🏢
Stripe
Security Incident Response Manager
Job Description
ABOUT THE ROLE
Stripe is a financial infrastructure platform for businesses, and we're looking for a seasoned Security Incident Response Manager to lead our Security Incident Response team. As a key member of our security organization, you'll be responsible for triaging and assessing the severity of incoming security alerts, responding with initial containment measures, and escalating as needed to incident responders for further investigation and resolution. Your mission will be to improve incident response capabilities at Stripe, ensuring timely and effective resolution of casework while protecting our networks, systems, and data from threats.
WHAT YOU'LL DO
As the Security Incident Response Manager, you'll lead a team of security analysts, investigators, and responders on the front lines of the incident response process. Your responsibilities will include:
- Managing a team of security analysts, investigators, and responders, providing technical guidance, developing clear and consistent response procedures, and ensuring timely and effective resolution of casework
- Collaborating with various internal stakeholders, including the Security Analytics and Detection teams, to improve incident response capabilities and security processes
- Influencing the organizational mission and vision by ensuring prioritization and delivery of project work aligned with relevant security roadmaps
- Strengthening KPIs and metrics for measuring response operations effectiveness for clear and consistent reporting to internal stakeholders
- Working cross-functionally with security engineering teams to gather requirements for analyzing and responding to security events data at scale
- Developing, documenting, and implementing strategies, runbooks, and capabilities to support the incident response process
- Continuously improving security processes and response capabilities by collaborating with security engineers and analysts
- Coaching and mentoring individual contributors, enabling career development and championing quality standards within the team
WHAT YOU'LL NEED
To be successful in this role, you'll need:
- 5+ years of experience leading Security Operations or Incident Response teams, including hands-on, technical management experience of security analysts or engineers
- A B.S. or M.S. in Computer Science or a related field, or equivalent experience in Security
- Experience recruiting, growing, and leading technical teams, including performance management
- Excellent written and verbal communication skills, including the ability to develop and deliver operational or incident-related information to leadership
- Advanced knowledge of data analytics, network security, digital forensics, and incident response investigations
- Experience with Python and SQL, and/or familiarity with other programming languages
- Familiarity with operating systems, file systems, and memory on macOS, Linux, or Windows
- Strong understanding of threat actor tactics, techniques, and procedures (TTPs)
WHY REMOTE
As a remote employee, you'll have the flexibility to work from anywhere, collaborating with our global team to improve incident response capabilities and protect our networks, systems, and data from threats.
BENEFITS
- Competitive salary and bonus structure
- Comprehensive health plan
- Parental leave and education stipend
- Life insurance and equipment stipend
- Flexible schedule and remote work arrangement
- Opportunities for career growth and professional development