Head of Detection & Response Engineering
Job Description
[Up to c. $750k Comp Package | Hybrid Working]
Role Overview
We’re partnering with a world-leading, technology-driven investment firm as it continues to evolve its global security capability. This hire will take ownership of the firm’s Detection & Response function, shaping how incidents are identified, investigated, escalated and remediated across a complex, high-performance environment.
This is not a purely managerial SecOps role. The position is expected to be roughly 70% hands-on technical leadership and 30% people management, with direct involvement in investigations, incident tooling, monitoring, logging infrastructure and cross-functional security initiatives. The ideal profile is likely to come from a forensic investigation, security consulting, incident response or detection engineering background, with the credibility to operate deeply technically while also communicating clearly with senior stakeholders during high-pressure events...
Key Responsibilities
- Lead the firm’s Detection & Response function, setting direction across incident detection, investigation, monitoring and response engineering
- Manage and develop a small global team spanning New York and India, including oversight of an India-based manager
- Act as a hands-on engineering leader during security investigations, helping drive analysis, containment and remediation
- Build and improve tooling for incident response, logging, monitoring and investigative workflows
- Enhance detection coverage and signal quality across infrastructure, applications and business-critical systems
- Develop scalable response processes that improve investigation speed, accuracy and consistency
- Use automation, orchestration and AI-assisted workflows to reduce manual effort and improve security operations maturity
- Partner with quantitative research and technology teams on intellectual property protection and related insider or data-loss risks
- Lead large cross-functional security projects involving engineering, infrastructure, risk and business stakeholders
- Serve as a senior incident escalation point, including supporting executive-level communication during major events
- Maintain relationships with specialist security partners, vendors and external incident response providers where appropriate
- Continuously assess threat trends and adapt detection and response strategies to the firm’s evolving risk profile
What You’ll Bring…
- 10-15 years’ experience across detection engineering, incident response, digital forensics, security engineering or security operations
- Strong hands-on background in incident detection and response, with the ability to lead complex investigations directly
- Proven experience managing technical security teams while remaining close to engineering and investigative work
- Background in security consulting, forensic investigation, incident response or threat detection strongly preferred
- Experience building or improving monitoring, logging, investigative tooling and response workflows
- Strong understanding of attacker techniques, detection logic, forensic analysis and response methodology
- Ability to lead major incidents calmly, including communication with senior leadership and executive stakeholders
- Experience delivering cross-functional security programmes across engineering, infrastructure and business teams
- Interest in applying automation, AI or agentic workflows to improve detection, investigation and response processes
- Strong communication skills, with the judgement to translate technical detail into clear operational and executive messaging
- Ability to protect high-value intellectual property and sensitive data in research-heavy or highly technical environments
- (Preferred) Experience from a leading incident response, forensic investigation, or cyber security consulting environment before moving in-house
- (Preferred) Experience working in investment management, trading, technology-led financial services or another high-performance environment
...
Apply for this role
All fields marked with * are required.