via Adp
$170K - 210K a year
Lead and manage a global Security Operations Center (SOC), overseeing detection, response, and operational resilience.
Requires 8-12 years in cybersecurity, with leadership in SOC/IR, cloud security, scripting, and relevant certifications, which do not align with your employment law expertise.
At Claritev, we pride ourselves on being a dynamic team of innovative professionals. Our purpose is simple - we strive to bend the cost curve in healthcare for all. Our dedication to service excellence extends to all our stakeholders -- internal and external - driving us to consistently exceed expectations. We are intentionally bold, we foster innovation, we nurture accountability, we champion diversity, and empower each other to illuminate our collective potential. Be part of our amazing transformational journey as we optimize the opportunity towards becoming a leading technology, data, and innovation voice in healthcare. Onward and Upward!!! JOB SUMMARY: We're seeking a decisive, hands-on leader to drive our global Security Operations strategy. You will lead a high-performing team responsible for 24×7 monitoring, detection engineering, incident response, and operational resilience. This role blends strategic vision with technical depth, ensuring measurable risk reduction and continuous improvement across our security landscape. This role collaborates across departments to ensure alignment with business objectives. JOB ROLES AND RESPONSIBILITIES: 1. Lead and mentor SOC analysts and engineers, fostering a collaborative, learning-driven culture. 2. Define and execute a multi-quarter roadmap for detection, automation, and response workflows aligned to business risk and threat landscape. 3. Establish and track KPIs/KRIs (e.g., MTTD, MTTR, ATT&CK coverage, false positive rates) with executive-ready reporting. 4. Own the detection engineering pipeline and alerting strategy; drive high-fidelity detections mapped to MITRE ATT&CK. 5. Conduct threat hunts and integrate CTEM/purple team outcomes to close detection gaps. 6. Lead major incident response efforts, ensuring cross-functional coordination and post-incident forensics. 7. Manage the SOC technology stack (SIEM, EDR, SOAR, etc.), prioritizing automation and enrichment to reduce analyst toil. 8. Expand telemetry coverage and optimize data quality, retention, and cost efficiency. 9. Evaluate and integrate new security tools; manage vendor relationships, SLAs, and QBRs. 10. Partner with GRC to support SOC 2, ISO 27001, HIPAA/HITRUST, and other regulatory requirements. 11. Collaborate across Security, Infrastructure, and Risk teams to reduce attack surface and drive remediation. 12. Select, develop, and evaluate staff to ensure the efficient operation of department. 13. Collaborate, coordinate, and communicate across disciplines and departments. 14. Ensure compliance with HIPAA regulations and requirements. 15. Demonstrate Company's Core Competencies and values held within. 16. Please note due to the exposure of PHI sensitive data -- this role is considered to be a High Risk Role. 17. The position responsibilities outlined above are in no way to be construed as all encompassing. Other duties, responsibilities, and qualifications may be required and/or assigned as necessary. Qualifications JOB REQUIREMENTS (Education, Experience, and Training): * Must have 8-12 years in cybersecurity, with 5+ years in SOC/IR and 3+ leading detection & response in cloud-forward environments. * Proven incident commander for high-severity events with strong executive communication. * Deep expertise in SIEM/EDR/SOAR, cloud logs (AWS, Azure, GCP), identity signals (Okta/Entra), and scripting (Python, KQL, SPL). * Experience managing MDR providers and running tabletop exercises. * Prior leadership of 24×7 operations and follow-the-sun models. * Experience with ITSM systems (ServiceNow/Jira), data lakes, and multi-cloud security controls. * Familiarity with regulated environments (healthcare, financial services, public sector). * BS in Information Security or related field. Certifications: CISSP, CISM, GIAC (GCIH, GCIA, GCFA, etc.). The salary range for this position is $170K to $210K. Specific offers take into account a candidate's education, experience and skills, as well as the candidate's work location and internal equity. This position is also eligible for health insurance, 401k and bonus opportunity. BENEFITS We realize that our employees are instrumental to our success, and we reward them accordingly with very competitive compensation and benefits packages, an incentive bonus program, as well as recognition and awards programs. Our work environment is friendly and supportive, and we offer flexible schedules whenever possible, as well as a wide range of live and web-based professional development and educational programs to prepare you for advancement opportunities. Your benefits will include: * Medical (PPO & HDHP), dental and vision coverage * Pre-tax Savings Account (FSA & HSA) * Life & Disability Insurance * Paid Parental Leave * 401(k) company match * Employee Stock Purchase Plan * Generous Paid Time Off -- accrued based on years of service o WA Candidates: the accrual rate is 4.61 hours every other week for the first two years of tenure before increasing with additional years of service * 10 paid company holidays * Tuition reimbursement * Employee Assistance Program * Sick time benefits -- for eligible employees, one hour of sick time for every 30 hours worked, up to a maximum accrual of 40 hours per calendar year, unless the laws of the state in which the employee is located provide for more generous sick time benefits EEO STATEMENT Claritev is an Equal Opportunity Employer and complies with all applicable laws and regulations. Qualified applicants will receive consideration for employment without regard to age, race, color, religion, gender, sexual orientation, gender identity, national origin, disability or protected veteran status. If you would like more information on your EEO rights under the law, please click here. APPLICATION DEADLINE We will generally accept applications for at least 5 business days from the posting date or as long as the job remains posted. #LI - VG1
This job posting was last updated on 1/18/2026