Security Operations Manager
111761
- Boston
You will lead incident response operations within our Security Operations Center (SOC) for the Americas time zones, supporting the McKinsey Restricted environment.
You will be accountable for the performance and development of a team of security analysts while owning the end-to-end management of cybersecurity incidents.
You will act as the incident commander for high-impact security events, direct log analysis across endpoint, network, and cloud environments, and influence threat-hunting activities. Your work will be critical in driving the continuous improvement of our detection capabilities and SOC processes, personally directing the response to complex incidents and representing the SOC to internal stakeholders. You will be part of our Security Operations Center team.
You are someone who thrives in a high-performance environment, bringing a growth mindset and entrepreneurial spirit to tackle meaningful challenges that have a real impact.
In return for your drive, determination, and curiosity, we’ll provide the resources, mentorship, and opportunities to help you quickly broaden your expertise, grow into a well-rounded professional, and contribute to work that truly makes a difference.
When you join us, you will have:
- Continuous learning: Our learning and apprenticeship culture, backed by structured programs, is all about helping you grow while creating an environment where feedback is clear, actionable, and focused on your development. The real magic happens when you take the input from others to heart and embrace the fast-paced learning experience, owning your journey.
- A voice that matters: From day one, we value your ideas and contributions. You’ll make a tangible impact by offering innovative ideas and practical solutions, all while upholding our unwavering commitment to ethics and integrity. We not only encourage diverse perspectives, but they are critical in driving us toward the best possible outcomes.
- Global community: With colleagues across 65+ countries and over 100 different nationalities, our firm’s diversity fuels creativity and helps us come up with the best solutions. Plus, you’ll have the opportunity to learn from exceptional colleagues with diverse backgrounds and experiences.
- Exceptional benefits: On top of a competitive salary (based on your location, experience, and skills), we provide a comprehensive benefits package to enable holistic well-being for you and your family.
- US Citizenship is required Due to the nature of this role supporting McKinsey RE incident response engagements
- Industry certifications such as GCIH, GCFA, GCFE, CISSP, CEH, or equivalent are preferred
- 5+ years of hands-on experience in Security Operations, Cyber Defense, Incident Response, or Threat Detection
- 2+ years in a people-management or team-lead capacity
- Strong understanding of security monitoring, incident response across enterprise and multi-cloud environments (AWS, Azure, GCP), and AI/LLM-related security risks
- Hands-on experience with EDR/XDR, SIEM, and cloud security tools; strong working knowledge of Microsoft Defender EDR and Palo Alto Cortex XSIAM is preferred
- Proficiency in using AI/LLM tools to build automations and scripts, with the ability to mentor team members on their secure use
- Strong people-leadership skills with the ability to coach and develop a team of security analysts
- Excellent written and verbal communication skills, with the ability to convey technical findings to both technical and non-technical stakeholders