Director, Detection and Response - Remote

Canada

Applications have closed
About HighspotHighspot helps sales teams improve customer conversations and achieve their revenue goals. From content optimization and performance analytics to in-context training, guided selling, and more, the Highspot platform delivers enterprise-ready features in a modern design that sales reps and marketers love. Using Highspot, marketing leaders have deep insights and analytics into the performance and influenced revenue of content, campaigns, and marketing assets.  What makes the solution special? It’s loved by sales reps globally, and is the #1 rated sales enablement platform on G2 Crowd. 
We are committed to diversity as both a moral and business imperative. 
About the RoleAre you an existing or aspiring, highly technical leader in the DFIR space (detection, tactics, malware analysis, forensics, incident response)? Are looking to make a difference in an exciting, hyper-growth startup? If you are ready to take on your next challenge, Highspot is an exceptional place to apply your skills and continue to grow.
Highspot is growing at an incredible speed due to customer demand, strong revenue, and exceptional funding. Keeping up with customer growth and demand while maintaining and developing trust by protecting our systems and data is key to our success. Our Detection and Response team is leading the way to ensure we meet both of these demands.
As the leader of our Detection and Response team, you will be responsible to support the people in this space, and own the strategy and direction of how Highspot defends itself from ongoing attacks. You will partner deeply with our Product Security and Corporate Security teams to structure how those systems and processes work and ensure we are always aware of what is happening and how we will respond. You will guide the ongoing development and management of our SIEM as well as collaborate in new and innovative response capabilities to allow Highspot to stay ahead of our attackers. You will direct the adoption of new tools and technologies to further your goals.
Highspot is an organization built on trust and respect. You will have the responsibility, authority, and support to protect Highspot and our customers every day.

Your Role

  • You will support and lead a team with the following goals while also being responsible for determining strategy, adopting tools and services, and building a team to achieve these goals:
  • Detection - be responsible for the SIEM and analysis functions on top of the data that we aggregate to understand what is happening. Develop new types of analysis to deal with existing and emerging threats. Adapt our detection capabilities to changes in the threat landscape for the company as customers, business direction, and company size change.
  • Response Process/Execution - own the company wide security incident response process, and coordinate a multi-functional set of stakeholders to have a company ready to respond to any kind of event. Our process should be consistent, effective and achieve key benchmarks and SLAs. It must keep key stakeholders informed and drive decisions that impact resolution. The process must also drive fixes for root causes, as well as drive the remediation and cleanup post-incident actions. Lead and coordinate incident response according to the process. You’ll be responsible for a process that protects our systems while also protecting the security team and partners from burnout for oncalls and response efforts.
  • Response Capabilities - collaborate with most of the business to be prepared with necessary capabilities to achieve effective responses. As the team grows in maturity, target key responses for automation to drive time-efficient response outcomes. Anticipate and develop needed capabilities to be able to handle a variety of threats. 
  • Detection and Response Readiness - ensure that all key parts of the business have the necessary preparedness to effectively detect and respond to various kinds of threats and incidents. This will include ensuring the right capabilities are available, and that necessary and key information is available along with a capability to process and analyze that information. Prepare partner teams with ongoing training so that everyone is ready. 

Your Experience

  • A cornerstone of Highspot’s culture is respect and inclusion, please take the list below as a guideline, not a set of strict requirements. Please reach out even if you’re not sure if you have all of these experiences but still think you might be a good fit:
  • 6+ years of experience, with at least 3 years in detection, digital forensics, incident response and closely related areas
  • Ability to execute on all areas of detection and response as an individual contributor while growing your team
  • Experience as a leader or manager, and people-focused view on how to accomplish goals and outcomes and track record of driving successful outcomes
  • Exceptional collaboration skills and communication skills, with the ability to engage with partners and stakeholders with a variety of perspectives and technical understanding
  • Demonstrated ability to learn and maintain a watchful eye on the changing threat landscape, with a track record of successfully adjusting to meet new needs
  • Experience at other SaaS based software companies

This position is available either in-office or remote, as applicable, at the following locations:

  • Alberta, Canada - Remote
  • British Columbia - Remote
  • Ontario - Remote
  • Arizona - Remote
  • Arkansas - Remote
  • California - Remote
  • Connecticut - Remote
  • Florida - Remote
  • Georgia - Remote
  • Idaho - Remote
  • Illinois - Remote
  • Maryland - Remote
  • Massachusetts - Remote
  • Michigan - Remote
  • Minnesota - Remote
  • Missouri - Remote
  • Montana - Remote
  • Nevada - Remote
  • New Hampshire - Remote
  • New Jersey - Remote
  • New York - Remote
  • North Carolina - Remote
  • Ohio - Remote
  • Oregon - Remote
  • Pennsylvania - Remote
  • Tennessee - Remote
  • Texas - Remote
  • Utah - Remote
  • Virginia - Remote
  • Washington - Remote
  • Washington - Seattle
  • Washington, D.C.
  • Wisconsin - Remote
  • #BI-Remote
Equal Opportunity StatementWe are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of age, ancestry, citizenship, color, ethnicity, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or invisible disability status, political affiliation, veteran status, race, religion, or sexual orientation.
Did you read the requirements as a checklist and not tick every box? Don't rule yourself out! If this role resonates with you, hit the ‘apply’ button.

Tags: Analytics Automation C DFIR Forensics Incident response Malware Product security SaaS SIEM SLAs Strategy

Perks/benefits: Medical leave Startup environment

Regions: Remote/Anywhere North America
Country: Canada
Job stats:  13  2  0
Category: Leadership Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.