SOC Manager
Operations:
•
Lead 24×7 SOC operations and ensure adherence to established service level agreements (SLAs).
•
Oversee security monitoring, alert triage, incident investigation, containment and escalation activities.
•
Ensure consistent execution of incident response playbooks and standard operating procedures.
•
Manage shift operations, staffing plans, workload balancing and operational readiness.
•
Lead incident coordination and post-incident reviews. Ensure timely communication with global stakeholders during high-severity incidents.
•
Drive continuous improvement of SOC operations through root cause analysis, corrective action tracking, and collaboration with Security Engineering and SIEM teams to enhance detection quality and reduce false positives.
•
Advance SOC maturity by promoting SOAR-based automation, optimizing workflows, and supporting proactive threat hunting initiatives to strengthen the organization's security posture.
•
Develop executive dashboards and operational reports. Required Qualifications:
•
Bachelor’s degree in computer science, Cybersecurity, Information Technology or a related field.
•
8–12 years of cybersecurity experience.
•
3–5 years leading Security Operations teams.
•
Experience operating enterprise SIEM, EDR/XDR, SOAR and threat intelligence platforms.
•
Strong knowledge of incident response, threat detection and cyber defense.
•
Preferred Certifications – CISSP, GIAC Certified Incident Handler (GCIH), Splunk.
•
Technical Skills - SIEM platforms, EDR/XDR technologies, SOAR automation, MITRE ATT&CK, NIST Incident Response Framework, Threat Intelligence, Cloud security monitoring and Vulnerability management.