At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world.
Why you should join:
As a Regional Team Lead of Incident Response & Security Operations, you will be a key member of our collaborative security team, working alongside other security professionals to protect our organization from sophisticated cyberattacks. In this "player-coach" role, you will act as the senior technical expert and operational guide for your region’s Security Operations Center (SOC) analysts. You will be a hands-on practitioner, working alongside your team to hunt for threats, analyze alerts, and lead the technical response to security incidents.
The ideal candidate has a strong background in hands-on security analysis, a talent for mentoring others, and the composure to lead technical investigations under pressure. You will be the primary escalation point for the SOC, ensuring the team's work is effective, efficient, and continuously improving our ability to defend the organization.
Your main tasks:
- Incident Response: Assist with all major security incidents, coordinating response efforts across technical teams, legal, communications, and executive leadership. Lead the development of Incident Response processes and playbooks. Regularly test the company’s Incident Response Plan through tabletop exercises. Manage relationships with 3rd party firms through Incident Response retainers.
- Security Operations: Oversee regional operations of the Security Operations Center (SOC), ensuring timely and effective analysis of security alerts. Identify areas of improvement through automation and new processes. Improve the development and tuning of detection rules, analytics, and correlation logic to improve alert fidelity. Lead threat response and proactive vulnerability/threat notifications.
- Metrics and Reporting: Prepare and present regular reports on incident trends, security posture, and team performance to senior leadership. Define and track Key Performance Indicators to measure the effectiveness of the security program.
- Strategic Leadership: Contribute to the comprehensive enterprise information security strategy, roadmap, and architecture in alignment with business objectives.
- Team Management & Development: Lead, mentor, and manage a high-performing team of security analysts, fostering a culture of technical excellence, innovation, and continuous learning. Manage team schedules, conduct performance reviews, and guide career development for team members.
- Documentation & Knowledge Sharing: Develop and maintain comprehensive documentation, including system architecture diagrams, data flow diagrams, log source configurations, alert rationale, and incident response procedures. Mentor and provide technical guidance to junior security analysts.
- Collaboration & Communication: Effectively communicate technical concepts to both technical and non-technical audiences. Interface with other IT teams (network, systems, application development, etc.) to ensure security is integrated throughout the infrastructure.
- Strategic Planning & Budgeting: Collaborate with leadership on strategic planning, budget forecasting, and resource allocation. Manage the operational budget for the SOC/IR team, including tools, subscriptions, and training.
What your background should look like
Required Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- Minimum of 5-7 years of experience in information security, with a strong focus on security.
- Significant experience with at least one enterprise-grade SIEM platform (e.g., Devo, Splunk, QRadar, Sentinel, ArcSight).
- Experience with scripting languages (e.g., Python, PowerShell, Regular Expressions) for automation and data manipulation.
- Familiarity with various operating systems (Windows, Linux, macOS) and cloud platforms (AWS, Azure, GCP).
- Knowledge of common security frameworks and standards (e.g., NIST, MITRE ATT&CK, CIS).
Preferred Qualifications:
- Experience with Devo, Devo SOAR, and/or LogicHub
- Advanced programming/coding in one or more languages (C#, Python, etc).
- Understanding of security concepts, including network security, endpoint security, intrusion detection/prevention systems (IDS/IPS), firewalls, and vulnerability management.
- Manufacturing and/or engineering industry experience.
- Experience working in a large global organization.
ABOUT TE CONNECTIVITY
TE Connectivity plc (NYSE: TEL) is a global industrial technology leader creating a safer, sustainable, productive, and connected future. As a trusted innovation partner, our broad range of connectivity and sensor solutions enable the distribution of power, signal and data to advance next-generation transportation, energy networks, automated factories, data centers enabling artificial intelligence, and more.
Our more than 90,000 employees, including 10,000 engineers, work alongside customers in approximately 130 countries. In a world that is racing ahead, TE ensures that EVERY CONNECTION COUNTS. Learn more at www.te.com and on LinkedIn, Facebook, WeChat, Instagram and X (formerly Twitter).
Our Commitment to Transparent Hiring:
We are pleased to offer you an exciting total package that can also be flexibly adapted to your changing life situation - the well-being of our employees is our top priority!
- Collaborative and friendly work environment
- Extensive training and career growth opportunities
- Life insurance
- Private medical healthcare package
- Employee referral bonus
- Multisport co-financing
- Performance-based bonus plans
Great hiring starts with honesty, and we mean it.
Our job postings are gender‑neutral, inclusive, and never ask for your past salary. We disclose the full salary range and all pay elements, including how they are calculated, upfront - before any employment decisions are made.
At TE, we believe transparency isn’t a checkbox – it’s part of your experience with us.
IMPORTANT NOTICE REGARDING RECRUITMENT FRAUD
TE Connectivity has become aware of fraudulent recruitment activities being conducted by individuals or organizations falsely claiming to represent TE Connectivity. Please be advised that TE Connectivity never requests payment or fees from job applicants at any stage of the recruitment process. All legitimate job openings are posted exclusively on our official careers website at te.com/careers, and all email communications from our recruitment team will come only from actual email addresses ending in @te.com. If you receive any suspicious communications, we strongly advise you not to engage or provide any personal information, and to report the incident to your local authorities.
Across our global sites and business units, we put together packages of benefits that are either supported by TE itself or provided by external service providers. In principle, the benefits offered can vary from site to site.
Poland, Kujawsko-pomorskie 85-059
Poland