Security Operations Lead

Replit
California
Workplace: HybridFull timeUSD 220,000 - 325,000 annuallyFunction: Business OperationsExperience: 7+ yearsSkills: ["Leadership","Mentorship","Communication","Analytical","Problem-solving"]

Lead the global 24/7 Security Operations Center (SOC) for a cloud-native, AI-driven platform. Oversee SIEM ownership, detection engineering, alert triage, and cross-functional collaboration across Cloud Security, Compliance, SRE, Platform Engineering, IT/Endpoint, and AI Infrastructure to scale detection and response in multi-cloud environments and AI workloads.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Replit
Replit
9 months ago

Security Operations Lead

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 17 hours agoStatus: Live

Job Summary

Lead the global 24/7 Security Operations Center (SOC) for a cloud-native, AI-driven platform. Oversee SIEM ownership, detection engineering, alert triage, and cross-functional collaboration across Cloud Security, Compliance, SRE, Platform Engineering, IT/Endpoint, and AI Infrastructure to scale detection and response in multi-cloud environments and AI workloads.
Location: California
Workplace: Hybrid
Employment Type: Full time
Job Function: Business Operations
Seniority: Sr. Manager level

Key Responsibilities

  • •Lead, mentor, and scale a global SOC team responsible for 24/7 monitoring, alert intake, triage, correlation, and escalation.
  • •Build operational rigor: processes, runbooks, SLAs, metrics, and quality standards for high-scale environments.
  • •Own the SIEM ecosystem; ingestion, normalization, correlation, enrichment, tuning, dashboards, and metrics.

Pay and Benefits

Salary: USD 220,000 - 325,000 annually
Equity and Bonus:Equity
Perks:Health Insurance401kEquityRemote WorkWellness StipendPaid LeaveCommuter BenefitsLife InsuranceDisabilityFlexible Time

Key Requirements

  • •7+ years of experience in Security Operations, with 3+ years in a senior or lead capacity.
  • •Experience leading or collaborating with 24/7 SOC environments (internal, hybrid, or MSSP).
  • •Strong experience with SIEM platforms (Chronicle, Splunk, Elastic, Sentinel, Panther, etc.).
  • •Deep understanding of Cloud security monitoring (GCP required; AWS/Azure preferred), SaaS security monitoring, Endpoint security telemetry, and Kubernetes/container detection.
  • •Hands-on detection engineering skills, event correlation, threat hunting, and log analysis.
Experience:7+ yearsCybersecurityCloud securitySOC
Skills:LeadershipMentorshipCommunicationAnalyticalProblem-solving
Certifications:GCIHGCIAGCTIGCDAGCFA
Languages:English
Tech Stack:GCPAWSAzureKubernetesEDR/XDRSaaSOktaGitHubSlackCI/CDPythonGoBashMITRE ATT&CKSOARChronicleSplunkElasticSentinelPanther

Company Brief

Replit
Provides a browser-based integrated development environment (IDE) and collaborative coding platform that lets developers write, run, and deploy code instantly across many languages and frameworks.
Industry: Developer Tools
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Headquarters: San Francisco, United States
Founded: 2016
WebsiteLinkedIn