SOC Manager/Head
Job Title:
Security Operations Centre (SOC) Manager
Department: Security Command Centre
Reports To: Director
Location: Goregaon West, Mumbai
Job Type: Full-Time, 24x7
Job Summary:
We are
seeking an experienced and strategic SOC Manager to lead our Security
Operations Center. The ideal candidate will oversee daily operations of the
SOC, manage a team of analysts and engineers, develop threat detection and
incident response strategies, and ensure the organization's cybersecurity
posture is proactively monitored and defended 24/7.
Key
Responsibilities:
SOC Leadership & Management
- Lead, mentor, and manage the SOC team
(L1, L2, L3 analysts and threat hunters).
- Define and enforce SOC operational
procedures, SLAs, and escalation processes.
- Coordinate with IT, Risk, Compliance, and
IR teams during incidents and audits.
- Create shift schedules to ensure 24x7
monitoring and response.
Threat Detection & Incident Response
- Oversee detection, triage, investigation,
and resolution of security incidents.
- Ensure timely and effective response to
security threats.
- Supervise use of SIEM, SOAR, EDR,
IDS/IPS, and other security tools.
- Lead root cause analysis and
post-incident reviews.
Technology & Process Management
- Evaluate, implement, and optimize SOC
tools and platforms.
- Maintain and refine threat use cases,
playbooks, and detection rules.
- Drive automation and efficiency
improvements in SOC operations.
- Ensure log sources and threat feeds are
integrated and functional.
Metrics, Reporting, & Compliance
- Develop and deliver SOC KPIs, dashboards,
and executive reports.
- Ensure compliance with industry standards
(ISO 27001, NIST, GDPR, etc.).
- Support vulnerability management, threat
hunting, and purple team exercises.
Required Skills & Qualifications:
- Bachelor’s degree in Cybersecurity,
Computer Science, or related field.
- 7+ years of experience in cybersecurity,
with at least 2+ years in a SOC leadership role.
- Strong knowledge of SIEM & SOAR
(Splunk, QRadar, AiSIEM), EDR, IDS/IPS, WAF, Networking, ZTNA, Identity,
NBAD, Cloud Security and firewall technologies.
- Strong deployment skill sets, SLA
management.
- Deep understanding of cyber threats,
attack vectors, MITRE ATT&CK, kill chain, and incident response
lifecycle.
- Proven experience in managing teams and
working in 24x7 environments.
- Familiar with compliance frameworks: ISO
27001, NIST, SOC2, PCI-DSS.
Preferred Certifications:
- CISSP (Certified Information Systems
Security Professional)
- CISM (Certified Information Security
Manager)
- Microsoft Azure/AWS or equivalent (for
cloud-focused environments)
Key
Competencies:
- Strong leadership, decision-making, and
people management skills
- Excellent communication and reporting
abilities (technical + executive level)
- High attention to detail, and the ability
to operate under pressure
- Strategic thinking with hands-on
technical capabilities