- Salary
- $175k – $200k
- Location
- Remote - United States of America
- Workplace
- Remote
- Type
- Full-time
- Department
- Security
- Seniority
- Manager
- Experience
- 7+ years
- Education
- Master
- Source
- Workday
Description
About Us
At Cast & Crew, we’ve empowered creativity and supported the global entertainment industry for decades. Together with our family of brands - Backstage, CAPS, Checks & Balances, Final Draft, Media Services, Sargent-Disc, and The TEAM Companies – we operate as a combined entertainment technology and services provider offering industry standard screenwriting accounting software, digital payroll products, data & reporting, and a host of creative tools. The industry continues to move faster than ever, and the need for our expertise, our technology, and our people has never been greater. We are a production’s best ally every step of the way. #OneCastOneCrew
Position Overview
We are looking for a strategic and hands-on Manager, Corporate Security to lead our security operations team in protecting the endpoints, identities, email, and corporate data that power the entertainment industry's payroll and financial operations. This role is critical to detecting, responding to, and preventing security threats against the systems and data that our clients—major studios, streaming platforms, and production companies—rely on every day.
As the Manager, Corporate Security, you will lead a team responsible for security monitoring, incident response, endpoint protection, email security, identity security and governance, and security awareness. You'll work at the intersection of security operations, threat detection, and incident management, partnering closely with IT, engineering, and business teams to ensure rapid response to threats and continuous improvement of our security posture.
This is a leadership role for someone who is equally comfortable setting operational strategy, mentoring team members, and rolling up their sleeves to investigate complex security incidents. You will manage a team of security analysts and engineers, drive our security operations maturity, lead incident response efforts, and champion a security-first culture across the organization.
Core Responsibilities
Strategic Leadership
Develop and execute a comprehensive security operations strategy aligned with business objectives and risk tolerance
Define the roadmap for security monitoring, detection, and response capabilities across the enterprise
Partner with IT and infrastructure teams to embed security monitoring and controls across the systems they own and administer
Establish and mature incident response processes, playbooks, and escalation procedures
Own the operational security metrics—detection and response times, endpoint coverage and compliance, phishing resilience—that feed our established executive security KPI program, reporting progress to the CISO
Participate in proofs of concept and design partnerships with emerging security vendors — particularly AI-driven technologies — helping evaluate new products and shape their roadmaps alongside security leadership
Team Leadership & Development
Lead, mentor, and develop a team of security analysts and engineers
Foster a collaborative, learning-oriented team culture that balances security rigor with operational efficiency
Conduct regular 1:1s, performance reviews, and career development planning for direct reports
Scale the team as the organization grows, including hiring and onboarding new security talent
Provide technical guidance and remove blockers to enable your team's success
Security Operations & Incident Response
Oversee security monitoring and SIEM operations, ensuring effective detection and alerting
Lead incident response efforts, conducting investigations, root cause analysis, and implementing preventive measures
Serve as the escalation point for critical and after-hours security incidents, and manage on-call rotations and escalation workflows for the team
Manage endpoint detection and response (EDR) platforms and endpoint security posture
Oversee email security operations including anti-phishing, anti-malware, and email gateway management
Lead security awareness and training programs to reduce human risk factors
Develop and maintain incident response playbooks, runbooks, and tabletop exercises
Manage day-to-day operational relationships with security tooling vendors and managed service providers
Identity Security & Governance
Define identity security policy and standards — single sign-on (SSO), multi-factor authentication (MFA), and conditional access requirements — for the identity platforms administered by IT
Monitor user and permissions hygiene across the enterprise, including joiner/mover/leaver lifecycle and least-privilege enforcement, driving remediation with IT
Lead periodic access reviews and certification campaigns in partnership with IT and GRC
Cross-Functional Collaboration
Work closely with IT and infrastructure teams to ensure security tools integrate effectively with enterprise systems
Partner with the GRC team on SOC 2 compliance requirements related to security operations, including control evidence and audit support
Collaborate with the Product Security team on monitoring, detection, and response for application-layer threats
Communicate security risks, incidents, and priorities effectively to both technical and non-technical stakeholders
Key Qualifications
7+ years of experience in security operations, incident response, or related security roles, including 3+ years directly managing security teams (hiring, performance management, and career development)
Deep technical expertise in at least two of the following areas:
Security Information and Event Management (SIEM) administration and log analysis
Incident response and digital forensics
Endpoint detection and response (EDR) platforms
Email security and anti-phishing technologies
Identity security and governance, including IdP policy design (e.g., Okta, Microsoft Entra ID), SSO/MFA/conditional access, and access lifecycle governance
Security awareness and training program management
Strong understanding of common attack vectors, threat intelligence, and detection methodologies
Experience developing and executing incident response playbooks and tabletop exercises
Excellent communication skills with the ability to explain complex security concepts to diverse audiences
Bachelor's degree in Computer Science, Information Security, or related field (or equivalent practical experience)
Preferred Qualifications
Industry certifications such as CISSP, GCIH, GCFA, GCIA, or Security+
- Experience in regulated industries (finance, healthcare, entertainment) with compliance requirements
- Familiarity with SOAR platforms and security automation
- Experience with cloud security monitoring (AWS, Azure)
- Knowledge of threat hunting and proactive detection techniques
- Experience managing managed security service provider (MSSP) relationships
- Experience supporting SOC 2 audits
- Experience with proofs of concept or design partnerships with emerging security vendors, particularly AI-based tooling
Key Competencies & Attributes
Strategic thinker who can balance long-term vision with short-term execution
Collaborative leader who builds trust and influence across teams
Calm under pressure with the ability to lead effectively during security incidents
Pragmatic problem-solver who understands business context and risk tradeoffs
Continuous learner who stays current with evolving threats, tools, and best practices
Clear communicator who can articulate security priorities to executives and board members
Empathetic manager who invests in team growth and creates psychological safety
Special Work Conditions
Sedentary – Involves sitting most of the time but may involve walking or standing for brief periods of time. Some positions may entail exerting up to 15 lbs. of force occasionally and/or a negligible amount of force to lift, carry, push, or pull.
Travel up to 5%
#LI-JM1
Benefits
Cast & Crew provides a comprehensive package of employee benefits including: Medical, Dental, Vision, PTO, health and wellness programs, employee discounts, and more! Note: Cast & Crew benefits are subject to eligibility requirements.
Cast & Crew is an equal opportunity employer committed to hiring a diverse workforce and sustaining an inclusive culture. It is our policy to provide equal employment opportunities to all individuals based on job-related qualifications and ability to perform a job, without regard to age, gender, gender identity, sexual orientation, race, color, religion, creed, national origin, disability, genetic information, veteran status, citizenship or marital status, and to maintain a non-discriminatory environment free from intimidation, harassment or bias based upon these grounds.
CA residents
Your personal information may be collected in connection with certain services provided by Cast & Crew or its affiliated companies. A summary of your California privacy rights can be found at: https://www.castandcrew.com/privacy-policy/