Manager II, Security Operations

  • US MN Minneapolis Office · United States Remote
  • Full-time
  • POSTED TODAY

About the job

Description:

SPS Commerce is a leading provider of cloud-based supply chain management solutions, serving a global network of retail trading partners. We foster a collaborative and inclusive work environment where innovation and continuous improvement are highly valued. Join SPS Commerce and be part of a dynamic team that's transforming the global retail supply chain!

Position Summary:

As a Manager II, Security Operations on our Cyber Engineering & Defense team, you will lead Security Operations at SPS Commerce, directly managing Cyber Defense engineers and analysts while owning an 8-person L1/L2 SOC contractor pod under a managed-services model. You'll be accountable for SOC operational performance, including detection quality, triage accuracy, and time-to-containment, serving as incident commander for Sev1 and escalated security incidents. This role also owns a growing layer of AI agents performing triage, enrichment, and response orchestration work alongside human analysts, and partners closely with the Agentic Cyber Engineering (ACE) function to define and deliver agentic capabilities. You'll operate independently, translating Cyber Defense strategy into a tactical SecOps roadmap.

What You'll Do:

Own SOC operational performance, including alert triage MTTD/MTTR, true-positive rate, ticket throughput, and time-to-containment across the Cyber Defense engineering and analyst function and the 8-person L1/L2 SOC contractor pod Serve as incident commander for Sev1 and escalated security incidents, including severity determination, cross-functional and executive communications, and resolution path Own operational accountability for AI agents deployed in the SOC and detection-and-response pipeline, including escalation thresholds, human-in-the-loop checkpoints, and output quality Own the day-to-day MSP/contractor relationship for the 8-person L1/L2 SOC pod, including onboarding, performance, retention, and escalation quality Translate Cyber Defense strategy into a tactical SecOps roadmap, owning the SecOps Jira project and quarterly sequencing within the broader Cyber Defense strategy Own operational quality of core Cyber Defense tooling including SIEM detection content lifecycle and source health, CrowdStrike platform administration including the NG-SIEM migration, and SOAR runbooks Run a healthy 24x7 on-call rotation across FTE and contractor coverage, protecting against alert fatigue Provide day-to-day management, coaching, and career development for Cyber Defense engineers and analysts, including weekly 1:1s and written growth plans Partner with the Agentic Cyber Engineering (ACE) function on capability definition, development, and delivery of systems to drive and accelerate agentic transformation

Where You'll Work:

This role is hybrid out of our headquarters in Minneapolis, MN or open to fully remote candidates. We Succeed Together through in-person collaboration, balanced with remote work to provide flexibility.

What You'll Bring:

8+ years in security operations, detection engineering, or incident response Experience maturing Cyber capabilities and driving organizational transformation Demonstrated Sev1 incident command experience with cross-functional engineering and executive communications Track record of owning a multi-quarter security program end-to-end including roadmap, execution, and measurable risk reduction Experience owning MSP/MSSP relationships at scale, including renewal economics, scope changes, and consolidation decisions Working knowledge of EDR, SIEM, SOAR, and ticketing tooling comparable to the SPS Cyber Defense stack, such as CrowdStrike, NG-SIEM/Panther/Splunk/Sentinel, Tines/Torq/Phantom, and Jira Demonstrated ability to coach engineers, run effective 1:1s, and deliver clear performance feedback 3+ years of direct people management including hiring, performance management, and career development preferred Direct experience with the SPS stack including CrowdStrike Falcon, Panther, Tines, AWS, EKS, and Atlassian preferred Familiarity with supply chain attack patterns and CI/CD security preferred Experience working with distributed or offshore SOC teams preferred Demonstrated experience directing or overseeing AI agents in an operational service-delivery context, including designing escalation thresholds, human-in-the-loop review points, and quality control for agent-produced work preferred Experience with agentic frameworks and orchestration such as LangGraph or agent tool-use pipelines in a security operations or detection-and-response context preferred Industry certifications such as GIAC GCIH/GCIA/GCDA, OSCP, or CISSP preferred

What We Offer:

At SPS Commerce, we are committed to ensuring that each employee's compensation reflects their unique experiences, performance, and skills in their role. The salary range for this role considers several factors, including education, relevant skills, work history, certifications, location, and more.

The annual salary range for this role is: $133,800 - $204,100. The actual salary offered will be determined based on the factors listed above and may fall anywhere within the range.

SPS Commerce offers a comprehensive package of benefits including health, dental, vision, disability and life insurance, paid time-off, 401(k), health and flexible spending accounts, stock purchase plan and more.

Commitment to our Employees:

At SPS we power connections that drive the world of commerce forward, and our success depends on making strong decisions, fostering innovation, delivering unparalleled customer solutions, and driving outstanding business performance. We achieve this by creating an environment where every employee feels a true sense of belonging. We embrace diversity, equity, and inclusion, ensuring everyone feels accepted, valued, and empowered to make a meaningful impact.

We are committed to affirmative action and equal opportunity in all aspects of employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.