Jobs Companies SWBC Security Operations Lead (GSOC)

Über diese Security Operations Lead (GSOC) Stelle bei SWBC

SWBC · Vor Ort · San Antonio, TX

SWBC is seeking a talented individual who will provide hands-on operational leadership for the Global Security Operations Center in a converged cyber and physical security environment.
This senior individual contributor role is responsible for leading daily security operations activities, coordinating incident response efforts, guiding analysts, managing escalations, and helping ensure consistent execution across monitoring, detection, response, and operational readiness functions.

Why you'll love this role:

This role places you at the center of SWBC's security operations mission, where you will help lead real-time cyber and physical security monitoring, coordinate high-priority incidents, guide analysts through complex investigations, and collaborate with internal teams, managed security providers, and technology partners. You will have the opportunity to influence operational excellence, improve detection and response capabilities, mentor security professionals, and help mature a modern Global Security Operations Center supporting a highly regulated enterprise environment.

Essential duties include the following:

  • Lead daily GSOC operations, security event triage, prioritization, documentation, and escalation.
  • Provide operational leadership and guidance to Security Operations Analysts.
  • Coordinate analyst workload, operational coverage, and shift execution.
  • Ensure consistent execution of procedures, escalation paths, and operational workflows.
  • Lead real-time security event triage and maintain situational awareness during active incidents.
  • Coordinate response activities with security teams, managed security service providers, and IT operations.
  • Provide timely operational updates to Security leadership during incidents and elevated risk events.
  • Support incident documentation, timelines, lessons learned, and post-incident activities.
  • Support monitoring and escalation across cybersecurity and physical security events.
  • Correlate cyber and physical security indicators when events require a cross-functional response.
  • Coordinate with Security Engineering, Network Security, Identity and Access Management, Physical Security, and other teams as needed.
  • Maintain and improve procedures, playbooks, escalation guides, and operational readiness materials.
  • Support analyst training, onboarding, mentoring, and operational exercises.
  • Track operational metrics and identify opportunities to improve alert quality, escalation effectiveness, and response performance.
  • Drive continuous improvement initiatives across GSOC operations.

Serious candidates will possess the minimum qualifications:

  • Bachelor's degree in Cybersecurity, Information Security, Information Systems, Computer Science, or a related field preferred, or equivalent experience.
  • Minimum of seven (7) years of experience in enterprise security operations, primarily within a SOC, GSOC, or equivalent environment.
  • Experience leading or supporting security operations teams, incident response, escalation decisions, and operational coordination.
  • Experience working with managed security service providers, technology teams, and operational stakeholders.
  • Experience developing or improving procedures, playbooks, metrics, dashboards, or operational reporting.
  • GIAC certification such as GSOC, GCIH, GCED, or GCIA.
  • Security+, CySA+, CASP+, or equivalent security certification.
  • CISSP or SSCP, ITIL Foundation, PSP or CPP preferred.
  • Deep understanding of security monitoring, threat detection, investigation, and incident response.
  • Deep experience with SIEM, EDR/XDR, threat intelligence, monitoring, and case management platforms.
  • Demonstrated ability to lead security incidents and make sound decisions under pressure.
  • Strong communication skills and the ability to brief leadership using clear, risk-based language.
  • Ability to mentor analysts and reinforce operational standards.
  • Strong analytical, organizational, and problem-solving skills.
  • Experience with enterprise security monitoring and XDR/EDR platforms.
  • Experience supporting managed SOC/MSSP operating models.
  • Experience working in converged cyber and physical security environments.
  • Experience within financial services, fintech, banking, insurance, or another regulated industry.

SWBC offers*:  

  • Competitive overall compensation package
  • Work/Life balance 
  • Employee engagement activities and recognition awards 
  • Years of Service awards
  • Career enhancement and growth opportunities 
  • Leadership Academy and Mentor Program
  • Continuing education and career certifications 
  • Variety of healthcare coverage options
  • Traditional and Roth 401(k) retirement plans 
  • Lucrative Wellness Program

*Based upon employee eligibility 

     

Additional Information:

    

SWBC is a Substance-Free Workplace and requires pre-employment drug testing.

    

Please note, SWBC does not hire tobacco users as allowed by law.

    

To learn more about SWBC, visit our website at www.SWBC.com. If interested, please click the appropriate apply button.

Bereit, sich bei SWBC zu bewerben?
Bei SWBC bewerben

Über SWBC

Join Our Team Great People. Great Company. Great Place to Work. SWBC is a diversified financial services company providing insurance, mortgage, and investment services to financial institutions, businesses, and individuals. Headquartered in San Antonio, Texas, SWBC employs 2,400 people nationwide. At SWBC, you are not just an employee number, but a vital team member; each employee stands out and has the ability to make a direct impact at SWBC. We’re looking for the brightest and most creative to help introduce new solutions to new problems identified in the market and improve how our existing solutions can better help our users. SWBC is a big proponent of nurturing the entrepreneurial spirit

Alle Jobs bei SWBC ansehen →

Ähnliche Jobs

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei SWBC

Alle Jobs bei SWBC ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos