About the job Security Operations Manager
Security Operations Manager
Qualifications
-
Degree in Computer Science or similar (preferable)
-
Security practitioner certifications such as:
-
Certified Information Systems Security Professional (CISSP)
-
Certified Information Security Manager (CISM)
-
-
Professional IT security management certifications, such as:
-
ITIL Foundation
-
COBIT Foundation
-
Certified Ethical Hacker (CEH)
-
-
ISACA CRISC (Certified in Risk and Information Systems Control) advantageous
-
Membership in professional bodies such as:
-
(ISC)²
-
ISACA
-
Experience
-
4-5 years' proven experience in:
-
Security Management
-
SOC Manager or Team Leader role in a SOC environment
-
-
Extensive experience in:
-
Security Engineering and SOC leadership
-
Governance and stakeholder management
-
-
Proven track record in mentoring Security teams
-
In-depth knowledge of:
-
Network technologies (protocols, design concepts, access control)
-
Security technologies (firewalls, endpoint protection, endpoint detection and response, encryption, data protection, privileged access, etc.)
-
-
Leadership and technical experience in:
-
SOC and/or Incident Response environments
-
Governance standards including ISO 27001, SOC 2 Type 1/2, COBIT, and ITIL
-
Role Responsibilities
-
Lead the operational Managed Security Service delivery on a 24x7 basis in The Company
-
Recruit, hire, and train Security Engineering team members in line with HR processes
-
Oversee incident response plans, workflows, and standard operating procedures (SOPs)
-
Act as the escalation point for all critical security incidents
-
Coordinate incident response and triage efforts with the Cyber Incident Response team
-
Manage dashboards and reporting with actionable metrics, including:
-
KPIs
-
Monthly reports
-
Threat advisories
-
Incident response and threat monitoring metrics
-
-
Review and enhance SIEM use cases and response runbooks
-
Collaborate with internal and external stakeholders to detect, prevent, and respond to threats
-
Align incident management between the SOC, Security Engineering, Managed Services, and Customer IT teams
-
Conduct performance reviews, leave approvals, and manage salary/bonus processes for SOC and Security Engineering team
-
Ensure effective use of the ServiceNow incident and response system, including case quality and closure
-
Oversee periodic review of audit trails, system logs, and monitoring data for compliance
-
Participate in and lead annual security audits
-
Lead war rooms for major cybersecurity incidents
-
Support presales by showcasing SOC capabilities to current and prospective clients
-
Participate in proposal scoping and preparation for security opportunities
-
Collaborate with Solutions team and Account Managers to develop and retain SOC customers