Senior Manager, Security Operations
GoMotive · United States - Remote
About this role
**Senior Manager, Security Operations** **Who we are** Motive empowers teams that run physical operations with tools to make their work safer, more productive, and more profitable. Motive brings safety, operations, and finance into a single system—helping customers manage drivers, vehicles, equipment, and fleet spend—while using AI to automate and simplify security and operational workflows. Motive serves nearly 100,000 customers across transportation and logistics, construction, energy, field service, manufacturing, agriculture, food & beverage, retail, and the public sector. **About the role** We’re hiring a **Senior Manager, Security Operations** to **build, lead, and grow Motive’s SOC**. This is a **founding leadership role**—you’ll shape the team, tooling, detection strategy, and operating model rather than inheriting a mature organization. Reporting to the **CISO**, you’ll own the **full detection and response lifecycle**, including: - Detection engineering - 24/7 incident response - Threat hunting - Threat intelligence - Security analytics - Endpoint and workload security The SOC scope spans Motive’s entire estate, including **cloud infrastructure and services**, **APIs and data platforms**, and the **connected device fleet**, as well as **endpoints, identity/SSO, SaaS, network, email, and internal tooling**. A key part of the role is running these as **one detection and response capability** with a unified view of the adversary. **What you’ll do** - **Stand up and grow the SOC**: operating model, coverage structure, runbooks, escalation paths, hiring and career development for a globally distributed team; decide the **24/7 coverage model** (in-house follow-the-sun, MDR-augmented, or hybrid). - **Own detection strategy and coverage posture** across both estates, treating detection content as code and mapping coverage to **MITRE ATT&CK** and Motive’s threat model—closing gaps in **risk order**. - **Extend detection into production and cloud workloads** in partnership with Platform Engineering (highest-priority coverage expansion). Build detections that span boundaries—especially identity compromise on corporate endpoints pivoting into cloud infrastructure. - **Own 24/7 incident response** across product and enterprise environments; serve as **incident commander** for significant incidents and communicate clearly with executives. - **Own the security telemetry & analytics platform**: collection, normalization, enrichment, retention, and cost. Track and improve **MTTD, MTTR, detection coverage, alert precision, and automation rate**. - Build a **structured, hypothesis-driven threat hunting program** and **threat intelligence capability** tailored to Motive’s sector—turning intel into detections, hunts, and hardening priorities. - **Own EDR** across the corporate fleet and, with Platform Engineering, runtime/workload protection for production—treating any unmonitored endpoint as an open finding. - **Own phishing & social engineering defense**: detection, reporting triage, takedown, and credential-compromise response—partnering with Compliance & Trust (which owns simulation and awareness training). - **Architect an AI-first SOC operating model**, personally building and iterating on triage, enrichment, correlation, and investigation automation. **What we’re looking for** - **8+ years** in security operations, incident response, detection engineering, or threat intelligence, with **3+ years leading teams**. - **Demonstrably hand
Listing freshness
CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.