SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: GBP 94,500 - 115,000 / annual
Huntress, founded in 2015 by former NSA cyber operators, is a remote-first cybersecurity company making enterprise-grade security accessible to businesses of all sizes. The company operates a 24/7 global Security Operations Center (SOC) staffed by human-led security analysts investigating and responding to incidents across millions of endpoints worldwide.
As Manager of Security Operations Center for EMEA, you will lead and scale operations across the European region while maintaining 24/7/365 coverage. You'll be responsible for designing and implementing processes, workflows, and playbooks that enable analysts to meet Service Level Objectives and reduce burnout. Key responsibilities include managing shift coverage across time zones, conducting weekly 1:1s with analysts to provide feedback and enable career growth, and developing training programs in Digital Forensics, Incident Response, Malware Analysis, Detection Engineering, Threat Hunting, and Automation.
You will work cross-functionally with Product, Support, Sales, and Marketing teams to prioritize capabilities that augment analyst effectiveness. You'll maintain quality assurance standards, strengthen relationships with Tactical Response and Threat Hunting teams, and provide technical leadership to SOC analysts. Additionally, you'll develop and track OKRs linked to SOC initiatives, help operationalize new technologies, and represent Huntress at public speaking engagements.
The role requires 5+ years as a Security Analyst in a global 24x7 SOC with Windows forensics focus, plus 2+ years of team lead or managerial experience in a global operations center, MSSP, MDR provider, or Incident Response service. You should have experience leading diverse cybersecurity teams, strong process design and documentation skills, and the ability to communicate complex technical concepts to varied stakeholders. Active engagement in the security community and continuous learning about threat actor tradecraft and detection techniques are essential.