安全运营主管
Director of Security Operations
负责监督组织的安全运营中心(SOC)的日常运作,并管理一支安全专业人员团队。该职位涉及制定和实施安全策略、事件响应流程以及安全监控策略。理想的候选人应积极主动,注重细节,能够识别并缓解安全威胁,以保护组织的资产、数据和声誉。在此职位上,您将作为一位技术能力突出的领导者,推动多个依赖关系日益复杂且存在不确定性的项目,产生显著的业务影响。
主要职责:
影响力:通过制定策略来管理风险,平衡短期和长期的业务影响,包括:
安全运营中心(SOC)监督
事件响应与威胁管理
安全监控与威胁情报
漏洞管理
安全策略与合规性:
风险管理
预判行业AI/AIOps趋势,优化自动化、日志采集和威胁响应,在快速解决事件与安全质量之间取得平衡。
人员:通过结合世界级招聘和及时可操作的反馈,打造优秀的团队,培养安全人才。
执行:设定具有挑战性但清晰的目标,并消除团队实现目标的所有障碍。
协作:与组织内外的多个合作伙伴建立牢固的关系,跨职能合作,从而提升团队工作的影响力。
公司:与全公司领导密切合作,推动我们在保护患者、员工和Aledade整体方面的流程和系统达到卓越水平。
最低资格要求:
计算机科学、信息安全或相关领域的学士学位(硕士优先)。
至少10年安全运营经验,其中至少5年在领导或管理岗位。
有管理SOC和领导事件响应工作的实际经验。
对安全技术有深入了解,包括SIEM、IDS/IPS、EDR、防火墙和漏洞管理工具。
能够在高压环境下有效工作,并管理多项优先任务。
有监管合规要求的经验(如GDPR、HIPAA、PCI DSS)。
首选知识、技能和/或能力:
出色的领导力、沟通能力和人际交往能力。
强大的分析和解决问题的能力
查看英文原文
The Director of Security Operations will be responsible for overseeing the daily operations of the organization's security operations center (SOC) and managing a team of security professionals. This role involves developing and implementing security policies, incident response protocols, and security monitoring strategies. The ideal candidate will be proactive, detail-oriented, and capable of identifying and mitigating security threats to protect the organization's assets, data, and reputation. In this role, you will lead by example of being a highly technical leader who delivers high business impact on multiple projects of increasing dependencies and ambiguity.
Primary Duties:
Impact: Balance short and long-term business impact by developing strategies to manage risks, including:
Security Operations Center (SOC) Oversight
Incident Response and Threat Management
Security Monitoring and Threat Intelligence
Vulnerability Management
Security Policies and Compliance:
Risk Management
Anticipate industry AI/AIOps trends to optimize automation, log-ingestion, and threat response-balancing rapid incident resolution with security quality.
People: Develop outstanding teams using a combination of world-class-hiring and direct-timely-actionable feedback to develop security talent.
Execution: Set aggressive yet clear goals and remove all roadblocks for the team to achieve them.
Collaboration: Develop strong relationships and work cross-functionally with many partners across organizations and functions, and as a result, increase the impact of the team’s work.
Company: Work closely with company-wide leaders to drive excellence in our processes and systems that protect patients, our employees, and Aledade as a whole.
Minimum Qualifications:
Bachelor’s degree in Computer Science, Information Security, or a related field (Master’s degree preferred).
Minimum of 10 years of experience in security operations, with at least 5 years in a leadership or management role.
Proven experience in managing a SOC and leading incident response efforts.
Strong understanding of security technologies, including SIEM, IDS/IPS, EDR, firewalls, and vulnerability management tools.
Ability to work effectively in high-pressure situations and manage multiple priorities.
Experience with regulatory compliance requirements (e.g., GDPR, HIPAA, PCI DSS).
Preferred Knowledge, Skills and/or Abilities:
Excellent leadership, communication, and interpersonal skills.
Strong analytical and problem-solving abilities with a proactive and forward-thinking approach.
In-depth knowledge of security frameworks and standards (e.g., NIST, ISO 27001, CIS Controls).
Who We Are:
Aledade PBC, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care. We were founded in 2014, and since then, we've become the largest network of independent primary care in the country - helping practices, health centers and clinics deliver better care to their patients and thrive in value-based care. Additionally, by creating value-based contracts across a wide variety of health plans, we aim to flip the script on the traditional fee-for-service model. Our work strengthens continuity of care, aligns incentives and ensures primary care physicians are paid for what they do best - keeping patients healthy. If you want to help create a health care system that is good for patients, good for practices and good for society - and if you're eager to join a collaborative, inclusive and remote-first culture - you've come to the right place.
What Does This Mean for You?
At Aledade PBC, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission.
In addition to time off to support work-life balance and enjoyment, we offer the following comprehensive benefits package designed for the overall well-being of our team members:
Flexible work schedules and the ability to work remotely are available for many roles
Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
Robust time-off plan (21 days of PTO in your first year)
Two paid volunteer days and 11 paid holidays
12 weeks paid parental leave for all new parents
Six weeks paid sabbatical after six years of service
Educational Assistant Program and Clinical Employee Reimbursement Program
401(k) with up to 4% match
Stock options
And much more!
At Aledade PBC, we don’t just accept differences, we celebrate them! We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation.