and threat detection capabilities
Requirements
- Bachelor’s degree in Information Systems or equivalent
- Eight (8) or more years of Security/Cybersecurity experience
- Three (3) or more years of Information Security/Cybersecurity experience
Qualifications
- Graduate Degree in Information Systems, Management or Equivalent
- Strong understanding of the business impact of security tools, technologies, and policies
- Relevant industry recognized certifications (CISSP, CISM, CEH, GIAC, SECURITY+, etc)
- Hold an active U.S. Government Secret Level clearance
- Experience with project management, audit, defense-in-depth security systems, incident response, vulnerability management, IT infrastructure, regulatory laws/frameworks
- Ability to build strong relationships at all levels and across all business units and organizations and understand business imperatives
- Proficiency in performing risk, business impact, control & vulnerability assessments, and defining mitigation planning
Working Conditions
Physical Demands
- Frequent Hearing, Talking, Visual, Typing, Manual Dexterity, Standing, Walking/Running
- Sitting, Reaching, Driving, Bending/Kneeling, and Fine Dexterity
Non-Physical Demands
- Frequent Analysis/Reasoning, Communication/Interpretation, Math/Mental Computation, Reading
- Sustained Mental Activity (i.e. auditing, problem solving, grant writing, composing reports), and Writing
Environmental Demands
- Occasionally Works Alone
Work Schedule
- Routine shift hours
- Infrequent overtime, weekend, or shift rotation
Demands/Deadlines
- Occasional stress due to deadlines or workload because of intermittent or cyclical work pressures, or occasional exposure to distressed individuals within the immediate work environment
Pay
Pay Range $136,500.00 - $241,500.00. The above pay range reflects the minimum and maximum target pay for the position across all U.S. locations. Within this range, individual pay is determined by various factors, including the scope and responsibilities of the role, the candidate's experience, education and skills, as well as the equity of pay among team members in similar positions.
Benefits
Beyond offering a competitive total rewards package, we prioritize a people-first culture and offer various opportunities to support team member growth and success.