Manager, Detections

Shift5
Summary
Join Shift5, a fast-growing scale-up redefining onboard operational technology (OT) cybersecurity, predictive maintenance, and compliance. As Manager, Detections, you will lead a team of detection engineers, conduct cutting-edge research and development of detection algorithms and systems, and contribute directly to the security and efficiency of national defense assets and critical transportation infrastructure. This pivotal role demands a blend of technical leadership and hands-on contribution, requiring you to guide your team while actively participating in research, design, and prototyping. You will collaborate extensively with cross-functional teams, including Product Management, Software Engineering, Data Science, and customer-facing Field Teams. Success in this role means directly impacting the security posture, maintenance efficiency, and safety insights for our customers. The position offers a remote work option with occasional travel.
Requirements
- US Citizenship is required for this role due to the nature of Shift5's work with defense and government contracts and must possess an active SECRET security clearance, at a minimum
- Bachelor's degree (or equivalent practical experience) in Computer Science, Computer Engineering, Electrical Engineering, Cybersecurity, or a closely related technical discipline
- Proven ability to lead, manage, or formally mentor technical teams
- This includes experience setting technical direction, fostering team growth and skill development, and managing performance effectively
- Significant, demonstrated experience designing, developing, and deploying robust software solutions, with a strong emphasis on cybersecurity applications
- Proficiency in relevant programming languages (e.g., Go, Python, C/C++) is essential
- Comprehensive understanding of intrusion detection and prevention principles, diverse techniques (e.g., signature matching, anomaly detection, behavioral analysis, statistical methods), system architectures, performance optimization, and common attacker evasion tactics
- Demonstrable knowledge and hands-on experience addressing the unique security challenges, communication protocols (e.g., CAN bus, MIL-STD-1553, ARINC 429, various RF protocols), and system architectures found within Operational Technology (OT), embedded systems, and/or RF systems
- Experience securing or analyzing Industrial Control Systems (ICS) or Supervisory Control and Data Acquisition (SCADA) systems is highly relevant
- Strong research capabilities, including the ability to independently investigate complex technical problems, perform in-depth data analysis, devise innovative solutions, and rigorously evaluate their effectiveness against defined metrics
- Excellent interpersonal, written, and verbal communication skills
- Must possess a proven ability to collaborate productively within diverse, cross-functional technical teams and articulate complex technical concepts clearly to varied audiences
Responsibilities
- Lead, mentor, coach, and cultivate a high-performing team of detection engineers specializing in OT, embedded systems, and RF security domains, with an understanding of maintenance and safety data applications
- Foster an environment that encourages innovation, technical rigor, continuous learning, and effective collaboration, both within the team and across Shift5
- Manage team performance by setting clear goals, providing constructive feedback, identifying development opportunities, and supporting individual career growth paths
- Direct and drive the comprehensive research, design, development, prototyping, and rigorous validation of novel detection algorithms, system signatures, behavioral models, and advanced analytics
- The primary focus is squarely on identifying both known and previously unseen cyber threats targeting OT environments, embedded systems, and RF communication protocols (e.g. GPS, tactical datalinks) prevalent in defense and transportation sectors
- A secondary focus involves leveraging the same data and analytical approaches to develop detections for predictive maintenance indicators and potential safety-related anomalies
- Oversee the strategic planning, technical design, effective implementation, and maintainability of these detection capabilities (cyber, maintenance, safety) within Shift5's observability platform architecture
- Maintain expert-level awareness of customer needs, operational challenges with deploying detections, the evolving threat landscape, sophisticated attacker methodologies, and cutting-edge security research specifically pertinent to OT, embedded, and RF system security, as well as relevant techniques for condition monitoring and anomaly detection for maintenance and safety
- Serve as a senior technical leader and hands-on contributor within the detection engineering team
- This includes direct involvement in algorithm design, software development, complex data analysis, and system implementation efforts for cybersecurity, maintenance, and safety detections
- Actively contribute to the creation of innovative software solutions for IDS/IPS and anomaly detection systems, potentially leveraging techniques like machine learning or advanced statistical modeling, often in close partnership with the Data Science team
- Engage in deep collaboration with the Vulnerability Research team to gain insights into specific threats, novel attack vectors, and critical vulnerabilities impacting target platforms, ensuring cyber detection strategies are directly informed by real-world risk intelligence
- Partner closely with Product Management to effectively translate research breakthroughs and developed detection capabilities (across cyber, maintenance, and safety) into tangible product features and clearly defined requirements, ensuring alignment with customer needs and Shift5's strategic roadmap
- This role acts as a vital conduit, making advanced research actionable and relevant for product success
- Work seamlessly with Software, Hardware, and Firmware Engineering teams to ensure the smooth integration of detection mechanisms into the Shift5 platform and confirm compatibility with the diverse systems under observation
- Collaborate with customer-facing Field Teams to gather crucial feedback on detection performance in operational environments, understand deployment challenges, and drive a cycle of continuous improvement based on real-world data across all detection types
- Liaise proactively with the Data Science team to explore, evaluate, and implement advanced analytical methods (e.g., machine learning, statistical analysis) aimed at significantly enhancing detection accuracy (for cyber threats, maintenance precursors, and safety events), reducing false positives, uncovering subtle patterns, and triaging alerts
- Define, implement, and continuously refine robust processes for the entire detection capability lifecycle, encompassing development, rigorous testing, secure deployment, and ongoing maintenance
- Clearly and effectively communicate complex research findings, strategic detection approaches, team progress, and technical challenges to senior leadership and other key stakeholders across the organization
Preferred Qualifications
- Direct experience developing, implementing, or tuning IDPS solutions specifically for weapon systems, aerospace platforms, automotive systems, rail networks, maritime vessels, or other critical infrastructure OT/embedded environments
- Practical experience applying data analysis, machine learning algorithms, or statistical modeling techniques to solve cybersecurity problems, particularly in areas like anomaly detection or predictive threat modeling
- Experience applying similar techniques for predictive maintenance or safety analysis is beneficial
- Background or experience in vulnerability research, exploit analysis, or reverse engineering (particularly firmware, embedded software, or network protocols)
- Understanding of condition-based maintenance principles, failure modes, or safety analysis techniques relevant to transportation or defense platforms
Benefits
- Base Salary: $200,000-$260,000
- Bonus program and equity in a fast-growing startup
- Competitive medical, dental, and vision coverage for employees and their families
- Health Savings Account with annual employer contributions
- Employer-paid Life and Disability Insurance
- Uncapped paid time off policy
- Flexible work & remote work policy
- Tax-deferred public transit benefits with Metro SmartBenefits (DC/MD/VA)