1

Cyber Security Operations Engineer Jobs (NOW HIRING)

The Director, Cybersecurity Operations is responsible for leading and evolving the company ... Drive maturity in detection engineering, threat hunting, and response orchestration to reduce dwell ...

$150 - $200/hr

In addition, you will lead global Cybersecurity Engineering teams responsible for the design ... Security Operations Center Leadership: Provide strategic and operational leadership of the global ...

In addition, you will lead global Cybersecurity Engineering teams responsible for the design ... Security Operations Center Leadership: * Provide strategic and operational leadership of the global ...

Lead cybersecurity architecture, engineering, and security operations activities to strengthen enterprise security posture and reduce organizational risk. Requirements * US citizenship required.

$150 - $200/hr

The company is a full-service real estate developer, investor and advisor focused on developing ... The Manager of Cybersecurity Operations will partner closely with IT leadership, business ...

Showing results 41-60

Cyber Security Operations Engineer information

See salary details

$40.5K

$122.9K

$180K

How much do cyber security operations engineer jobs pay per year?

As of Sep 9, 2026, the average yearly pay for cyber security operations engineer in the United States is $122,890.00, according to ZipRecruiter salary data. Most workers in this role earn between $102,000.00 and $142,000.00 per year, depending on experience, location, and employer.

What does a cyber security operations engineer do?

A Cyber Security Operations Engineer is responsible for protecting an organization's computer systems and networks from cyber threats and attacks. They monitor security systems, investigate incidents, and respond to breaches or vulnerabilities. Their duties include analyzing security alerts, implementing security measures, and ensuring compliance with security policies. These professionals work closely with other IT teams to maintain the overall security posture of the organization.

What are the key skills and qualifications needed to thrive as a cyber security operations engineer?

To thrive as a Cyber Security Operations Engineer, you need a solid background in network security, threat analysis, and incident response, typically supported by a degree in computer science or a related field. Familiarity with SIEM tools (like Splunk or QRadar), intrusion detection systems, and certifications such as CISSP or CEH are commonly expected. Strong analytical thinking, attention to detail, and effective communication skills set outstanding candidates apart. These skills and qualifications are crucial for proactively identifying threats, minimizing risks, and ensuring the ongoing security of an organization's digital assets.

What are some common challenges faced by cyber security operations engineers in their daily work?

Cyber Security Operations Engineers often face challenges such as responding to rapidly evolving cyber threats, managing large volumes of security alerts, and coordinating incident response across multiple teams. Staying updated with the latest attack techniques and security tools is essential, as adversaries continuously adapt their methods. Additionally, balancing the need for strong security with operational efficiency can require careful prioritization and collaboration with IT and business units to ensure protective measures do not hinder productivity.

What is the difference between Cyber Security Operations Engineer vs Security Analyst?

AspectCyber Security Operations EngineerSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC Security Essentials
Work EnvironmentSecurity operations centers, incident response teamsMonitoring, analyzing security data, reporting
Employer & Industry UsageIT security teams across various industriesSecurity teams, cybersecurity firms, government agencies

While both roles focus on cybersecurity, the Cyber Security Operations Engineer primarily builds and maintains security systems and responds to incidents, whereas the Security Analyst monitors security alerts and analyzes threats. The engineer often handles more technical implementation, while the analyst focuses on detection and reporting.

More about Cyber Security Operations Engineer jobs

What are popular job titles related to Cyber Security Operations Engineer jobs?

For Cyber Security Operations Engineer jobs, the most frequently searched job titles are:

Infographic showing various Cyber Security Operations Engineer job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 84% Full Time, 12% Part Time, 1% Temporary, 1% Contract, and 1% Nights. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $122,890 per year, or $59.1 per hour.

Director, Cybersecurity Operations

Irving, TX • On-site

Celanese Corporation
Chemical Manufacturing • 5 - 10K employees

Full-time

Re-posted 12 days ago


Celanese rating

7.7

Company rating: 7.7 out of 10

Based on 26 frontline employees who took The Breakroom Quiz

49th of 104 rated chemical manufacturers


Job description

Overview:
The Director, Cybersecurity Operations is responsible for leading and evolving the company's cybersecurity operations capabilities to proactively protect enterprise assets, information, and business operations. This role provides strategic and operational leadership across security monitoring and incident response, exposure management, business continuity and disaster recovery, security awareness, and managed security service providers, ensuring cyber risks are effectively identified, managed, and remediated. The Director partners closely with executive leadership, IT, business stakeholders, and external partners to enhance cyber resilience, drive continuous improvement, and deliver a high-performing security operations program aligned with business objectives and risk tolerance.
This role will be based out of Irving, Texas.
Responsibilities:
Operational Governance & Managed Services Oversight
  • Govern the performance, delivery, and continuous improvement of managed security service providers (e.g., MDR, SOC, vulnerability management).
  • Define and enforce service-level agreements (SLAs), key performance indicators (KPIs), and outcome-driven metrics aligned to business risk.
  • Ensure appropriate escalation, incident handling, and reporting processes are in place and operating effectively.

Threat Detection & Response (SOC / CIRT)
  • Oversee enterprise threat detection, monitoring, and incident response capabilities, including SIEM, EDR, and threat intelligence integration.
  • Ensure readiness and effectiveness of incident response processes, including coordination with crisis management and external partners.
  • Drive maturity in detection engineering, threat hunting, and response orchestration to reduce dwell time and improve response outcomes.
  • Provide executive-level reporting on threat landscape, incident trends, and response effectiveness.

Business Continuity & Disaster Recovery (BC/DR)
  • Govern cybersecurity alignment with enterprise business continuity and disaster recovery planning.
  • Ensure cyber incident scenarios are integrated into BC/DR plans and regularly tested through exercises.
  • Coordinate with IT and business stakeholders to validate recovery capabilities and resilience objectives.

Exposure Management (Vulnerability Management & Application Security)
  • Lead the enterprise exposure management program, including vulnerability identification, prioritization, and remediation governance.
  • Oversee application security practices, including secure SDLC integration and application risk assessments.
  • Partner with infrastructure and application owners to ensure timely remediation of identified risks.
  • Drive adoption of continuous threat exposure management (CTEM) principles

Security Awareness & Human Risk Management
  • Oversee the design and execution of the enterprise security awareness program, including phishing simulations and targeted training.
  • Measure and report on human risk reduction metrics and program effectiveness.
  • Foster a security-aware culture across the organization.

Strategy & Continuous Improvement
  • Partner with cybersecurity leadership to define and execute the strategic roadmap for cybersecurity operations capabilities.
  • Identify opportunities to enhance automation, AI-driven detection/response, and operational efficiency.
  • Drive continuous improvement initiatives across people, process, and technology dimensions.

Stakeholder Engagement & Leadership
  • Act as a key liaison between cybersecurity, IT, business units, and external partners.
  • Provide regular briefings to executive leadership on operational risk, program maturity, and performance.
  • Build and lead a high-performing team, including internal staff and service providers.

Qualifications:
Experience
  • 10+ years of experience in cybersecurity, with a significant focus on security operations and incident response.
  • Proven leadership experience managing global cybersecurity operations teams and/or managed security service providers.
  • Demonstrated experience across multiple domains, including SOC, incident response, vulnerability management, and security awareness.
  • Experience developing and executing cybersecurity operational strategies aligned to enterprise risk and compliance requirements.

Education & Certifications
  • Bachelor's degree in Cybersecurity, Information Technology, or related field (Master's preferred).
  • Industry certifications such as CISSP, CISM, GIAC, or equivalent preferred.

Technical Expertise
  • Strong understanding of threat detection technologies (SIEM, EDR/XDR, SOAR) and incident response methodologies.
  • Expertise in vulnerability management, application security, and exposure management practices.
  • Familiarity with business continuity and disaster recovery frameworks and integration with cybersecurity.
  • Working knowledge of threat intelligence, attack frameworks (e.g., MITRE ATT&CK), and adversary tactics.

Governance & Compliance
  • Experience aligning cybersecurity operations with frameworks such as NIST CSF, ISO 27001, NIS2, or similar.
  • Strong understanding of operational metrics, SLAs, KPIs, and audit/regulatory expectations.

Leadership & Soft Skills
  • Strong executive communication and stakeholder management skills.
  • Ability to translate technical risk into business impact and actionable insights.
  • Experience leading cross-functional teams and influencing without direct authority.
  • Proven ability to drive change, operational maturity, and continuous improvement.

What Celanese employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Celanese logo

About Celanese

Sourced by ZipRecruiter

We produce products that make our lives a little easier, by helping customers to bring their inspired ideas and innovations to life. From the global production network of our Acetyl Chain, we provide materials that are critical to the global chemicals and paints and coatings industries. From our broad portfolio of Materials Solutions, we advance automotive and consumer electronic designs and enable life-improving medical, food and beverage products – we offer solutions to our customers to help them succeed.

Industry

Chemical manufacturing

Company size

5,001 - 10,000 Employees

Headquarters location

Irving, TX, US

Year founded

1912

Social media