Manager, Detection Engineering and Security Automation
Listed on 2026-01-14
-
IT/Tech
Cybersecurity, Systems Engineer, AI Engineer, Data Science Manager
Hiring near our Irving, TX and Stamford, CT Centers of Excellence with a flexible environment. About Gartner IT:
Join a world‑class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting‑edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome‑driven approach to success, and the notion that great ideas can come from anyone on the team.
About this role:This role supports Gartner’s growing Security Operations team. We are seeking an experienced and innovative Manager, Detection Engineering and Security Automation to lead a team responsible for building, optimizing, and automating advanced detection and response capabilities across our security ecosystem. This role combines technical leadership, strategic planning, and hands‑on expertise to ensure our organization can rapidly detect, respond to, and mitigate threats team is filled with lifelong learners who are consistently researching ways to better defend and stay ahead of the threats of tomorrow.
We are a collaborative, flexible group, where good ideas are brought forth and acted upon, whether they come from the most experienced or the newest members of the team. As a leader on the team, you’ll provide mentorship, guidance, and technical expertise.
- Team Leadership & Strategy
- Lead and mentor a team of detection and security automation engineers.
- Define and execute the roadmap for detection engineering and security automation aligned with organizational objectives.
- Foster a culture of innovation, collaboration, and continuous improvement.
- Detection Engineering
- Oversee the design, development, and tuning of detection logic across SIEM, EDR, and cloud‑native platforms.
- Ensure detection coverage for emerging threats, MITRE ATT&CK techniques, and compliance requirements.
- Partner with Threat Intelligence, Purple Teams and Security Operations teams to develop, validate and improve detection efficacy.
- Security Automation
- Drive the development of automated workflows for alert triage, incident response, and threat hunting.
- Implement orchestration solutions (SOAR) to reduce mean time to detect (MTTD) and mean time to respond (MTTR).
- Identify repetitive tasks and build scalable automation вәзция using scripting and APIs.
- Operational Excellence
- Establish KPIs and metrics to measure detection performance and automation impact.
- Ensure high availability and reliability of detection and automation platforms.
- Innovation & Continuous Improvement
- Stay current with evolving threat landscapes, detection technologies, and automation frameworks.
- Evaluate and implement new tools and techniques to enhance detection and response capabilities.
- Bachelor’s degree in Computer Science, Cybersecurity, or related field or 7+ years of experience in security operations, detection engineering, or related roles.
- 3+ years in a leadership or managerial capacity.
- Experience driving security projects from requirements gathering to completion
- Ability to mentor, motivate, and coach team members, leading to operational excellence
- Passion for security and solving tomorrow’s problems
- Skilled and experienced, but possessing a servant leader mindset
- Able to relentlessly prioritize andונו the big picture
- Comfortable both with delegating and “rolling up your sleeves” when the time comes
- Passion for coaching, mentoring, and development of othersULEE
- Accountable, transparent and willing to go the extra mile when necessary
- Passion for security and solving tomorrow's problems
- Willing to learn new technology platforms
- Strong team player
- Able to work proactively in a time sensitive operations environment.
- Innovation mindset – takes opportunities to make existing processes more efficient and thinks “automation first”
- Certifications such as GIAC GCDA, GCFA, GCTI, GPYC or equivalent are a plus
- Cloud experience (AWS, Azure, GCP)
- Demonstrated ability to transform and shape teams
Don’t meet every single requirement? We encourage you to apply anyway. You might just be the right candidate for this, or other roles!
What you will get:Compet…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).