← Back to jobs

Director of Security Operations

Company
Backblaze
Location
United States
Work type
Full Time · Remote
Posted
2026-09-02

Job description

Director, Security Operations
Role Overview
The Director of Security Operations leads the organization's day-to-day cybersecurity operations across traditional and AI-enabled environments. Reporting to the CISO, the Director leads Security Operations while partnering closely with the Director of Security Architecture & Engineering.

This is a hands-on technical leadership role requiring experience implementing and operating security controls as well as leading teams, incidents, and security programs.

Key Responsibilities
Lead security monitoring, incident response, threat hunting, security analytics, vulnerability management, adversary emulation, identity security, and operational resilience.
Establish operational priorities, service objectives, metrics, playbooks, and processes based on organizational risk and business needs.
Serve as incident commander for significant cybersecurity events and ensure lessons learned drive improvements to controls and operations.
Drive responsible adoption of AI-assisted detection, investigation, vulnerability analysis, threat hunting, and response capabilities.
Ensure effective security monitoring and response for AI applications, autonomous agents, workloads, and non-human identities.
Use automation to reduce manual work and compress detection, analysis, containment, and remediation timelines.
Partner with Security Architecture & Engineering to ensure controls are effectively designed, implemented, operationalized, monitored, and validated.
Develop security talent and provide the CISO with clear reporting on incidents, exposure, operational performance, risk, and program maturity.

Qualifications
Experience leading Security Operations, Incident Response, Detection Engineering, Vulnerability Management, IAM, or related cybersecurity functions.
Demonstrated hands-on experience implementing and operating security controls across cloud, infrastructure, applications, identity, endpoints, and networks.
Strong technical understanding of security analytics, detection engineering, exposure management, adversary emulation, and identity security.
Experience leading significant cybersecurity incidents and cross-functional response activities.
Experience implementing security automation and AI-assisted operational capabilities.
Strong leadership, mentoring, communication, and executive presentation skills.
Experience in cloud-native or large-scale distributed environments and familiarity with modern cybersecurity and AI-risk frameworks is preferred.

Original source