1

Director Security Operations Center Jobs in Colorado

Job Summary The Specialist, Security Operations Center (SOC), supports the monitoring and response to internal and external security events with potential impact on senior leadership, staff, business ...

Director, Security

Denver, CO · On-site

$165 - $175/hr

As a member of the Data Center Operations Programs team, the Director of Security Programs is responsible for leading and managing corporate security programs and should possess a multi-disciplined ...

Director, Security

Denver, CO · On-site

$165K - $175K/yr

As a member of the Data Center Operations Programs team, the Director of Security Programs is responsible for leading and managing corporate security programs and should possess a multi-disciplined ...

Director, Security

Denver, CO · On-site

$165K - $175K/yr

As a member of the Data Center Operations Programs team, the Director of Security Programs is responsible for leading and managing corporate security programs and should possess a multi-disciplined ...

next page

Showing results 1-20

Director Security Operations Center information

What does a director security operations center do?

A Director of Security Operations Center (SOC) oversees the team and processes responsible for monitoring, detecting, and responding to cybersecurity threats within an organization. They set strategic direction for the SOC, manage incident response, ensure compliance with security standards, and coordinate with other departments to protect company assets. The role also involves leading staff, optimizing technologies, and developing policies to improve the organization's overall security posture.

What are the main challenges faced by a director security operations center in managing complex security incidents?

A Director of Security Operations Center often faces the challenge of responding quickly and effectively to sophisticated cyber threats while ensuring coordination across multiple teams. Balancing the need for immediate action with thorough incident analysis can be demanding, especially in high-pressure situations. Additionally, keeping the team motivated and updated with the latest tools and protocols, while managing resource constraints and compliance requirements, requires strong leadership and communication skills.

What are the key skills and qualifications needed to thrive as a director security operations center, and why are they important?

To thrive as a Director Security Operations Center, you need deep expertise in cybersecurity, threat management, incident response, and a relevant degree or certifications such as CISSP or CISM. Familiarity with SIEM platforms, intrusion detection systems, and security automation tools is typically required. Leadership, strategic thinking, and strong communication skills set exceptional candidates apart in this role. These skills are vital for effectively managing teams, protecting organizational assets, and ensuring a rapid and coordinated response to security threats.

What is the difference between Director Security Operations Center vs Security Operations Manager?

AspectDirector Security Operations CenterSecurity Operations Manager
CertificationsCISSP, CISM, GIAC certificationsCISSP, Security+
Work EnvironmentOversees entire SOC, strategic planningManages daily security operations, team supervision
ResponsibilitiesSets security policies, directs incident responseMonitors security alerts, manages security staff

The Director Security Operations Center focuses on strategic leadership and policy development for the SOC, while the Security Operations Manager handles daily operations and team management. Both roles require relevant certifications and work within the same industry environment, but differ in scope and level of responsibility.

What are the most commonly searched types of Security Operations Center jobs in Colorado?

The most popular types of Security Operations Center jobs in Colorado are:

What are popular job titles related to Director Security Operations Center jobs in Colorado?

For Director Security Operations Center jobs in Colorado, the most frequently searched job titles are:

What job categories do people searching Director Security Operations Center jobs in Colorado look for?

The top searched job categories for Director Security Operations Center jobs in Colorado are:

What cities in Colorado are hiring for Director Security Operations Center jobs?

Cities in Colorado with the most Director Security Operations Center job openings:

Sr. Security Operations Center Manager

Global Medical Response

Greenwood Village, CO

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 2 days ago

New


Global Medical Response rating

6.4

Company rating: 6.4 out of 10

Based on 59 frontline employees who took The Breakroom Quiz

648th of 898 rated healthcare providers


Job description

Senior Security Operations Center (SOC) Manager

Greenwood Village, CO.

Hybrid

Salary Range $175,000K-$185,000K

 

Why Choose GMR? Global Medical Response (GMR) and its family of solutions are dedicated to delivering compassionate, quality medical care, primarily in the areas of emergency and patient relocation services. Here you’ll embark on meaningful work that will make an impact on you and the customers we serve. View the stories on how our employees provide care to the world at www.AtaMomentsNotice.com.  

GMR’s Core Behaviors—keep care at the center, raise your hand, seek to understand, find a way together and be accountable—unite our teams and set us apart in emergency medical services. 

POSITION SUMMARY

 

Under the guidance of the Chief Information Security Officer (CISO) and Director of Cyber Security Operations, the Senior Security Operations Center (SOC) Manager is responsible for the day-to-day defense of the enterprise and the operational readiness of the SOC. Working closely with Cyber Security, Infrastructure, Cloud, and business partners, this leader oversees threat monitoring, detection, response, and incident management while ensuring effective team performance and continuous improvement.

The Senior SOC Manager leads the Security Operations Center, directs detection and response activities, and serves as incident commander during significant security events. This hands-on leadership role requires technical expertise, strategic vision, and the ability to build high-performing teams, foster cross-functional partnerships, mature security operations, and translate complex cyber risk into actionable business decisions.

CORE RESPONSIBILITIES

Security Operations Leadership

  • Own the 24x7x365 operational security posture of the enterprise, including monitoring, shift coverage, escalation, handoff quality, and operational readiness.
  • Lead, coach, and develop SOC personnel while fostering accountability, teamwork, continuous learning, mutual respect, and operational excellence. Manage hiring, performance, career development, and retention.
  •  Establish and enforce service levels for triage, investigation, incident response, and escalation across alert severity tiers.
  • Serve as the senior operational authority during security incidents, including after-hours events and major business disruptions.
  • Build trusted partnerships across Infrastructure, Cloud, Identity, Network, Applications, Compliance, and business teams to improve security outcomes and organizational resilience.
  • Mentor analysts, engineers, and emerging leaders while maintaining career development and succession plans for key security roles.

Detection and Response

  • Direct monitoring across endpoint, network, identity, email, cloud, and SaaS telemetry.
  • Own the incident response lifecycle end to end, including detection, triage, containment, eradication, recovery, and after-action review.
  • Act as incident commander for high-severity events and lead root cause analysis, ensuring corrective actions are assigned, tracked, and completed.
  • Maintain and exercise incident response plans, playbooks, and communication procedures.

Detection Engineering and Continuous Improvement

  • Own detection content quality, including MITRE ATT&CK coverage mapping, alert tuning, and retirement of low-value detections.
  • Reduce manual effort through automation, orchestration, and responsible adoption of AI-assisted security capabilities, and measure the resulting improvement.
  • Partner with engineering and infrastructure teams to close logging, telemetry, and visibility gaps.
  • Continuously improve detection capabilities through threat intelligence, threat modeling, adversary emulation, purple team exercises, and lessons learned from security events, with emphasis on threats relevant to healthcare, EMS, and aviation operations.
  • Measure detection effectiveness against evolving threats and industry best practices.
  • Establish proactive threat hunting capabilities to identify and disrupt malicious activity before alert-driven detection.

Healthcare and Regulatory Compliance

  • Support HIPAA Security Rule obligations, including breach assessment inputs and evidence requests for the Privacy Office.
  • Support CMMC and DoD requirements applicable to federal programs and contracts.
  • Support SOX IT general controls and audit evidence requests in a public-company environment.
  • Coordinate with clinical, aviation, and ground and fleet stakeholders on risks affecting connected medical devices, dispatch and CAD systems, ePCR platforms, and operational technology.

Vendor and Program Management

  • Manage MDR, MSSP, and security technology vendor relationships, including performance against contractual service levels.
  • Partner with the Director of Cyber Security Operations on SOC budget planning, capacity forecasting, and headcount justification.
  • Evaluate, recommend, and optimize security technologies and operational capabilities, retiring tools that do not provide sufficient value. 

Executive Communications

  • Deliver monthly and quarterly SOC metrics and risk reporting that non-technical executives can act on.
  • Provide clear, concise, and factual status during active incidents, without presenting speculation as fact.
  • Translate complex technical risks into actionable business decisions and build consensus while balancing security, operational, and business priorities.
  • Contribute to board, audit committee, regulatory, and executive reporting through Cyber Security leadership.

EDUCATION, LICENSING, AND CERTIFICATIONS

  • Bachelor's degree in Computer Science, Information Security and Risk Management, Information Systems, Engineering, or a related discipline. Six years of security-related experience may be substituted for the degree.
  • Leadership and Governance: CISSP preferred.
  • Operational Security: SSCP, CySA+, GCIH, or comparable certifications preferred.
  • Relevant certification or demonstrated equivalent expertise preferred.

EXPERIENCE

  • Minimum eight years of information security experience.
  • Minimum three to five years leading security operations, incident response, detection engineering, or threat management teams.
  • Experience operating in highly regulated environments such as Healthcare, Financial Services, Government, or Defense preferred.

KNOWLEDGE AND SKILLS

  • Experience managing MDR, MSSP, or co-managed SOC relationships and security vendors.
  • Experience in healthcare, EMS, aviation, or another mission-critical or safety-of-life environment preferred.
  • Strong incident response, threat detection, threat management, and security operations expertise.
  • In-depth understanding of cyber threats, attack techniques, threat actors, risk management, and incident management principles.
  • Working knowledge of Windows, Linux, Unix, cloud platforms, identity technologies, and modern enterprise security architectures.
  • Ability to develop meaningful metrics, dashboards, documentation, and executive-level communications.
  • Demonstrated leadership and stakeholder management skills, including the ability to build and retain high-performing teams, influence across organizational boundaries, resolve conflict, and communicate effectively with technical and executive audiences.
  • Strong collaboration and partnership skills, with a proven ability to establish trust and shared ownership across Cyber Security, Infrastructure, Engineering, Compliance, and business teams.
  • Experience leading enterprise-wide security incidents involving multiple technology and business stakeholders.
  • Experience developing security operations strategy, roadmaps, and operational maturity programs while balancing tactical demands with long-term objectives.

EEO Statement
  • Salary Range $175K-$185K Range 
  • Check out our careers site Benefits | GMR Careers to learn more about our comprehensive benefit options, which include medical, vision, dental, 401k, disability, FSA, HSA, EAP, vacation and paid time off.
  • The application window for this position is anticipated to close on 10.3.2026

Check out our careers site benefits page to learn more about our benefit options.

R0055782Qualifications:
  • Salary Range $175K-$185K Range 
  • Check out our careers site Benefits | GMR Careers to learn more about our comprehensive benefit options, which include medical, vision, dental, 401k, disability, FSA, HSA, EAP, vacation and paid time off.
  • The application window for this position is anticipated to close on 10.3.2026
Education:UNAVAILABLEEmployment Type: FULL_TIME

What Global Medical Response employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Global Medical Response logo

About Global Medical Response

Sourced by ZipRecruiter

Our mission of providing care to the world at a moment's notice is at the heart of everything we do. We are caregivers, first and foremost and we will be there when you need us. With more than 38,000 employees, Global Medical Response teams deliver compassionate, quality medical care, primarily in the areas of emergency and patient relocation services around the world. We provide end-to-end medical transportation as well as fire services, integrated health-care solutions and disaster response.

Industry

Health care and social assistance

Company size

51 - 200 Employees

Headquarters location

Greenwood Village, CO, US

Year founded

2018