Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response ... Required Qualifications * 12+ years of progressive cybersecurity experience, with 5+ years leading ...
Director of Observability
Tempe, AZ · On-site
... incident command for major events while the team and platform mature. This is a newly created leadership role reporting directly to the Head of IT Infrastructure & Cybersecurity. The Director will ...
Director of Observability
Tempe, AZ · On-site
... incident command for major events while the team and platform mature. This is a newly created leadership role reporting directly to the Head of IT Infrastructure & Cybersecurity. The Director will ...
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Threat Intelligence Analyst
Scottsdale, AZ · On-site
$85 - $125/hr
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Threat Intelligence Analyst
Scottsdale, AZ · On-site
$85 - $125/hr
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Understanding of the convergence between physical security, cybersecurity, and information security domains. * Experience with enterprise security risk management and incident command models
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Posted today
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Posted today
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
SkillBridge Intern DoD: Information System Security Officer (ISS with Security Clearance
Tucson, AZ · On-site
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
New
SkillBridge Intern DoD: Information System Security Officer (ISS with Security Clearance
Tucson, AZ · On-site
Must receive approval from Unit Commander or O4+ in the chain of command. * Must be located within ... Our cybersecurity team, is seeking a SkillBridge Candidate to support classified computing ...
New
Network Security Cloud Engineer
Phoenix, AZ · On-site
$103K - $142K/yr
Partner with Security Operations and Incident Response teams to improve network visibility, logging ... Strong command of VPCs, VNets, routing, segmentation, load balancing, private connectivity, and ...
Network Security Cloud Engineer
Phoenix, AZ · On-site
$103K - $142K/yr
Partner with Security Operations and Incident Response teams to improve network visibility, logging ... Strong command of VPCs, VNets, routing, segmentation, load balancing, private connectivity, and ...
... cybersecurity industries. We are seeking an Electronics Technician 3 to join our Security and ... and command and control systems for federal, local and commercial customers across high-growth ...
... cybersecurity industries. We are seeking an Electronics Technician 3 to join our Security and ... and command and control systems for federal, local and commercial customers across high-growth ...
... cybersecurity industries. We are seeking an Electronics Technician 3 to join our Security and ... and command and control systems for federal, local and commercial customers across high-growth ...
... cybersecurity industries. We are seeking an Electronics Technician 3 to join our Security and ... and command and control systems for federal, local and commercial customers across high-growth ...
Cybersecurity Incident Commander information
What is a Cybersecurity Incident Commander?
What are the main challenges a Cybersecurity Incident Commander faces during a major security incident?
What are the key skills and qualifications needed to thrive as a Cybersecurity Incident Commander, and why are they important?
What is the difference between Cybersecurity Incident Commander vs Cybersecurity Analyst?
| Aspect | Cybersecurity Incident Commander | Cybersecurity Analyst |
|---|---|---|
| Certifications | GCIH, CISSP, CISM | CompTIA Security+, GIAC certifications |
| Work Environment | Incident response teams, security operations centers | Monitoring networks, analyzing threats |
| Responsibilities | Lead incident response, coordinate teams, communicate with stakeholders | Detect threats, analyze security data, recommend fixes |
The Cybersecurity Incident Commander focuses on leading and coordinating incident response efforts during security breaches, while the Cybersecurity Analyst primarily monitors systems, analyzes threats, and supports security measures. Both roles require relevant certifications and work in security operations environments, but their responsibilities differ in scope and leadership level.
What are popular job titles related to Cybersecurity Incident Commander jobs in Arizona?
For Cybersecurity Incident Commander jobs in Arizona, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Incident Commander jobs in Arizona look for?
The top searched job categories for Cybersecurity Incident Commander jobs in Arizona are:
What cities in Arizona are hiring for Cybersecurity Incident Commander jobs?
Cities in Arizona with the most Cybersecurity Incident Commander job openings:
Onsemi rating
8.3
Based on 20 frontline employees who took The Breakroom Quiz
Job description
Job Summary:
About onsemi
onsemi (Nasdaq: ON) is a global leader in intelligent power and sensing technologies, driving disruptive innovations in automotive, industrial, and cloud markets. With global fab operations, design centers, and a worldwide supply chain, onsemi operates a converged IT and operational technology (OT) environment subject to rigorous regulatory and customer security obligations. The Security Operations function protects onsemi's intellectual property, manufacturing continuity, and customer trust against a rapidly evolving threat landscape - including the emergence of frontier AI-enabled adversaries.
Position Summary
The Director, Security Operations is a senior leadership role within the Office of the CISO, accountable for the strategy, design, and 24x7x365 execution of onsemi's global security operations across both IT and OT domains. This leader owns the Security Operations Center (SOC), threat detection and response, threat intelligence, vulnerability management, and the operational technology security program protecting global enterprise and manufacturing environments.
The Director will modernize detection and response through automation, agentic AI-enabled SecOps, and a measurable, risk-driven operating model. They will be a hands-on leader who balances strategic program ownership with operational rigor, manages managed security service provider (MSSP) relationships, and serves as a primary incident commander during high-severity events.
Key Responsibilities
Strategy & Program Leadership
- Define and execute the global security operations strategy and roadmap across converged IT and OT environments, aligned to onsemi's business and manufacturing priorities.
- Build, lead, and develop a high-performing global SOC team and pod-based operating model spanning detection engineering, incident response, threat intelligence, and OT security.
- Establish and report security operations metrics, KPIs, and maturity (e.g., MTTD/MTTR, coverage, detection efficacy) to the CISO and executive leadership.
- Own the MSSP and managed detection and response (MDR) relationships, including contract strategy, performance governance, and the build-versus-buy roadmap for SOC capabilities.
Detection, Response & Operations
- Direct 24x7x365 monitoring, triage, investigation, and response across endpoint, network, cloud, identity, AI runtime, and OT telemetry.
- Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response, executive communication, and post-incident review.
- Mature the detection engineering function, threat hunting, and purple-team practices to continuously improve coverage against MITRE ATT&CK and ICS/OT threat models.
- Lead the vulnerability management and threat intelligence programs, prioritizing remediation based on exploitability and business risk.
OT & Manufacturing Security
- Extend security operations visibility and response into manufacturing OT environments, partnering with manufacturing and engineering teams to protect production continuity.
- Champion IT/OT convergence with security models that respect the availability, safety, and uptime requirements of industrial control systems.
AI-Enabled SecOps & Automation
- Drive adoption of automation, SOAR, and agentic AI SecOps platforms to scale detection and response while improving analyst efficiency and reducing alert fatigue.
- Anticipate and defend against frontier AI-enabled threats, embedding AI-aware detection and response into the operating model.
Governance, Compliance & Collaboration
- Ensure security operations support onsemi's regulatory and customer obligations, including export-control (ITAR/EAR) data handling, SOX, GDPR, and customer/industry security requirements.
- Partner with IT, Trust & Assurance, legal, privacy, and business stakeholders to align operational response with enterprise risk and incident response obligations.
- Manage the security operations budget, vendor portfolio, and tooling rationalization to deliver measurable risk reduction and cost efficiency.
Required Qualifications
- 12+ years of progressive cybersecurity experience, with 5+ years leading security operations, SOC, or incident response functions.
- Demonstrated experience building and leading distributed 24x7 SOC teams, including MSSP/MDR governance and hybrid operating models.
- Deep expertise in threat detection and response, SIEM/SOAR, EDR/XDR, threat intelligence, and modern detection engineering.
- Proven incident command experience leading high-severity, business-impacting incidents end to end.
- Strong people leadership: building, scaling, and retaining technical security teams.
- Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience.
Preferred Qualifications
- Experience securing converged IT/OT environments, ideally in semiconductor, manufacturing, or other critical-infrastructure industries.
- Familiarity with export-control (ITAR/EAR) data residency requirements and Fortune 500 regulatory environments (SOX, GDPR).
- Hands-on experience deploying automation and agentic AI SecOps platforms in production.
- Industry certifications such as CISSP, CCSP, GCIA, GCIH, or equivalent.
- Knowledge of ISO27001, NIST CSF 2.0, MITRE ATT&CK, and ICS/OT security frameworks (e.g., IEC 62443).
Leadership Competencies
- Operates with executive presence and communicates risk in business and quantified terms.
- Balances strategic vision with operational discipline and a bias for measurable outcomes.
- Builds trusted partnerships across IT, OT, manufacturing, and business stakeholders.
- Leads calmly and decisively under pressure during active security incidents.
Responsibilities
Responsibilities:
Strategy & Program Leadership
- Define and execute the global security operations strategy and roadmap across converged IT and OT environments, aligned to onsemi's business and manufacturing priorities.
- Build, lead, and develop a high-performing global SOC team and pod-based operating model spanning detection engineering, incident response, threat intelligence, and OT security.
- Establish and report security operations metrics, KPIs, and maturity (e.g., MTTD/MTTR, coverage, detection efficacy) to the CISO and executive leadership.
- Own the MSSP and managed detection and response (MDR) relationships, including contract strategy, performance governance, and the build-versus-buy roadmap for SOC capabilities.
Detection, Response & Operations
- Direct 24x7x365 monitoring, triage, investigation, and response across endpoint, network, cloud, identity, AI runtime, and OT telemetry.
- Serve as senior incident commander for P1/P2 incidents, coordinating cross-functional response, executive communication, and post-incident review.
- Mature the detection engineering function, threat hunting, and purple-team practices to continuously improve coverage against MITRE ATT&CK and ICS/OT threat models.
- Lead the vulnerability management and threat intelligence programs, prioritizing remediation based on exploitability and business risk.
OT & Manufacturing Security
- Extend security operations visibility and response into manufacturing OT environments, partnering with manufacturing and engineering teams to protect production continuity.
- Champion IT/OT convergence with security models that respect the availability, safety, and uptime requirements of industrial control systems.
AI-Enabled SecOps & Automation
- Drive adoption of automation, SOAR, and agentic AI SecOps platforms to scale detection and response while improving analyst efficiency and reducing alert fatigue.
- Anticipate and defend against frontier AI-enabled threats, embedding AI-aware detection and response into the operating model.
Governance, Compliance & Collaboration
- Ensure security operations support onsemi's regulatory and customer obligations, including export-control (ITAR/EAR) data handling, SOX, GDPR, and customer/industry security requirements.
- Partner with IT, Trust & Assurance, legal, privacy, and business stakeholders to align operational response with enterprise risk and incident response obligations.
- Manage the security operations budget, vendor portfolio, and tooling rationalization to deliver measurable risk reduction and cost efficiency.
Qualifications
Required Qualifications
- 12+ years of progressive cybersecurity experience, with 5+ years leading security operations, SOC, or incident response functions.
- Demonstrated experience building and leading distributed 24x7 SOC teams, including MSSP/MDR governance and hybrid operating models.
- Deep expertise in threat detection and response, SIEM/SOAR, EDR/XDR, threat intelligence, and modern detection engineering.
- Proven incident command experience leading high-severity, business-impacting incidents end to end.
- Strong people leadership: building, scaling, and retaining technical security teams.
- Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience.
Preferred Qualifications
- Experience securing converged IT/OT environments, ideally in semiconductor, manufacturing, or other critical-infrastructure industries.
- Familiarity with export-control (ITAR/EAR) data residency requirements and Fortune 500 regulatory environments (SOX, GDPR).
- Hands-on experience deploying automation and agentic AI SecOps platforms in production.
- Industry certifications such as CISSP, CCSP, GCIA, GCIH, or equivalent.
- Knowledge of ISO27001, NIST CSF 2.0, MITRE ATT&CK, and ICS/OT security frameworks (e.g., IEC 62443).
About Us
onsemi (Nasdaq: ON) is driving disruptive innovations to help build a better future. With a focus on automotive and industrial end-markets, the company is accelerating change in megatrends such as vehicle electrification and safety, sustainable energy grids, industrial automation, and 5G and cloud infrastructure. With a highly differentiated and innovative product portfolio, onsemi creates intelligent power and sensing technologies that solve the world's most complex challenges and leads the way in creating a safer, cleaner, and smarter world.
More details about our company benefits can be found here:
https://www.onsemi.com/careers/career-benefits
About the Team
We are committed to sourcing, attracting, and hiring high-performance innovators, while providing all candidates a positive recruitment experience that builds our brand as a great place to work.
onsemi is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, ancestry, national origin, age, marital status, pregnancy, sex, sexual orientation, physical or mental disability, medical condition, genetic information, military or veteran status, gender identity, gender expression, or any other protected category under applicable federal, state, or local laws.
If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process, or are limited in the ability or unable to access or use this online application process and need an alternative method for applying, you may contact Talent.acquisition@onsemi.com for assistance.
About onsemi
Sourced by ZipRecruiter
Industry
Electrical equipment, appliance, and component manufacturing
Company size
10,000+ Employees
Headquarters location
Phoenix, AZ, US