CybersecurityJobs.io
← Back to all jobs

Job Description

As a leader within McKinsey’s Security Operations Center (SOC), you’ll oversee incident response operations covering the Americas time zones while supporting the McKinsey Restricted environment. In this role, you will own end-to-end cybersecurity incident management, serve as incident commander for high-impact events, and help evolve detection and SOC processes for complex threats across multi-cloud and endpoint ecosystems.

This onsite position is based in Boston, MA, and requires 5+ years of hands-on experience in security operations, cyber defense, incident response, or threat detection.

What you’ll do

  • Lead incident response operations in the Security Operations Center (SOC) for the Americas time zones, supporting the McKinsey Restricted environment.
  • Be accountable for the performance and development of security analysts while managing end-to-end cybersecurity incidents.
  • Act as incident commander for high-impact security events, directing log analysis across endpoint, network, and cloud environments.
  • Influence threat-hunting activities and guide response actions on complex incidents.
  • Drive continuous improvement of detection capabilities and SOC processes, including representing the SOC to internal stakeholders.

What you bring

  • US Citizenship is required due to the nature of this role supporting McKinsey RE incident response engagements.
  • Industry certifications such as GCIH, GCFA, GCFE, CISSP, CEH, or equivalent are preferred.
  • 5+ years of hands-on experience in Security Operations, Cyber Defense, Incident Response, or Threat Detection.
  • 2+ years in a people-management or team-lead capacity.
  • Strong understanding of security monitoring and incident response across enterprise and multi-cloud environments including AWS, Azure, and GCP, as well as AI/LLM-related security risks.
  • Hands-on experience with EDR/XDR, SIEM, and cloud security tools, with preferred knowledge of Microsoft Defender EDR and Palo Alto Cortex XSIAM.
  • Proficiency using AI/LLM tools to build automations and scripts, with the ability to mentor team members on their secure use.
  • Strong people-leadership skills to coach and develop security analysts.
  • Excellent written and verbal communication, including the ability to convey technical findings to technical and non-technical stakeholders.

Technologies

  • AWS, Azure, GCP
  • EDR/XDR, SIEM
  • Microsoft Defender EDR
  • Palo Alto Cortex XSIAM
  • AI/LLM
  • GCIH, GCFA, GCFE, CISSP, CEH

Compensation and benefits

On top of a competitive salary (based on your location, experience, and skills), McKinsey provides a comprehensive benefits package designed to support holistic well-being for you and your family.

Your growth

  • Work in a high-performance environment with a growth mindset and an entrepreneurial spirit to tackle meaningful challenges.
  • Receive the resources, mentorship, and opportunities to broaden your expertise and grow into a well-rounded professional.
  • Access continuous learning through a learning and apprenticeship culture with structured programs, clear and actionable feedback, and ownership of your development journey.
  • Share ideas that can make a practical impact while supporting ethics and integrity, with value placed on diverse perspectives.
  • Join a global community with colleagues across 65+ countries and 100+ nationalities, and learn from peers with diverse backgrounds and experiences.

Similar Jobs