π Local Job Near You
Incident Command & Threat Hunting Operations Manager
Microsoft Corporation
π
Redmond, United States
Location
Redmond
Posted
June 20, 2026
Commute
Local Area
Local Opportunity Near You!
This job is in your area. Enjoy a short commute and work close to home.
Job Description
**Overview**
The **Incident Command & Threat Hunting Operations Manager** is responsible for leading end-to-end incident response governance and proactive threat detection across Fraud & Abuse Security operations. This role ensures rapid, coordinated response to high-severity incidents while driving threat hunting programs that identify and disrupt adversarial activity before impact.
The role operates at the intersection of incident command, threat intelligence, and operational execution, delivering measurable reduction in customer and Microsoft harm through structured processes, data-driven decision-making, and cross-organizational coordination.
**Responsibilities**
**1. Incident Command Leadership & Governance**
+ Own and evolve the Major Incident governance model, including severity definitions, escalation pathways, and decision authority
+ Act as incident command authority for high-severity (Sev A / Sev 1) or systemic incidents
+...
The **Incident Command & Threat Hunting Operations Manager** is responsible for leading end-to-end incident response governance and proactive threat detection across Fraud & Abuse Security operations. This role ensures rapid, coordinated response to high-severity incidents while driving threat hunting programs that identify and disrupt adversarial activity before impact.
The role operates at the intersection of incident command, threat intelligence, and operational execution, delivering measurable reduction in customer and Microsoft harm through structured processes, data-driven decision-making, and cross-organizational coordination.
**Responsibilities**
**1. Incident Command Leadership & Governance**
+ Own and evolve the Major Incident governance model, including severity definitions, escalation pathways, and decision authority
+ Act as incident command authority for high-severity (Sev A / Sev 1) or systemic incidents
+...