Talent.com
Match Group
Cybersecurity Manager (Incident Response & Security Operations)Match Group • Vancouver, British Columbia
Cybersecurity Manager (Incident Response & Security Operations)

Cybersecurity Manager (Incident Response & Security Operations)

Match Group • Vancouver, British Columbia
17 days ago
Job type
  • Full-time
Job description

About the Role

As the Manager, IR / SOC, you will lead the integrated team responsible for Detection Engineering, Security Operations Center (SOC), and Incident Response (IR) across Match Group. Reporting to the Sr. Director of Security Engineering, you will drive the strategic vision of maximizing rapid and accurate threat response capabilities by integrating these three core functions and leveraging AI-driven innovation.

You will own the detection lifecycle end-to-end — from signal engineering and alert tuning through triage, investigation, and incident resolution — while building toward an AI-augmented SOC model that reduces noise, accelerates response, and scales across a global portfolio.

What You'll Do

  • Lead and develop a high-performing team of SOC analysts, detection engineers, and incident responders operating across multiple time zones with 24/7 coverage

  • Play a key role in developing the detection engineering framework, contributing to detections-as-code (DaC) via GitOps/CI/CD pipelines for consistency and automated deployment

  • Drive AI Agentic SOC adoption — evaluate, select, and implement AI-driven triage and investigation tooling to maximize SOC efficiency, reduce false positives, and accelerate initial response speed

  • Manage the full incident lifecycle — from detection through containment, eradication, recovery, and lessons learned — partnering with Legal, Communications, Privacy, and Engineering teams

  • Build and refine detection content across the SIEM platform, integrating log sources across all MG brands (Tinder, Hinge, Match, E&E, HPCNT, Eureka, and New Bets)

  • Establish and track SOC metrics and SLAs, creating dashboards to visualize performance, alert fidelity, and response effectiveness

  • Coordinate and execute IR tabletop exercises (technical and management-level) across brands to validate readiness and improve playbooks

  • Partner with the Red Team to validate detection capabilities through adversary simulation and assumed-compromise testing

  • Collaborate with Platform Security, InfraSec, and AppSec teams to identify and close detection gaps across cloud-native and hybrid environments (AWS, GCP), datacenter infrastructure, endpoints (CrowdStrike), identity (Okta), SaaS, and application layers

  • Integrate threat intelligence into detection and response workflows to anticipate and proactively defend against emerging threats

  • Use automation to improve detection and response times and mitigate incident impact

What You'll Bring

  • 5+ years of experience in security operations, incident response, detection engineering, or threat hunting, with 2+ years in a team leadership or management role
  • Proven experience building and operating a modern SOC in cloud-native and hybrid environments (AWS, GCP) and datacenter infrastructure
  • Hands-on experience with SIEM platforms and SOAR tools — including detection-as-code methodologies
  • Strong understanding of AI/ML applications in security operations — agentic SOC, automated triage, and intelligent alert enrichment
  • Experience managing the full incident lifecycle across complex, multi-brand or multi-tenant environments
  • Deep knowledge of attacker TTPs (MITRE ATT&CK), endpoint and network forensics, and threat hunting techniques
  • Experience with cloud security monitoring (AWS CloudTrail, GuardDuty, Security Hub, CloudWatch; GCP Security Command Center), datacenter security, and container orchestration security (Kubernetes)
  • Familiarity with identity and access security monitoring (Okta, SSO, MFA events)
  • Experience coordinating with external incident response teams, law enforcement, and cross-functional stakeholders during security events
  • Polished verbal and written communication skills — ability to communicate clearly during high-pressure incidents and deliver thorough post-incident reports to technical and executive audiences
  • Relevant certifications are a plus: GCIH, GCFA, GCIA, GSOM, CISSP, or equivalent

Nice to Have

  • Experience with Python-based detections and log analysis in modern cloud-native SIEM platforms
  • Background in the consumer internet/dating industry or other high-scale B2C platforms
  • Familiarity with Cloudflare (WAF, Bot Management), CrowdStrike, and SaaS security monitoring (Obsidian or similar)
  • Experience building or leading a Blue Team volunteer program or cross-functional security response team
$170,000 - $190,000 a yearWhy Match Group?
Our mission is simple – to help people find love and happiness! We love our employees too and understand the importance of all life's milestones. Here are some of the benefits we are proud to offer:
Mind & Body – Medical, mental health, and wellness benefits to support your overall health and well-beingFinancial Wellness – Competitive compensation, 100% employer match on 401k contributions up to 10% (cap at $10,000), as well as an employee stock purchase program to help you feel supported in your financial securityUnplug – Generous PTO and 14 paid holidays so you can unplugCareer – Annual training allowance for professional development and ERG membership opportunities and events so you feel connected and empowered in your workFamily – Families come in all shapes and sizes so we offer 20 weeks of 100% paid parental leave, fertility, adoption, and child care resources, as well as pet insurance and discounts Company Gatherings – We host company events where our employees get to know each other and build a sense of connection and belonging!
We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, or any other legally protected characteristic. Period.
If you require a reasonable accommodation to participate in the hiring process — such as during pre-employment testing or interviews — please indicate this by selecting “Yes” in the accommodation request field. We’ll reach out to discuss your needs if you're selected for the interview stage.
#MG.
Create a job alert for this search

Cybersecurity Manager (Incident Response & Security Operations) • Vancouver, British Columbia

Similar jobs

Team Lead for Cyber Security Operations

Global RelayVancouver, Metro Vancouver Regional District, CA
Full-time

Take charge as the Cyber Security Team Lead in the Cyber Security Operations Center (CSOC).Lead a team to respond to security incidents and optimize security processes actively.This position involv... Show more

 • Promoted

Senior Cybersecurity Analyst — Architecture & Threat Response

Surrey Police ServiceSurrey, Metro Vancouver Regional District, CA
Full-time

A law enforcement agency in Canada is seeking a Cybersecurity Analyst 3 to manage information security architecture and governance.This role involves developing security standards, conducting compl... Show more

 • Promoted

Remote Security Strategy Lead - Applications and IT

Targeted TalentVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A leading security consultancy in Ontario seeks an Information & Application Security Manager to lead their cybersecurity strategy and oversee IT, applications, and infrastructure security.This han... Show more

 • Promoted

Risk Manager

Transportation Investment CorporationVancouver, Metro Vancouver Regional District, CA
Full-time

The salary range for this position is $83,000 to $114,000.The Risk Manager is responsible for overseeing risk management for TI Corp both corporately and for major infrastructure projects being del... Show more

 • Promoted

Cybersecurity Compliance Lead, IT Risk & Advisory

BC HydroVancouver, British Columbia, Canada
Full-time

A major electricity provider in Vancouver seeks an IT Advisor specializing in Cybersecurity Risk and Compliance.The candidate will lead oversight of cybersecurity compliance processes, develop acti... Show more

 • Promoted

Remote Cloud Security Architect: DevSecOps & Risk Leader

Intuitive.aiVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A leading cybersecurity solutions company is seeking a Cybersecurity Specialist (GCP) to enhance their Cybersecurity Program.The role involves developing comprehensive security strategies in cloud ... Show more

 • Promoted

Security Compliance Lead: Risk, Audit & Frameworks

Fortinet, Inc.Burnaby, Metro Vancouver Regional District, CA
Full-time

A leading cybersecurity firm is seeking a Security Compliance Analyst to ensure information systems comply with security standards.Key responsibilities include conducting audits, developing complia... Show more

 • Promoted

Lead Cyber Security Operations at BCIT

British Columbia Institute of TechnologyBurnaby, Metro Vancouver Regional District, CA
Full-time

Become BCIT's Associate Director of Cyber Security, leading operations focused on governance and incident management.Ensure robust defenses against evolving cyber threats.In this full-time role, yo... Show more

 • Promoted

Senior Cybersecurity Analyst: Incident Response & Strategy

lululemonVancouver
Full-time

An innovative performance apparel company in Vancouver seeks a Staff Cybersecurity Analyst to lead complex cybersecurity initiatives, enhance security posture, and mentor junior analysts.This role ... Show more

 • Promoted

Technology Manager Driving Security in Identity Access Management

Best Buy CanadaVancouver, Metro Vancouver Regional District, CA
Full-time

Lead the charge in security and efficiency with a role as a Technology Manager in IAM.This remote-first position allows you to leverage your expertise in managing identity and access systems effect... Show more

 • Promoted

Manager, IT Operation Security Remediation

TransLinkVancouver, Metro Vancouver Regional District, CA
Full-time

A career at TransLink and our family of companies means working with people with a wide range of skills and perspectives, all teaming up towards a common goal: preserving and enhancing the region's... Show more

 • Promoted

Senior DevOps Engineer with Expertise in Cloud and Incident Management

RipplingVancouver, Metro Vancouver Regional District, CA
Full-time

Advance your career as a Senior DevOps Engineer, focusing on optimizing corporate IT through security and automation.This role emphasizes autonomy within cloud-native environments while significant... Show more

 • Promoted

Senior Campaign Manager for Cybersecurity Products

Fortinet, Inc.Burnaby, British Columbia, Canada
Full-time

Lead product campaigns as a Senior Campaign Manager focused on cybersecurity.Employ strong business development expertise to enhance product go-to-market strategies and partner engagements.This rol... Show more

 • Promoted

Senior Incident Response Consultant at CrowdStrike

CrowdStrikeVancouver, Metro Vancouver Regional District, CA
Full-time

Join CrowdStrike as a Senior Incident Response Consultant and play a critical role in modern cybersecurity.This position allows you to shape responses to sophisticated cyber threats.We are looking ... Show more

 • Promoted

IT Operations Manager

Teifi DigitalVancouver, Metro Vancouver Regional District, CA
Full-time

We’re hiring an IT & Security Manager to own and scale the internal technology, security, and compliance function at Teifi.This role is ideal for someone who thrives in high‑autonomy environments a... Show more

 • Promoted

Remote Client Engagement Manager - Cyber Security

CyberClanVancouver, Metro Vancouver Regional District, CA
Remote
Full-time +1

A leading cybersecurity firm is seeking a Client Engagement Manager to provide superior customer-centric experiences.The role involves overseeing project execution, ensuring seamless onboarding for... Show more

 • Promoted

Remote Change Lead — Cybersecurity Transformation

ARAGA SOLUTIONSVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A technology solutions provider is seeking a Change Manager to develop and implement a change management strategy focused on cybersecurity modernization.The role involves stakeholder engagement, st... Show more

 • Promoted

Enterprise Cybersecurity Solutions Architect

Insight GlobalVancouver
Full-time

A leading cybersecurity firm in Canada is seeking a Cybersecurity Solution Architect to focus on design, requirements gathering, and architectural governance.The ideal candidate will have 4–5+ year... Show more

 • Promoted

Cyber Operations Senior Manager at PwC

PwC CanadaVancouver, Metro Vancouver Regional District, CA
Full-time

Drive cybersecurity strategy implementation at PwC as a Cyber Service Senior Manager focusing on operational excellence across various domains, including DLP and automation.PwC seeks an experienced... Show more

 • Promoted

Remote Senior SOC Analyst for Threat Detection and Incident Management

TreantlyVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

Shape cybersecurity efforts as a Senior SOC Analyst, proficient in threat detection and incident response.Lead remote operations to tackle complex security challenges while mentoring junior analyst... Show more