Manager II, Security Operations
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 2d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 3d ago
The date the source published, not the day we noticed it (2026-10-08). Last seen at its source just now.
We have tracked this listing since 8 Oct 2026 (2 days). The employer's own board has carried it every time we have read it, most recently just now.
Is it remote?
The listing says yes
The location field doesn't say remote, so our assessment is based on the title or the description. Read the listing before applying.
Who may apply?
United States
The description states no restriction of its own. This is the source's own tag.
Pay
$133.8k–204.1k/yr
Read out of the job description by us, not from a structured field. Shown in the posting's own currency and period; we never convert.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
Workday employer's own board first seen 2d ago · last seen just now
- location not stated
The listing
SPS Commerce is a leading provider of cloud-based supply chain management solutions, serving a global network of retail trading partners. We foster a collaborative and inclusive work environment where innovation and continuous improvement are highly valued. Join SPS Commerce and be part of a dynamic team that's transforming the global retail supply chain!
Position Summary:As a Manager II, Security Operations on our Cyber Engineering & Defense team, you will lead Security Operations at SPS Commerce, directly managing Cyber Defense engineers and analysts while owning an 8-person L1/L2 SOC contractor pod under a managed-services model. You'll be accountable for SOC operational performance, including detection quality, triage accuracy, and time-to-containment, serving as incident commander for Sev1 and escalated security incidents. This role also owns a growing layer of AI agents performing triage, enrichment, and response orchestration work alongside human analysts, and partners closely with the Agentic Cyber Engineering (ACE) function to define and deliver agentic capabilities. You'll operate independently, translating Cyber Defense strategy into a tactical SecOps roadmap.What You'll Do:
- Own SOC operational performance, including alert triage MTTD/MTTR, true-positive rate, ticket throughput, and time-to-containment across the Cyber Defense engineering and analyst function and the 8-person L1/L2 SOC contractor pod
- Serve as incident commander for Sev1 and escalated security incidents, including severity determination, cross-functional and executive communications, and resolution path
- Own operational accountability for AI agents deployed in the SOC and detection-and-response pipeline, including escalation thresholds, human-in-the-loop checkpoints, and output quality
- Own the day-to-day MSP/contractor relationship for the 8-person L1/L2 SOC pod, including onboarding, performance, retention, and escalation quality
- Translate Cyber Defense strategy into a tactical SecOps roadmap, owning the SecOps Jira project and quarterly sequencing within the broader Cyber Defense strategy
- Own operational quality of core Cyber Defense tooling including SIEM detection content lifecycle and source health, CrowdStrike platform administration including the NG-SIEM migration, and SOAR runbooks
- Run a healthy 24x7 on-call rotation across FTE and contractor coverage, protecting against alert fatigue
- Provide day-to-day management, coaching, and career development for Cyber Defense engineers and analysts, including weekly 1:1s and written growth plans
- Partner with the Agentic Cyber Engineering (ACE) function on capability definition, development, and delivery of systems to drive and accelerate agentic transformation
Where You'll Work:
This role is hybrid out of our headquarters in Minneapolis, MN or open to fully remote candidates. We Succeed Together through in-person collaboration, balanced with remote work to provide flexibility.
What You'll Bring:
- 8+ years in security operations, detection engineering, or incident response
- Experience maturing Cyber capabilities and driving organizational transformation
- Demonstrated Sev1 incident command experience with cross-functional engineering and executive communications
- Track record of owning a multi-quarter security program end-to-end including roadmap, execution, and measurable risk reduction
- Experience owning MSP/MSSP relationships at scale, including renewal economics, scope changes, and consolidation decisions
- Working knowledge of EDR, SIEM, SOAR, and ticketing tooling comparable to the SPS Cyber Defense stack, such as CrowdStrike, NG-SIEM/Panther/Splunk/Sentinel, Tines/Torq/Phantom, and Jira
- Demonstrated ability to coach engineers, run effective 1:1s, and deliver clear performance feedback
- 3+ years of direct people management including hiring, performance management, and career development preferred
- Direct experience with the SPS stack including CrowdStrike Falcon, Panther, Tines, AWS, EKS, and Atlassian preferred
- Familiarity with supply chain attack patterns and CI/CD security preferred
- Experience working with distributed or offshore SOC teams preferred
- Demonstrated experience directing or overseeing AI agents in an operational service-delivery context, including designing escalation thresholds, human-in-the-loop review points, and quality control for agent-produced work preferred
- Experience with agentic frameworks and orchestration such as LangGraph or agent tool-use pipelines in a security operations or detection-and-response context preferred
- Industry certifications such as GIAC GCIH/GCIA/GCDA, OSCP, or CISSP preferred
What We Offer:
At SPS Commerce, we are committed to ensuring that each employee's compensation reflects their unique experiences, performance, and skills in their role. The salary range for this role considers several factors, including education, relevant skills, work history, certifications, location, and more.
The annual salary range for this role is: $133,800 - $204,100. The actual salary offered will be determined based on the factors listed above and may fall anywhere within the range.
SPS Commerce offers a comprehensive package of benefits including health, dental, vision, disability and life insurance, paid time-off, 401(k), health and flexible spending accounts, stock purchase plan and more.
Commitment to our Employees:At SPS we power connections that drive the world of commerce forward, and our success depends on making strong decisions, fostering innovation, delivering unparalleled customer solutions, and driving outstanding business performance. We achieve this by creating an environment where every employee feels a true sense of belonging. We embrace diversity, equity, and inclusion, ensuring everyone feels accepted, valued, and empowered to make a meaningful impact.
We are committed to affirmative action and equal opportunity in all aspects of employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.