Cybersecurity Operations Manager
Job Description
As a leader within McKinsey’s Security Operations Center (SOC), you’ll oversee incident response operations covering the Americas time zones while supporting the McKinsey Restricted environment. In this role, you will own end-to-end cybersecurity incident management, serve as incident commander for high-impact events, and help evolve detection and SOC processes for complex threats across multi-cloud and endpoint ecosystems.
This onsite position is based in Boston, MA, and requires 5+ years of hands-on experience in security operations, cyber defense, incident response, or threat detection.
What you’ll do
- Lead incident response operations in the Security Operations Center (SOC) for the Americas time zones, supporting the McKinsey Restricted environment.
- Be accountable for the performance and development of security analysts while managing end-to-end cybersecurity incidents.
- Act as incident commander for high-impact security events, directing log analysis across endpoint, network, and cloud environments.
- Influence threat-hunting activities and guide response actions on complex incidents.
- Drive continuous improvement of detection capabilities and SOC processes, including representing the SOC to internal stakeholders.
What you bring
- US Citizenship is required due to the nature of this role supporting McKinsey RE incident response engagements.
- Industry certifications such as GCIH, GCFA, GCFE, CISSP, CEH, or equivalent are preferred.
- 5+ years of hands-on experience in Security Operations, Cyber Defense, Incident Response, or Threat Detection.
- 2+ years in a people-management or team-lead capacity.
- Strong understanding of security monitoring and incident response across enterprise and multi-cloud environments including AWS, Azure, and GCP, as well as AI/LLM-related security risks.
- Hands-on experience with EDR/XDR, SIEM, and cloud security tools, with preferred knowledge of Microsoft Defender EDR and Palo Alto Cortex XSIAM.
- Proficiency using AI/LLM tools to build automations and scripts, with the ability to mentor team members on their secure use.
- Strong people-leadership skills to coach and develop security analysts.
- Excellent written and verbal communication, including the ability to convey technical findings to technical and non-technical stakeholders.
Technologies
- AWS, Azure, GCP
- EDR/XDR, SIEM
- Microsoft Defender EDR
- Palo Alto Cortex XSIAM
- AI/LLM
- GCIH, GCFA, GCFE, CISSP, CEH
Compensation and benefits
On top of a competitive salary (based on your location, experience, and skills), McKinsey provides a comprehensive benefits package designed to support holistic well-being for you and your family.
Your growth
- Work in a high-performance environment with a growth mindset and an entrepreneurial spirit to tackle meaningful challenges.
- Receive the resources, mentorship, and opportunities to broaden your expertise and grow into a well-rounded professional.
- Access continuous learning through a learning and apprenticeship culture with structured programs, clear and actionable feedback, and ownership of your development journey.
- Share ideas that can make a practical impact while supporting ethics and integrity, with value placed on diverse perspectives.
- Join a global community with colleagues across 65+ countries and 100+ nationalities, and learn from peers with diverse backgrounds and experiences.