1

Security Operations Manager Jobs in Alhambra, CA

As Security Operations Lead, you will build and own Northwood's security operations function ... management, and forensic investigation workflows. • Digital forensics and malware analysis ...

The Manager, Security Operations & Investigations will lead security operations for Mattel's El Segundo, CA corporate campus. This role focuses on enhancing day-to-day security operations, personnel ...

The Manager, Security Operations & Investigations will lead security operations for Mattel's El Segundo, CA corporate campus. This role focuses on enhancing day-to-day security operations, personnel ...

The Manager, Security Operations & Investigations will lead security operations for Mattel's El Segundo, CA corporate campus. This role focuses on enhancing day-to-day security operations, personnel ...

The Manager, Security Operations & Investigations will lead security operations for Mattel's El Segundo, CA corporate campus. This role focuses on enhancing day-to-day security operations, personnel ...

The Manager, Security Operations & Investigations will lead security operations for Mattel's El Segundo, CA corporate campus. This role focuses on enhancing day-to-day security operations, personnel ...

Operations Manager

Los Angeles, CA · On-site

$60K - $70K/yr

SSA Security Group Operations Manager Are you a highly skilled and motivated individual who thrives in a dynamic and time-sensitive environment? Do you possess excellent leadership qualities and ...

next page

Showing results 1-20

Security Operations Manager information

See Alhambra, CA salary details

$36.9K

$82.9K

$148.2K

How much do security operations manager jobs pay per year?

As of Aug 21, 2026, the average yearly pay for security operations manager in Alhambra, CA is $82,871.00, according to ZipRecruiter salary data. Most workers in this role earn between $54,800.00 and $106,000.00 per year, depending on experience, location, and employer.

What does a security operations manager do?

As a security operations manager, you develop and implement strategies to help protect the assets of your company. As part of your duties, you may determine the best protocol for each situation, manage the hiring and training process for other security personnel, and otherwise oversee daily security needs. Many details of this job depend on the security threats your employer faces. For example, retail stores frequently face problems with theft while research companies may be more concerned with the safety of digitally-archived information. Many security operations managers focus on physical threats and collaborate with systems administrators and other computer-focused personnel to secure digital assets.

What does a security operations manager do?

A Security Operations Manager oversees the daily operations of an organization's security team, ensuring the protection of assets, personnel, and information. They develop and implement security policies, manage incident response efforts, and coordinate with other departments to mitigate risks. Additionally, they monitor security systems, lead investigations into security breaches, and ensure compliance with relevant laws and regulations. Their role is critical in maintaining a secure environment and continuously improving the organization's security posture.

What are the key skills and qualifications needed to thrive as a security operations manager, and why are they important?

To thrive as a Security Operations Manager, you need expertise in risk assessment, incident response, and security policy development, often supported by a degree in cybersecurity or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and certifications like CISSP or CISM is typically required. Strong leadership, communication, and problem-solving skills are essential for managing teams and responding effectively to security incidents. These skills are crucial for protecting organizational assets, ensuring regulatory compliance, and maintaining a proactive security posture.

What are some typical challenges a security operations manager faces when coordinating between internal teams and external partners?

A Security Operations Manager often navigates challenges such as ensuring clear communication of security protocols between internal IT teams and third-party vendors, aligning security practices with organizational goals, and managing incident responses across multiple stakeholders. Balancing business needs with security compliance requirements can also be complex, especially when integrating new technologies or services. Effective collaboration and establishing well-defined escalation paths are key to overcoming these challenges and maintaining a resilient security posture.

What is the difference between Security Operations Manager vs Security Analyst?

AspectSecurity Operations ManagerSecurity Analyst
Required CredentialsSecurity certifications (CISSP, CISM), relevant experienceSecurity certifications (CompTIA Security+, CEH), technical skills
Work EnvironmentOversees security teams, manages security operationsMonitors security systems, analyzes threats
Employer & Industry UsageUsed in organizations with security teams, corporate security

The Security Operations Manager focuses on managing security teams and overseeing security operations, while the Security Analyst primarily monitors security systems and analyzes threats. Both roles require security certifications and are integral to organizational security, but they differ in scope and responsibilities.

Is a security operations manager a high paying job?

A security operations manager typically earns a high salary compared to many other IT roles, with compensation influenced by experience, certifications, and industry. They often oversee security teams, implement security protocols, and use tools like SIEM systems, which can contribute to higher pay levels.

What is the average salary for a security operations manager?

The average salary for a security operations manager typically ranges from $80,000 to $130,000 annually, depending on experience, location, and industry. Professionals in this role often require strong knowledge of cybersecurity tools, incident response, and management skills.

What job categories do people searching Security Operations Manager jobs in Alhambra, CA look for?

The top searched job categories for Security Operations Manager jobs in Alhambra, CA are:

What cities near Alhambra, CA are hiring for Security Operations Manager jobs?

Cities near Alhambra, CA with the most Security Operations Manager job openings:

Infographic showing various Security Operations Manager job openings in Alhambra, CA as of August 2026, with employment types broken down into 1% As Needed, 81% Full Time, 13% Part Time, 1% Temporary, 2% Contract, and 2% Nights. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $82,871 per year, or $39.8 per hour.

Security Operations Manager

Northwood

Torrance, CA • On-site

Full-time

Re-posted 8 days ago


Job description

Job Summary:
Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology. As Security Operations Lead, you will build and own Northwood's security operations function, leading incident response and developing detection and threat hunting programs to protect mission-critical infrastructure.
Responsibilities:
• Build and operate Northwood's SOC function, including continuous monitoring of security events across AWS GovCloud, GCC, on-premises facilities, and endpoint environments.
• Own alert triage, investigation, and escalation workflows, ensuring critical threats are identified and actioned with the urgency required of a mission-critical environment.
• Monitor and analyze telemetry across network security, identity, endpoint, and email security platforms, ensuring comprehensive visibility into Northwood's on-premises, cloud, and perimeter environments.
• Develop and maintain SOC operational metrics, reporting cadences, and dashboards for internal stakeholders and government customers.
• Develop and continuously improve custom detection logic within Northwood's SIEM platform, including log source onboarding, correlation rule development, tuning, and coverage gap analysis.
• Build behavioral analytics, UEBA rules, and threat hunting queries tailored to Northwood's infrastructure and adversary profiles targeting aerospace and defense.
• Maintain detection content aligned to MITRE ATT&CK, ensuring coverage maps are current and gaps are systematically addressed.
• Integrate threat intelligence feeds into detection workflows and brief stakeholders on emerging threats relevant to government and dual-use space communications infrastructure.
• Own security incidents end-to-end, from initial detection through containment, eradication, recovery, and post-incident review.
• Conduct digital forensics and malware analysis using tools such as Volatility, YARA, and supporting utilities across Linux and Windows environments.
• Develop and maintain incident response playbooks and escalation procedures, including communication protocols for government customers and mission-critical operations.
• Lead tabletop exercises and incident response drills to validate playbook effectiveness and team readiness.
• Proactively hunt for advanced persistent threats across Northwood's on-premises and cloud environments, developing and refining hunting methodologies as the threat landscape evolves.
• Research adversary tactics, techniques, and procedures targeting aerospace, defense, and critical infrastructure, and translate findings into actionable detection and hardening improvements.
• Maintain familiarity with government incident reporting requirements and ensure response procedures satisfy applicable regulatory obligations.
• Develop Python, PowerShell, or Bash automation for incident response workflows, threat hunting pipelines, and security orchestration across Northwood's environment.
• Build and maintain SOAR playbooks and automated response actions to reduce mean time to respond and minimize manual analyst burden.
• Collaborate with the Security Engineering Lead to ensure SOC tooling integrations across SIEM, EDR, email security, and identity platforms are maintained and continuously improved.
• Hire, mentor, and develop security operations analysts and engineers as the team scales.
• Define SOC operating procedures, analyst workflows, and on-call responsibilities to ensure consistent operational coverage.
• Serve as a senior security subject-matter expert in cross-functional collaboration with network engineering, infrastructure, and compliance teams.
Qualifications:
Required:
• 5+ years of hands-on SOC operations, incident response, or threat hunting experience, with demonstrated experience in a technical leadership capacity.
• Hands-on experience building and operating SIEM platforms, including custom detection rule development, log source onboarding, and advanced query development.
• Experience with EDR platforms, including alert triage, policy management, and forensic investigation workflows.
• Digital forensics and malware analysis proficiency, including tools such as Volatility and YARA.
• Proficiency in Python, PowerShell, or Bash for security automation and threat hunting workflows.
• Experience building and maintaining UEBA capabilities for insider risk detection and anomalous behavior identification.
• Strong Linux forensics and log analysis skills across distributed systems.
• Working knowledge of threat intelligence frameworks including MITRE ATT&CK and the Diamond Model.
• Familiarity with compliance frameworks relevant to government environments, including NIST 800-171, CMMC, and DFARS incident reporting requirements.
• Ability to obtain and maintain a TS/SCI clearance.
• U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations.
Preferred:
• Active TS clearance or higher.
• Familiarity with Northwood's core security stack, including FortiGate firewall infrastructure, Cloudflare Zero Trust, Okta, CrowdStrike or SentinelOne EDR, and email security platforms such as Proofpoint or Sublime Security.
• Experience with cloud security monitoring in AWS GovCloud and Microsoft GCC environments.
• Hands-on experience with SOAR platforms and automated response workflow development.
• Background in aerospace, defense, critical infrastructure, or other highly regulated security operations environments.
• Experience with threat hunting in air-gapped or compliance-constrained environments.
• Familiarity with government incident reporting requirements and procedures including DFARS 252.204-7012.
• Certifications such as GCIH, GCFA, GNFA, or equivalent incident response credentials.
• ITAR compliance experience.
Company:
Taking space missions further faster. Check out our open roles: https://www.northwoodspace.io/careers Founded in 2023, the company is headquartered in Torrance, USA, with a team of 51-200 employees. The company is currently Growth Stage.