Director, Security Operations

Remote from
UK flag
UK
Annual salary
Undisclosed
Salary information is not provided for this position. Check our Salary Directory to estimate the average compensation for similar roles.
Employment type
Full Time,
Job posted
Apply before
20 Jun 2026
Experience level
Director
Views / Applies
46 / 12

About LastPass

Making it easier to log in to life and work by combining advanced security with effortless access for individuals, families, small business owners, and enterprise professionals.

Verified job posting
This job post has been manually reviewed for authenticity and compliance.

AI Summary

LastPass is seeking a Director of Security Operations to lead the strategy, operations, and evolution of its Security Operations function. This role involves setting direction for threat detection, incident response, and recovery, translating threat intelligence into a mature program. The director will partner with CISO, engineering, legal, and external partners, and lead a globally distributed team. Key responsibilities include driving program maturation, managing high-severity incidents, and integrating AI-assisted tooling. The ideal candidate has senior leadership experience in incident response and cyber defense at scale.

Job Complexity

Easy Hard
AI Insight This is a highly strategic, senior leadership role requiring deep expertise in security operations, incident response, and team management at scale, making it one of the hardest roles to fill.

Salary Analysis

Median
$250,000
US Market
$200,000 – $350,000
AI Insight The salary is not provided, but for a Director of Security Operations in the US, the market range is typically $200,000 to $350,000 annually. The median is estimated at $250,000, which is competitive for this senior leadership role.

Key Skills

Security Operations Incident Response Threat Intelligence Team Leadership AI-assisted Security Detection-as-Code Cloud Security Cyber Defense Automation CISO Collaboration

Dear Hiring Manager,

I am excited to apply for the Director of Security Operations position at LastPass. With over 15 years of experience in cybersecurity, including leading incident response and building high-performing teams at global scale, I am confident in my ability to drive the strategy and maturation of LastPass's Security Operations function.

In my previous role as Head of Security Operations at a major tech company, I successfully reduced mean-time-to-respond by 40% through AI-assisted automation and Detection-as-Code methodologies. I have extensive experience collaborating with CISO, legal, and communications teams during high-severity incidents, and have established strong relationships with threat intelligence partners and law enforcement.

I am passionate about protecting customer trust and continuously improving security posture. I look forward to the opportunity to contribute to LastPass's mission of delivering secure access essentials.

Sincerely, [Your Name]

Describe your experience in building and leading a security operations team at scale. How did you develop your team and ensure operational excellence?
I have led a global SOC of 50+ analysts and engineers, implementing career development programs and performance metrics. I fostered a culture of continuous improvement through regular tabletop exercises, post-incident reviews, and cross-training, which reduced turnover and improved response times.
How would you approach integrating AI-assisted triage and automation into the security operations workflow?
I would start by identifying high-toil, low-judgment tasks like alert enrichment and initial triage. I would pilot AI models for pattern recognition and deploy automated playbooks for common scenarios, ensuring human oversight for complex cases. Metrics like reduction in MTTR and analyst workload would guide iteration.
Can you give an example of a high-severity incident you managed and how you coordinated with executive leadership, legal, and communications?
During a ransomware incident, I led the technical response while providing regular briefings to the CISO and board. I coordinated with legal for regulatory notifications and with communications for customer messaging. Our team contained the threat within hours, and post-incident improvements reduced future risk.
How do you stay current with the evolving threat landscape and ensure your detection strategy adapts?
I maintain relationships with threat intelligence vendors, participate in industry ISACs, and conduct regular threat hunts. I also implement a feedback loop from incidents to detection rules, and encourage the team to research emerging TTPs. Quarterly strategy reviews ensure alignment with the threat landscape.
What metrics do you use to measure the effectiveness of a security operations program, and how do you report them to the CISO and board?
Key metrics include mean-time-to-detect (MTTD), mean-time-to-respond (MTTR), incident volume by severity, false positive rates, and detection coverage across the environment. I present these in a monthly dashboard with trend analysis and risk-based commentary, highlighting improvements and areas needing investment.

About LastPass
LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, LastPass blends strong security with everyday simplicity. From discovering unapproved AI and applications to reducing login friction and securing credentials across the business, LastPass helps teams and individuals stay productive, minimize risk, and remain prepared as their environments evolve.

Curious about our products? Visit our website and try it free! 

We welcome new ideas, support your growth, and recognize your value, if this aligns with what you are looking for in your next career move, Join Us!

LastPass is looking for a Director, Security Operations: 

In this role, you will own the strategy, operations, and continuous evolution of LastPass’s Security Operations. You will set the direction for how LastPass detects, responds to, and recovers from security incidents – translating threat intelligence into a mature, high-performing program that shapes the company’s security posture and protects customer trust.

About the team:

The Security Operations team is the frontline of LastPass’s security – responsible for detecting threats, leading investigations, and driving incident response across the full technology estate. We are a globally distributed team combining deep technical expertise with a strong culture of collaboration, continuous improvement, and AI-assisted tooling to operate at speed and scale.

If you are passionate about complex problem solving and motivated by scale, then this is the role for you!

Who will you work with?

As Director of Security Operations, you will partner closely with the CISO, Platform and Software Engineering, Cloud Security, Cyber Defence team, GRC, Legal, and Communications teams. Externally, you will engage with vendors, threat intelligence partners, industry CERTs, and law enforcement as needed. You will also manage and develop a team of experienced Response Analysts.

What are some of the exciting challenges you will be working on?

  • Own and drive the strategy, roadmap, and maturation of LastPass’s Security Operations function – translating the threat landscape into a multi-year program plan that scales with the business
  • Lead all response operations across the full incident lifecycle, from detection and triage through containment, eradication, recovery, and post-incident review
  • Build, develop, and retain a high-performing team of analysts and engineers – setting clear performance expectations, career development pathways, and a culture of operational excellence
  • Partner with the CISO, Legal, and Communications to manage high-severity incidents, coordinating executive response and fulfilling regulatory notification obligations
  • Define and own detection and response program metrics, SLAs, and reporting frameworks – providing the CISO and board with clear, evidence-based visibility into program maturity and risk posture
  • Champion the integration of AI-assisted triage, automation pipelines, and Detection-as-Code methodologies to reduce analyst toil and drive down mean-time-to-respond
  • Establish and maintain strategic relationships with external partners – including threat intelligence vendors, law enforcement, and industry information-sharing groups — to strengthen LastPass’s situational awareness
  • Collaborate across Business Technology, Cloud Security, and Platform Engineering to ensure cohesive detection coverage and coordinated response capability across the full technology estate

What does it take to work at LastPass?

  • Proven experience in security operations, including senior leadership ownership of an incident response or cyber defense function at scale
  • Proven ability to build, lead, and develop high-performing security teams – including managing through managers – in a fast-paced, high-stakes environment
  • Advanced, hands-on knowledge of the CSIRT/SOC discipline: digital forensics, threat intelligence, malware analysis, network analysis, or incident handling across cloud-native and hybrid infrastructure
  • Expert-level command of security frameworks including MITRE ATT&CK, NIST CSF, and the SANS incident response lifecycle, with demonstrated application in real-world program design
  • Proven track record of engaging executive leadership, legal counsel, and external stakeholders during major security incidents, including regulatory and board-level communication
  • Strategic thinker who can translate complex threat landscapes into clear program priorities and communicate risk in business terms to non-technical audiences
  • Operates with calm authority under pressure – able to drive decisive, coordinated action during high-severity incidents while sustaining team morale and stakeholder confidence
  • Builds influence across organizational boundaries, driving security outcomes through cross-functional alignment without relying on positional authority

It’s great, but not required:

  • Experience in the password management, identity security, or SaaS security product domain
  • Background in red team operations, adversary simulation, or threat hunting as a complement to defensive program leadership
  • Proficiency in Python or PowerShell to drive automation and accelerate detection and response workflows, or experience managing teams and programs who perform these functions

Why LastPass?

  • Market-leading password manager
  • High-growth, collaborative environment with inclusive teams
  • Remote-first culture
  • Competitive compensation
  • Flexible Paid Time Off policies, including but not limited to: Quarterly Self-Care Days (4 extra paid days off annually) and Volunteer Days
  • Parental leave
  • Comprehensive health coverage, including dependents
  • Home office setup support
  • LastPass Families free account for up to 5 members
  • Continuous learning and development opportunities, including an annual learning stipend to invest in your growth
  • Peer-to-peer recognition through Motivosity
  • Employee Assistance Program for well-being support
  • Remote work stipend to support your home office needs
  • Short-Term or Remote-Centric Work Arrangements for added flexibility

Unlock your potential with us – your skills, experience, and unique perspective matter more than just checking the boxes. Apply today, and let’s build the future together!

We’re building an inclusive community that reflects the people of all races, genders, sexual orientations, national origins, backgrounds, and perspectives who share our world.

For all US based jobs please review our Applicant Privacy Notice

For all EU based jobs please review our Candidate Privacy Notice 

Please review our CCPA Notice

Apply now >

Annual salary information is not provided for this position. Explore salary ranges for similar roles in our Salary Directory ›

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

How to apply

Did you apply? Let us know, and we’ll help you track your application.

See a few more

Similar Technical Support remote jobs

Job Search Safety Tips

Here are some tips to help you search and apply for jobs safely:
Watch out for suspicious jobs Don't apply for jobs that offer high pay for little work or offer to hire you without an interview. Read more ›
Check the employer's profile Make sure you're applying for a trustworthy job by visiting the employer's profile and learning more about them. Read more ›
Protect your information Don't share personal details like your bank account or government-issued ID on suspicious websites or messengers. Read more ›
Report jobs that feel unsafe If you see a job that seems misleading, inappropriate or discriminatory, report it for going against our policies and we'll review it.

Share this job

Jobicy+ Subscription

Jobicy

614 professionals pay to access exclusive and experimental features on Jobicy

Free

USD $0/month

For people just getting started

  • • Unlimited applies and searches
  • • Access on web and mobile apps
  • • Weekly job alerts
  • • Access to additional tools like Bookmarks, Applications, and more

Plus

USD $8/month

Everything in Free, and:

  • • Ad-free experience
  • • Daily job alerts
  • • Personal career consultant
  • • AI-powered job advice
  • • Featured & Pinned Resume
  • • Custom Resume URL
Go to account ›