.jpg?1700169058)
Manager, MDR & Threat Hunting
zscaler • Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA; USA - Update Location
Posted: September 30, 2026
Job Description
Role
We are looking for a Manager, MDR & Threat Hunting to join our team. This is a remote (USA) role, reporting to the Director, MDR & Threat Hunting. This role leads an important customer-facing team of elite threat hunters and MDR responders, responsible for both the operational excellence of the service and the health of the customer relationships. The Manager serves as the frontline leader who translates complex threat intelligence, hunting, and security outcomes into clear executive value, keeping customers confident, engaged, and retained. Their impact is measured not only by the quality of hunts and investigations, but by their ability to build a team that customers trust and a service that consistently proves its worth.
What you’ll do (Role Expectations)
- Build, lead, and continuously develop a high-performing team of customer-facing threat hunters and MDR specialists, setting clear expectations, driving accountability, and recruiting talent that raises the team's collective bar
- Own the full talent lifecycle for the team, from structured technical skill development and radical candor performance feedback to defined career ladders that retain and advance top talent
- Serve as the senior escalation point for customer security teams (including executives: CISOs, Directors, SOC Leads) during active intrusions, complex investigations, hunts, and critical service issues, providing clear situational awareness, decisive guidance, and executive-level communication under pressure
- Manage the team’s recurring tactical and strategic customer engagements (weekly through quarterly) that translate threat actor activity, policy posture, and attack surface risk into actionable guidance that clearly demonstrate MDR and Threat Hunting service value (especially during lower-activity periods when value is hardest to communicate)
- Define and challenge the quality bar for all MDR and Managed Threat Hunting customer deliverables, establishing review standards, driving continuous improvement based on customer feedback and hunt outcomes, and ensuring outputs consistently reflect the team's expertise and Zscaler's brand
Who You Are (Success Profile)
- You act like an owner, operating with integrity, passion, and a bias for action while navigating seamlessly between high-level strategy and hands-on execution.
- You are a problem-solver who is energized by complex challenges and driven to find solutions that deliver maximum impact.
- You are customer-obsessed, building deep empathy for internal and external stakeholders and anchoring decisions in solving real-world problems to champion their success.
- You operate with urgency, combining speed and quality with a relentless focus on execution to deliver high-impact results quickly.
- You lead with integrity, holding yourself and others to high standards of accountability while building trust through consistent, transparent action.
What We’re Looking for (Minimum Qualifications)
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
- Understand threat actor TTPs aligned with the MITRE ATT&CK framework and detection/response opportunities for EDR and Web Proxies
- Proficiency in two or more EDR platforms with experience writing detections and responding to EDR detections
- Proven track record of managing customer-facing deliverable teams and executive stakeholder communication
- Proficient in detection and response leveraging network and/or Web Proxy telemetry (specifically Zscaler products or equivalent)
What Will Make You Stand Out (Preferred Qualifications)
- Proven ability to leverage AI technologies and workflows to drive measurable operational efficiency
- Prior experience as a people leader at an MDR or security vendor
- Certifications such as GIAC GCIH, GCFA, GNFA, GDAT, OffSec Threat Hunter (OSTH / TH-200), eCTHP, CDETH or similar
- Experience creating technical reports, white papers, and presentations (at security conferences, to boards, and to executives)
#LI-KM9 #LI-Remote