Detection engineering, threat hunting & monitoring effectiveness: Develop the detection engineering and proactive threat-hunting programs; perform quality control of detection and alerting mechanisms; tune SIEM, EDR, and other security technologies to improve efficacy and reduce false positives; and align detection use cases with MITRE ATT&CK, threat intelligence, emerging threats, and organizational risks. Employment Logistics: The Senior Manager, CSIRT / Security Operations Center (SOC) leads and matures the organization's cyber defense capabilities through operational excellence in security monitoring, cyber incident response, crisis management, threat intelligence, threat hunting, detection engineering, security validation, cloud and identity security operations, and security automation.