Sr Manager Cyber Defense
Oshkosh, NE - USA
Job Summary
At Oshkosh we build serve and protect people and communities around the world by designing and manufacturing some of the toughest specialty trucks and access equipment. We employ over 18000 team members all united by a common purpose. Our engineering and product innovation help keep soldiers and firefighters safe is critical in building and keeping communities clean and helps people do their jobs every day.
Oshkosh Corporation owns significant assets in the form of information. Some of these assets lose significant value if they are improperly disclosed. Similar disclosure of other assets could result in significant harm to the corporation. This job supports the enterprise-wide global cybersecurity purpose: Trusted advisor - empowering team members to make risk-aware decisions; Strategic enabler - enhancing the value Oshkosh delivers to our customers; Vigilant guardian - protecting Oshkoshs people and critical digital assets.
YOUR IMPACT
Leadership & Strategy
- Direct and oversee a multi-domain enterprise cyber defense organization encompassing Security Operations (SOC) Incident Response Detection Engineering Vulnerability Management and Threat Intelligence.
- Partner with the CISO and executive leadership to define continuously evolve and execute the enterprise cyber defense strategy ensuring functional alignment with business objectives at scale.
- Recruit develop and retain a high-performing team of cybersecurity professionals providing ongoing coaching performance management and career development to foster operational excellence.
- Manage operational budgets and vendor strategies strategically evaluating the balance of internal capabilities versus external managed services (e.g. MDR) to optimize security investments.
- Optimize operational budgets and vendor strategy by continuously evaluating security investments balancing internal capabilities with external managed services to maximize ROI and operational efficiency.
Security Operations & Incident Response
- Lead enterprise-wide incident response efforts for critical security events (e.g. insider risk supply chain threats) coordinating cross-functional containment remediation and executive communication.
- Establish and manage proactive security validation programs including recurring tabletop exercises and purple team operations to rigorously test response procedures and benchmark team readiness against real-world threats.
- Drive continuous improvement in response capabilities by overseeing the implementation and optimization of security automation and orchestration (SOAR) technologies to reduce mean time to respond (MTTR).
Engineering Architecture & Risk Management
- Oversee the detection engineering lifecycle establishing frameworks to measure and improve detection fidelity minimize false positives and prioritize analyst focus on high-signal threats.
- Direct the enterprise vulnerability management program shifting focus from volume-based patching to risk-weighted prioritization models that drive measurable outcomes-based risk reduction.
- Lead the development of security strategies for emerging technologies (such as AI) defining appropriate governance policies risk classification frameworks and control architectures.
- Modernize security operations by continually evaluating and integrating advanced security platforms and AI-driven solutions to enhance automation and threat detection capabilities
MINIMUM QUALIFICATIONS
Bachelors degree in Information Systems or equivalent.
Eight (8) or more years of Security/Cybersecurity experience.
Three (3) or more years of Information Security/Cybersecurity experience.
STANDOUT QUALIFICATIONS
Graduate Degree in Information Systems Management or Equivalent.
Strong understanding of the business impact of security tools technologies and policies.
Relevant industry recognized certifications (CISSP CISM CEH GIAC SECURITY etc).
Hold an active U.S. Government Secret Level clearance.
Experience with project management audit defense-in-depth security systems incident response vulnerability management IT infrastructure regulatory laws/frameworks.
Ability to build strong relationships at all levels and across all business units and organizations and understand business imperatives.
Proficiency in performing risk business impact control & vulnerability assessments and defining mitigation planning.
WORKING CONDITIONS
Physical Demands: Frequent Hearing Talking Visual Typing Manual Dexterity Standing Walking/Running Sitting Reaching Driving Bending/Kneeling and Fine Dexterity.
Non-Physical Demands: Frequent Analysis/Reasoning Communication/Interpretation Math/Mental Computation Reading Sustained Mental Activity (i.e. auditing problem solving grant writing composing reports) and Writing.
Environmental Demands: Occasionally Works Alone.
Work Schedule: Routine shift hours. Infrequent overtime weekend or shift rotation.
Demands/Deadlines: Occasional stress due to deadlines or workload because of intermittent or cyclical work pressures or occasional exposure to distressed individuals within the immediate work environment.
Pay Range:
$136500.00 - $241500.00The above pay range reflects the minimum and maximum target pay for the position across all U.S. locations. Within this range individual pay is determined by various factors including the scope and responsibilities of the role the candidates experience education and skills as well as the equity of pay among team members in similar positions. Beyond offering a competitive total rewards package we prioritize a people-first culture and offer various opportunities to support team member growth and success.
Oshkosh is committed to working with and offering reasonable accommodation to job applicants with disabilities. If you need assistance or an accommodation due to disability for any part of the employment process please contact us at
Oshkosh Corporation is a merit-based Equal Opportunity opportunities are open for application to all qualified individuals and selection decisions are made without regard to race color religion sex national origin age disability veteran status or other protected characteristic. To the extent that information is provided or collected regarding categories as provided by law it will in no way affect the decision regarding an employment application.
Oshkosh Corporation will not discharge or in any manner discriminate against employees or applicants because they have inquired about discussed or disclosed their own pay or the pay of another employee or applicant. However employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information unless the disclosure is (a) in response to a formal complaint or charge (b) in furtherance of an investigation proceeding hearing or action including an investigation conducted by the employer or (c) consistent with Oshkosh Corporations legal duty to furnish information.
Certain positions with Oshkosh Corporation require access to controlled goods and technologies subject to the International Traffic in Arms Regulations or the Export Administration Regulations. Applicants for these positions may need to be U.S. Persons as defined in these regulations. Generally a U.S. Person is a U.S. citizen lawful permanent resident or an individual who has been admitted as a refugee or granted asylum.
Required Experience:
Manager
About Company
At Oshkosh, we build some of the industry's toughest specialty trucks and access equipment. And while machines are our business, it’s about building, protecting and serving communities across the world.