Information Security – Security Operations Center Manager

September 14, 2026
Application ends: December 13, 2026
Apply Now

Job Description

Role Overview :

We are seeking a highly experienced and technically strong SOC Manager to lead and evolve our Security Operations Center into a mature, engineering-driven, and outcome-focused capability in the AI driven world.

This role requires a hybrid leader who can :

– Drive 24×7 SOC operations excellence

– Own SIEM/SOAR engineering and detection lifecycle

– Collaborate closely with Product and Development teams

– Influence platform enhancements through operational intelligence

– Build and mentor high-performing security teams

– Highlight risks and gaps in logging methodologies

– Improve security posture across multi-tenant cloud and on-prem environments

Key Responsibilities :

1. SOC Operations Leadership and Incident Governance :

– Lead 24×7 SOC operations including detection, triage, escalation, containment, and recovery.

– Serve as final escalation point (L3/L4) for complex and high-severity incidents.

– Define and enforce incident response lifecycle aligned with NIST, ISO 27001, and MITRE ATT&CK.

– Ensure adherence to SLA / OLA targets (MTTA, MTTR, containment time).

– Conduct executive-level incident briefings and publish detailed RCA reports.

– Ensure compliance with organizational security policies and audit requirements.

– Oversee case quality assurance and investigation standards.

2. SOC Engineering and Detection Engineering :

– Own SIEM/SOAR architecture optimization and performance tuning.

– Lead log onboarding strategy (cloud, on-prem, hybrid environments).

– Ensure proper log normalization, parsing, enrichment, and correlation.

– Drive full detection use-case lifecycle :

1. Threat modelling

2. Use-case creation

3. Validation and tuning

4. Performance measurement

5. Decommissioning of ineffective rules

– Reduce alert fatigue through risk-based alerting, contextual enrichment, and behavioural analytics.

– Implement detection-as-code practices with version-controlled rule management.

– Ensure high ingestion performance and scalable log retention strategies.

3. Threat Hunting and Advanced Analysis :

– Establish and lead proactive threat hunting programs.

– Map detection coverage against MITRE ATT&CK framework.

– Perform advanced investigations including :

1. Packet capture analysis

2. Endpoint telemetry analysis

3. Log correlation across multiple data sources

– Integrate threat intelligence feeds and manage IOC lifecycle.

– Identify emerging attack patterns and update detection coverage accordingly.

4. Product Engineering and Platform Enhancement Ownership :

– Act as the primary SOC liaison for Product and Engineering teams.

– Translate operational pain points into structured enhancement requirements.

– Maintain and prioritize a backlog of platform improvements.

– Provide structured feedback on :

1. Detection gaps

2. Alert noise

3. Data ingestion latency

4. Query performance issues

5. UX inefficiencies impacting analysts

– Participate in sprint planning and architecture discussions and provide inputs for enhancements.

– Be part of pilot validation of new features prior to production release.

– Quantify impact of enhancements (false positive and incident reduction %, MTTR improvement, automation coverage growth).

Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline
#WebDesignRemoteJobs
#FreelanceGraphicDesigner
#WorkFromHomeDesignJobs
#OnlineWebDesignWork
#RemoteDesignOpportunities
#HireGraphicDesigners
#DigitalDesignCareers
# Dynamicbrand guru