Job Overview
Employment Type
Full-time
Benefits
Health Insurance
Dental Insurance
Paid Time Off
Retirement Plan
Paid holidays
Employee Discounts
flexible schedule
Job Description
Mountain America Credit Union (MACU) is a leading financial institution known for its commitment to providing exceptional financial services and solutions to its members. Established with a strong community focus, MACU has grown to become one of the largest credit unions in the United States, offering a wide range of products including savings and checking accounts, loans, credit cards, mortgage options, and investment services. The credit union prides itself on delivering personalized service, innovative technology, and fostering a member-centric culture that values trust, security, and financial wellbeing. MACU operates with a mission to enhance the financial lives of its members through education, advocacy, and outstanding member service.
The Sr. Manager of Cybersecurity Incident Response & Insider Threat at Mountain America Credit Union is a senior leadership role responsible for managing the organization’s enterprise-wide cybersecurity incident response, digital forensics, and insider threat program. This position is pivotal in safeguarding member data, intellectual property, and critical systems by preparing the credit union to effectively detect, respond to, and recover from cybersecurity incidents. Operating out of the Utah office located at 9800 S. Monroe Street, Sandy, UT 84070, this full-time hybrid role balances in-office presence with some remote work flexibility.
In this highly visible role, the Senior Manager collaborates closely with cross-functional teams including Cybersecurity, IT, Legal, Human Resources, Governance, Risk Management, and Executive Leadership to navigate high-impact cybersecurity incidents and insider risk scenarios. The role demands not only technical expertise but also strategic vision and strong leadership abilities. The Senior Manager serves as the executive incident commander for major cybersecurity events, ensuring timely coordination of technical and business response efforts. Key responsibilities include developing and maintaining incident response plans, conducting post-incident analyses, and leading simulations such as tabletop exercises and red/blue team scenarios to enhance organizational readiness.
Leading the insider threat program, the position focuses on detecting and mitigating risks stemming from malicious, negligent, or compromised insiders. This includes overseeing investigations, implementing monitoring capabilities, and establishing governance structures to ensure investigations comply with legal and regulatory requirements. Additionally, the Senior Manager drives continuous improvement in security operations by collaborating with Security Operations Center (SOC) leadership to enhance monitoring and response automation, translating threat intelligence into actionable defense strategies, and ensuring compliance with regulatory frameworks such as NCUA, FFIEC, and NIST.
A critical aspect of the role involves leadership and mentorship of incident response and insider threat professionals, fostering a collaborative culture across departments to balance security, privacy, and business needs effectively. The Senior Manager is expected to act as a trusted advisor during sensitive and high-risk cyber events, demonstrating exceptional communication skills and the ability to lead under pressure. This role offers the opportunity to influence not only the technical posture of MACU but also contribute to its reputation and resilience in an increasingly complex cybersecurity landscape.
Overall, this role at Mountain America Credit Union offers an exciting leadership opportunity for experienced cybersecurity professionals passionate about protecting financial services organizations. It combines strategic oversight, hands-on incident management, and cross-functional collaboration to ensure the credit union remains secure, compliant, and responsive to emerging cyber threats.
The Sr. Manager of Cybersecurity Incident Response & Insider Threat at Mountain America Credit Union is a senior leadership role responsible for managing the organization’s enterprise-wide cybersecurity incident response, digital forensics, and insider threat program. This position is pivotal in safeguarding member data, intellectual property, and critical systems by preparing the credit union to effectively detect, respond to, and recover from cybersecurity incidents. Operating out of the Utah office located at 9800 S. Monroe Street, Sandy, UT 84070, this full-time hybrid role balances in-office presence with some remote work flexibility.
In this highly visible role, the Senior Manager collaborates closely with cross-functional teams including Cybersecurity, IT, Legal, Human Resources, Governance, Risk Management, and Executive Leadership to navigate high-impact cybersecurity incidents and insider risk scenarios. The role demands not only technical expertise but also strategic vision and strong leadership abilities. The Senior Manager serves as the executive incident commander for major cybersecurity events, ensuring timely coordination of technical and business response efforts. Key responsibilities include developing and maintaining incident response plans, conducting post-incident analyses, and leading simulations such as tabletop exercises and red/blue team scenarios to enhance organizational readiness.
Leading the insider threat program, the position focuses on detecting and mitigating risks stemming from malicious, negligent, or compromised insiders. This includes overseeing investigations, implementing monitoring capabilities, and establishing governance structures to ensure investigations comply with legal and regulatory requirements. Additionally, the Senior Manager drives continuous improvement in security operations by collaborating with Security Operations Center (SOC) leadership to enhance monitoring and response automation, translating threat intelligence into actionable defense strategies, and ensuring compliance with regulatory frameworks such as NCUA, FFIEC, and NIST.
A critical aspect of the role involves leadership and mentorship of incident response and insider threat professionals, fostering a collaborative culture across departments to balance security, privacy, and business needs effectively. The Senior Manager is expected to act as a trusted advisor during sensitive and high-risk cyber events, demonstrating exceptional communication skills and the ability to lead under pressure. This role offers the opportunity to influence not only the technical posture of MACU but also contribute to its reputation and resilience in an increasingly complex cybersecurity landscape.
Overall, this role at Mountain America Credit Union offers an exciting leadership opportunity for experienced cybersecurity professionals passionate about protecting financial services organizations. It combines strategic oversight, hands-on incident management, and cross-functional collaboration to ensure the credit union remains secure, compliant, and responsive to emerging cyber threats.
Job Requirements
- 6+ years of experience in cybersecurity operations or incident response with progressive responsibility
- 5+ years in a leadership role responsible for cybersecurity operations or incident response
- Experience leading enterprise-scale incident response programs
- Bachelor’s degree in a related discipline or equivalent experience
- CISSP certification strongly preferred
- Effective communication skills
- Ability to work collaboratively with cross-functional teams
- Capability to lead high-severity cybersecurity incident responses
- Knowledge of regulatory compliance requirements
- Strong problem-solving abilities
- Leadership and mentoring skills
Job Qualifications
- 6+ years of experience in cybersecurity operations or incident response with progressive responsibility
- 5+ years in a leadership role responsible for cybersecurity operations or incident response
- Experience leading enterprise-scale incident response programs
- Financial services or regulated industry experience preferred
- Bachelor’s degree in a related discipline or equivalent experience
- CISSP strongly preferred
- GCIH GCFA CISM CISA or GIAC certifications highly desirable
- Expertise in incident response and digital forensics
- Strong understanding of insider threat risk and investigations
- Executive-level communication and leadership under pressure
- Proven ability to balance security privacy and business needs
- Strategic thinking
- Problem-solving skills
- Verbal/written communication skills
- Leadership and talent management skills
- Public speaking skills
Job Duties
- Lead the enterprise cybersecurity incident response program including preparation detection containment eradication and recovery activities
- Serve as the executive incident commander for high-severity cybersecurity events coordinating technical teams business stakeholders and leadership
- Define and maintain incident response plans playbooks escalation models and crisis communication procedures
- Conduct executive-level briefings during and after incidents including post-incident reports root cause analysis and lessons learned
- Oversee breach investigations digital forensics and evidence preservation in coordination with Legal and Compliance
- Lead tabletop exercises red/blue team simulations and ransomware readiness scenarios
- Lead the organization’s brand protection efforts to safeguard reputation and identity
- Lead proactive threat-hunting initiatives to identify advanced threats vulnerabilities and anomalous activities across the enterprise environment
- Own and operate the enterprise Insider Threat Program addressing malicious negligent and compromised insider risks
- Define insider threat detection triage investigation and response processes across people process and technology
- Partner with HR Legal Privacy and Risk Management teams to ensure investigations are lawful and appropriate
- Implement behavioral technical and contextual monitoring capabilities
- Establish governance oversight and separation of duties for insider investigations
- Collaborate with SOC leadership to enhance monitoring alerting and response automation
- Drive continuous improvement using metrics and maturity models
- Translate threat intelligence into actionable detection and response strategies
- Ensure alignment with regulatory frameworks including NCUA FFIEC and NIST
- Support audits regulatory exams and breach notification requirements
- Partner with Risk Management and Internal Audit to remediate gaps
- Lead and mentor incident response and insider threat professionals
- Partner across IT Digital Solutions Legal HR Communications and executives
- Act as a trusted advisor during high-impact and sensitive situations
Job Criteria
Experience
Mid Level (3-7 years)
Job Location
Your Profile Is Visible To Hiring Managers Across OysterLink.
We'll match you with best jobs
Get job offers faster


Search For More Opportunities:
How Candidates Get Hired Faster
Apply to 2–3 similar roles
Complete profile & get best matches
Check new opportunities daily

