Director, Security Operations
Listed on 2026-02-07
-
IT/Tech
Cybersecurity
Hiring near our Irving, TX Center of Excellence with a flexible environment.
About Gartner ITJoin a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting‑edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome‑driven approach to success, and the notion that great ideas can come from anyone on the team.
About this roleThis role supports Gartner's growing Security Operations team. You will lead day‑to‑day operations in US time zones to protect against, detect, and respond to threats to Gartner's reputation, customers and information technology. The Director, Security Operations role is highly technical and leads the operational response to security events and incidents as well as provides a point of escalation. You will be deeply involved in the planning and execution of projects involving the SOC and Security Operations practice as a whole.
You'll play a key role in defending Gartner's network and intellectual properties as you "lead from the front". Our team is filled with lifelong learners who are consistently finding ways to better defend and stay ahead of the threats of tomorrow. We are a collaborative, flexible group, where good ideas are brought forth and acted upon, whether they come from the most experienced or the newest members of the team.
As a leader on the team, you'll provide mentorship, guidance, and technical expertise.
- Bachelor's in Computer Science, Information Security, Engineering, or 6+ years of experience in Information security
- Previous experience leading a SOC, Hunt, and/or Incident Response Team or progressive growth in responsibilities in a SOC environment
- Demonstrated ability to prioritize and analyze security events, enabling swift decision‑making on appropriate courses of action and initiating timely and proportional responses
- Expertise in conducting and driving analysis and investigation of cybersecurity incidents
- Experience articulating technical findings and creating detailed incident reports
- Extensive experience in leveraging security tools such as SIEM, EDR, web proxy and email security tools
- Experience driving security projects from requirements gathering to completion
- Ability to mentor, motivate, and coach team members, leading to operational excellence
- Passion for security and solving tomorrow's problems
- Drive operational excellence of a geographically dispersed Security Operations team
- Serve as the Incident Commander during the incident response process
- Continuously seek out opportunities to improve the team's ability to rapidly and effectively respond to security incidents
- Work with key business stakeholders to detect, respond to, and remediate security issues
- Provide mentorship and guidance to team members, promoting a culture of open communication, continuous improvement, and operational excellence
- Drive automation initiatives, enhancing analyst capabilities and workflows while eliminating monotonous tasks
- Develop innovative and cutting‑edge detection content aligned with ATT&CK, Cyber Kill Chain, and various other cyber security frameworks
- Bring your own ideas and solutions to a fast‑paced, growing, and evolving team centered around operational excellence
- Ensure smooth handover of alerts and incidents between team members located in various geographic locations
- Skilled and experienced, but possessing a servant leader mindset
- Able to relentlessly prioritize and see the big picture
- Comfortable both with delegating and "rolling up your sleeves" when the time comes
- Passion for coaching, mentoring, and development of others
- Accountable, transparent and willing to go the extra mile when necessary
- Passion for security and solving tomorrow's problems
- Willing to learn new technology platforms
- Strong team player
- Able to work proactively in a time‑sensitive operations environment.
- Innovation mindset – takes opportunities to make existing processes more efficient and thinks "automation first"
- Certifications like CISSP, GCIH, GCFA or equivalent are a plus
- Cloud experience (AWS,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).